Prosím o kontrolu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Pornobus
nováček
Příspěvky: 25
Registrován: květen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod Pornobus » 19 kvě 2011 20:12

Tohle je crystaldiskinfo

----------------------------------------------------------------------------
CrystalDiskInfo 4.0.0 (C) 2008-2011 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows Vista Home Premium Edition SP2 [6.0 Build 6002] (x86)
Date : 2011/05/19 20:10:16

-- Controller Map ----------------------------------------------------------

-- Disk List ---------------------------------------------------------------
(1) SAMSUNG HD642JJ : 640.1 GB [0-X-X, pd1]

----------------------------------------------------------------------------
(1) SAMSUNG HD642JJ
----------------------------------------------------------------------------
Model : SAMSUNG HD642JJ
Firmware : 1AA01113
Serial Number : S1AFJ9BQA01310
Disk Size : 640.1 GB (8.4/137.4/640.1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 1250261615
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ATA8-ACS version 3b
Transfer Mode : SATA/300
Power On Hours : 5791 hod.
Power On Count : 796 krát
Temparature : 33 C (91 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0000h [OFF]
AAM Level : FE00h [OFF]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000000 Počet chyb čtení
03 _85 _85 _11 0000000014D2 Čas na roztočení ploten
04 _99 _99 __0 000000000471 Počet spuštění/zastavení
05 100 100 _10 000000000000 Počet přemapovaných sektorů
07 100 100 _51 000000000000 Počet chybných hledání
08 100 100 _15 000000000000 Čas potřebný na vyhledání
09 _99 _99 __0 00000000169F Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 00000000031C Počet cyklů zapnutí zařízení
0D 100 100 __0 000000000000 Počet pokusů o softvérové opravení chyb při čtení programů z disku
B7 100 100 __0 000000000000 Neznámý
B8 100 100 __0 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BE _68 _60 __0 000020100020 Teplota toku vzduchu
C2 _67 _58 __0 000023100021 Teplota
C3 100 100 __0 0000003BAE9D Počet oprav chybného čtení
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 _97 _97 __0 0000000007B6 Počet chyb v kontrolním součtu UltraDMA
C8 100 100 __0 000000000000 Počet chyb při zápisu sektorů
C9 100 100 __0 000000000000 Počet chyb při čtení programů z disku

-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 00 40 3F FF C8 37 00 10 88 56 02 2A 00 3F 00 00
010: 00 00 00 00 53 31 41 46 4A 39 42 51 41 30 31 33
020: 31 30 20 20 20 20 20 20 00 03 80 00 00 04 31 41
030: 41 30 31 31 31 33 53 41 4D 53 55 4E 47 20 48 44
040: 36 34 32 4A 4A 20 20 20 20 20 20 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 00 02 00 02 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 17 06 00 00 00 4C 00 40
0A0: 00 F8 00 52 74 6B 7F 69 41 33 74 69 BC 41 41 23
0B0: 40 FF 00 3B 00 3B 00 00 FF FE 00 00 FE 00 00 08
0C0: 00 05 00 5D 86 A0 00 01 7A 6F 4A 85 00 00 00 00
0D0: 00 64 00 00 00 00 00 00 50 00 0F 00 07 0A 31 01
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 1C
0F0: 40 1C 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 3F 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 04 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 D0 A5

tohle je OTL

OTL logfile created on: 19.5.2011 20:03:55 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\uzivatel\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18999)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 65,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 85,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 78,12 Gb Total Space | 36,33 Gb Free Space | 46,50% Space Free | Partition Type: NTFS
Drive D: | 518,04 Gb Total Space | 314,74 Gb Free Space | 60,75% Space Free | Partition Type: NTFS
Drive F: | 4,28 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: UZIVATEL-PC | User Name: uzivatel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\uzivatel\Desktop\OTL.exe (OldTimer Tools)
PRC - D:\Program Files\Eset\nod32kui.exe (Eset )
PRC - D:\Program Files\Eset\nod32krn.exe (Eset )
PRC - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
PRC - D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - D:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
PRC - C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Logitech, Inc.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - D:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe ()
PRC - D:\Program Files\Adobe\Photoshop Elements 6.0\apdproxy.exe (Adobe Systems Incorporated)
PRC - D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
PRC - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)


========== Modules (SafeList) ==========

MOD - C:\Users\uzivatel\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (NOD32krn) -- D:\Program Files\Eset\nod32krn.exe (Eset )
SRV - (Hamachi2Svc) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
SRV - (LBTServ) -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (SBSDWSCService) -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (AdobeActiveFileMonitor6.0) -- D:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe ()
SRV - (StarWindServiceAE) -- D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
SRV - (InCDsrv) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)


========== Driver Services (SafeList) ==========

DRV - (AMON) -- C:\Windows\system32\drivers\amon.sys (Eset )
DRV - (nod32drv) -- C:\Windows\system32\drivers\nod32drv.sys ()
DRV - (JRSKD24) -- C:\Windows\System32\JRSKD24.SYS (SoftForum Corporation)
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (atksgt) -- C:\Windows\System32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\Windows\System32\drivers\lirsgt.sys ()
DRV - (LUsbFilt) -- C:\Windows\System32\drivers\LUsbFilt.sys (Logitech, Inc.)
DRV - (LMouFilt) -- C:\Windows\System32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\Windows\System32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (L8042Kbd) -- C:\Windows\System32\drivers\L8042Kbd.sys (Logitech, Inc.)
DRV - (ACEDRV07) -- C:\Windows\System32\drivers\ACEDRV07.sys (Protect Software GmbH)
DRV - (cpuz132) -- C:\Windows\System32\drivers\cpuz132_x32.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (gdrv) -- C:\Windows\gdrv.sys (Windows (R) 2000 DDK provider)
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (RTL8169) -- C:\Windows\System32\drivers\Rtlh86.sys (Realtek Corporation )
DRV - (InCDfs) -- C:\Windows\System32\drivers\InCDfs.sys (Nero AG)
DRV - (incdrm) -- C:\Windows\System32\drivers\InCDRm.sys (Nero AG)
DRV - (InCDPass) -- C:\Windows\System32\drivers\InCDPass.sys (Nero AG)
DRV - (sfvfs02) StarForce Protection VFS Driver (version 2.x) -- C:\Windows\System32\drivers\sfvfs02.sys (Protection Technology (StarForce))
DRV - (sfsync02) StarForce Protection Synchronization Driver (version 2.x) -- C:\Windows\System32\drivers\sfsync02.sys (Protection Technology)
DRV - (sfdrv01a) StarForce Protection Environment Driver (version 1.x.a) -- C:\Windows\System32\drivers\sfdrv01a.sys (Protection Technology (StarForce))
DRV - (sfhlp02) StarForce Protection Helper Driver (version 2.x) -- C:\Windows\System32\drivers\sfhlp02.sys (Protection Technology (StarForce))


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - Reg Error: Key error. File not found

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.09.02 22:55:15 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2011.05.17 23:18:25 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Pomocník pro přihlášení ke službě Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O4 - HKLM..\Run: [Adobe Photo Downloader] D:\Program Files\Adobe\Photoshop Elements 6.0\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [nod32kui] D:\Program Files\Eset\nod32kui.exe (Eset )
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKCU..\Run: [AlcoholAutomount] D:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe (Alcohol Soft Development Team)
O4 - HKCU..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - D:\Program Files\ICQ7.1\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - D:\Program Files\ICQ7.1\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll (Apple Inc.)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Společnost Microsoft)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000033 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000034 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000035 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000036 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000038 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000039 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000040 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000041 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000042 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000043 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\Windows\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\Windows\System32\browseui.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011.05.19 19:59:19 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\uzivatel\Desktop\OTL.exe
[2011.05.19 19:56:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
[2011.05.19 19:55:38 | 001,705,904 | ---- | C] (Crystal Dew World ) -- C:\Users\uzivatel\Desktop\CrystalDiskInfo4_0_0-en.exe
[2011.05.17 23:27:11 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011.05.17 23:27:11 | 000,000,000 | ---D | C] -- C:\Users\uzivatel\AppData\Local\temp
[2011.05.17 23:18:28 | 000,000,000 | ---D | C] -- C:\$RECYCLE.BIN
[2011.05.17 20:38:23 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011.05.17 19:17:44 | 000,000,000 | ---D | C] -- C:\Users\uzivatel\AppData\Local\Adobe
[2011.05.17 18:28:27 | 000,000,000 | ---D | C] -- C:\Users\uzivatel\AppData\Roaming\Malwarebytes
[2011.05.17 18:28:23 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2011.05.17 18:28:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.05.17 18:28:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.05.17 18:28:18 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011.05.17 17:49:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2011.05.17 17:49:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011.05.17 17:49:12 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.05.17 16:39:11 | 000,000,000 | ---D | C] -- C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011.05.17 14:49:57 | 000,012,672 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\drivers\cpuz132_x32.sys
[2011.05.17 14:49:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWMonitor
[2011.05.17 00:19:59 | 000,000,000 | ---D | C] -- C:\Users\uzivatel\Desktop\Ročníkovka
[2011.05.15 23:03:27 | 000,000,000 | ---D | C] -- C:\Users\uzivatel\Desktop\WillowGame
[2011.05.15 21:58:03 | 000,000,000 | -HSD | C] -- C:\ProgramData\SecuROM
[2011.05.15 00:22:32 | 000,000,000 | ---D | C] -- C:\ProgramData\TorrentEasy
[2011.05.10 16:57:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype Extras
[2011.05.10 16:57:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2011.05.10 16:57:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2011.05.10 16:56:57 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2011.05.09 19:24:08 | 000,000,000 | ---D | C] -- C:\Users\uzivatel\Desktop\Matematika pro beznadějné případy
[2011.05.01 13:47:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011.05.01 13:30:24 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2011.05.01 13:30:24 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2011.05.01 13:30:24 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2011.04.28 20:03:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eset
[2011.04.28 20:03:36 | 000,512,096 | ---- | C] (Eset ) -- C:\Windows\System32\drivers\amon.sys
[2011.04.28 20:03:36 | 000,298,104 | ---- | C] (Eset ) -- C:\Windows\System32\imon.dll
[3 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.05.19 20:01:05 | 000,000,398 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{2DFDBB8A-503D-4C8C-A609-C532552EB561}.job
[2011.05.19 19:59:19 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\uzivatel\Desktop\OTL.exe
[2011.05.19 19:56:43 | 000,000,789 | ---- | M] () -- C:\Users\uzivatel\Desktop\CrystalDiskInfo.lnk
[2011.05.19 19:55:39 | 001,705,904 | ---- | M] (Crystal Dew World ) -- C:\Users\uzivatel\Desktop\CrystalDiskInfo4_0_0-en.exe
[2011.05.19 19:47:41 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.05.19 17:17:03 | 000,003,840 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.05.19 17:17:03 | 000,003,840 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.05.19 01:21:07 | 000,000,019 | ---- | M] () -- C:\Windows\popcinfo.dat
[2011.05.18 22:31:06 | 000,002,475 | ---- | M] () -- C:\Users\uzivatel\Desktop\HiJackThis.lnk
[2011.05.18 19:57:28 | 000,135,272 | ---- | M] () -- C:\Users\uzivatel\Desktop\záloha registrů.reg
[2011.05.17 23:18:25 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2011.05.17 18:28:23 | 000,000,704 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.05.17 17:49:13 | 000,000,804 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.05.17 14:49:57 | 000,000,638 | ---- | M] () -- C:\Users\Public\Desktop\CPUID HWMonitor.lnk
[2011.05.17 14:46:03 | 000,270,616 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011.05.17 00:23:53 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2011.05.17 00:23:45 | 000,615,920 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2011.05.17 00:23:45 | 000,604,566 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.05.17 00:23:45 | 000,122,842 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2011.05.17 00:23:45 | 000,107,898 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.05.17 00:18:35 | 000,000,001 | ---- | M] () -- C:\Windows\System32\SI.bin
[2011.05.16 19:27:41 | 000,046,658 | ---- | M] () -- C:\Users\uzivatel\AppData\Roaming\room.dat
[2011.05.15 21:59:49 | 000,348,792 | ---- | M] () -- C:\AnalysisLog.sr0
[2011.05.14 22:49:48 | 000,000,424 | ---- | M] () -- C:\Windows\System32\secustat.dat
[2011.05.14 22:49:47 | 000,001,477 | ---- | M] () -- C:\Windows\System32\secushr.dat
[2011.04.28 20:03:29 | 000,000,137 | ---- | M] () -- C:\Windows\System32\MRT.INI
[2011.04.28 20:00:20 | 000,298,104 | ---- | M] (Eset ) -- C:\Windows\System32\imon.dll
[2011.04.28 20:00:18 | 000,512,096 | ---- | M] (Eset ) -- C:\Windows\System32\drivers\amon.sys
[2011.04.28 20:00:16 | 000,015,424 | ---- | M] () -- C:\Windows\System32\drivers\nod32drv.sys
[2011.04.19 21:32:00 | 005,214,208 | ---- | M] () -- C:\Users\uzivatel\Desktop\23_the_proclaimers_-_im_gonna_be.mp3
[3 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.05.19 19:56:43 | 000,000,789 | ---- | C] () -- C:\Users\uzivatel\Desktop\CrystalDiskInfo.lnk
[2011.05.18 19:57:10 | 000,135,272 | ---- | C] () -- C:\Users\uzivatel\Desktop\záloha registrů.reg
[2011.05.17 18:28:23 | 000,000,704 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.05.17 17:49:13 | 000,000,804 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.05.17 16:39:11 | 000,002,475 | ---- | C] () -- C:\Users\uzivatel\Desktop\HiJackThis.lnk
[2011.05.17 14:49:57 | 000,000,638 | ---- | C] () -- C:\Users\Public\Desktop\CPUID HWMonitor.lnk
[2011.05.17 00:18:35 | 000,000,001 | ---- | C] () -- C:\Windows\System32\SI.bin
[2011.05.15 15:53:58 | 000,046,658 | ---- | C] () -- C:\Users\uzivatel\AppData\Roaming\room.dat
[2011.05.14 22:14:50 | 000,348,792 | ---- | C] () -- C:\AnalysisLog.sr0
[2011.05.02 21:41:08 | 005,214,208 | ---- | C] () -- C:\Users\uzivatel\Desktop\23_the_proclaimers_-_im_gonna_be.mp3
[2011.04.28 20:03:36 | 000,015,424 | ---- | C] () -- C:\Windows\System32\drivers\nod32drv.sys
[2011.04.28 20:03:29 | 000,000,137 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2011.03.20 17:09:57 | 000,138,536 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2011.03.20 16:23:07 | 000,270,408 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2011.03.20 16:23:06 | 000,075,136 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2011.03.14 23:20:25 | 000,000,096 | ---- | C] () -- C:\Users\uzivatel\AppData\Local\fusioncache.dat
[2010.10.25 22:10:18 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2010.10.17 16:31:32 | 000,000,760 | ---- | C] () -- C:\Users\uzivatel\AppData\Roaming\setup_ldm.iss
[2010.10.17 15:51:47 | 000,000,124 | ---- | C] () -- C:\Windows\CONTEXT.INI
[2010.09.17 22:05:59 | 000,048,471 | ---- | C] () -- C:\Windows\System32\ForceBindIP-Uninstaller.exe
[2010.08.26 22:31:39 | 000,043,520 | ---- | C] () -- C:\Windows\System32\CmdLineExt03.dll
[2010.02.06 15:02:19 | 000,021,840 | ---- | C] () -- C:\Windows\System32\SIntfNT.dll
[2010.02.06 15:02:19 | 000,017,212 | ---- | C] () -- C:\Windows\System32\SIntf32.dll
[2010.02.06 15:02:19 | 000,012,067 | ---- | C] () -- C:\Windows\System32\SIntf16.dll
[2010.02.04 17:55:57 | 000,000,019 | ---- | C] () -- C:\Windows\popcinfo.dat
[2010.01.24 21:51:50 | 000,000,525 | ---- | C] () -- C:\Windows\eReg.dat
[2010.01.04 19:59:50 | 000,000,424 | ---- | C] () -- C:\Windows\System32\secustat.dat
[2010.01.04 18:48:55 | 000,001,477 | ---- | C] () -- C:\Windows\System32\secushr.dat
[2010.01.04 18:48:30 | 000,000,025 | ---- | C] () -- C:\Windows\libem.INI
[2009.12.28 12:45:01 | 000,111,932 | ---- | C] () -- C:\Windows\System32\EPPICPrinterDB.dat
[2009.12.28 12:45:01 | 000,031,053 | ---- | C] () -- C:\Windows\System32\EPPICPattern131.dat
[2009.12.28 12:45:01 | 000,027,417 | ---- | C] () -- C:\Windows\System32\EPPICPattern121.dat
[2009.12.28 12:45:01 | 000,026,154 | ---- | C] () -- C:\Windows\System32\EPPICPattern1.dat
[2009.12.28 12:45:01 | 000,024,903 | ---- | C] () -- C:\Windows\System32\EPPICPattern3.dat
[2009.12.28 12:45:01 | 000,021,390 | ---- | C] () -- C:\Windows\System32\EPPICPattern5.dat
[2009.12.28 12:45:01 | 000,020,148 | ---- | C] () -- C:\Windows\System32\EPPICPattern2.dat
[2009.12.28 12:45:01 | 000,011,811 | ---- | C] () -- C:\Windows\System32\EPPICPattern4.dat
[2009.12.28 12:45:01 | 000,004,943 | ---- | C] () -- C:\Windows\System32\EPPICPattern6.dat
[2009.12.28 12:45:01 | 000,001,146 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_DU.dat
[2009.12.28 12:45:01 | 000,001,139 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_PT.dat
[2009.12.28 12:45:01 | 000,001,139 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_BP.dat
[2009.12.28 12:45:01 | 000,001,136 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_ES.dat
[2009.12.28 12:45:01 | 000,001,129 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_FR.dat
[2009.12.28 12:45:01 | 000,001,129 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_CF.dat
[2009.12.28 12:45:01 | 000,001,120 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_IT.dat
[2009.12.28 12:45:01 | 000,001,107 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_GE.dat
[2009.12.28 12:45:01 | 000,001,104 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_EN.dat
[2009.12.28 12:45:01 | 000,000,097 | ---- | C] () -- C:\Windows\System32\PICSDK.ini
[2009.12.20 22:29:51 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2009.12.20 22:29:50 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2009.11.07 00:51:29 | 000,000,617 | ---- | C] () -- C:\Windows\WSST_Screen_Saver.ini
[2009.11.07 00:51:28 | 000,180,224 | ---- | C] () -- C:\Windows\UninstallWSST.exe
[2009.11.02 13:55:28 | 000,000,083 | ---- | C] () -- C:\Windows\wwp.INI
[2009.09.24 14:49:47 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009.09.24 14:49:46 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009.09.17 13:26:52 | 000,007,168 | ---- | C] () -- C:\Windows\System32\ForceBindIP.exe
[2009.06.29 13:00:18 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2009.05.06 14:03:23 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2009.03.29 19:54:07 | 000,024,064 | ---- | C] () -- C:\Users\uzivatel\AppData\Roaming\UserTile.png
[2009.02.24 21:38:14 | 000,000,945 | ---- | C] () -- C:\Windows\disney.ini
[2009.02.08 18:15:25 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2009.02.08 15:51:26 | 000,000,209 | ---- | C] () -- C:\Windows\ODBCINST.INI
[2009.01.30 16:14:38 | 000,003,972 | ---- | C] () -- C:\Windows\System32\drivers\PciBus.sys
[2009.01.30 16:08:46 | 000,067,072 | ---- | C] () -- C:\Users\uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.01.30 10:40:37 | 000,168,448 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2009.01.30 10:40:35 | 000,795,648 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2009.01.30 10:40:35 | 000,130,048 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2009.01.30 10:40:34 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2009.01.30 10:40:33 | 000,057,344 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2009.01.30 10:14:11 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009.01.29 16:26:34 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2008.01.21 08:46:38 | 000,615,920 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2008.01.21 08:46:38 | 000,286,912 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2008.01.21 08:46:38 | 000,122,842 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2008.01.21 08:46:38 | 000,034,724 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2007.06.21 08:34:08 | 000,203,328 | R--- | C] () -- C:\Windows\GSetup.exe
[2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:47:37 | 000,270,616 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 12:33:01 | 000,604,566 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,107,898 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 12:25:26 | 000,557,568 | ---- | C] () -- C:\Windows\System32\hpotscl1.dll
[2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2002.08.29 18:33:56 | 000,319,488 | R--- | C] () -- C:\Windows\System32\MafiaSetup.exe
[2002.08.29 18:33:56 | 000,319,488 | R--- | C] () -- C:\Users\uzivatel\AppData\Roaming\MafiaSetup.exe

========== LOP Check ==========

[2011.05.08 14:18:10 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\AIMP
[2010.06.27 21:50:38 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\BSplayer
[2009.02.04 22:54:08 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\BSplayer Pro
[2010.02.16 11:44:33 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\ClientKeeper
[2009.02.06 23:25:13 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\DAEMON Tools
[2009.05.11 00:17:07 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\DAEMON Tools Lite
[2009.05.05 20:19:06 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\DAEMON Tools Pro
[2010.06.21 20:02:15 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\EPSON
[2009.02.07 23:48:22 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\GHISLER
[2010.04.29 15:05:01 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\ICQ
[2010.10.17 16:31:38 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\Leadertech
[2011.04.08 22:41:04 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\LolClient
[2011.05.18 22:32:01 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\Mumble
[2010.08.21 18:17:44 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\My Battle for Middle-earth(tm) II Files
[2009.02.02 21:27:14 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\Opera
[2009.03.29 19:54:07 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\PeerNetworking
[2011.03.20 16:23:03 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\PunkBuster
[2010.11.26 00:15:02 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\QIP
[2009.06.30 23:14:28 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\SPORE
[2011.03.20 17:09:41 | 000,000,000 | ---D | M] -- C:\Users\uzivatel\AppData\Roaming\Ubisoft
[2011.05.19 02:06:00 | 000,032,592 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011.05.19 20:01:05 | 000,000,398 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{2DFDBB8A-503D-4C8C-A609-C532552EB561}.job

========== Purity Check ==========



< End of report >

Reklama
Pornobus
nováček
Příspěvky: 25
Registrován: květen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod Pornobus » 19 kvě 2011 20:13

A tohle je Extras

OTL Extras logfile created on: 19.5.2011 20:03:55 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\uzivatel\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18999)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 65,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 85,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 78,12 Gb Total Space | 36,33 Gb Free Space | 46,50% Space Free | Partition Type: NTFS
Drive D: | 518,04 Gb Total Space | 314,74 Gb Free Space | 60,75% Space Free | Partition Type: NTFS
Drive F: | 4,28 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: UZIVATEL-PC | User Name: uzivatel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- D:\Program Files\Opera\Opera.exe (Opera Software)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = Opera.HTML] -- D:\Program Files\Opera\Opera.exe (Opera Software)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
https [open] -- "D:\Program Files\Opera\opera.exe" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-12221914-3933522934-587034535-1000]
"EnableNotifications" = 0
"EnableNotificationsRef" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"D:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe" = D:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3
"C:\Users\uzivatel\AppData\Local\Opera\Opera\temporary_downloads\facebook-pic00005267.exe" = c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor
"c:\windows\temp\snke.exe" = c:\windows\smss.exe:*:Enabled:Windows System Controler
"C:\Users\uzivatel\AppData\Roaming\FlashgetSetup\fgmini.exe" = C:\Users\uzivatel\AppData\Roaming\FlashgetSetup\fgmini.exe:*:Enabled:fg_ol_silent


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{08936500-941E-4004-972E-AA47BB541AD6}" = lport=6885 | protocol=6 | dir=in | name=league of legends launcher |
"{1B0A54D9-1947-4518-8AC3-9D05073BB417}" = lport=8396 | protocol=6 | dir=in | name=league of legends launcher |
"{7A60C2BE-7954-4C4F-8F4B-65A166303EC9}" = lport=6952 | protocol=17 | dir=in | name=league of legends launcher |
"{841B5F40-EB1D-4B5C-AD0A-05C9A641AD3F}" = lport=6952 | protocol=6 | dir=in | name=league of legends launcher |
"{BF20A56F-98E1-4135-B0C9-CA994F9FDC0F}" = lport=8396 | protocol=17 | dir=in | name=league of legends launcher |
"{CD9288F5-B55E-4418-AD2C-32263DF90678}" = lport=8397 | protocol=17 | dir=in | name=league of legends launcher |
"{D57C0C40-13BF-4FB2-ADAA-F337286DC253}" = lport=6885 | protocol=17 | dir=in | name=league of legends launcher |
"{EA66F957-3FC4-4E96-B845-D37F84EE27E6}" = lport=8397 | protocol=6 | dir=in | name=league of legends launcher |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01710444-291C-4806-A730-36445080E795}" = protocol=17 | dir=in | app=d:\program files\assassin's creed brotherhood\uplaybrowser.exe |
"{03E83C84-B1EB-4864-BCE7-EECF1F548DE4}" = protocol=17 | dir=in | app=d:\program files\opera\opera.exe |
"{077A49B7-9D24-47D3-B840-9E4FE7691E26}" = protocol=17 | dir=in | app=d:\program files\assassin's creed brotherhood\acbsp.exe |
"{0D233CCD-AD8A-4763-BF29-E69ABBCED2C4}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{1C085027-4DD1-4A24-B3DA-2B928117CF8A}" = dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{1CCEB59F-24E7-4554-A41E-9A6ACF14494D}" = protocol=6 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{1CED4B58-D085-48D6-BACA-E98AF447F601}" = protocol=17 | dir=in | app=d:\program files\icq7.1\icq.exe |
"{28248967-0DC0-44E7-9791-6FFBF0202334}" = protocol=6 | dir=in | app=d:\program files\opera\opera.exe |
"{2B38B721-D84F-4ED7-BE58-51445542A14E}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{2C0DC51D-40D2-4763-9113-6F26B232B41D}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{3918CEA1-25CB-4066-B61C-A368F079190B}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{46C33D28-8757-4156-979F-39D080D15945}" = protocol=17 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{486646AF-A3D4-4D95-80F1-7AF2CF247121}" = protocol=6 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{524944DB-F709-4FD4-A6E9-083ACCFA8408}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{53161E5A-82D7-4AD1-9D46-49154D3066AB}" = protocol=6 | dir=in | app=d:\program files\icq7.1\icq.exe |
"{54D1BF97-2DAB-48C5-8688-66874A6320C0}" = protocol=17 | dir=in | app=d:\program files\icq7.1\icq.exe |
"{5A4B0566-4C45-448C-A81C-EA701EFA796E}" = protocol=6 | dir=in | app=d:\program files\assassin's creed brotherhood\uplaybrowser.exe |
"{5E5149E2-EB8C-4094-ADC2-A861C8CD7619}" = protocol=6 | dir=in | app=d:\program files\assassin's creed brotherhood\assassinscreedbrotherhood.exe |
"{63D6D3C2-37BF-449C-817B-1CB31BA624A2}" = protocol=17 | dir=in | app=d:\program files\icq7.1\aolload.exe |
"{7757BBE8-D3EE-4F27-B8C2-AFB79105E3FA}" = protocol=6 | dir=in | app=d:\program files\icq7.1\aolload.exe |
"{77FBC969-69C3-40FB-ACC1-AA3B1967F762}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{8135D33B-C52C-495E-9D63-3CB56BDE0EE5}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{831A9CBA-A510-4CB2-A28C-592E09749715}" = protocol=17 | dir=in | app=d:\program files\assassin's creed brotherhood\assassinscreedbrotherhood.exe |
"{8EB15D57-1147-4331-9EF9-16529FD02914}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{9504CD5A-B8DE-4762-9EA9-60857BBFF0C7}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{95176B09-F7ED-4465-BAE6-AB0CB2D89BD9}" = protocol=17 | dir=in | app=d:\program files\opera\opera.exe |
"{96A38F1C-78A5-4D77-A179-7CC761C8B961}" = protocol=6 | dir=in | app=d:\program files\assassin's creed brotherhood\acbsp.exe |
"{96C72FCE-FAAC-4D0A-B8E2-5FDC4EF62DBD}" = protocol=17 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{9C3BE056-D725-4EF6-BA87-EF31553394CD}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{A127A203-19EF-4247-98FD-18C1FD8D7227}" = protocol=6 | dir=in | app=d:\program files\icq7.1\icq.exe |
"{A45206D7-D071-4364-B710-82F0E4E65E4F}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{AAC9255F-03E7-42DB-B68D-85EF2255DC0F}" = protocol=6 | dir=in | app=d:\program files\opera\opera.exe |
"{ADECC4B4-2B9F-4251-8D33-821820F38534}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AE607C4C-FD8A-4F01-8890-87D8CF98AE16}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{B62D98F4-5E53-49B4-934A-8ADBB0313BC8}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B6DB9FCE-192F-4719-8739-C781EA736DD3}" = protocol=6 | dir=in | app=d:\program files\assassin's creed brotherhood\acbmp.exe |
"{C4FE6633-99A1-442B-9DE5-2E79FE45786D}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{D1221998-0261-4165-AA78-27543A48A3C9}" = protocol=6 | dir=in | app=d:\program files\icq7.1\aolload.exe |
"{D5F40E32-CC81-4364-B2C5-87894E292D0F}" = protocol=17 | dir=in | app=d:\program files\assassin's creed brotherhood\acbmp.exe |
"{DDE1F0C6-5743-496D-B58F-F3DBD7F9F04A}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{F5D2A68D-AEBE-4DA4-80DE-B6F5A967448C}" = protocol=17 | dir=in | app=d:\program files\icq7.1\aolload.exe |
"TCP Query User{0D49ED9C-1B6D-4620-B3E6-A36ED3A37431}C:\windows\system32\java.exe" = protocol=6 | dir=in | app=c:\windows\system32\java.exe |
"TCP Query User{12CF429D-39D3-415B-A02F-A2489B6726B4}D:\users\uzivatel\desktop\uoam.exe" = protocol=6 | dir=in | app=d:\users\uzivatel\desktop\uoam.exe |
"TCP Query User{1888E7CC-8D0D-4886-B50C-4CF80775A08D}C:\program files\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe |
"TCP Query User{2A988E19-7695-4E7D-A066-355C4423A4CA}D:\program files\heroes of newerth\hon.exe" = protocol=6 | dir=in | app=d:\program files\heroes of newerth\hon.exe |
"TCP Query User{2AFAEB31-A477-41A9-9F58-2F13E459205F}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{420CB053-D819-48BB-A97E-CC80F276C733}D:\program files\heroes of newerth\hon.exe" = protocol=6 | dir=in | app=d:\program files\heroes of newerth\hon.exe |
"TCP Query User{4C50A154-17E3-412A-A9E4-9D050AC5CF00}D:\program files\qip\qip.exe" = protocol=6 | dir=in | app=d:\program files\qip\qip.exe |
"TCP Query User{614D97D7-B1CA-430F-B2A0-C6515DB9D399}D:\složky\ranked gaming client\rgc.exe" = protocol=6 | dir=in | app=d:\složky\ranked gaming client\rgc.exe |
"TCP Query User{C41133FA-2F86-4AD8-86DB-4AAF3B5F1963}D:\program files\qip\qip.exe" = protocol=6 | dir=in | app=d:\program files\qip\qip.exe |
"TCP Query User{E228C6CD-7094-458B-80CB-DA0769124C46}D:\program files\2k games\gearbox software\borderlands\binaries\borderlands.exe" = protocol=6 | dir=in | app=d:\program files\2k games\gearbox software\borderlands\binaries\borderlands.exe |
"TCP Query User{FA1F5DB2-7859-4F8D-9C31-55FE05437B49}D:\program files\assassin's creed brotherhood\acbsp.exe" = protocol=6 | dir=in | app=d:\program files\assassin's creed brotherhood\acbsp.exe |
"UDP Query User{0A2EF34B-FC13-4258-A9ED-8ED7275363A2}D:\složky\ranked gaming client\rgc.exe" = protocol=17 | dir=in | app=d:\složky\ranked gaming client\rgc.exe |
"UDP Query User{0D3187C7-863A-4E76-A432-80903FAA844E}C:\windows\system32\java.exe" = protocol=17 | dir=in | app=c:\windows\system32\java.exe |
"UDP Query User{0E088897-40BD-4992-9C74-53191CA39540}D:\program files\qip\qip.exe" = protocol=17 | dir=in | app=d:\program files\qip\qip.exe |
"UDP Query User{1336E313-8EAC-420C-969F-8BAE63D6CC8C}D:\program files\assassin's creed brotherhood\acbsp.exe" = protocol=17 | dir=in | app=d:\program files\assassin's creed brotherhood\acbsp.exe |
"UDP Query User{2CB84119-334E-463B-BFED-12035997D6A7}D:\program files\qip\qip.exe" = protocol=17 | dir=in | app=d:\program files\qip\qip.exe |
"UDP Query User{3E6C0188-5630-4254-899C-AE1457F43C70}D:\users\uzivatel\desktop\uoam.exe" = protocol=17 | dir=in | app=d:\users\uzivatel\desktop\uoam.exe |
"UDP Query User{68973827-EE49-449E-9106-CE845F71F880}C:\program files\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe |
"UDP Query User{96496FC4-69E7-4281-8DB4-8DDAB403366A}D:\program files\2k games\gearbox software\borderlands\binaries\borderlands.exe" = protocol=17 | dir=in | app=d:\program files\2k games\gearbox software\borderlands\binaries\borderlands.exe |
"UDP Query User{A47A042B-B4AF-49D4-9440-D0F989A5A8A3}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{AFCD9DD9-5F0B-4993-A23E-03E55CE1D110}D:\program files\heroes of newerth\hon.exe" = protocol=17 | dir=in | app=d:\program files\heroes of newerth\hon.exe |
"UDP Query User{DF091192-75BD-4353-ADE9-C55AA961A8D0}D:\program files\heroes of newerth\hon.exe" = protocol=17 | dir=in | app=d:\program files\heroes of newerth\hon.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = CENZURA 2.5.7
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = DVD Suite
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java(TM) 6 Update 24
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{491DFBAA-77EF-4B06-8676-2FC66EEE049A}" = LogMeIn Hamachi
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{52B65911-1559-4ED5-9461-46957FDD48CD}" = Borderlands
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3
"{66FF4C48-0083-4E60-8556-B883AB200091}" = Heroes of Might and Magic V: Hammers of Fate
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{71BFC818-0CED-42D6-9C87-5142918957EE}" = ICQ7.1
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7F3AD00A-1819-4B15-BB7D-08B3586336D7}" = 3DMark06
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{87C2248A-C7DD-49ED-9BCD-B312A9D0819E}" = Epson Easy Photo Print 2
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{89C89156-A70F-4C6D-9CAE-2EA71F1396FE}" = Garena
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_HOMESTUDENTR_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_HOMESTUDENTR_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_HOMESTUDENTR_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_HOMESTUDENTR_{294B4278-CF7B-40B9-86A1-2D3FF0C2C524}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_HOMESTUDENTR_{10EC59E5-9BCE-4884-BB1A-E28627220232}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_HOMESTUDENTR_{E12F9D31-4025-4BC6-B1B2-AB262C5580B0}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_HOMESTUDENTR_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9901E703-D169-7139-1EA3-11AA788D09E6}" = EA Download Manager UI
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B4E6CB9-E54D-47F7-A414-E2D5740E1029}" = Nero 7 Essentials
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1029-7B44-A94000000001}" = Adobe Reader 9.4.4 - Czech
"{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars
"{BD86C297-41C7-4DB5-82C4-98DE3399A2EF}" = Asistent pro přihlášení ke službě Windows Live
"{BE4BA698-8533-4F77-9559-C7F3F78C0B05}" = Assassin's Creed Brotherhood
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F54AC413-D2C6-4A24-B324-370C223C6250}" = Adobe Photoshop Elements 6.0
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop Elements 6" = Adobe Photoshop Elements 6.0
"AIMP2" = AIMP2
"BSPlayerf" = BS.Player FREE
"CCleaner" = CCleaner
"com.ea.Vault.919CACB699904AC5D41B606703500DD39747C02D.1" = EA Download Manager UI
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.15
"CrystalDiskInfo_is1" = CrystalDiskInfo 4.0.0
"EAX Unified" = EAX Unified
"EPSON Scanner" = EPSON Scan
"Epson Stylus SX210_SX410_TX210_TX410 Uživatelská příručka" = Epson Stylus SX210_SX410_TX210_TX410 Manuál
"EPSON SX410 Series" = EPSON SX410 Series Printer Uninstall
"ForceBindIP" = ForceBindIP
"Free CD to MP3 Converter" = Free CD to MP3 Converter
"Free YouTube to Mp3 Converter_is1" = Free YouTube to Mp3 Converter version 2.1
"GCFScape_is1" = GCFScape 1.4.0
"Google Chrome" = Google Chrome
"Hamachi" = Hamachi 1.0.2.5
"HanSetup" = ??? ?? ????
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"hon" = Heroes of Newerth
"Insaniquarium Deluxe 1.0" = Insaniquarium Deluxe 1.0
"KLiteCodecPack_is1" = K-Lite Codec Pack 4.5.3 (Full)
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Mp3 Knife_is1" = Mp3 Knife 3.2
"Mumble" = Mumble and Murmur
"NOD32" = Antivirový systém NOD32
"NVIDIA Drivers" = NVIDIA Drivers
"Opera 11.11.2109" = Opera 11.11
"Plants vs. Zombies" = Plants vs. Zombies
"PunkBusterSvc" = PunkBuster Services
"rajče.net_is1" = rajče beta53 sestavení 101
"TightVNC_is1" = TightVNC 1.3.9
"Totalcmd" = Total Commander (Remove or Repair)
"WinRAR archiver" = WinRAR
"Wise Registry Cleaner_is1" = Wise Registry Cleaner Free 5.02
"WM Converter 2.0" = WM Converter 2.0
"XecureCK" = ClientKeeper KeyPro with E2E for 32bit
"YouTube Downloader_is1" = CENZURA 2.5

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"QIP 2005" = QIP 2005 8095
"QUICKMEDIACONVERTER" = Player

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 19.5.2011 13:56:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 13:57:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 13:58:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 13:59:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 14:00:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 14:01:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 14:02:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 14:03:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 14:04:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

Error - 19.5.2011 14:05:34 | Computer Name = uzivatel-PC | Source = SDWinSec.exe | ID = 0
Description =

[ DFS Replication Events ]
Error - 15.5.2010 18:18:37 | Computer Name = uzivatel-PC | Source = DFSR | ID = 6104
Description = Službě Replikace distribuovaného systému souborů (DFSR) se nepodařilo
zaregistrovat zprostředkovatele WMI. Replikace bude zakázána do vyřešení problému.



Další
informace: Chyba: 2147942527 (Uvedená procedura nebyla nalezena.)

Error - 15.5.2010 18:18:37 | Computer Name = uzivatel-PC | Source = DFSR | ID = 6104
Description = Službě Replikace distribuovaného systému souborů (DFSR) se nepodařilo
zaregistrovat zprostředkovatele WMI. Replikace bude zakázána do vyřešení problému.



Další
informace: Chyba: 2147942527 (Uvedená procedura nebyla nalezena.)

[ OSession Events ]
Error - 5.3.2009 17:11:11 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6331.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 4891
seconds with 4320 seconds of active time. This session ended with a crash.

Error - 5.3.2009 17:12:42 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6331.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 82
seconds with 60 seconds of active time. This session ended with a crash.

Error - 15.4.2009 11:54:20 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6331.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 7
seconds with 0 seconds of active time. This session ended with a crash.

Error - 24.6.2010 4:50:28 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6535.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 698
seconds with 60 seconds of active time. This session ended with a crash.

Error - 7.10.2010 14:35:48 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6541.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 8
seconds with 0 seconds of active time. This session ended with a crash.

Error - 17.5.2011 13:11:24 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1483
seconds with 720 seconds of active time. This session ended with a crash.

Error - 17.5.2011 13:11:57 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1
seconds with 0 seconds of active time. This session ended with a crash.

Error - 17.5.2011 13:12:13 | Computer Name = uzivatel-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 10
seconds with 0 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 18.5.2011 13:20:12 | Computer Name = uzivatel-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek \Device\HarddiskVolume1 spustit nástroj chkdsk.

Error - 18.5.2011 13:20:12 | Computer Name = uzivatel-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek \Device\HarddiskVolume1 spustit nástroj chkdsk.

Error - 18.5.2011 13:27:45 | Computer Name = uzivatel-PC | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 172.16.10.177 pro síťovou kartu s adresou 001FD0AC4128
byla serverem DHCP 172.16.111.1 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error - 18.5.2011 13:31:38 | Computer Name = uzivatel-PC | Source = Tcpip | ID = 4199
Description = Systém zjistil konflikt adresy IP 172.16.10.177 se systémem, jehož
síťová hardwarová adresa je 00-1A-9F-91-06-AA. Síťové operace v systému mohou být
přerušeny.

Error - 18.5.2011 13:35:02 | Computer Name = uzivatel-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (19:32:02, 18.5.2011) bylo neočekávané.

Error - 18.5.2011 13:38:29 | Computer Name = uzivatel-PC | Source = Tcpip | ID = 4199
Description = Systém zjistil konflikt adresy IP 172.16.10.177 se systémem, jehož
síťová hardwarová adresa je 00-1A-9F-91-06-AA. Síťové operace v systému mohou být
přerušeny.

Error - 18.5.2011 13:44:41 | Computer Name = uzivatel-PC | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 172.16.111.83 pro síťovou kartu s adresou 001FD0AC4128
byla serverem DHCP 172.16.10.1 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error - 18.5.2011 15:46:35 | Computer Name = uzivatel-PC | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 172.16.10.177 pro síťovou kartu s adresou 001FD0AC4128
byla serverem DHCP 172.16.111.1 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error - 18.5.2011 15:46:36 | Computer Name = uzivatel-PC | Source = Tcpip | ID = 4199
Description = Systém zjistil konflikt adresy IP 172.16.10.177 se systémem, jehož
síťová hardwarová adresa je 00-1A-9F-91-06-AA. Síťové operace v systému mohou být
přerušeny.

Error - 19.5.2011 13:47:44 | Computer Name = uzivatel-PC | Source = Tcpip | ID = 4199
Description = Systém zjistil konflikt adresy IP 172.16.10.177 se systémem, jehož
síťová hardwarová adresa je 00-1A-9F-91-06-AA. Síťové operace v systému mohou být
přerušeny.


< End of report >

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43297
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod jaro3 » 19 kvě 2011 21:58

Tu Garenu dej pryč , odinstaluj , pokus si tak udělal , smažeme jen ten klíč..

Odinstaluj , nebo vyřaď rez. ochranu Spybot , doporučuji odinstalovat...


Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - Reg Error: Key error. File not found
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
[2011.05.17 00:23:45 | 000,615,920 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2011.05.17 00:23:45 | 000,604,566 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.05.17 00:23:45 | 000,122,842 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2011.05.17 00:23:45 | 000,107,898 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2008.01.21 08:46:38 | 000,615,920 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2008.01.21 08:46:38 | 000,286,912 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2008.01.21 08:46:38 | 000,122,842 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2008.01.21 08:46:38 | 000,034,724 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2006.11.02 12:33:01 | 000,604,566 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,107,898 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
c:\windows\Tasks\*.job
C:\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\popcinfo.dat
C:\Windows\System32\ezsidmv.dat
C:\Windows\System32\secushr.dat
C:\Users\uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{89C89156-A70F-4C6D-9CAE-2EA71F1396FE}" =-

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
C:\Windows\System32\SI.bin
C:\Users\uzivatel\AppData\Roaming\setup_ldm.iss
C:\Windows\System32\secustat.dat

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/40 , nebo 1/40. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Pornobus
nováček
Příspěvky: 25
Registrován: květen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod Pornobus » 19 kvě 2011 22:01

takže garenu už si ani do PC nemám nikdy stahovat?...já ji tak nějak pořebuju..ale pokud ji tu nemám mít, obejdu se bez ní

Pornobus
nováček
Příspěvky: 25
Registrován: květen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod Pornobus » 19 kvě 2011 22:10

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2C688203-7EB3-4327-9995-1CB417BA23F9} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C688203-7EB3-4327-9995-1CB417BA23F9}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
C:\Windows\System32\perfh005.dat moved successfully.
C:\Windows\System32\perfh009.dat moved successfully.
C:\Windows\System32\perfc005.dat moved successfully.
C:\Windows\System32\perfc009.dat moved successfully.
File C:\Windows\System32\perfh005.dat not found.
C:\Windows\System32\perfi005.dat moved successfully.
File C:\Windows\System32\perfc005.dat not found.
C:\Windows\System32\perfd005.dat moved successfully.
File C:\Windows\System32\perfh009.dat not found.
C:\Windows\System32\perfi009.dat moved successfully.
File C:\Windows\System32\perfc009.dat not found.
C:\Windows\System32\perfd009.dat moved successfully.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
C:\WINDOWS\D56B0E274A3E46C9B5C1D93D580C099C.TMP folder moved successfully.
C:\WINDOWS\E4D153288C89484BB9AAF5BE9EA6D01C.TMP folder moved successfully.
C:\WINDOWS\msdownld.tmp folder moved successfully.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
c:\windows\Tasks\User_Feed_Synchronization-{2DFDBB8A-503D-4C8C-A609-C532552EB561}.job moved successfully.
File\Folder C:\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
C:\Windows\popcinfo.dat moved successfully.
C:\Windows\System32\ezsidmv.dat moved successfully.
C:\Windows\System32\secushr.dat moved successfully.
C:\Users\uzivatel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\\{89C89156-A70F-4C6D-9CAE-2EA71F1396FE} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89C89156-A70F-4C6D-9CAE-2EA71F1396FE}\ not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 41620 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: uzivatel
->Temp folder emptied: 42592932 bytes
->Temporary Internet Files folder emptied: 7989400 bytes
->Java cache emptied: 67904927 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 1931443 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 536006 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 15755215 bytes

Total Files Cleaned = 130,00 mb


OTL by OldTimer - Version 3.2.22.3 log created on 05192011_220400

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...


Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43297
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod jaro3 » 19 kvě 2011 22:19

Garena je děravý program , který využívají někteří pro aplikace havěti ..Stále se zdokonaluje , ale pořád se radši radí ji odinstalovat a smazat po ní stopy...

Jak to vypadá s PC?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Pornobus
nováček
Příspěvky: 25
Registrován: květen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod Pornobus » 19 kvě 2011 22:21

no zatím se nic neděje, radši však ještě forum uzavírat nebudu...pořádně to projedu až se vrátím příští víkend

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43297
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod jaro3 » 19 kvě 2011 22:23

Jo , kouknu na to ještě zítra , dnes musím pomalu končit.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Pornobus
nováček
Příspěvky: 25
Registrován: květen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod Pornobus » 19 kvě 2011 22:28

tak díky moc, snad už to bude v pohodě

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43297
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod jaro3 » 20 kvě 2011 09:12

Stáhni si Memtest:


Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.


Překontroluj usazení Graf. karty ve slotu, máš-li možnost , na zkoušku GK vyměň.
Zkus i jiné ovladače GK.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Pornobus
nováček
Příspěvky: 25
Registrován: květen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu

Příspěvekod Pornobus » 05 čer 2011 15:52

tak jo a pokud se nějaké problémy objeví?...tak nějak už jich mám přes 60 a to nejsem u konce


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 128 hostů