Stolný počítač prestal správne fungovať
Napsal: 22 srp 2016 15:39
Dobrý deň.
včera mi prestal korektne fungovať počítač. Myslel som že "odišla grafika", ale teraz, keď to mám v núdzovom režime, tak je to OK. Aj som sa mohol k môjmu účtu prihlásiť. Nedokážem popísať, čo sa na monitore deje, ale v normálnom režime je grafika hrozná. Pruhy cez celú šírku monitoru, také akoby stopy od pneumatík, veľmi zjednodušene popísané.
Prosím o kontrolu logu.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 21-08-2016 01
Ran by Taťka (administrator) on HOME-COMPIK (22-08-2016 16:23:48)
Running from C:\Documents and Settings\Taťka\Plocha
Loaded Profiles: Taťka (Available Profiles: pc & UpdatusUser & Taťka & Maminka & Guest)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Documents and Settings\Taťka\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15517472 2013-01-31] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1982312 2013-01-31] ()
HKLM\...\Run: [ArcSoft Connection Service] => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [VirtualCloneDrive] => C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM\...\Run: [BigDogPath326VMSnap] => C:\WINDOWS\VMSnap26.exe [90112 2007-07-06] ()
HKLM\...\Run: [BluetoothAuthenticationAgent] => rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [782520 2015-09-24] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [67840 2016-07-11] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4A7E5DD4-918E-4582-AFA0-817A3B1098AA}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-1078081533-1993962763-1644491937-1009\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1078081533-1993962763-1644491937-1009 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1078081533-1993962763-1644491937-1009 -> {5626B323-8039-4943-B9EE-65BF22C5276A} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
SearchScopes: HKU\S-1-5-21-1078081533-1993962763-1644491937-1009 -> {EA26EA9D-D0D7-4EE1-8097-9B9A96F9597A} URL = hxxps://www.google.com/search?q={searchTerms}&s ... utEncoding?}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2016-01-08] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2016-01-08] (Oracle Corporation)
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223
FF Homepage: hxxps://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-13] ()
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2010-04-15] (CANON INC.)
FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2016-01-08] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2016-01-08] (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll [2013-07-24] (Nullsoft, Inc.)
FF Plugin: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Documents and Settings\Taťka\Data aplikací\Visan\plugins\npRLSecurePluginLayer.dll [2011-02-23] (RocketLife, LLP)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.7\npGoogleUpdate3.dll [2015-02-15] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.7\npGoogleUpdate3.dll [2015-02-15] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1078081533-1993962763-1644491937-1009: @kb-ext.cz/PKIComponent -> C:\Documents and Settings\Taťka\Data aplikací\KB-ext\lib\x86\npPKIComponentNPAPI-kbext.dll [1749-10-20] (Komerční banka, a.s.)
FF SearchPlugin: C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223\searchplugins\youtube-1.xml [2016-03-09]
FF SearchPlugin: C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223\searchplugins\youtube.xml [2016-03-09]
FF Extension: Adblock Plus - C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]
Chrome:
=======
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Documents and Settings\Taťka\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Documents and Settings\Taťka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-08-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Documents and Settings\Taťka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-11]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [916968 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [461672 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [461672 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1210512 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [309384 2016-07-11] (Avira Operations GmbH & Co. KG)
S2 BlueSoleil Hid Service; C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe [110592 2005-04-06] () [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S4 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [859136 2006-11-10] (Nero AG) [File not signed]
S2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2016-01-08] (Oracle Corporation)
S2 PEVSystemStart; no ImagePath
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
S3 ALCXWDM; C:\WINDOWS\System32\drivers\ALCXWDM.SYS [2297664 2004-11-17] (Realtek Semiconductor Corp.)
S2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [108448 2015-09-24] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [42784 2014-08-29] (AVG Technologies)
S1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [136728 2015-08-10] (Avira Operations GmbH & Co. KG)
S1 avkmgr; C:\WINDOWS\System32\DRIVERS\avkmgr.sys [37896 2015-05-19] (Avira Operations GmbH & Co. KG)
S3 BlueletAudio; C:\WINDOWS\System32\DRIVERS\blueletaudio.sys [20480 2005-08-31] (IVT Corporation) [File not signed]
S3 BlueletSCOAudio; C:\WINDOWS\System32\DRIVERS\BlueletSCOAudio.sys [20480 2005-08-31] (IVT Corporation) [File not signed]
R3 BT; C:\WINDOWS\System32\DRIVERS\btnetdrv.sys [10068 2006-01-19] (IVT Corporation) [File not signed]
S3 Btcsrusb; C:\WINDOWS\System32\Drivers\btcusb.sys [23000 2005-10-23] (IVT Corporation) [File not signed]
R0 BtHidBus; C:\WINDOWS\System32\Drivers\BtHidBus.sys [20616 2008-07-31] (IVT Corporation.)
R3 BTHidEnum; C:\WINDOWS\System32\DRIVERS\vbtenum.sys [11988 2005-07-29] () [File not signed]
R0 BTHidMgr; C:\WINDOWS\System32\Drivers\BTHidMgr.sys [28271 2005-04-30] (IVT Corporation) [File not signed]
S3 BTNetFilter; C:\Program Files\IVT Corporation\BlueSoleil\Device\Win2k\BTNetFilter.sys [14312 2006-04-14] () [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 CrystalSysInfo; C:\Program Files\MediaCoder\SysInfo.sys [15152 2007-09-25] ()
S1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [30616 2013-03-04] (Elaborate Bytes AG)
R3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. )
S3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation)
S3 GVCplDrv; C:\WINDOWS\system32\Drivers\GVCplDrv.sys [23040 2004-05-02] () [File not signed]
R0 imagedrv; C:\WINDOWS\System32\Drivers\imagedrv.sys [5888 2005-08-15] (Ahead Software AG) [File not signed]
R0 imagesrv; C:\WINDOWS\System32\DRIVERS\imagesrv.sys [127488 2005-08-15] (Ahead Software AG) [File not signed]
S4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [102912 2006-11-10] (Nero AG) [File not signed]
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [31360 2006-11-10] (Nero AG) [File not signed]
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [10624 2006-11-10] (Nero AG) [File not signed]
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [33792 2006-11-10] (Nero AG) [File not signed]
S3 IvtBtBUs; C:\WINDOWS\System32\Drivers\IvtBtBus.sys [26248 2008-07-02] (IVT Corporation.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [10368 2013-06-23] (Padus, Inc.) [File not signed]
S1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [31848 2015-06-16] (Avira Operations GmbH & Co. KG)
S3 usbvm328; C:\WINDOWS\System32\Drivers\vmcam326av.sys [104960 2007-10-18] (Vimicro Corporation) [File not signed]
R3 VClone; C:\WINDOWS\System32\DRIVERS\VClone.sys [30208 2013-03-11] (Elaborate Bytes AG) [File not signed]
S3 VComm; C:\WINDOWS\System32\DRIVERS\VComm.sys [61312 2004-10-19] (IVT Corporation) [File not signed]
S3 VcommMgr; C:\WINDOWS\System32\Drivers\VcommMgr.sys [84836 2006-02-28] (IVT Corporation) [File not signed]
R0 VIAMRAID; C:\WINDOWS\System32\DRIVERS\viamraid.sys [117248 2008-08-08] (VIA Technologies inc,.ltd) [File not signed]
S3 vvftav326_a4; C:\WINDOWS\System32\drivers\vvftav326.sys [480128 2007-07-03] (Vimicro Corporation) [File not signed]
S4 IntelIde; no ImagePath
U5 lanmanserver; C:\WINDOWS\system32\svchost.exe [14336 2008-04-14] (Microsoft Corporation)
U5 Tcpip6; C:\Windows\System32\Drivers\Tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-08-22 16:23 - 2016-08-22 16:24 - 00012741 _____ C:\Documents and Settings\Taťka\Plocha\FRST.txt
2016-08-22 16:21 - 2016-08-22 16:21 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Taťka\Plocha\FRSTLauncher.exe
2016-08-22 16:14 - 2016-08-22 16:14 - 01746432 _____ (Farbar) C:\Documents and Settings\Taťka\Plocha\FRST.exe
2016-08-22 15:58 - 2016-08-22 16:01 - 00385300 _____ C:\WINDOWS\ntbtlog.txt
2016-08-22 15:36 - 2016-08-22 15:36 - 00000664 _____ C:\Documents and Settings\Taťka\Plocha\cc_20160822_153632.reg
2016-08-22 15:29 - 2016-08-22 15:57 - 00001260 _____ C:\WINDOWS\SchedLgU.Txt
2016-08-21 22:32 - 2016-08-21 22:32 - 00000803 _____ C:\Documents and Settings\Guest\Nabídka Start\Programy\Internet Explorer.lnk
2016-08-21 22:32 - 2016-08-21 22:32 - 00000000 __SHD C:\Documents and Settings\Guest\IETldCache
2016-08-21 22:32 - 2016-08-21 22:32 - 00000000 ____D C:\Documents and Settings\Guest\Local Settings\Data aplikací\Ahead
2016-08-21 22:31 - 2016-08-21 22:34 - 00000000 ____D C:\Documents and Settings\Guest
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Oblíbené položky
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start\Programy
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Dokumenty\Obrázky
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Dokumenty\Hudba
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Dokumenty
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___HD C:\Documents and Settings\Guest\Local Settings\Data aplikací
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ____D C:\Documents and Settings\Guest\Local Settings\Temp
2016-08-21 22:31 - 2016-08-21 22:31 - 00001813 _____ C:\Documents and Settings\Guest\Plocha\Google Chrome.lnk
2016-08-21 22:31 - 2016-08-21 22:31 - 00000788 _____ C:\Documents and Settings\Guest\Nabídka Start\Programy\Windows Media Player.lnk
2016-08-21 22:31 - 2016-08-21 22:31 - 00000020 ___SH C:\Documents and Settings\Guest\ntuser.ini
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 __RHD C:\Documents and Settings\Guest\Data aplikací
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start\Programy\Příslušenství
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 ____D C:\Documents and Settings\Guest\Plocha
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 ____D C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google
2016-08-21 22:31 - 2014-09-02 18:15 - 00000000 ____D C:\Documents and Settings\Guest\Data aplikací\TuneUp Software
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start\Programy\Po spuštění
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___HD C:\Documents and Settings\Guest\Okolní tiskárny
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___HD C:\Documents and Settings\Guest\Okolní síť
2016-08-21 22:31 - 2013-06-15 08:17 - 00001599 _____ C:\Documents and Settings\Guest\Nabídka Start\Programy\Vzdálená pomoc.lnk
2016-08-21 22:31 - 2013-06-15 08:14 - 00000000 ___HD C:\Documents and Settings\Guest\Šablony
2016-08-21 22:24 - 2016-08-21 22:24 - 00000000 __SHD C:\found.005
2016-08-08 08:28 - 2016-08-08 08:28 - 00000532 _____ C:\Documents and Settings\Taťka\Plocha\cc_20160808_082834.reg
2016-08-08 08:25 - 2016-08-08 08:25 - 00009126 _____ C:\Documents and Settings\Taťka\Plocha\cc_20160808_082546.reg
2016-08-07 09:31 - 2016-08-21 16:16 - 00000000 ____D C:\Documents and Settings\Taťka\Data aplikací\Skype
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-08-22 16:24 - 2015-08-10 23:22 - 00000000 ____D C:\Documents and Settings\Taťka\Local Settings\Temp
2016-08-22 16:23 - 2015-02-15 20:34 - 00000000 ____D C:\FRST
2016-08-22 16:23 - 2013-06-15 16:15 - 00000000 ___RD C:\Documents and Settings\Taťka\Plocha
2016-08-22 16:22 - 2013-06-15 16:15 - 00000000 ___HD C:\Documents and Settings\Taťka\Local Settings\Data aplikací
2016-08-22 16:13 - 2013-08-03 21:29 - 00001324 _____ C:\WINDOWS\system32\d3d9caps.dat
2016-08-22 15:59 - 2013-06-15 16:15 - 00000272 ___SH C:\Documents and Settings\Taťka\ntuser.ini
2016-08-22 15:57 - 2013-06-15 08:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-08-22 15:39 - 2014-06-16 16:03 - 00000000 _____ C:\WINDOWS\MEMORY.DMP
2016-08-22 15:34 - 2013-06-15 16:15 - 00000000 ____D C:\Documents and Settings\Taťka
2016-08-22 15:30 - 2015-02-21 19:11 - 00000278 _____ C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ____D C:\Documents and Settings
2016-08-21 18:41 - 2016-02-02 00:03 - 00478478 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1078081533-1993962763-1644491937-1870-0.dat
2016-08-21 18:41 - 2016-02-02 00:03 - 00273206 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
2016-08-21 18:41 - 2015-09-18 19:22 - 00000272 ___SH C:\Documents and Settings\Maminka\ntuser.ini
2016-08-21 18:41 - 2015-09-18 19:22 - 00000000 ____D C:\Documents and Settings\Maminka
2016-08-21 18:25 - 2014-08-22 13:08 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-08-21 18:11 - 2016-01-02 10:39 - 00000000 ____D C:\Documents and Settings\Maminka\Local Settings\Temp
2016-08-21 17:47 - 2016-02-01 17:24 - 00887486 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1078081533-1993962763-1644491937-1009-0.dat
2016-08-21 16:17 - 2014-11-28 17:48 - 211305472 _____ C:\Documents and Settings\Taťka\Dokumenty\archive.pst
2016-08-21 13:25 - 2013-06-25 17:47 - 00000684 _____ C:\Documents and Settings\Taťka\intlname.ols
2016-08-21 10:06 - 2001-10-25 14:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
2016-08-16 22:41 - 2001-10-25 14:00 - 00001068 _____ C:\WINDOWS\win.ini
2016-08-10 08:59 - 2013-06-16 09:25 - 00000000 ____D C:\Program Files\The KMPlayer
2016-08-08 18:14 - 2015-02-21 19:10 - 00000286 _____ C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job
2016-08-07 09:31 - 2013-06-15 16:15 - 00000000 __RHD C:\Documents and Settings\Taťka\Data aplikací
2016-08-03 16:21 - 2013-06-15 16:15 - 00000000 ___RD C:\Documents and Settings\Taťka\Dokumenty
2016-07-26 19:19 - 2014-08-17 16:45 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Package Cache
2016-07-25 17:29 - 2015-02-18 17:57 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Avira
==================== Files in the root of some directories =======
2013-08-28 20:31 - 2007-01-16 23:37 - 0010684 ____R () C:\Program Files\ExportFormat.txt
2013-08-28 20:31 - 2007-02-22 21:08 - 0925696 _____ (GSpot Appliance Corp, a unit of GSp0t Heavy Industries) C:\Program Files\GSpot.exe
2013-08-28 20:31 - 2007-02-19 16:28 - 0117974 ____R () C:\Program Files\GSpot27.dat
2013-08-28 20:31 - 2007-01-16 23:37 - 0003615 ____R () C:\Program Files\license.txt
2016-06-07 14:07 - 2016-06-07 14:07 - 0038426 _____ () C:\Documents and Settings\Taťka\Data aplikací\Hodnoty oddělené čárkami (Windows).ADR
2013-08-09 13:04 - 2013-08-17 19:56 - 0000000 _____ () C:\Documents and Settings\Taťka\Data aplikací\Hybrid Chords
2013-08-09 13:05 - 2013-08-09 13:05 - 0000268 ___RH () C:\Documents and Settings\Taťka\Data aplikací\Hybrid Morph
2013-08-09 13:04 - 2013-08-09 13:04 - 0000268 ___RH () C:\Documents and Settings\Taťka\Data aplikací\Internet Services
2015-07-10 22:46 - 2015-07-10 22:50 - 0000041 ____H () C:\Documents and Settings\Taťka\Data aplikací\swk.ini
2013-06-15 17:54 - 2016-07-17 01:19 - 0039936 _____ () C:\Documents and Settings\Taťka\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-02-27 12:16 - 2016-02-27 12:16 - 0000901 _____ () C:\Documents and Settings\Taťka\Local Settings\Data aplikací\recently-used.xbel
2013-08-17 19:56 - 2013-08-17 19:56 - 0000000 _____ () C:\Documents and Settings\All Users\Data aplikací\Graphics
2013-08-17 19:56 - 2013-08-17 19:56 - 0000000 _____ () C:\Documents and Settings\All Users\Data aplikací\Hybrid Basic
2013-08-09 13:05 - 2013-08-09 13:05 - 0000268 ___RH () C:\Documents and Settings\All Users\Data aplikací\Image Manipulation
2013-08-09 13:05 - 2013-08-09 13:05 - 0000012 ___RH () C:\Documents and Settings\All Users\Data aplikací\Keyboard Layouts
2015-08-13 07:59 - 2015-08-13 07:59 - 0000016 _____ () C:\Documents and Settings\All Users\Data aplikací\mntemp
2013-08-09 13:04 - 2013-08-09 13:04 - 0000012 ___RH () C:\Documents and Settings\All Users\Data aplikací\NetServices
2013-08-09 13:04 - 2013-08-09 13:04 - 0000020 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLeo.DAT
2013-08-09 13:05 - 2013-08-09 13:05 - 0000020 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLes.DAT
2013-08-09 13:04 - 2013-08-17 19:56 - 0000000 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLet.DAT
2013-08-09 13:04 - 2013-08-17 19:56 - 0000000 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLev.DAT
Some files in TEMP:
====================
C:\Documents and Settings\Guest\Local Settings\Temp\avgnt.exe
C:\Documents and Settings\Guest\Local Settings\Temp\NeroSearchTrayHook_{1EA5CD1F-E027-49AE-A365-3334D46E11B2}.dll
C:\Documents and Settings\Maminka\Local Settings\Temp\avgnt.exe
C:\Documents and Settings\pc\Local Settings\Temp\avgnt.exe
C:\Documents and Settings\Taťka\Local Settings\Temp\avgnt.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Antivirus (Enabled - Out of date) {AD166499-45F9-482A-A743-FDD3350758C7}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Taka\Plocha" je 724 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Winamp\\winamp.exe"="C:\\Program Files\\Winamp\\winamp.exe:*:Enabled:Winamp"
"C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe"="C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe:*:Enabled:True Vector"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"="C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"="C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\\Program Files\\Winamp\\winamp.exe"="C:\\Program Files\\Winamp\\winamp.exe:*:Enabled:Winamp"
"C:\\Program Files\\QIP\\qip.exe"="C:\\Program Files\\QIP\\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Documents and Settings\\pc\\Local Settings\\Data aplikac\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe"="C:\\Documents and Settings\\pc\\Local Settings\\Data aplikac\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe:*:Enabled:Facebook Video Calling Plugin"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
"C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe"="C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe:*:Enabled:True Vector"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:Firefox (C:\\Program Files\\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"3389:TCP"="3389:TCP:*:Enabled:@xpsp2res.dll,-22009"
"139:TCP"="139:TCP:*:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:*:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:*:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:*:Enabled:@xpsp2res.dll,-22002"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"3389:TCP"="3389:TCP:*:Enabled:@xpsp2res.dll,-22009"
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
včera mi prestal korektne fungovať počítač. Myslel som že "odišla grafika", ale teraz, keď to mám v núdzovom režime, tak je to OK. Aj som sa mohol k môjmu účtu prihlásiť. Nedokážem popísať, čo sa na monitore deje, ale v normálnom režime je grafika hrozná. Pruhy cez celú šírku monitoru, také akoby stopy od pneumatík, veľmi zjednodušene popísané.
Prosím o kontrolu logu.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 21-08-2016 01
Ran by Taťka (administrator) on HOME-COMPIK (22-08-2016 16:23:48)
Running from C:\Documents and Settings\Taťka\Plocha
Loaded Profiles: Taťka (Available Profiles: pc & UpdatusUser & Taťka & Maminka & Guest)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Documents and Settings\Taťka\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15517472 2013-01-31] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1982312 2013-01-31] ()
HKLM\...\Run: [ArcSoft Connection Service] => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [VirtualCloneDrive] => C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM\...\Run: [BigDogPath326VMSnap] => C:\WINDOWS\VMSnap26.exe [90112 2007-07-06] ()
HKLM\...\Run: [BluetoothAuthenticationAgent] => rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [782520 2015-09-24] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [67840 2016-07-11] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4A7E5DD4-918E-4582-AFA0-817A3B1098AA}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-1078081533-1993962763-1644491937-1009\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1078081533-1993962763-1644491937-1009 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1078081533-1993962763-1644491937-1009 -> {5626B323-8039-4943-B9EE-65BF22C5276A} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
SearchScopes: HKU\S-1-5-21-1078081533-1993962763-1644491937-1009 -> {EA26EA9D-D0D7-4EE1-8097-9B9A96F9597A} URL = hxxps://www.google.com/search?q={searchTerms}&s ... utEncoding?}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2016-01-08] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2016-01-08] (Oracle Corporation)
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223
FF Homepage: hxxps://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-13] ()
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2010-04-15] (CANON INC.)
FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2016-01-08] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2016-01-08] (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll [2013-07-24] (Nullsoft, Inc.)
FF Plugin: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Documents and Settings\Taťka\Data aplikací\Visan\plugins\npRLSecurePluginLayer.dll [2011-02-23] (RocketLife, LLP)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.7\npGoogleUpdate3.dll [2015-02-15] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.7\npGoogleUpdate3.dll [2015-02-15] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1078081533-1993962763-1644491937-1009: @kb-ext.cz/PKIComponent -> C:\Documents and Settings\Taťka\Data aplikací\KB-ext\lib\x86\npPKIComponentNPAPI-kbext.dll [1749-10-20] (Komerční banka, a.s.)
FF SearchPlugin: C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223\searchplugins\youtube-1.xml [2016-03-09]
FF SearchPlugin: C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223\searchplugins\youtube.xml [2016-03-09]
FF Extension: Adblock Plus - C:\Documents and Settings\Taťka\Data aplikací\Mozilla\Firefox\Profiles\y2g3fnf4.default-1454364066223\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]
Chrome:
=======
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Documents and Settings\Taťka\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Documents and Settings\Taťka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-08-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Documents and Settings\Taťka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-11]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [916968 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [461672 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [461672 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1210512 2015-09-24] (Avira Operations GmbH & Co. KG)
S2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [309384 2016-07-11] (Avira Operations GmbH & Co. KG)
S2 BlueSoleil Hid Service; C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe [110592 2005-04-06] () [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S4 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [859136 2006-11-10] (Nero AG) [File not signed]
S2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2016-01-08] (Oracle Corporation)
S2 PEVSystemStart; no ImagePath
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
S3 ALCXWDM; C:\WINDOWS\System32\drivers\ALCXWDM.SYS [2297664 2004-11-17] (Realtek Semiconductor Corp.)
S2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [108448 2015-09-24] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [42784 2014-08-29] (AVG Technologies)
S1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [136728 2015-08-10] (Avira Operations GmbH & Co. KG)
S1 avkmgr; C:\WINDOWS\System32\DRIVERS\avkmgr.sys [37896 2015-05-19] (Avira Operations GmbH & Co. KG)
S3 BlueletAudio; C:\WINDOWS\System32\DRIVERS\blueletaudio.sys [20480 2005-08-31] (IVT Corporation) [File not signed]
S3 BlueletSCOAudio; C:\WINDOWS\System32\DRIVERS\BlueletSCOAudio.sys [20480 2005-08-31] (IVT Corporation) [File not signed]
R3 BT; C:\WINDOWS\System32\DRIVERS\btnetdrv.sys [10068 2006-01-19] (IVT Corporation) [File not signed]
S3 Btcsrusb; C:\WINDOWS\System32\Drivers\btcusb.sys [23000 2005-10-23] (IVT Corporation) [File not signed]
R0 BtHidBus; C:\WINDOWS\System32\Drivers\BtHidBus.sys [20616 2008-07-31] (IVT Corporation.)
R3 BTHidEnum; C:\WINDOWS\System32\DRIVERS\vbtenum.sys [11988 2005-07-29] () [File not signed]
R0 BTHidMgr; C:\WINDOWS\System32\Drivers\BTHidMgr.sys [28271 2005-04-30] (IVT Corporation) [File not signed]
S3 BTNetFilter; C:\Program Files\IVT Corporation\BlueSoleil\Device\Win2k\BTNetFilter.sys [14312 2006-04-14] () [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 CrystalSysInfo; C:\Program Files\MediaCoder\SysInfo.sys [15152 2007-09-25] ()
S1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [30616 2013-03-04] (Elaborate Bytes AG)
R3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. )
S3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation)
S3 GVCplDrv; C:\WINDOWS\system32\Drivers\GVCplDrv.sys [23040 2004-05-02] () [File not signed]
R0 imagedrv; C:\WINDOWS\System32\Drivers\imagedrv.sys [5888 2005-08-15] (Ahead Software AG) [File not signed]
R0 imagesrv; C:\WINDOWS\System32\DRIVERS\imagesrv.sys [127488 2005-08-15] (Ahead Software AG) [File not signed]
S4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [102912 2006-11-10] (Nero AG) [File not signed]
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [31360 2006-11-10] (Nero AG) [File not signed]
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [10624 2006-11-10] (Nero AG) [File not signed]
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [33792 2006-11-10] (Nero AG) [File not signed]
S3 IvtBtBUs; C:\WINDOWS\System32\Drivers\IvtBtBus.sys [26248 2008-07-02] (IVT Corporation.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [10368 2013-06-23] (Padus, Inc.) [File not signed]
S1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [31848 2015-06-16] (Avira Operations GmbH & Co. KG)
S3 usbvm328; C:\WINDOWS\System32\Drivers\vmcam326av.sys [104960 2007-10-18] (Vimicro Corporation) [File not signed]
R3 VClone; C:\WINDOWS\System32\DRIVERS\VClone.sys [30208 2013-03-11] (Elaborate Bytes AG) [File not signed]
S3 VComm; C:\WINDOWS\System32\DRIVERS\VComm.sys [61312 2004-10-19] (IVT Corporation) [File not signed]
S3 VcommMgr; C:\WINDOWS\System32\Drivers\VcommMgr.sys [84836 2006-02-28] (IVT Corporation) [File not signed]
R0 VIAMRAID; C:\WINDOWS\System32\DRIVERS\viamraid.sys [117248 2008-08-08] (VIA Technologies inc,.ltd) [File not signed]
S3 vvftav326_a4; C:\WINDOWS\System32\drivers\vvftav326.sys [480128 2007-07-03] (Vimicro Corporation) [File not signed]
S4 IntelIde; no ImagePath
U5 lanmanserver; C:\WINDOWS\system32\svchost.exe [14336 2008-04-14] (Microsoft Corporation)
U5 Tcpip6; C:\Windows\System32\Drivers\Tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-08-22 16:23 - 2016-08-22 16:24 - 00012741 _____ C:\Documents and Settings\Taťka\Plocha\FRST.txt
2016-08-22 16:21 - 2016-08-22 16:21 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Taťka\Plocha\FRSTLauncher.exe
2016-08-22 16:14 - 2016-08-22 16:14 - 01746432 _____ (Farbar) C:\Documents and Settings\Taťka\Plocha\FRST.exe
2016-08-22 15:58 - 2016-08-22 16:01 - 00385300 _____ C:\WINDOWS\ntbtlog.txt
2016-08-22 15:36 - 2016-08-22 15:36 - 00000664 _____ C:\Documents and Settings\Taťka\Plocha\cc_20160822_153632.reg
2016-08-22 15:29 - 2016-08-22 15:57 - 00001260 _____ C:\WINDOWS\SchedLgU.Txt
2016-08-21 22:32 - 2016-08-21 22:32 - 00000803 _____ C:\Documents and Settings\Guest\Nabídka Start\Programy\Internet Explorer.lnk
2016-08-21 22:32 - 2016-08-21 22:32 - 00000000 __SHD C:\Documents and Settings\Guest\IETldCache
2016-08-21 22:32 - 2016-08-21 22:32 - 00000000 ____D C:\Documents and Settings\Guest\Local Settings\Data aplikací\Ahead
2016-08-21 22:31 - 2016-08-21 22:34 - 00000000 ____D C:\Documents and Settings\Guest
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Oblíbené položky
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start\Programy
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Dokumenty\Obrázky
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Dokumenty\Hudba
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___RD C:\Documents and Settings\Guest\Dokumenty
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ___HD C:\Documents and Settings\Guest\Local Settings\Data aplikací
2016-08-21 22:31 - 2016-08-21 22:32 - 00000000 ____D C:\Documents and Settings\Guest\Local Settings\Temp
2016-08-21 22:31 - 2016-08-21 22:31 - 00001813 _____ C:\Documents and Settings\Guest\Plocha\Google Chrome.lnk
2016-08-21 22:31 - 2016-08-21 22:31 - 00000788 _____ C:\Documents and Settings\Guest\Nabídka Start\Programy\Windows Media Player.lnk
2016-08-21 22:31 - 2016-08-21 22:31 - 00000020 ___SH C:\Documents and Settings\Guest\ntuser.ini
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 __RHD C:\Documents and Settings\Guest\Data aplikací
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start\Programy\Příslušenství
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 ____D C:\Documents and Settings\Guest\Plocha
2016-08-21 22:31 - 2016-08-21 22:31 - 00000000 ____D C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google
2016-08-21 22:31 - 2014-09-02 18:15 - 00000000 ____D C:\Documents and Settings\Guest\Data aplikací\TuneUp Software
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start\Programy\Po spuštění
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___RD C:\Documents and Settings\Guest\Nabídka Start
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___HD C:\Documents and Settings\Guest\Okolní tiskárny
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ___HD C:\Documents and Settings\Guest\Okolní síť
2016-08-21 22:31 - 2013-06-15 08:17 - 00001599 _____ C:\Documents and Settings\Guest\Nabídka Start\Programy\Vzdálená pomoc.lnk
2016-08-21 22:31 - 2013-06-15 08:14 - 00000000 ___HD C:\Documents and Settings\Guest\Šablony
2016-08-21 22:24 - 2016-08-21 22:24 - 00000000 __SHD C:\found.005
2016-08-08 08:28 - 2016-08-08 08:28 - 00000532 _____ C:\Documents and Settings\Taťka\Plocha\cc_20160808_082834.reg
2016-08-08 08:25 - 2016-08-08 08:25 - 00009126 _____ C:\Documents and Settings\Taťka\Plocha\cc_20160808_082546.reg
2016-08-07 09:31 - 2016-08-21 16:16 - 00000000 ____D C:\Documents and Settings\Taťka\Data aplikací\Skype
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-08-22 16:24 - 2015-08-10 23:22 - 00000000 ____D C:\Documents and Settings\Taťka\Local Settings\Temp
2016-08-22 16:23 - 2015-02-15 20:34 - 00000000 ____D C:\FRST
2016-08-22 16:23 - 2013-06-15 16:15 - 00000000 ___RD C:\Documents and Settings\Taťka\Plocha
2016-08-22 16:22 - 2013-06-15 16:15 - 00000000 ___HD C:\Documents and Settings\Taťka\Local Settings\Data aplikací
2016-08-22 16:13 - 2013-08-03 21:29 - 00001324 _____ C:\WINDOWS\system32\d3d9caps.dat
2016-08-22 15:59 - 2013-06-15 16:15 - 00000272 ___SH C:\Documents and Settings\Taťka\ntuser.ini
2016-08-22 15:57 - 2013-06-15 08:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-08-22 15:39 - 2014-06-16 16:03 - 00000000 _____ C:\WINDOWS\MEMORY.DMP
2016-08-22 15:34 - 2013-06-15 16:15 - 00000000 ____D C:\Documents and Settings\Taťka
2016-08-22 15:30 - 2015-02-21 19:11 - 00000278 _____ C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job
2016-08-21 22:31 - 2013-06-15 10:09 - 00000000 ____D C:\Documents and Settings
2016-08-21 18:41 - 2016-02-02 00:03 - 00478478 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1078081533-1993962763-1644491937-1870-0.dat
2016-08-21 18:41 - 2016-02-02 00:03 - 00273206 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
2016-08-21 18:41 - 2015-09-18 19:22 - 00000272 ___SH C:\Documents and Settings\Maminka\ntuser.ini
2016-08-21 18:41 - 2015-09-18 19:22 - 00000000 ____D C:\Documents and Settings\Maminka
2016-08-21 18:25 - 2014-08-22 13:08 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-08-21 18:11 - 2016-01-02 10:39 - 00000000 ____D C:\Documents and Settings\Maminka\Local Settings\Temp
2016-08-21 17:47 - 2016-02-01 17:24 - 00887486 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1078081533-1993962763-1644491937-1009-0.dat
2016-08-21 16:17 - 2014-11-28 17:48 - 211305472 _____ C:\Documents and Settings\Taťka\Dokumenty\archive.pst
2016-08-21 13:25 - 2013-06-25 17:47 - 00000684 _____ C:\Documents and Settings\Taťka\intlname.ols
2016-08-21 10:06 - 2001-10-25 14:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
2016-08-16 22:41 - 2001-10-25 14:00 - 00001068 _____ C:\WINDOWS\win.ini
2016-08-10 08:59 - 2013-06-16 09:25 - 00000000 ____D C:\Program Files\The KMPlayer
2016-08-08 18:14 - 2015-02-21 19:10 - 00000286 _____ C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job
2016-08-07 09:31 - 2013-06-15 16:15 - 00000000 __RHD C:\Documents and Settings\Taťka\Data aplikací
2016-08-03 16:21 - 2013-06-15 16:15 - 00000000 ___RD C:\Documents and Settings\Taťka\Dokumenty
2016-07-26 19:19 - 2014-08-17 16:45 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Package Cache
2016-07-25 17:29 - 2015-02-18 17:57 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Avira
==================== Files in the root of some directories =======
2013-08-28 20:31 - 2007-01-16 23:37 - 0010684 ____R () C:\Program Files\ExportFormat.txt
2013-08-28 20:31 - 2007-02-22 21:08 - 0925696 _____ (GSpot Appliance Corp, a unit of GSp0t Heavy Industries) C:\Program Files\GSpot.exe
2013-08-28 20:31 - 2007-02-19 16:28 - 0117974 ____R () C:\Program Files\GSpot27.dat
2013-08-28 20:31 - 2007-01-16 23:37 - 0003615 ____R () C:\Program Files\license.txt
2016-06-07 14:07 - 2016-06-07 14:07 - 0038426 _____ () C:\Documents and Settings\Taťka\Data aplikací\Hodnoty oddělené čárkami (Windows).ADR
2013-08-09 13:04 - 2013-08-17 19:56 - 0000000 _____ () C:\Documents and Settings\Taťka\Data aplikací\Hybrid Chords
2013-08-09 13:05 - 2013-08-09 13:05 - 0000268 ___RH () C:\Documents and Settings\Taťka\Data aplikací\Hybrid Morph
2013-08-09 13:04 - 2013-08-09 13:04 - 0000268 ___RH () C:\Documents and Settings\Taťka\Data aplikací\Internet Services
2015-07-10 22:46 - 2015-07-10 22:50 - 0000041 ____H () C:\Documents and Settings\Taťka\Data aplikací\swk.ini
2013-06-15 17:54 - 2016-07-17 01:19 - 0039936 _____ () C:\Documents and Settings\Taťka\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-02-27 12:16 - 2016-02-27 12:16 - 0000901 _____ () C:\Documents and Settings\Taťka\Local Settings\Data aplikací\recently-used.xbel
2013-08-17 19:56 - 2013-08-17 19:56 - 0000000 _____ () C:\Documents and Settings\All Users\Data aplikací\Graphics
2013-08-17 19:56 - 2013-08-17 19:56 - 0000000 _____ () C:\Documents and Settings\All Users\Data aplikací\Hybrid Basic
2013-08-09 13:05 - 2013-08-09 13:05 - 0000268 ___RH () C:\Documents and Settings\All Users\Data aplikací\Image Manipulation
2013-08-09 13:05 - 2013-08-09 13:05 - 0000012 ___RH () C:\Documents and Settings\All Users\Data aplikací\Keyboard Layouts
2015-08-13 07:59 - 2015-08-13 07:59 - 0000016 _____ () C:\Documents and Settings\All Users\Data aplikací\mntemp
2013-08-09 13:04 - 2013-08-09 13:04 - 0000012 ___RH () C:\Documents and Settings\All Users\Data aplikací\NetServices
2013-08-09 13:04 - 2013-08-09 13:04 - 0000020 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLeo.DAT
2013-08-09 13:05 - 2013-08-09 13:05 - 0000020 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLes.DAT
2013-08-09 13:04 - 2013-08-17 19:56 - 0000000 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLet.DAT
2013-08-09 13:04 - 2013-08-17 19:56 - 0000000 ____H () C:\Documents and Settings\All Users\Data aplikací\PKP_DLev.DAT
Some files in TEMP:
====================
C:\Documents and Settings\Guest\Local Settings\Temp\avgnt.exe
C:\Documents and Settings\Guest\Local Settings\Temp\NeroSearchTrayHook_{1EA5CD1F-E027-49AE-A365-3334D46E11B2}.dll
C:\Documents and Settings\Maminka\Local Settings\Temp\avgnt.exe
C:\Documents and Settings\pc\Local Settings\Temp\avgnt.exe
C:\Documents and Settings\Taťka\Local Settings\Temp\avgnt.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1078081533-1993962763-1644491937-1009.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Antivirus (Enabled - Out of date) {AD166499-45F9-482A-A743-FDD3350758C7}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Taka\Plocha" je 724 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Winamp\\winamp.exe"="C:\\Program Files\\Winamp\\winamp.exe:*:Enabled:Winamp"
"C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe"="C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe:*:Enabled:True Vector"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"="C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"="C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\\Program Files\\Winamp\\winamp.exe"="C:\\Program Files\\Winamp\\winamp.exe:*:Enabled:Winamp"
"C:\\Program Files\\QIP\\qip.exe"="C:\\Program Files\\QIP\\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Documents and Settings\\pc\\Local Settings\\Data aplikac\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe"="C:\\Documents and Settings\\pc\\Local Settings\\Data aplikac\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe:*:Enabled:Facebook Video Calling Plugin"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
"C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe"="C:\\Program Files\\CheckPoint\\ZoneAlarm\\vsmon.exe:*:Enabled:True Vector"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:Firefox (C:\\Program Files\\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"3389:TCP"="3389:TCP:*:Enabled:@xpsp2res.dll,-22009"
"139:TCP"="139:TCP:*:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:*:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:*:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:*:Enabled:@xpsp2res.dll,-22002"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"3389:TCP"="3389:TCP:*:Enabled:@xpsp2res.dll,-22009"
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================