Stránka 1 z 1

browsre nebrowsuju ale net ide

Napsal: 09 kvě 2015 22:43
od marrek
zdravim,

nefungoval mi ani jeden prehliadac, pritom ked som pingol nejaky web http://www.sme.sk tak som dostal odozvu

riesil som to restartom pc, chvilu to fungovalo, ale po case sa brws strasne spomalili az nesli vobec.
potom som cez adwcleaner pomazal nejake registre, urobil scan mam a zmazal podozrive potencionalne subory.
teraz browsre funguju normalne.
ked si pozeram cez wireshark komunikcaciu mam velmi vela "ciernych riadkov" bad tcp
pre pouzitim adwcleaner a mam som mal vela "cervenych riadkov" tcp rst

poprosil by som o preventivku

vopred vdaka

pekny vecer :)

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-05-2015
Ran by Marrek (administrator) on DHARMAPC on 09-05-2015 23:36:54
Running from C:\Documents and Settings\Marrek\Dokumenty\Stažené soubory
Loaded Profiles: Marrek & UpdatusUser (Available profiles: Marrek & UpdatusUser)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
() C:\Documents and Settings\All Users\Data aplikací\DataCardService\DCService.exe
(Flarion Technologies, Inc.) C:\PROGRA~1\T-MOBI~1\drivers\A96FED~1\FMMSER~1.EXE
(Paradoxx Software) C:\PROGRA~1\T-MOBI~1\FOFDMU~1.EXE
() C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
(Canon Inc.) C:\Program Files\Canon\CAL\CALMAIN.exe
(Saitek) C:\Program Files\Saitek\Software\Profiler.exe
(Saitek) C:\Program Files\Saitek\Software\SaiSmart.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Elaborate Bytes AG) C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Nullsoft, Inc.) C:\Program Files\Winamp\winampa.exe
(Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTLite.exe
(Microsoft Corporation) C:\Program Files\Microsoft ActiveSync\wcescomm.exe
(Microsoft Corporation) C:\PROGRA~1\MICROS~3\rapimgr.exe
(Google Inc.) C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\1.3.26.9\GoogleCrashHandler.exe
() C:\Program Files\Vtune\TBPANEL.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe
() C:\Program Files\MicroStar\WLANUtility\WlanUtility.exe
() C:\Program Files\MicroStar\WLANUtility\WLAN_Service.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Profiler] => C:\Program Files\Saitek\Software\Profiler.exe [159744 2004-07-20] (Saitek)
HKLM\...\Run: [SaiSmart] => C:\Program Files\Saitek\Software\SaiSmart.exe [98304 2004-07-20] (Saitek)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [17508864 2009-02-17] (Realtek Semiconductor Corp.)
HKLM\...\Run: [VirtualCloneDrive] => C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [85160 2009-06-17] (Elaborate Bytes AG)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1632360 2011-10-08] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS6ServiceManager] => C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [WinampAgent] => C:\Program Files\Winamp\winampa.exe [85600 2013-12-13] (Nullsoft, Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\qttask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [DriveUtilitiesHelper] => C:\Program Files\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [1852264 2014-05-23] (Western Digital Technologies, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-09] (Avast Software s.r.o.)
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [357696 2010-04-01] (DT Soft Ltd)
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\Run: [Google Update] => C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [107912 2014-10-22] (Google Inc.)
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\Run: [H/PC Connection Agent] => C:\Program Files\Microsoft ActiveSync\Wcescomm.exe [1289000 2006-11-13] (Microsoft Corporation)
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\Run: [TBPanel] => C:\Program Files\Vtune\TBPanel.exe [2158592 2009-02-03] ()
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\MountPoints2: {11dab4c2-7908-11e2-b4b6-000461712042} - F:\urDrive.exe
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\MountPoints2: {230553de-ee55-11e2-b5dc-0009ddc50235} - E:\LGAutoRun.exe
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\MountPoints2: {2c5389a9-b459-11e4-b9b8-001fd09d8548} - E:\APPInst.exe
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\MountPoints2: {357397a2-3aaf-11e1-b2e1-001fd09d8548} - F:\AutoRun.exe
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\MountPoints2: {357397a5-3aaf-11e1-b2e1-001fd09d8548} - F:\AutoRun.exe
HKU\S-1-5-21-1292428093-963894560-682003330-1003\...\MountPoints2: {7c72053a-3b7c-11e1-b2e3-001fd09d8548} - F:\AutoRun.exe
HKU\S-1-5-21-1292428093-963894560-682003330-1004\...\RunOnce: [NeroHomeFirstStart] => C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [10752 2005-10-28] (Nero AG)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\QuickTV.lnk [2015-03-04]
ShortcutTarget: QuickTV.lnk -> C:\Program Files\AVerTV\QuickTV.exe (No File)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK 11n USB Wireless LAN Utility.lnk [2015-03-04]
ShortcutTarget: REALTEK 11n USB Wireless LAN Utility.lnk -> C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WlanUtility.lnk [2015-03-04]
ShortcutTarget: WlanUtility.lnk -> C:\Program Files\MicroStar\WLANUtility\WlanUtility.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-05-09] (Avast Software s.r.o.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1292428093-963894560-682003330-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-1292428093-963894560-682003330-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1292428093-963894560-682003330-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: HKU\S-1-5-21-1292428093-963894560-682003330-1003 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
URLSearchHook: [S-1-5-21-1292428093-963894560-682003330-1004] ATTENTION ==> Default URLSearchHook is missing.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-02] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-02] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-1292428093-963894560-682003330-1003 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll [2008-04-14] (Společnost Microsoft)
DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/ ... vc1dmo.cab
DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} http://catalog.update.microsoft.com/v7/ ... 3635270109
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0017-0000-0072-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\MicroStar\WLANUtility\html\OWC10.DLL [2003-11-10] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll [2008-04-14] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll [2008-04-14] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default
FF NetworkProxy: "http", "128.199.227.225"
FF NetworkProxy: "http_port", 3128
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @ASC/FileLabPlugin;version=1.1.33 -> C:\Documents and Settings\All Users\Data aplikací\FileLab\Plugin\Framework\npFlPluginS.dll [2012-02-20] (FileLab)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\WINDOWS\system32\C2MP\npdivx32.dll [2009-05-12] (DivX,Inc.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2010-04-29] (Google, Inc.)
FF Plugin: @idsoftware.com/QuakeLive -> C:\Documents and Settings\All Users\Data aplikací\id Software\QuakeLive\npquakezero.dll [2009-11-30] (id Software Inc.)
FF Plugin: @java.com/DTPlugin,version=10.72.2 -> C:\WINDOWS\system32\npdeployJava1.dll [2014-11-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-02] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @Musicnotes.com/Musicnotes Viewer,version=1.18.2 -> C:\Program Files\Musicnotes\npmusicn.dll [2010-01-20] (Musicnotes, Inc.)
FF Plugin: @Sibelius.com/Scorch Plugin,version=6.1.5.22 -> C:\Program Files\Musicnotes\npsibelius.dll [2009-11-28] ()
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-03] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-03] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1292428093-963894560-682003330-1003: @onlive.com/OnLiveGameClientDetector,version=1.0.0 -> C:\Program Files\OnLive\Plugin\npolgdet.dll No File
FF Plugin HKU\S-1-5-21-1292428093-963894560-682003330-1003: @talk.google.com/GoogleTalkPlugin -> C:\Documents and Settings\Marrek\Data aplikací\Mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
FF Plugin HKU\S-1-5-21-1292428093-963894560-682003330-1003: @talk.google.com/O1DPlugin -> C:\Documents and Settings\Marrek\Data aplikací\Mozilla\plugins\npo1d.dll [2015-04-17] (Google)
FF Plugin HKU\S-1-5-21-1292428093-963894560-682003330-1003: @tools.google.com/Google Update;version=3 -> C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-1292428093-963894560-682003330-1003: @tools.google.com/Google Update;version=9 -> C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\ieatgpc.dll [2013-04-25] (Cisco WebEx LLC)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npatgpc.dll [2013-04-25] (Cisco WebEx LLC)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npfiller.dll [2010-03-29] ()
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2013-10-27] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2013-10-27] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2013-10-27] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2013-10-27] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2013-10-27] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\Marrek\Data aplikací\mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\Marrek\Data aplikací\mozilla\plugins\npo1d.dll [2015-04-17] (Google)
FF Extension: Hola Better Internet - C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\Extensions\jid1-4P0kohSJxU1qGg@jetpack [2015-04-23]
FF Extension: NetVideoHunter - C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\Extensions\netvideohunter@netvideohunter.com [2015-04-13]
FF Extension: SQLite Manager - C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\Extensions\SQLiteManager@mrinalkant.blogspot.com.xpi [2015-02-25]
FF Extension: Adblock Plus - C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-11-13]
FF Extension: 602XML Filler - C:\Program Files\Mozilla Firefox\extensions\xmlfiller@software602.cz [2015-04-20]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2015-04-20]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2015-04-20]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-06-15]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-05-09]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR HomePage: Default ->
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Documents and Settings\Marrek\Local Settings\Data aplikacĂ­\Google\Chrome\Application\41.0.2272.89\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\Marrek\Local Settings\Data aplikacĂ­\Google\Chrome\Application\41.0.2272.89\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\Marrek\Local Settings\Data aplikacĂ­\Google\Chrome\Application\41.0.2272.89\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Microsoft® Windows Media Player Firefox Plugin) - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll No File
CHR Plugin: ( "name": "",) - C:\Program Files\Mozilla Firefox\plugins\npfiller.dll ()
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll No File
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll No File
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (QUAKE LIVE) - C:\Documents and Settings\All Users\Data aplikacĂ­\id Software\QuakeLive\npquakezero.dll No File
CHR Plugin: (Google Update) - C:\Documents and Settings\Marrek\Local Settings\Data aplikacĂ­\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Plugin: (Musicnotes) - C:\Program Files\Musicnotes\npmusicn.dll (Musicnotes, Inc.)
CHR Plugin: (ScorchPlugin) - C:\Program Files\Musicnotes\npsibelius.dll ()
CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Plugin: (DivX Web Player) - C:\WINDOWS\system32\C2MP\npdivx32.dll (DivX,Inc.)
CHR Profile: C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (9 Ball Pool (Deluxe)) - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bhmmncmephfckdpcmohbdpcnkmchejma [2012-03-16]
CHR Extension: (YouTube) - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-16]
CHR Extension: (Google Search) - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-16]
CHR Extension: (Guitar Tab Viewer) - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dkdmbkpfnfkhalmhebdelpldipheihng [2012-03-14]
CHR Extension: (Tennis) - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekkomjfglgnfeeachhdckcbgjhfiahco [2012-03-16]
CHR Extension: (Hola Better Internet) - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2013-10-27]
CHR Extension: (Gmail) - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-16]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-05-09]
StartMenuInternet: chrome.exe - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe

Opera:
=======
OPR Extension: (Adblock Plus) - C:\Documents and Settings\Marrek\Data aplikací\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2015-04-23]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [73728 2010-04-14] (Software602 a.s.) [File not signed]
S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2009-05-31] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-09] (Avast Software s.r.o.)
R2 CCALib8; C:\Program Files\Canon\CAL\CALMAIN.exe [96334 2009-09-08] (Canon Inc.) [File not signed]
R2 DCService.exe; C:\Documents and Settings\All Users\Data aplikací\DatacardService\DCService.exe [229376 2010-05-08] () [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2009-06-04] (Macrovision Europe Ltd.) [File not signed]
R2 FMMService; C:\Program Files\T-Mobile Communication Centre\drivers\a96fed82ddfdbed769459e76fd9c0a27\FMMService.exe [40960 2010-06-15] (Flarion Technologies, Inc.) [File not signed]
R2 FOFDMUpgrade; C:\Program Files\T-Mobile Communication Centre\FOFDMUpgrade.exe [180224 2010-02-09] (Paradoxx Software) [File not signed]
R2 GEST Service; C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe [80392 2008-07-11] ()
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 nvUpdatusService; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2253120 2011-10-08] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2013-03-09] ()
S3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [637952 2009-06-02] (Nokia.) [File not signed]
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WDDriveService; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [296312 2014-05-23] (Western Digital Technologies, Inc.)
S3 rpcapd; "%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21361 2013-05-03] (Cisco Systems, Inc.) [File not signed]
S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1684736 2008-08-05] (Creative)
S3 andnetadb; C:\WINDOWS\System32\Drivers\lgandnetadb.sys [25856 2012-07-03] (Google Inc)
S3 AndNetDiag; C:\WINDOWS\System32\DRIVERS\lgandnetdiag.sys [23040 2012-07-03] (LG Electronics Inc.)
S3 ANDNetModem; C:\WINDOWS\System32\DRIVERS\lgandnetmodem.sys [27776 2012-07-03] (LG Electronics Inc.)
S3 andnetndis; C:\WINDOWS\System32\DRIVERS\lgandnetndis.sys [70400 2012-07-04] (LG Electronics Inc.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24144 2015-05-09] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [74976 2015-05-09] (Avast Software s.r.o.)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55200 2015-05-09] (Avast Software s.r.o.)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49904 2015-05-09] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787760 2015-05-09] (Avast Software s.r.o.)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [427992 2015-05-09] (Avast Software s.r.o.)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57888 2015-05-09] (Avast Software s.r.o.)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [209048 2015-05-09] ()
S3 Cap7134; C:\WINDOWS\System32\DRIVERS\Cap7134.sys [345728 2009-06-01] (AVerMedia TECHNOLOGIES, Inc.)
S3 Cardex; C:\WINDOWS\system32\drivers\TBPANEL.SYS [12256 2007-03-16] (Windows (R) 2000 DDK provider)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 CT200xN51; C:\WINDOWS\System32\DRIVERS\CT200xN51.sys [250240 2006-09-19] (3Com Corporation) [File not signed]
S3 E1000; C:\WINDOWS\System32\DRIVERS\e1000325.sys [171152 2008-08-20] (Intel Corporation)
S3 EL556ND5; C:\WINDOWS\System32\DRIVERS\EL556ND5.sys [55999 2001-08-17] (3Com Corporation)
S3 el575nd5; C:\WINDOWS\System32\DRIVERS\el575nd5.sys [69692 2001-08-17] (3Com Corporation)
S3 EL90X; C:\WINDOWS\System32\DRIVERS\el90xnd5.sys [153631 2001-10-24] (3Com Corporation)
S3 EL90XBC; C:\WINDOWS\System32\DRIVERS\el90xbc5.sys [66591 2001-08-17] (3Com Corporation)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [26024 2010-01-01] (Elaborate Bytes AG)
S3 FlrnUSB; C:\WINDOWS\System32\DRIVERS\FlrnUSB.sys [42213 2010-06-15] (Qualcomm Flarion Technologies) [File not signed]
S3 FTDIBUS; C:\WINDOWS\System32\drivers\ftdibus.sys [77808 2014-01-27] (FTDI Ltd.)
R3 gdrv; C:\WINDOWS\gdrv.sys [16608 2015-05-09] (Windows (R) 2000 DDK provider)
S3 M2500; C:\WINDOWS\System32\DRIVERS\M2500.sys [121344 2004-06-11] (Ralink Technology Inc.) [File not signed]
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1389056 2006-01-04] (Creative Technology Ltd.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-14] (Microsoft Corporation)
R2 NPF; C:\WINDOWS\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
R3 PCANDIS5; C:\WINDOWS\system32\PCANDIS5.SYS [16128 2003-07-01] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 PhTVTune; C:\WINDOWS\System32\DRIVERS\PhTVTune.sys [46976 2009-06-01] (AVerMedia TECHNOLOGIES, Inc.)
S3 RT2500; C:\WINDOWS\System32\DRIVERS\RT2500.sys [243328 2006-04-19] (Ralink Technology Inc.) [File not signed]
S3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
S3 SaiHFFB5; C:\WINDOWS\System32\DRIVERS\SaiHFFB5.sys [132232 2007-05-01] (Saitek)
S3 SaiIFFB5; C:\WINDOWS\System32\DRIVERS\SaiIFFB5.sys [16256 2007-05-01] (Saitek) [File not signed]
R3 SaiNtBus; C:\WINDOWS\System32\drivers\SaiNtBus.sys [26752 2004-07-20] (Saitek) [File not signed]
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [14776 2010-11-26] ()
S3 SoC PC-Camera Service; C:\WINDOWS\System32\DRIVERS\pfc027.sys [127692 2004-02-10] ()
S3 sonypvs1; C:\WINDOWS\System32\DRIVERS\sonypvs1.sys [102220 2006-10-30] (Sony Corporation) [File not signed]
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2010-10-16] () [File not signed]
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
R3 VClone; C:\WINDOWS\System32\DRIVERS\VClone.sys [29696 2009-08-09] (Elaborate Bytes AG) [File not signed]
U3 afhobvan; C:\WINDOWS\system32\Drivers\afhobvan.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero size file/folder)
S3 catchme; \??\C:\DOCUME~1\Marrek\LOCALS~1\Temp\catchme.sys [X]
S4 InCDFs; system32\drivers\InCDFs.sys [X]
S1 InCDPass; system32\drivers\InCDPass.sys [X]
S1 InCDRm; system32\drivers\InCDRm.sys [X]
S4 IntelIde; No ImagePath
S3 RivaTuner32; \??\E:\Program Files\RivaTuner v2.0 RC 15.8\RivaTuner32.sys [X]
S3 StarOpen; No ImagePath
U1 WS2IFSL; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-09 23:23 - 2015-05-09 23:23 - 00000507 _____ () C:\WINDOWS\setupapi.log
2015-05-09 23:07 - 2015-05-09 23:30 - 00000364 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2015-05-09 23:07 - 2015-05-09 23:07 - 00427992 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-05-09 23:07 - 2015-05-09 23:07 - 00291312 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\aswBoot.exe
2015-05-09 23:07 - 2015-05-09 23:07 - 00209048 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-05-09 23:07 - 2015-05-09 23:07 - 00074976 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-05-09 23:07 - 2015-05-09 23:07 - 00057888 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswTdi.sys
2015-05-09 23:07 - 2015-05-09 23:07 - 00055200 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswRdr.sys
2015-05-09 23:07 - 2015-05-09 23:07 - 00049904 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-05-09 23:07 - 2015-05-09 23:07 - 00043112 _____ (Avast Software s.r.o.) C:\WINDOWS\avastSS.scr
2015-05-09 23:07 - 2015-05-09 23:07 - 00024144 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-05-09 23:07 - 2015-05-09 23:07 - 00001689 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2015-05-09 23:07 - 2015-05-09 23:07 - 00000000 ____D () C:\Documents and Settings\Marrek\Data aplikací\AVAST Software
2015-05-09 23:07 - 2015-05-09 23:07 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVAST Software
2015-05-09 23:07 - 2015-05-09 23:06 - 00787760 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-05-09 23:06 - 2015-05-09 23:06 - 00000000 ____D () C:\Program Files\AVAST Software
2015-05-09 23:05 - 2015-05-09 23:05 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2015-05-09 22:39 - 2015-05-09 22:39 - 01107968 _____ () C:\Documents and Settings\Marrek\Plocha\RSIT.exe
2015-05-09 22:35 - 2015-05-09 23:37 - 00000000 ____D () C:\FRST
2015-05-09 12:24 - 2015-05-09 12:24 - 00000000 _____ () C:\Documents and Settings\Marrek\Plocha\Nový objekt - Textový dokument (3).txt
2015-05-09 11:17 - 2015-05-09 11:17 - 00000784 _____ () C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
2015-05-09 11:17 - 2015-05-09 11:17 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware
2015-05-09 11:17 - 2015-05-09 11:17 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes' Anti-Malware
2015-05-09 11:17 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-05-09 09:15 - 2015-05-09 09:15 - 00015800 _____ () C:\Documents and Settings\Marrek\Dokumenty\mozz.pcapng
2015-04-30 21:22 - 2015-04-30 21:22 - 00000000 ____D () C:\Documents and Settings\Marrek\.AndroidStudio1.2
2015-04-29 22:27 - 2015-04-29 22:27 - 00000872 _____ () C:\Documents and Settings\All Users\Plocha\WD Drive Utilities.lnk
2015-04-29 22:27 - 2015-04-29 22:27 - 00000000 ____D () C:\Program Files\Western Digital
2015-04-29 22:27 - 2015-04-29 22:27 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Western Digital
2015-04-29 22:27 - 2015-04-29 22:27 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Western Digital
2015-04-29 22:25 - 2012-09-06 10:46 - 00011520 _____ (Western Digital Technologies) C:\WINDOWS\system32\Drivers\wdcsam.sys
2015-04-29 21:31 - 2015-04-29 21:32 - 00000000 ____D () C:\Documents and Settings\Marrek\Plocha\wdlg
2015-04-29 13:35 - 2015-05-04 12:19 - 00000000 ____D () C:\Documents and Settings\Marrek\Plocha\Hermann Hesse - Siddhartha
2015-04-29 12:19 - 2015-05-09 13:48 - 00000000 ____D () C:\AdwCleaner
2015-04-28 15:39 - 2015-04-28 15:39 - 00000000 _____ () C:\Documents and Settings\Marrek\Plocha\Nový objekt - Textový dokument (2).txt
2015-04-23 08:20 - 2015-05-09 23:29 - 00000390 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1429770017.job
2015-04-23 08:20 - 2015-04-23 08:20 - 00017095 _____ () C:\Documents and Settings\Marrek\Plocha\Opera 12 Notes.html
2015-04-23 08:20 - 2015-04-23 08:20 - 00000669 _____ () C:\Documents and Settings\All Users\Plocha\Opera 29.lnk
2015-04-23 08:20 - 2015-04-23 08:20 - 00000000 ____D () C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Opera Software
2015-04-23 08:20 - 2015-04-23 08:20 - 00000000 ____D () C:\Documents and Settings\Marrek\Data aplikací\Opera Software
2015-04-20 23:03 - 2015-04-20 23:04 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-18 12:22 - 2015-04-18 12:23 - 00000000 ____D () C:\Documents and Settings\Marrek\Plocha\Nová složka (2)
2015-04-18 01:46 - 2015-04-18 01:46 - 00840555 _____ () C:\Documents and Settings\Marrek\Dokumenty\RecyclerView-dfd68d1a6d9da2ce05a0ab1a6d67f036dd8451f2.zip
2015-04-15 21:09 - 2015-04-25 21:10 - 00000000 ____D () C:\Documents and Settings\Marrek\Plocha\IGCDLL

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-09 23:38 - 2009-05-30 20:41 - 00000000 ____D () C:\Documents and Settings\Marrek\Local Settings\Temp
2015-05-09 23:36 - 2009-08-18 19:28 - 00000000 ____D () C:\Documents and Settings\Marrek\Dokumenty\Stažené soubory
2015-05-09 23:35 - 2009-05-30 20:37 - 00297220 _____ () C:\WINDOWS\WindowsUpdate.log
2015-05-09 23:31 - 2010-01-05 20:26 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-09 23:30 - 2013-01-13 02:40 - 00000435 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.ics
2015-05-09 23:29 - 2010-01-05 20:26 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-09 23:29 - 2009-09-24 17:27 - 00000037 _____ () C:\WINDOWS\system32\fmmservice.log
2015-05-09 23:29 - 2009-05-30 22:31 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2015-05-09 23:29 - 2009-05-30 22:31 - 00000048 _____ () C:\WINDOWS\wiaservc.log
2015-05-09 23:29 - 2009-05-30 21:03 - 00000125 _____ () C:\service.log
2015-05-09 23:29 - 2009-05-30 21:00 - 00016608 _____ (Windows (R) 2000 DDK provider) C:\WINDOWS\gdrv.sys
2015-05-09 23:29 - 2009-05-30 20:40 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-05-09 23:28 - 2009-05-30 20:41 - 00000272 ___SH () C:\Documents and Settings\Marrek\ntuser.ini
2015-05-09 23:28 - 2009-05-30 20:40 - 00032616 _____ () C:\WINDOWS\SchedLgU.Txt
2015-05-09 23:23 - 2009-05-30 22:29 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2015-05-09 23:21 - 2009-09-28 11:54 - 00001030 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292428093-963894560-682003330-1003UA.job
2015-05-09 23:07 - 2009-05-30 22:29 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2015-05-09 23:07 - 2009-05-30 20:41 - 00000000 __RHD () C:\Documents and Settings\Marrek\Data aplikací
2015-05-09 23:05 - 2009-05-30 22:29 - 00000000 ___RD () C:\Documents and Settings\All Users\Dokumenty
2015-05-09 23:05 - 2009-05-30 22:28 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2015-05-09 23:00 - 2012-04-04 15:42 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-05-09 22:39 - 2010-10-14 10:03 - 00000000 ____D () C:\Program Files\trend micro
2015-05-09 22:39 - 2009-05-30 20:41 - 00000000 ____D () C:\Documents and Settings\Marrek\Plocha
2015-05-09 11:15 - 2012-01-29 21:12 - 00000000 ____D () C:\aaaaaaaaa
2015-05-09 11:10 - 2009-05-30 22:13 - 00006679 _____ () C:\WINDOWS\wincmd.ini
2015-05-09 11:02 - 2010-10-16 15:07 - 00000000 ____D () C:\Documents and Settings\Marrek\Data aplikací\DAEMON Tools Lite
2015-05-09 11:02 - 2010-10-06 22:36 - 00000000 ____D () C:\Documents and Settings\Marrek\Data aplikací\uTorrent
2015-05-09 11:02 - 2009-06-06 14:43 - 00000000 ____D () C:\Documents and Settings\Marrek\Data aplikací\Media Player Classic
2015-05-09 10:58 - 2009-05-30 20:41 - 00000000 ____D () C:\Documents and Settings\Marrek
2015-05-09 10:37 - 2011-07-06 14:51 - 00000178 ___SH () C:\Documents and Settings\UpdatusUser\ntuser.ini
2015-05-09 09:22 - 2001-10-25 16:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2015-05-09 09:15 - 2009-05-30 20:41 - 00000000 ___RD () C:\Documents and Settings\Marrek\Dokumenty
2015-05-09 00:19 - 2009-09-28 11:54 - 00000978 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1292428093-963894560-682003330-1003Core.job
2015-05-08 22:46 - 2013-03-18 15:02 - 00002345 _____ () C:\Documents and Settings\All Users\Plocha\NinjaTrader 7.lnk
2015-05-07 22:31 - 2009-05-30 20:41 - 00000000 ___HD () C:\Documents and Settings\Marrek\Local Settings\Data aplikací
2015-05-07 11:26 - 2014-12-11 14:41 - 00000000 ____D () C:\Documents and Settings\Marrek\AndroidStudioProjects
2015-05-04 21:30 - 2009-12-14 00:29 - 00000000 ____D () C:\filme
2015-05-03 16:16 - 2009-10-13 22:54 - 00000796 _____ () C:\WINDOWS\wcx_ftp.ini
2015-04-30 19:20 - 2011-04-08 14:34 - 01023475 ____H () C:\treeinfo.wc
2015-04-30 17:20 - 2009-09-28 11:57 - 00002266 _____ () C:\Documents and Settings\Marrek\Plocha\Google Chrome.lnk
2015-04-30 06:58 - 2015-01-17 22:25 - 00000000 ____D () C:\Dada
2015-04-29 22:23 - 2010-11-07 15:25 - 00000000 ____D () C:\WINDOWS\system32\NtmsData
2015-04-29 21:16 - 2014-09-30 14:43 - 00000000 ____D () C:\pdfka
2015-04-28 15:33 - 2009-05-30 21:19 - 00000000 ____D () C:\Program Files\Opera
2015-04-27 08:52 - 2012-05-10 08:28 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-22 14:07 - 2009-05-30 21:23 - 00000000 ____D () C:\Documents and Settings\Marrek\Data aplikací\Skype
2015-04-22 13:53 - 2014-04-20 22:47 - 00002265 _____ () C:\Documents and Settings\All Users\Plocha\Skype.lnk
2015-04-22 09:19 - 2009-05-31 11:02 - 00000000 ____D () C:\Documents and Settings\Marrek\Data aplikací\Mozilla
2015-04-15 11:00 - 2012-04-04 15:42 - 00778416 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-04-15 11:00 - 2011-06-14 09:45 - 00142512 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2009-06-01 00:23 - 2009-06-01 00:23 - 0002528 _____ () C:\Documents and Settings\Marrek\Data aplikací\$_hpcst$.hpc
2014-09-21 22:03 - 2015-03-11 19:09 - 0001977 _____ () C:\Documents and Settings\Marrek\Data aplikací\.ptbt1
2013-05-15 22:32 - 2013-05-15 22:32 - 0000132 _____ () C:\Documents and Settings\Marrek\Data aplikací\Adobe GIF Format CS6 Prefs
2010-05-16 22:45 - 2002-12-09 21:00 - 0058688 _____ () C:\Documents and Settings\Marrek\Data aplikací\hphe.dll
2011-08-30 11:00 - 2013-03-09 01:46 - 0022328 _____ () C:\Documents and Settings\Marrek\Data aplikací\PnkBstrK.sys
2013-05-15 19:59 - 2013-09-03 22:19 - 0001456 _____ () C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Adobe Save for Web 13.0 Prefs
2009-10-21 23:24 - 2015-04-08 16:16 - 0112128 _____ () C:\Documents and Settings\Marrek\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-14 09:37 - 2013-10-14 09:37 - 0000126 _____ () C:\Documents and Settings\Marrek\Local Settings\Data aplikací\fusioncache.dat
2008-02-05 13:28 - 2008-02-05 13:28 - 0000051 _____ () C:\Documents and Settings\Marrek\Local Settings\Data aplikací\setup.txt

Some content of TEMP:
====================
C:\Documents and Settings\Marrek\Local Settings\Temp\jline_.dll
C:\Documents and Settings\Marrek\Local Settings\Temp\jre-7u65-windows-i586-iftw.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\jre-7u67-windows-i586-iftw.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\jre-7u71-windows-i586-iftw.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter178093498788338526.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter1974720526302645083.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter4606609298036884109.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter4964469311298577794.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter5586008211709163697.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter7055097778195481842.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter7163940328413074881.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter735715418646110741.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter8179081594085081367.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter8681316452476070746.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter9163731550470481629.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\restarter9193159346170989271.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\uttCEFC.tmp.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\VistaLauncher2116711998433621591.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\VistaLauncher4444975336018318682.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\VistaLauncher4448276905397245517.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\VistaLauncher4573229538458564234.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\VistaLauncher6295257697964539005.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\VistaLauncher7574110017776799207.exe
C:\Documents and Settings\Marrek\Local Settings\Temp\Wise_SETUP.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================

Logfile of random's system information tool 1.10 (written by random/random)
Run by Marrek at 2015-05-09 23:41:34
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 471 GB (49%) free of 954 GB
Total RAM: 3326 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:41:38, on 9.5.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
C:\Documents and Settings\All Users\Data aplikací\DatacardService\DCService.exe
C:\PROGRA~1\T-MOBI~1\drivers\A96FED~1\FMMSER~1.EXE
C:\PROGRA~1\T-MOBI~1\FOFDMU~1.EXE
C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Saitek\Software\Profiler.exe
C:\Program Files\Saitek\Software\SaiSmart.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\1.3.26.9\GoogleCrashHandler.exe
C:\Program Files\Vtune\TBPanel.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe
C:\Program Files\MicroStar\WLANUtility\WlanUtility.exe
C:\Program Files\MicroStar\WLANUtility\WLAN_Service.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\notepad.exe
C:\Documents and Settings\Marrek\Plocha\RSIT.exe
C:\Program Files\trend micro\Marrek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\Profiler.exe
O4 - HKLM\..\Run: [SaiSmart] C:\Program Files\Saitek\Software\SaiSmart.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DriveUtilitiesHelper] C:\Program Files\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - HKCU\..\Run: [TBPanel] C:\Program Files\Vtune\TBPanel.exe /A
O4 - HKUS\S-1-5-21-1292428093-963894560-682003330-1004\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1292428093-963894560-682003330-1004\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe (User 'UpdatusUser')
O4 - Global Startup: QuickTV.lnk = C:\Program Files\AVerTV\QuickTV.exe
O4 - Global Startup: REALTEK 11n USB Wireless LAN Utility.lnk = C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe
O4 - Global Startup: WlanUtility.lnk = C:\Program Files\MicroStar\WLANUtility\WlanUtility.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/ ... 3635270109
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: DCService.exe - Unknown owner - C:\Documents and Settings\All Users\Data aplikací\DatacardService\DCService.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Mobility Manager Service (FMMService) - Flarion Technologies, Inc. - C:\PROGRA~1\T-MOBI~1\drivers\A96FED~1\FMMSER~1.EXE
O23 - Service: FOFDM Upgrade (FOFDMUpgrade) - Paradoxx Software - C:\PROGRA~1\T-MOBI~1\FOFDMU~1.EXE
O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe

--
End of file - 10334 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\avast! Emergency Update.job - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1292428093-963894560-682003330-1003Core.job - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1292428093-963894560-682003330-1003UA.job - C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Opera scheduled Autoupdate 1429770017.job - C:\Program Files\Opera\launcher.exe --scheduledautoupdate

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default

prefs.js - "extensions.enabledItems" - "xmlfiller@software602.cz:3.16.2, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, jqs@sun.com:1.0, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@ASC/FileLabPlugin;version=1.1.33]
"Description"=FileLab Plugin
"Path"=C:\Documents and Settings\All Users\Data aplikací\FileLab\Plugin\Framework\npFlPluginS.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX® Web Player
"Path"=C:\WINDOWS\system32\C2MP\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@idsoftware.com/QuakeLive]
"Description"=
"Path"=C:\Documents and Settings\All Users\Data aplikací\id Software\QuakeLive\npquakezero.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.72.2]
"Description"=
"Path"=C:\WINDOWS\system32\npdeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.72.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Musicnotes.com/Musicnotes Viewer,version=1.18.2]
"Description"=Musicnotes Viewer Plugin
"Path"=C:\Program Files\Musicnotes\npmusicn.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Sibelius.com/Scorch Plugin,version=6.1.5.22]
"Description"=Sibelius Scorch Plugin
"Path"=C:\Program Files\Musicnotes\npsibelius.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
xmlfiller@software602.cz
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
nsIFillerPlugin.xpt
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
atcliun.exe
ieatgpc.dll
np-mswmp.dll
npatgpc.dll
npfiller.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\extensions\
jid1-4P0kohSJxU1qGg@jetpack
netvideohunter@netvideohunter.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-02 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-02 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Profiler"=C:\Program Files\Saitek\Software\Profiler.exe [2004-07-20 159744]
"SaiSmart"=C:\Program Files\Saitek\Software\SaiSmart.exe [2004-07-20 98304]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-02-17 17508864]
"VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2009-06-17 85160]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2011-10-08 16744256]
"NvMediaCenter"=NvMCTray.dll,NvTaskbarInit -login []
"nwiz"=C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2011-10-08 1632360]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2013-12-13 85600]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2013-05-01 421888]
"DriveUtilitiesHelper"=C:\Program Files\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [2014-05-23 1852264]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-09 5515496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Google Update"=C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2014-10-22 107912]
"H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\Wcescomm.exe [2006-11-13 1289000]
"TBPanel"=C:\Program Files\Vtune\TBPanel.exe [2009-02-03 2158592]
"AdobeBridge"= []

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
QuickTV.lnk - C:\Program Files\AVerTV\QuickTV.exe
REALTEK 11n USB Wireless LAN Utility.lnk - C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe
WlanUtility.lnk - C:\Program Files\MicroStar\WLANUtility\WlanUtility.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-30 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\NinjaTrader 6.5\bin\NinjaTrader.exe"="C:\Program Files\NinjaTrader 6.5\bin\NinjaTrader.exe:*:Enabled:NinjaTrader application"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\Bohemia Interactive\ArmA\arma.exe"="C:\Program Files\Bohemia Interactive\ArmA\arma.exe:*:Enabled:ArmA"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Ubisoft\IL-2 Sturmovik 1946\il2fb.exe"="C:\Program Files\Ubisoft\IL-2 Sturmovik 1946\il2fb.exe:*:Enabled:il2fb"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\NinjaTrader 7\bin\NinjaTrader.exe"="C:\Program Files\NinjaTrader 7\bin\NinjaTrader.exe:*:Enabled:NinjaTrader application"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\Program Files\Gaijin\Wings of Prey\aces.exe"="C:\Program Files\Gaijin\Wings of Prey\aces.exe:*:Disabled:Wings of Prey"
"C:\Program Files\EA Games\Alice Madness Returns\Alice2\Binaries\Win32\AliceMadnessReturns.exe"="C:\Program Files\EA Games\Alice Madness Returns\Alice2\Binaries\Win32\AliceMadnessReturns.exe:*:Disabled:AliceMadnessReturns"
"C:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe"="C:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe:*:Disabled:BlackOps"
"C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe"="C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper"
"C:\Program Files\Valve\Half-Life 2\hl2.exe"="C:\Program Files\Valve\Half-Life 2\hl2.exe:*:Enabled:Half-Life_2"
"C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe"="C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe:*:Enabled:RtWlan"
"C:\Program Files\Realtek\11n USB Wireless LAN Utility\RTLDHCP.exe"="C:\Program Files\Realtek\11n USB Wireless LAN Utility\RTLDHCP.exe:*:Enabled:RTLDHCP"
"C:\Program Files\Codemasters\Operation Flashpoint\FlashpointResistance.exe"="C:\Program Files\Codemasters\Operation Flashpoint\FlashpointResistance.exe:*:Enabled:Operation Flashpoint"
"C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Documents and Settings\Marrek\Data aplikací\uTorrent\uTorrent.exe"="C:\Documents and Settings\Marrek\Data aplikací\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Portal 2\portal2.exe"="C:\Program Files\Portal 2\portal2.exe:*:Disabled:portal2"
"C:\android\eclipse\eclipse.exe"="C:\android\eclipse\eclipse.exe:*:Enabled:eclipse"
"C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe"="C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Kramer\Kramer K-Config\Kramer K-Config.exe"="C:\Program Files\Kramer\Kramer K-Config\Kramer K-Config.exe:*:Enabled:Kramer K-Config"
"C:\Program Files\Kramer Electronics\Kramer K-Config\Kramer K-Config.exe"="C:\Program Files\Kramer Electronics\Kramer K-Config\Kramer K-Config.exe:*:Enabled:Kramer K-Config"
"C:\Documents and Settings\Marrek\Plocha\Kramer\Hercules - terminal\hercules_3-2-8.exe"="C:\Documents and Settings\Marrek\Plocha\Kramer\Hercules - terminal\hercules_3-2-8.exe:*:Enabled:hercules_3-2-8"
"C:\Documents and Settings\Marrek\Plocha\Kramer\Hercules - terminal\hercules_3-2-5.exe"="C:\Documents and Settings\Marrek\Plocha\Kramer\Hercules - terminal\hercules_3-2-5.exe:*:Enabled:hercules_3-2-5"
"C:\WINDOWS\system32\javaw.exe"="C:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Java\jdk1.6.0_38\bin\java.exe"="C:\Program Files\Java\jdk1.6.0_38\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Java\jdk1.7.0_72\bin\java.exe"="C:\Program Files\Java\jdk1.7.0_72\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\androidAdt\eclipse\eclipse.exe"="C:\androidAdt\eclipse\eclipse.exe:*:Enabled:eclipse"
"C:\Program Files\Java\jdk1.7.0_72\bin\javaw.exe"="C:\Program Files\Java\jdk1.7.0_72\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\androidAdt\juno\eclipse\eclipse.exe"="C:\androidAdt\juno\eclipse\eclipse.exe:*:Enabled:eclipse"
"C:\androidAdt\e2\eclipse\eclipse.exe"="C:\androidAdt\e2\eclipse\eclipse.exe:*:Enabled:eclipse"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.divx"=divx.dll
"vidc.yv12"=divx.dll
"vidc.xvid"=xvidvfw.dll
"vidc.ffds"=ff_vfw.dll
"vidc.vp60"=vp6vfw.dll
"vidc.vp61"=vp6vfw.dll
"vidc.vp62"=vp6vfw.dll
"msacm.ac3filter"=ac3filter.acm
"msacm.divxa32"=DivXa32.acm
"msacm.lameacm"=LameACM.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======List of files/folders created in the last 1 month======

2015-05-09 23:07:53 ----D---- C:\Documents and Settings\Marrek\Data aplikací\AVAST Software
2015-05-09 23:07:20 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2015-05-09 23:07:19 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2015-05-09 23:07:19 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2015-05-09 23:07:18 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2015-05-09 23:07:17 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2015-05-09 23:07:17 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2015-05-09 23:07:16 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2015-05-09 23:07:14 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2015-05-09 23:07:10 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-05-09 23:07:04 ----A---- C:\WINDOWS\avastSS.scr
2015-05-09 23:06:21 ----D---- C:\Program Files\AVAST Software
2015-05-09 23:05:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2015-05-09 22:35:46 ----D---- C:\FRST
2015-05-09 11:17:31 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2015-05-09 11:17:31 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-04-29 22:27:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Western Digital
2015-04-29 22:27:04 ----D---- C:\Program Files\Western Digital
2015-04-29 22:25:02 ----A---- C:\WINDOWS\system32\drivers\wdcsam.sys
2015-04-29 12:19:18 ----D---- C:\AdwCleaner
2015-04-23 08:20:16 ----D---- C:\Documents and Settings\Marrek\Data aplikací\Opera Software
2015-04-20 23:03:41 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2015-05-09 23:41:36 ----D---- C:\Program Files\trend micro
2015-05-09 23:38:49 ----AD---- C:\WINDOWS
2015-05-09 23:37:11 ----D---- C:\WINDOWS\system32\CatRoot2
2015-05-09 23:30:43 ----D---- C:\WINDOWS\Temp
2015-05-09 23:28:19 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-05-09 23:24:04 ----SHD---- C:\WINDOWS\Installer
2015-05-09 23:23:48 ----D---- C:\WINDOWS\system32\drivers
2015-05-09 23:07:30 ----SD---- C:\WINDOWS\Tasks
2015-05-09 23:07:13 ----D---- C:\WINDOWS\WinSxS
2015-05-09 23:07:10 ----D---- C:\WINDOWS\system32
2015-05-09 23:06:21 ----RD---- C:\Program Files
2015-05-09 11:15:25 ----D---- C:\aaaaaaaaa
2015-05-09 11:10:28 ----A---- C:\WINDOWS\wincmd.ini
2015-05-09 11:02:36 ----D---- C:\Documents and Settings\Marrek\Data aplikací\Media Player Classic
2015-05-09 11:02:36 ----D---- C:\Documents and Settings\Marrek\Data aplikací\DAEMON Tools Lite
2015-05-09 11:02:00 ----D---- C:\Documents and Settings\Marrek\Data aplikací\uTorrent
2015-05-09 09:37:01 ----HD---- C:\WINDOWS\inf
2015-05-09 09:18:07 ----D---- C:\WINDOWS\Prefetch
2015-05-04 21:30:10 ----D---- C:\filme
2015-05-03 16:16:54 ----A---- C:\WINDOWS\wcx_ftp.ini
2015-04-30 06:58:26 ----D---- C:\Dada
2015-04-29 22:27:03 ----D---- C:\Program Files\Common Files
2015-04-29 22:25:02 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-04-29 22:23:47 ----D---- C:\WINDOWS\system32\NtmsData
2015-04-29 21:16:30 ----D---- C:\pdfka
2015-04-28 15:33:08 ----D---- C:\Program Files\Opera
2015-04-27 08:52:01 ----D---- C:\Program Files\Mozilla Maintenance Service
2015-04-22 14:07:11 ----D---- C:\Documents and Settings\Marrek\Data aplikací\Skype
2015-04-22 09:19:51 ----D---- C:\Documents and Settings\Marrek\Data aplikací\Mozilla
2015-04-15 11:00:15 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-05-09 49904]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-05-09 209048]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2009-04-17 44944]
R0 SmartDefragDriver;SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [2010-11-26 14776]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-10-16 691696]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2015-05-09 55200]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-05-09 787760]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-05-09 427992]
R1 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2015-05-09 57888]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2010-01-01 26024]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.7.5.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2013-05-03 21361]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-05-09 24144]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-05-09 74976]
R2 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2013-03-01 36600]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 BridgeMP;Miniport mostu MAC; C:\WINDOWS\system32\DRIVERS\bridge.sys [2008-04-14 71552]
R3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 huawei_enumerator;huawei_enumerator; C:\WINDOWS\system32\DRIVERS\ew_jubusenum.sys [2010-05-22 70656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-02-17 5026816]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2011-10-08 12791488]
R3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2009-03-27 130816]
R3 SaiNtBus;SaiNtBus; C:\WINDOWS\system32\drivers\SaiNtBus.sys [2004-07-20 26752]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VClone;VClone; C:\WINDOWS\system32\DRIVERS\VClone.sys [2009-08-09 29696]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys []
S3 afhobvan;afhobvan; C:\WINDOWS\system32\drivers\afhobvan.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 andnetadb;ADB Interface DriverNet; C:\WINDOWS\System32\Drivers\lgandnetadb.sys [2012-07-03 25856]
S3 AndNetDiag;LGE AndroidNet USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgandnetdiag.sys [2012-07-03 23040]
S3 ANDNetModem;LGE AndroidNet USB Modem; C:\WINDOWS\system32\DRIVERS\lgandnetmodem.sys [2012-07-03 27776]
S3 andnetndis;LGE AndroidNet NDIS Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\lgandnetndis.sys [2012-07-04 70400]
S3 Bridge;Most MAC; C:\WINDOWS\system32\DRIVERS\bridge.sys [2008-04-14 71552]
S3 Cap7134;AVerMedia, AVerTV WDM Video Capture (Silicon); C:\WINDOWS\system32\DRIVERS\Cap7134.sys [2009-06-01 345728]
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 catchme;catchme; \??\C:\DOCUME~1\Marrek\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 CT200xN51;NDIS5.1 Miniport Driver for 3Com 3C2000 Ethernet Controller; C:\WINDOWS\system32\DRIVERS\CT200xN51.sys [2006-09-19 250240]
S3 E1000;Intel(R) PRO/1000 Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1000325.sys [2008-08-20 171152]
S3 EL556ND5;3Com 10/100 MiniPCI Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\EL556ND5.sys [2001-08-17 55999]
S3 el575nd5;3Com Megahertz 10/100 LAN CardBus PC Card Driver; C:\WINDOWS\system32\DRIVERS\el575nd5.sys [2001-08-17 69692]
S3 EL90X;3Com EtherLink XL 90X Adapter Driver; C:\WINDOWS\system32\DRIVERS\el90xnd5.sys [2001-10-24 153631]
S3 EL90XBC;3Com EtherLink XL 90XB/C Adapter Driver; C:\WINDOWS\system32\DRIVERS\el90xbc5.sys [2001-08-17 66591]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\WINDOWS\system32\DRIVERS\ew_hwusbdev.sys [2010-03-20 101504]
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\WINDOWS\system32\DRIVERS\ewusbnet.sys [2010-06-01 117504]
S3 FlrnUSB;Leadtek USB Network Interface; C:\WINDOWS\system32\DRIVERS\FlrnUSB.sys [2010-06-15 42213]
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2014-01-27 77808]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2014-01-27 74608]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys [2010-03-25 105728]
S3 M2500;802.11g Wireless Network Driver; C:\WINDOWS\system32\DRIVERS\M2500.sys [2004-06-11 121344]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2009-02-09 17664]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2009-02-09 22016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 PhTVTune;Cap7134 TVTuner; C:\WINDOWS\system32\DRIVERS\PhTVTune.sys [2009-06-01 46976]
S3 RivaTuner32;RivaTuner32; \??\E:\Program Files\RivaTuner v2.0 RC 15.8\RivaTuner32.sys []
S3 RT2500;RT2500 Wireless Driver; C:\WINDOWS\system32\DRIVERS\RT2500.sys [2006-04-19 243328]
S3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2008-10-30 117120]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\WINDOWS\system32\DRIVERS\RTL8192su.sys [2010-06-10 604064]
S3 SaiHFFB5;SaiHFFB5; C:\WINDOWS\system32\DRIVERS\SaiHFFB5.sys [2007-05-01 132232]
S3 SaiIFFB5;Immersion's HID USB Driver (FFB5); C:\WINDOWS\system32\DRIVERS\SaiIFFB5.sys [2007-05-01 16256]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 SoC PC-Camera Service;Q-TEC WEBCAM 100 USB; C:\WINDOWS\system32\DRIVERS\pfc027.sys [2004-02-10 127692]
S3 sonypvs1;Sony Digital Imaging Video2; C:\WINDOWS\system32\DRIVERS\sonypvs1.sys [2006-10-30 102220]
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 usb_rndisx;Adaptér USB RNDIS; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-14 12800]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;USB RS-232 Emulation Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\WINDOWS\system32\DRIVERS\wdcsam.sys [2012-09-06 11520]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2009-01-30 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2010-04-14 73728]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-05-09 343336]
R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2009-09-08 96334]
R2 DCService.exe;DCService.exe; C:\Documents and Settings\All Users\Data aplikací\DatacardService\DCService.exe [2010-05-08 229376]
R2 FMMService;Mobility Manager Service; C:\PROGRA~1\T-MOBI~1\drivers\A96FED~1\FMMSER~1.EXE [2010-06-15 40960]
R2 FOFDMUpgrade;FOFDM Upgrade; C:\PROGRA~1\T-MOBI~1\FOFDMU~1.EXE [2010-02-09 180224]
R2 GEST Service;GEST Service for program management.; C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe [2008-07-11 80392]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2011-10-08 298304]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-08 2253120]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2013-03-09 66872]
R2 WDDriveService;WD Drive Manager; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [2014-05-23 296312]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21 107912]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-05-31 68096]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15 268464]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-06-04 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21 107912]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-20 148080]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2013-03-01 118520]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2009-01-30 913408]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: browsre nebrowsuju ale net ide

Napsal: 10 kvě 2015 07:52
od vyosek
Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: browsre nebrowsuju ale net ide

Napsal: 10 kvě 2015 12:01
od marrek
# AdwCleaner v4.203 - Logfile created 10/05/2015 at 11:59:22
# Updated 30/04/2015 by Xplode
# Database : 2015-05-09.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : Marrek - DHARMAPC
# Running from : C:\Documents and Settings\Marrek\Plocha\adwcleaner_4.203.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\14919ea49a8f3b4aa3cf1058d9a64cec

***** [ Web browsers ] *****

-\\ Internet Explorer v6.0.2900.5512


-\\ Mozilla Firefox v37.0.2 (x86 cs)


-\\ Google Chrome v


-\\ Chromium v


-\\ Opera v29.0.1795.47


*************************

AdwCleaner[R0].txt - [2842 bytes] - [29/04/2015 12:19:25]
AdwCleaner[R1].txt - [1433 bytes] - [09/05/2015 09:19:24]
AdwCleaner[R2].txt - [1160 bytes] - [09/05/2015 09:44:22]
AdwCleaner[R3].txt - [1344 bytes] - [09/05/2015 10:33:55]
AdwCleaner[R4].txt - [1336 bytes] - [09/05/2015 13:47:53]
AdwCleaner[R5].txt - [1437 bytes] - [10/05/2015 11:58:12]
AdwCleaner[S0].txt - [2960 bytes] - [29/04/2015 12:35:17]
AdwCleaner[S1].txt - [1509 bytes] - [09/05/2015 09:21:09]
AdwCleaner[S2].txt - [1227 bytes] - [09/05/2015 09:45:35]
AdwCleaner[S3].txt - [1412 bytes] - [09/05/2015 10:37:13]
AdwCleaner[S4].txt - [1364 bytes] - [10/05/2015 11:59:22]

########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1423 bytes] ##########


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by Marrek on ne 10.05.2015 at 12:05:18,00.
Systém Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\Marrek\Plocha\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

10.5.2015 12:11:26 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\Program Files\FreeTime deleted successfully
C:\Program Files\Kakao deleted successfully
C:\Program Files\R.G. Mechanics deleted successfully
C:\Program Files\Rockstar Games deleted successfully
C:\Program Files\Solveig Multimedia deleted successfully
C:\Program Files\Zuxxez deleted successfully
C:\Documents and Settings\All Users\Nabídka Start\Programy\Android Studio deleted successfully
C:\Documents and Settings\Marrek\Nabídka Start\Programy\Debugmode deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\ALM deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\PhotoStitch deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\regid.1986-12.com.adobe deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\ZoomBrowser deleted successfully
C:\Documents and Settings\Marrek\Data aplikací\AdobeUM deleted successfully
C:\Documents and Settings\Marrek\Data aplikací\Media Player Classic deleted successfully
C:\Documents and Settings\Marrek\Data aplikací\Publish Providers deleted successfully
C:\Documents and Settings\Marrek\Data aplikací\webex deleted successfully
C:\Documents and Settings\Marrek\Data aplikací\ZoomBrowser EX deleted successfully
C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Google deleted successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\cache deleted successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\GHISLER deleted successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\WMTools Downloaded Files deleted successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\WOP deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1292428093-963894560-682003330-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A} deleted successfully
HKEY_USERS\S-1-5-21-1292428093-963894560-682003330-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4E39681-15F8-4fda-B8A3-B5C98378F2F3} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\prefs.js:

Added to C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default

user.js not found
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- FireFox user.js and prefs.js backups ----

prefs_10.05.2015_1228_.backup

==== Deleting Files \ Folders ======================

C:\Program Files\FreeTime not found
C:\Program Files\Kakao not found
C:\Program Files\R.G. Mechanics not found
C:\Program Files\Rockstar Games not found
C:\Program Files\Solveig Multimedia not found
C:\Program Files\Zuxxez not found
C:\Program Files\ComPlus Applications deleted
C:\Program Files\WindowsUpdate deleted
C:\Program Files\Rokario deleted
C:\Documents and Settings\Marrek\.android deleted
C:\install.exe deleted
C:\Documents and Settings\Marrek\Data aplikací\hphe.dll deleted
C:\WINDOWS\system32\GroupPolicy\Machine deleted
C:\WINDOWS\system32\GroupPolicy\User deleted
C:\WINDOWS\system32\GroupPolicy\gpt.ini deleted
C:\WINDOWS\System32\SET1208.tmp deleted
C:\WINDOWS\System32\SET120C.tmp deleted
C:\WINDOWS\System32\SET1214.tmp deleted
C:\WINDOWS\System32\tmp179.tmp deleted
C:\WINDOWS\System32\tmp17A.tmp deleted
C:\WINDOWS\System32\tmp1941.tmp deleted
C:\WINDOWS\System32\tmp1942.tmp deleted
C:\WINDOWS\System32\tmp1D9.tmp deleted
C:\WINDOWS\System32\tmp1DA.tmp deleted
C:\WINDOWS\System32\tmpEF3.tmp deleted
C:\WINDOWS\System32\tmpEF4.tmp deleted
C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\jetpack deleted
C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\extensions\jid1-4P0kohSJxU1qGg@jetpack deleted
"C:\Documents and Settings\Marrek\Data aplikací\.ptbt1" deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [09.05.2015 23:07]

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default
- Undetermined - C:\Documents and Settings\Marrek\Data aplikacĂ­\Mozilla\Firefox\Profiles\7goo0nhi.default\extensions\netvideohunter@netvideohunter.com
- NetVideoHunter - %ProfilePath%\extensions\netvideohunter@netvideohunter.com
- SQLite Manager - %ProfilePath%\extensions\SQLiteManager@mrinalkant.blogspot.com.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- 602XML Filler - %AppDir%\extensions\xmlfiller@software602.cz
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default
D33D39A318AEA70691CED7530E2D9DF9 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
CFBC726A1712BD8DC9914EA06DBCE20B - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
7E54D1EC87CE306CB1A26CE59AFE6E37 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
E50A1DB5DE70D656287511297B42F9F2 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.4
9E4F520270BF7301CC24E8FA67791C22 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.4
1153F58FACBC9731AF6CDF313F76DF29 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.4
BADFB0DCCD9B7E9F2F6EB7954D24EED1 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.4
EEEB86077BB4682B3FCFEDA5AED3E396 - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.4
21FF3F07336CE4F8DF6AF1746BC26AAB - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
E0BCE90537E4A41AF36D5BDD5963A09D - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
98137411B9C632095F919E2CE70B288A - C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll - Google Update
0DD1E0A385B888107A1F9206189596CF - C:\Program Files\Musicnotes\NPSibelius.dll - ScorchPlugin
B3BF28BF24E11B5BC165F1704A747695 - C:\Program Files\Musicnotes\npmusicn.dll - Musicnotes
AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
A5C14075B571AF1C9592595BE724D9D2 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll - Silverlight Plug-In
4B2474388CCF6040F05C54EE9941A019 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U72
DD463C830B63C3A26F5D48F483045DE2 - C:\WINDOWS\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.720.14
1ABBBBA2428EB035DF25A2297CABEB46 - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa
5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
1DE714BB4BB48B10BC94FF84C9BC6471 - C:\WINDOWS\system32\C2MP\npdivx32.dll - DivX Web Player
9AE02005247DA91AB1743F5208DBEF76 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll - Shockwave Flash
6B47E809D91DF30D028CF4F1B11A6616 - C:\WINDOWS\system32\npptools.dll - Operační systém Microsoft® Windows®
2AA3703D87E1327A2290C9D416D89A28 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrlui.dll - Microsoft® Silverlight


==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[09.05.2015 23:06]

Guitar Tab Viewer - Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dkdmbkpfnfkhalmhebdelpldipheihng

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"

==== Reset Google Chrome ======================

C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Preferences.bad was reset successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Documents and Settings\Marrek\Data aplikací\Opera Software\Opera Stable\Preferences was reset successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Documents and Settings\Marrek\Data aplikací\Opera Software\Opera Stable\Web Data was reset successfully

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\UpdatusUser\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Opera Software\Opera Stable\Cache emptied successfully
C:\Documents and Settings\Marrek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=572 folders=35 3215819954 bytes)

==== Empty Temp Folders ======================

C:\Documents and Settings\Default User\Local Settings\temp emptied successfully
C:\Documents and Settings\LocalService\Local Settings\temp emptied successfully
C:\Documents and Settings\Marrek\Local Settings\Temp will be emptied at reboot
C:\Documents and Settings\NetworkService\Local Settings\temp emptied successfully
C:\Documents and Settings\UpdatusUser\Local Settings\temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\Marrek\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

==== EOF on ne 10.05.2015 at 12:58:31,75 ======================

Re: browsre nebrowsuju ale net ide

Napsal: 10 kvě 2015 12:03
od vyosek
PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix

Re: browsre nebrowsuju ale net ide

Napsal: 11 kvě 2015 15:44
od marrek
ComboFix 15-05-09.01 - Marrek 10.05.2015 13:34:42.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3326.2572 [GMT 2:00]
Spuštěný z: c:\documents and settings\Marrek\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
ADS - WINDOWS: deleted 48 bytes in 1 streams.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\ntuser.pol
c:\documents and settings\Marrek\Data aplikací\ACD Systems\ACDSee\ImageDB.ddf
c:\documents and settings\Marrek\g2mdlhlpx.exe
c:\documents and settings\Marrek\WINDOWS
C:\readme.txt
C:\Thumbs.db
c:\windows\msdownld.tmp
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\system32\_000116_.tmp.dll
c:\windows\system32\drivers\etc\hosts.ics
c:\windows\system32\wl.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_DCSERVICE.EXE
-------\Service_DCService.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-04-10 do 2015-05-10 )))))))))))))))))))))))))))))))
.
.
2015-05-10 10:41 . 2015-05-10 10:04 24064 ----a-w- c:\windows\zoek-delete.exe
2015-05-10 10:04 . 2015-05-10 10:33 -------- d-----w- C:\zoek_backup
2015-05-10 04:45 . 2015-05-10 04:45 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2015-05-10 04:45 . 2013-04-04 12:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-05-09 21:45 . 2015-05-09 21:45 -------- d-----w- c:\windows\jumpshot.com
2015-05-09 21:07 . 2015-05-09 21:07 -------- d-----w- c:\documents and settings\Marrek\Data aplikací\AVAST Software
2015-05-09 21:07 . 2015-05-09 21:07 57888 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2015-05-09 21:07 . 2015-05-09 21:07 427992 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-05-09 21:07 . 2015-05-09 21:07 209048 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-05-09 21:07 . 2015-05-09 21:07 49904 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-05-09 21:07 . 2015-05-09 21:07 74976 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-05-09 21:07 . 2015-05-09 21:07 24144 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-05-09 21:07 . 2015-05-09 21:07 55200 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2015-05-09 21:07 . 2015-05-09 21:06 787760 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-05-09 21:07 . 2015-05-09 21:07 291312 ----a-w- c:\windows\system32\aswBoot.exe
2015-05-09 21:07 . 2015-05-09 21:07 43112 ----a-w- c:\windows\avastSS.scr
2015-05-09 21:06 . 2015-05-09 21:06 -------- d-----w- c:\program files\AVAST Software
2015-05-09 21:05 . 2015-05-09 21:05 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVAST Software
2015-05-09 20:35 . 2015-05-09 21:38 -------- d-----w- C:\FRST
2015-04-30 19:22 . 2015-04-30 19:22 -------- d-----w- c:\documents and settings\Marrek\.AndroidStudio1.2
2015-04-29 20:27 . 2015-04-29 20:27 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Western Digital
2015-04-29 20:27 . 2015-04-29 20:27 -------- d-----w- c:\program files\Western Digital
2015-04-29 20:25 . 2012-09-06 08:46 11520 ----a-w- c:\windows\system32\drivers\wdcsam.sys
2015-04-29 10:19 . 2015-05-10 09:59 -------- d-----w- C:\AdwCleaner
2015-04-23 06:20 . 2015-04-23 06:20 -------- d-----w- c:\documents and settings\Marrek\Local Settings\Data aplikací\Opera Software
2015-04-23 06:20 . 2015-04-23 06:20 -------- d-----w- c:\documents and settings\Marrek\Data aplikací\Opera Software
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-05-10 11:44 . 2009-05-30 19:00 16608 ----a-w- c:\windows\gdrv.sys
2015-04-15 09:00 . 2012-04-04 13:42 778416 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-04-15 09:00 . 2011-06-14 07:45 142512 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-02-25 12:05 . 2015-02-25 12:05 86016 ----a-w- c:\windows\system32\NtDirect.dll
2013-04-25 16:01 . 2015-04-20 21:03 305680 ----a-w- c:\program files\mozilla firefox\plugins\ieatgpc.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2009-05-30 . 1E603EA2A3FDBAE9E5B88A8CB3C03124 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-05-09 21:07 645144 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"H/PC Connection Agent"="c:\program files\Microsoft ActiveSync\Wcescomm.exe" [2006-11-13 1289000]
"TBPanel"="c:\program files\Vtune\TBPanel.exe" [2009-02-03 2158592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Profiler"="c:\program files\Saitek\Software\Profiler.exe" [2004-07-20 159744]
"SaiSmart"="c:\program files\Saitek\Software\SaiSmart.exe" [2004-07-20 98304]
"RTHDCPL"="RTHDCPL.EXE" [2009-02-17 17508864]
"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2009-06-17 85160]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-10-08 16744256]
"NvMediaCenter"="NvMCTray.dll" [2011-10-08 203072]
"nwiz"="c:\program files\NVIDIA Corporation\nview\nwiz.exe" [2011-10-08 1632360]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS6ServiceManager"="c:\program files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-23 926896]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2013-12-13 85600]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2013-05-01 421888]
"DriveUtilitiesHelper"="c:\program files\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe" [2014-05-23 1852264]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-05-09 5515496]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
REALTEK 11n USB Wireless LAN Utility.lnk - c:\program files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe /H [2013-5-3 991232]
WlanUtility.lnk - c:\program files\MicroStar\WLANUtility\WlanUtility.exe [2004-8-27 143360]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Ubisoft\\IL-2 Sturmovik 1946\\il2fb.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\NinjaTrader 7\\bin\\NinjaTrader.exe"=
"c:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"c:\\Program Files\\Realtek\\11n USB Wireless LAN Utility\\RtWLan.exe"=
"c:\\Program Files\\Realtek\\11n USB Wireless LAN Utility\\RTLDHCP.exe"=
"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Program Files\\Winamp\\winamp.exe"=
"c:\\Documents and Settings\\Marrek\\Data aplikací\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Portal 2\\portal2.exe"=
"c:\\Documents and Settings\\Marrek\\Local Settings\\Data aplikací\\Google\\Chrome\\Application\\chrome.exe"=
"c:\\Program Files\\Java\\jre7\\bin\\javaw.exe"=
"c:\\Program Files\\Kramer\\Kramer K-Config\\Kramer K-Config.exe"=
"c:\\Program Files\\Kramer Electronics\\Kramer K-Config\\Kramer K-Config.exe"=
"c:\\Documents and Settings\\Marrek\\Plocha\\Kramer\\Hercules - terminal\\hercules_3-2-8.exe"=
"c:\\Documents and Settings\\Marrek\\Plocha\\Kramer\\Hercules - terminal\\hercules_3-2-5.exe"=
"c:\\WINDOWS\\system32\\javaw.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Java\\jdk1.7.0_72\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.7.0_72\\bin\\javaw.exe"=
"c:\\androidAdt\\e2\\eclipse\\eclipse.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
"1542:TCP"= 1542:TCP:Realtek WPS TCP Prot
"1542:UDP"= 1542:UDP:Realtek WPS UDP Prot
"53:UDP"= 53:UDP:Realtek AP UDP Prot
.
R0 aswRvrt;avast! Revert;c:\windows\system32\drivers\aswRvrt.sys [9.5.2015 23:07 49904]
R0 aswVmm;avast! VM Monitor;c:\windows\system32\drivers\aswVmm.sys [9.5.2015 23:07 209048]
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [7.3.2012 8:49 14776]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [16.10.2010 15:08 691696]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [9.5.2015 23:07 787760]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [9.5.2015 23:07 427992]
R2 602XML Updater;602Updater;c:\program files\Common Files\soft602\602updsvc\602updsvc.exe [14.4.2010 12:28 73728]
R2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys [9.5.2015 23:07 24144]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [9.5.2015 23:07 74976]
R2 FMMService;Mobility Manager Service;c:\progra~1\T-MOBI~1\drivers\A96FED~1\FMMSER~1.EXE [24.9.2009 17:27 40960]
R2 FOFDMUpgrade;FOFDM Upgrade;c:\progra~1\T-MOBI~1\FOFDMU~1.EXE [24.9.2009 17:27 180224]
R2 GEST Service;GEST Service for program management.;c:\program files\GIGABYTE\EnergySaver\GSvr.exe [30.5.2009 21:03 80392]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [10.5.2015 6:45 701512]
R2 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [1.3.2013 3:48 36600]
R2 WDDriveService;WD Drive Manager;c:\program files\Western Digital\WD Drive Manager\WDDriveService.exe [23.5.2014 12:09 296312]
R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\drivers\ew_jubusenum.sys [9.1.2012 12:48 70656]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [10.5.2015 6:45 22856]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2.6.2009 7:20 1684736]
S3 andnetadb;ADB Interface DriverNet;c:\windows\system32\drivers\lgandnetadb.sys [3.7.2012 11:56 25856]
S3 AndNetDiag;LGE AndroidNet USB Serial Port;c:\windows\system32\drivers\lgandnetdiag.sys [3.7.2012 11:43 23040]
S3 ANDNetModem;LGE AndroidNet USB Modem;c:\windows\system32\drivers\lgandnetmodem.sys [3.7.2012 11:43 27776]
S3 andnetndis;LGE AndroidNet NDIS Ethernet Adapter;c:\windows\system32\drivers\lgandnetndis.sys [4.7.2012 13:47 70400]
S3 CT200xN51;NDIS5.1 Miniport Driver for 3Com 3C2000 Ethernet Controller;c:\windows\system32\drivers\CT200xN51.sys [17.6.2009 12:06 250240]
S3 EL556ND5;3Com 10/100 MiniPCI Ethernet Adapter Driver;c:\windows\system32\drivers\EL556ND5.sys [12.6.2009 13:06 55999]
S3 el575nd5;3Com Megahertz 10/100 LAN CardBus PC Card Driver;c:\windows\system32\drivers\el575ND5.sys [12.6.2009 13:21 69692]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\drivers\ew_hwusbdev.sys [9.1.2012 12:48 101504]
S3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\drivers\ewusbnet.sys [9.1.2012 12:48 117504]
S3 FlrnUSB;Leadtek USB Network Interface;c:\windows\system32\drivers\FlrnUSB.sys [15.6.2010 11:15 42213]
S3 PhTVTune;Cap7134 TVTuner;c:\windows\system32\drivers\PhTVTune.sys [1.6.2009 0:19 46976]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8192su.sys [3.5.2013 11:28 604064]
S3 SaiHFFB5;SaiHFFB5;c:\windows\system32\drivers\SaiHFFB5.sys [1.5.2007 15:39 132232]
S3 SaiIFFB5;Immersion's HID USB Driver (FFB5);c:\windows\system32\drivers\SaiIFFB5.sys [1.5.2007 15:39 16256]
S3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [19.2.2010 14:37 517096]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [29.4.2015 22:25 11520]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2015-05-10 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-04 09:00]
.
2015-05-10 c:\windows\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2015-05-09 21:07]
.
2015-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-05 17:13]
.
2015-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-05 17:13]
.
2015-05-10 c:\windows\Tasks\Opera scheduled Autoupdate 1429770017.job
- c:\program files\Opera\launcher.exe [2015-04-23 08:13]
.
.
------- Doplňkový sken -------
.
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\documents and settings\Marrek\Data aplikací\Mozilla\Firefox\Profiles\7goo0nhi.default\
FF - prefs.js: browser.startup.homepage - about:home
FF - prefs.js: network.proxy.http - 128.199.227.225
FF - prefs.js: network.proxy.http_port - 3128
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-AdobeBridge - (no file)
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\QuickTV.lnk - c:\program files\AVerTV\QuickTV.exe
AddRemove-European Air War - c:\program files\MicroProse Software\European Air War\Uninst.isu
AddRemove-HijackThis - e:\aa\HijackThis.exe
AddRemove-Adobe Acrobat Connect Add-in - c:\documents and settings\Marrek\Data aplikac?acromedia\Flash Player\www.macromedia.com\bin\connectaddin\connectaddin.exe
AddRemove-Adobe Connect Add-in - c:\documents and settings\Marrek\Data aplikac?acromedia\Flash Player\www.macromedia.com\bin\connectaddin\connectaddin.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-05-10 13:46
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1292428093-963894560-682003330-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:ed,3b,5a,52,8b,9c,1a,2d,34,0b,6c,a1,f4,25,e6,05,6c,c0,2e,2a,f0,0a,8f,
f4,eb,62,ff,5f,3d,12,83,51,aa,33,94,42,65,03,f6,a5,6b,83,99,9e,11,1a,87,75,\
"??"=hex:c1,fe,5a,fa,2d,cf,e8,92,e7,5f,3c,c6,f6,6a,b5,cd
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_17_0_0_169_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_17_0_0_169_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(3644)
c:\windows\system32\msi.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\windows\system32\nvsvc32.exe
c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
c:\program files\Canon\CAL\CALMAIN.exe
c:\windows\system32\wscntfy.exe
c:\windows\RTHDCPL.EXE
c:\progra~1\MICROS~3\rapimgr.exe
c:\program files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe
c:\program files\MicroStar\WLANUtility\WLAN_Service.exe
c:\windows\system32\wbem\unsecapp.exe
.
**************************************************************************
.
Celkový čas: 2015-05-10 13:52:13 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-05-10 11:52
ComboFix2.txt 2009-06-10 11:19
.
Před spuštěním: Volných bajtů: 501 384 904 704
Po spuštění: Volných bajtů: 501 662 679 040
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - C8EFDF792B9ED1B2C50862FE08EBEBD6
413FC2A0C716421B3158746D63736515

Re: browsre nebrowsuju ale net ide

Napsal: 12 kvě 2015 12:29
od vyosek
Jak se chova PC??

Re: browsre nebrowsuju ale net ide

Napsal: 12 kvě 2015 12:42
od marrek
browsre idu, wireshark stale ukazuje "cierne riadky" bad tcp a "cervene riadky" tcp rst
mam pocit, ze ich je menej. jedine co mi robi vrasky, ze mi zacalo padat android studio, ked kliknem na polozku termninal v studiu :/

Re: browsre nebrowsuju ale net ide

Napsal: 23 kvě 2015 08:28
od vyosek
Probelmy jsou stale??
Jine PC v siti jede bez problemu??