Prosím o kontrolu LOGu z HJT a MbAM:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:53:27, on 22.5.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
H:\WINDOWS\System32\smss.exe
H:\WINDOWS\system32\winlogon.exe
H:\WINDOWS\system32\services.exe
H:\WINDOWS\system32\lsass.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\system32\spoolsv.exe
H:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
H:\Program Files\Bonjour\mDNSResponder.exe
H:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
H:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
H:\WINDOWS\system32\nvsvc32.exe
H:\WINDOWS\system32\PnkBstrA.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\Explorer.EXE
H:\WINDOWS\system32\wscntfy.exe
H:\Program Files\Winamp\winampa.exe
H:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
H:\WINDOWS\RTHDCPL.EXE
H:\WINDOWS\system32\RUNDLL32.EXE
H:\WINDOWS\system32\ctfmon.exe
H:\Program Files\DAEMON Tools Lite\daemon.exe
H:\WINDOWS\System32\svchost.exe
H:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
H:\WINDOWS\system32\msiexec.exe
H:\WINDOWS\system32\wuauclt.exe
H:\Program Files\Mozilla Firefox\firefox.exe
H:\Program Files\Mozilla Firefox\plugin-container.exe
H:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com?o=15573&l=dis
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {a4d09ede-8a9c-4090-a54d-5ada4f7fff35} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - H:\PROGRA~1\MICROS~4\Office12\GRA8E1~1.DLL
O2 - BHO: (no name) - {a4d09ede-8a9c-4090-a54d-5ada4f7fff35} - (no file)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: (no name) - {a4d09ede-8a9c-4090-a54d-5ada4f7fff35} - (no file)
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE H:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [WinampAgent] "H:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [QuickTime Task] "H:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [GrooveMonitor] "H:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] H:\WINDOWS\ASScrProlog.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE H:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "H:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ICQ] ~"H:\Program Files\ICQ6.5\ICQ.exe" silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = H:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://H:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - H:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - H:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/sho ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - H:\PROGRA~1\MICROS~4\Office12\GR99D3~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - H:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - H:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - H:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - H:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - H:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Capture Device Service - InterVideo Inc. - H:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - H:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - H:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - H:\WINDOWS\system32\PnkBstrA.exe
--
End of file - 6246 bytes
Malwarebytes' Anti-Malware 1.50.1.1100
http://www.malwarebytes.org
Verze databáze: 6639
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
22.5.2011 11:12:16
vysledek z testu
Typ kontroly: Rychlý test
Testované objekty: 141673
Uplynulý čas: 2 minut, 13 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 1
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované hodnoty v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run\NVIDIA driver monitor (Backdoor.Agent) -> Value: NVIDIA driver monitor -> No action taken.
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)
Pomalý počítač - PROSíM o kontrolu LOGU + Vyřešeno
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU
Fixni:
- Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Kód: Vybrat vše
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com?o=15573&l=dis
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {a4d09ede-8a9c-4090-a54d-5ada4f7fff35} - (no file)
O2 - BHO: (no name) - {a4d09ede-8a9c-4090-a54d-5ada4f7fff35} - (no file)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: (no name) - {a4d09ede-8a9c-4090-a54d-5ada4f7fff35} - (no file)
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O4 - HKLM\..\Run: [WinampAgent] "H:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [QuickTime Task] "H:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/sho ... wflash.cab
- Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
-
- Level 1
- Příspěvky: 68
- Registrován: prosinec 09
- Bydliště: České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU
Ahoj, vše jsem fixnul. Bohužel se mi po celý den nedaří spustit ComboFix - vžy zamrzne - nechal jsem ho až dvě hodiny a nenaskočilo prohlížení fází, jen se instalovala konzole pro zotavení - pořád dokola.... Smazal jsem zbytek anivirů (AVG) a nasadil NOD32 a když dám prohlídku NODem, tak mi to taky zamrzne... Je to celé nějaké divné... Prosím jak dál - jsem v koncích???? LOG z MbAM dodám za chvilku...., někam se mi při čištění ztratil...
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU
Udělej to v nouzáku. Pokud to nepůjde ani tak, zkusíme něco jiného
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
-
- Level 1
- Příspěvky: 68
- Registrován: prosinec 09
- Bydliště: České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU
OK, vyzkouším a napíši...
-
- Level 1
- Příspěvky: 68
- Registrován: prosinec 09
- Bydliště: České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU
Takže ComboFix nejde spustit nikde ni v nouzáku...
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU
Dobře
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
Stáhni si OTL
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
Stáhni si OTL
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
-
- Level 1
- Příspěvky: 68
- Registrován: prosinec 09
- Bydliště: České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU +
LOG z OTL - otl.txt:
OTL logfile created on: 23.5.2011 23:30:29 - Run 1
OTL by OldTimer - Version 3.2.23.0 Folder = H:\Documents and Settings\wokatej\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,25 Gb Total Physical Memory | 2,82 Gb Available Physical Memory | 86,66% Memory free
5,09 Gb Paging File | 4,83 Gb Available in Paging File | 94,93% Paging File free
Paging file location(s): h:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = H: | %SystemRoot% = H:\WINDOWS | %ProgramFiles% = H:\Program Files
Drive H: | 698,63 Gb Total Space | 426,50 Gb Free Space | 61,05% Space Free | Partition Type: NTFS
Computer Name: WOKATEJ-11AC7F3 | User Name: wokatej | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - H:\Documents and Settings\wokatej\Plocha\OTL.exe (OldTimer Tools)
PRC - H:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
PRC - H:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
PRC - H:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - H:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (InterVideo Inc.)
========== Modules (SafeList) ==========
MOD - H:\Documents and Settings\wokatej\Plocha\OTL.exe (OldTimer Tools)
MOD - H:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (wuauserv) -- File not found
SRV - (EhttpSrv) -- H:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe (ESET)
SRV - (ekrn) -- H:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
SRV - (Capture Device Service) -- H:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (InterVideo Inc.)
========== Driver Services (SafeList) ==========
DRV - (eamon) -- H:\WINDOWS\system32\drivers\eamon.sys (ESET)
DRV - (ehdrv) -- H:\WINDOWS\system32\drivers\ehdrv.sys (ESET)
DRV - (epfw) -- H:\WINDOWS\system32\drivers\epfw.sys (ESET)
DRV - (Epfwndis) -- H:\WINDOWS\system32\drivers\epfwndis.sys (ESET)
DRV - (epfwtdi) -- H:\WINDOWS\system32\drivers\epfwtdi.sys (ESET)
DRV - (sptd) -- H:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- H:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (RTLE8023xp) -- H:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (amdide) -- H:\WINDOWS\system32\DRIVERS\amdide.sys (Advanced Micro Devices)
DRV - (AmdPPM) -- H:\WINDOWS\system32\drivers\AmdPPM.sys (Advanced Micro Devices)
DRV - (sfdrv01) StarForce Protection Environment Driver (version 1.x) -- H:\WINDOWS\System32\drivers\sfdrv01.sys (Protection Technology)
DRV - (sfhlp02) StarForce Protection Helper Driver (version 2.x) -- H:\WINDOWS\System32\drivers\sfhlp02.sys (Protection Technology)
DRV - (sfsync02) StarForce Protection Synchronization Driver (version 2.x) -- H:\WINDOWS\System32\drivers\sfsync02.sys (Protection Technology)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.microsoft.com/isapi/redir.dl ... date&O1=b1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = H:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - H:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "softonic.com4 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search?query={searchTerms}&invocationType=tb50-ff-winamp-chromesbox-en-us&tb_uuid=20110521192950031&tb_oid=21-05-2011&tb_mrud=21-05-2011&query="
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.7
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.2.1
FF - prefs.js..extensions.enabledItems: {EEE6C361-6118-11DC-9C72-001320C79847}:1.0.0.10
FF - prefs.js..extensions.enabledItems: {0974848a-b5bc-49f2-9778-307742b4a55d}:3.2.5.2
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.14.1
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2431232&q="
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "chrome://browser-region/locale/region.properties"
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: h:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.09.01 23:16:41 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Components: H:\Program Files\Mozilla Firefox\components [2011.05.22 09:42:49 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Plugins: H:\Program Files\Mozilla Firefox\plugins [2011.05.21 21:30:03 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: H:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011.05.22 16:49:30 | 000,000,000 | ---D | M]
[2009.07.30 18:05:36 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Extensions
[2009.07.30 18:05:36 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2011.05.22 11:09:32 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions
[2011.02.03 20:33:15 | 000,000,000 | ---D | M] (softonic.com4 Community Toolbar) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{0974848a-b5bc-49f2-9778-307742b4a55d}
[2011.05.21 21:29:56 | 000,000,000 | ---D | M] (Winamp Toolbar) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2010.06.30 23:01:13 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.08.16 18:40:39 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.03.01 20:01:23 | 000,000,000 | ---D | M] (SweetIM Toolbar for Firefox) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
[2011.02.03 20:33:16 | 000,000,000 | ---D | M] (Conduit Engine) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\engine@conduit.com
[2011.05.21 21:31:42 | 000,002,354 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\aol-web-search.xml
[2011.05.22 09:23:33 | 000,002,395 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\askcom.xml
[2010.06.08 11:28:50 | 000,000,929 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\conduit.xml
[2011.05.19 19:58:11 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-1.xml
[2010.10.31 15:42:39 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-10.xml
[2010.12.12 18:57:39 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-11.xml
[2011.01.11 23:26:50 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-12.xml
[2011.03.03 20:16:58 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-13.xml
[2011.03.06 19:47:17 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-14.xml
[2011.03.26 12:28:42 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-15.xml
[2011.05.03 22:12:36 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-16.xml
[2010.04.06 23:27:08 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-2.xml
[2010.06.25 15:09:12 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-3.xml
[2010.06.30 20:38:53 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-4.xml
[2010.07.26 20:07:32 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-5.xml
[2010.07.28 22:07:38 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-6.xml
[2010.09.06 19:11:31 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-7.xml
[2010.09.17 18:15:19 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-8.xml
[2010.10.20 19:19:56 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-9.xml
[2010.03.23 21:05:08 | 000,000,944 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin.xml
[2009.09.19 21:54:02 | 000,003,915 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\sweetim.xml
[2010.11.17 20:51:51 | 000,000,000 | ---D | M] (No name found) -- H:\Program Files\Mozilla Firefox\extensions
[2009.08.31 20:07:03 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- H:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.05.02 22:23:51 | 000,000,000 | ---D | M] (Default) -- H:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{0974848A-B5BC-49F2-9778-307742B4A55D}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{0B38152B-1B20-484D-A11F-5E04A9B0661F}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\ENGINE@CONDUIT.COM
[2011.05.02 22:23:50 | 000,025,048 | ---- | M] (Mozilla Foundation) -- H:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2011.05.02 22:23:50 | 000,140,248 | ---- | M] (Mozilla Foundation) -- H:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2009.07.07 23:20:42 | 000,061,440 | ---- | M] (AOL LLC) -- H:\Program Files\Mozilla Firefox\plugins\npdnu.dll
[2009.07.07 23:20:42 | 000,065,536 | ---- | M] (AOL LLC) -- H:\Program Files\Mozilla Firefox\plugins\npdnupdater2.dll
[2011.05.02 22:23:51 | 000,066,520 | ---- | M] (mozilla.org) -- H:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006.10.26 21:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- H:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2010.12.09 12:47:06 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npwachk.dll
[2010.10.31 15:42:28 | 000,002,371 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.10.31 15:42:28 | 000,000,638 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.10.31 15:42:28 | 000,001,687 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.10.31 15:42:28 | 000,001,367 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.10.31 15:42:28 | 000,000,654 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.10.31 15:42:28 | 000,001,179 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2011.01.13 21:42:02 | 000,000,759 | ---- | M]) - H:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 ntrack.com
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - H:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Alcmtr] H:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [egui] H:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4 - HKLM..\Run: [NvCplDaemon] H:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [RTHDCPL] H:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKCU..\Run: [CTFMON.EXE] H:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - Startup: H:\Documents and Settings\wokatej\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = H:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - H:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - H:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - H:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - H:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - H:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - H:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - H:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://download.macromedia.com/pub/sho ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - H:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - H:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - H:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - H:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - H:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - H:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - H:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - H:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - H:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - H:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - H:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - H:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - H:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (H:\WINDOWS\system32\userinit.exe) - H:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - H:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - H:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - H:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - H:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - H:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - H:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - H:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - H:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - H:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - H:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - H:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - H:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - H:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - H:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - H:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - H:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - H:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - H:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - H:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - H:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - H:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - H:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
File not found -- H:\Documents and Settings\wokatej\Dokumenty\wokatej.
[2011.05.23 23:21:29 | 000,580,096 | ---- | C] (OldTimer Tools) -- H:\Documents and Settings\wokatej\Plocha\OTL.exe
[2011.05.23 07:17:06 | 000,000,000 | RH-D | C] -- H:\Documents and Settings\wokatej\Recent
[2011.05.22 17:06:08 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Dokumenty\Oberon Media
[2011.05.22 16:52:51 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\ESET
[2011.05.22 16:52:51 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Data aplikací\ESET
[2011.05.22 16:50:03 | 000,000,000 | ---D | C] -- H:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
[2011.05.22 16:49:28 | 000,000,000 | ---D | C] -- H:\Program Files\ESET
[2011.05.22 16:49:28 | 000,000,000 | ---D | C] -- H:\Documents and Settings\All Users\Nabídka Start\Programy\ESET
[2011.05.22 16:49:28 | 000,000,000 | ---D | C] -- H:\Documents and Settings\All Users\Data aplikací\ESET
[2011.05.22 16:02:36 | 000,000,000 | RHSD | C] -- H:\cmdcons
[2011.05.22 11:07:15 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Data aplikací\Malwarebytes
[2011.05.22 11:06:54 | 000,000,000 | ---D | C] -- H:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2011.05.22 11:06:52 | 000,000,000 | ---D | C] -- H:\Program Files\Malwarebytes' Anti-Malware
[2011.05.22 10:52:58 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Nabídka Start\Programy\HiJackThis
[2011.05.22 10:52:57 | 000,000,000 | ---D | C] -- H:\Program Files\Trend Micro
[2011.05.22 09:25:12 | 001,626,000 | ---- | C] (Microsoft Corporation) -- H:\Documents and Settings\wokatej\Plocha\ShowMyPC3055.exe
[2011.05.21 21:30:04 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Data aplikací\OpenCandy
[2011.05.21 21:30:03 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Nabídka Start\Programy\Winamp Detector Plug-in
[2011.05.21 21:30:03 | 000,000,000 | ---D | C] -- H:\Program Files\Winamp Detect
[2011.05.21 21:29:51 | 000,000,000 | ---D | C] -- H:\Program Files\Common Files\Software Update Utility
[2011.05.21 21:20:36 | 000,000,000 | ---D | C] -- H:\Program Files\My Company Name
[2011.05.21 20:28:36 | 000,000,000 | ---D | C] -- H:\Program Files\Common Files\ATI Technologies
[2011.05.21 20:21:54 | 000,000,000 | ---D | C] -- H:\WINDOWS\System32\RTCOM
[2011.05.21 20:21:47 | 000,290,816 | ---- | C] (Realtek Semiconductor Crop.) -- H:\WINDOWS\vncutil.exe
[2011.05.21 20:21:47 | 000,077,824 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\SOUNDMAN.EXE
[2011.05.21 20:21:45 | 001,200,128 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\RtlUpd.exe
[2011.05.21 20:21:45 | 000,266,240 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\System32\RTSndMgr.CPL
[2011.05.21 20:21:45 | 000,104,992 | ---- | C] (Realtek Semiconductor) -- H:\WINDOWS\RtkAudioService.exe
[2011.05.21 20:21:43 | 009,715,200 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\RTLCPL.EXE
[2011.05.21 20:21:40 | 004,959,232 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\System32\drivers\RtkHDAud.sys
[2011.05.21 20:21:32 | 002,168,320 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\MicCal.exe
[2011.05.21 20:21:32 | 001,389,056 | ---- | C] (Creative Technology Ltd.) -- H:\WINDOWS\System32\drivers\Monfilt.sys
[2011.05.21 20:21:29 | 002,808,832 | ---- | C] (RealTek Semicoductor Corp.) -- H:\WINDOWS\ALCWZRD.EXE
[2011.05.21 20:21:29 | 000,057,344 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\ALCMTR.EXE
[2011.05.21 20:21:27 | 001,684,736 | ---- | C] (Creative) -- H:\WINDOWS\System32\drivers\Ambfilt.sys
[2011.05.21 20:21:27 | 000,278,528 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\System32\ALSNDMGR.CPL
[2011.05.21 20:21:26 | 000,000,000 | ---D | C] -- H:\Program Files\Realtek
[2011.05.21 20:21:09 | 000,528,384 | R--- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\RtlExUpd.dll
[2011.05.21 20:19:02 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Nabídka Start\Programy\MP3 Player Utilities 1.45
[2011.05.21 20:19:00 | 000,000,000 | ---D | C] -- H:\Program Files\MP3 Player Utilities
[2011.05.21 19:28:27 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- H:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011.05.21 19:25:04 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Secunia PSI
[2011.05.21 19:24:56 | 000,000,000 | ---D | C] -- H:\Program Files\Secunia
[2009.07.30 18:05:00 | 007,947,248 | ---- | C] (Mozilla) -- H:\Program Files\Firefox Setup 3.5.1.exe
[5 H:\WINDOWS\System32\*.tmp files -> H:\WINDOWS\System32\*.tmp -> ]
[27 H:\WINDOWS\*.tmp files -> H:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
File not found -- H:\Documents and Settings\wokatej\Dokumenty\wokatej.
[2011.05.23 23:21:30 | 000,580,096 | ---- | M] (OldTimer Tools) -- H:\Documents and Settings\wokatej\Plocha\OTL.exe
[2011.05.23 23:08:48 | 000,002,206 | ---- | M] () -- H:\WINDOWS\System32\wpa.dbl
[2011.05.23 23:08:40 | 000,205,204 | ---- | M] () -- H:\WINDOWS\System32\nvapps.xml
[2011.05.23 23:08:34 | 000,002,048 | --S- | M] () -- H:\WINDOWS\bootstat.dat
[2011.05.23 21:50:13 | 000,138,464 | ---- | M] () -- H:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011.05.23 20:58:01 | 000,002,445 | ---- | M] () -- H:\Documents and Settings\wokatej\Plocha\HiJackThis.lnk
[2011.05.22 16:50:39 | 000,000,600 | ---- | M] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\PUTTY.RND
[2011.05.22 16:02:40 | 000,000,327 | RHS- | M] () -- H:\boot.ini
[2011.05.22 14:12:28 | 000,000,327 | ---- | M] () -- H:\Boot.bak
[2011.05.22 09:25:14 | 001,626,000 | ---- | M] (Microsoft Corporation) -- H:\Documents and Settings\wokatej\Plocha\ShowMyPC3055.exe
[2011.05.21 21:46:25 | 000,444,740 | ---- | M] () -- H:\WINDOWS\System32\perfh009.dat
[2011.05.21 21:46:25 | 000,441,488 | ---- | M] () -- H:\WINDOWS\System32\perfh005.dat
[2011.05.21 21:46:25 | 000,084,608 | ---- | M] () -- H:\WINDOWS\System32\perfc005.dat
[2011.05.21 21:46:25 | 000,072,806 | ---- | M] () -- H:\WINDOWS\System32\perfc009.dat
[2011.05.21 21:30:04 | 000,000,654 | ---- | M] () -- H:\Documents and Settings\All Users\Plocha\Winamp.lnk
[2011.05.21 21:11:00 | 000,000,284 | ---- | M] () -- H:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011.05.21 19:47:59 | 000,000,798 | -H-- | M] () -- H:\Documents and Settings\All Users\Dokumenty\os049389.bin
[2011.05.21 19:32:15 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- H:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011.05.12 00:07:33 | 000,086,016 | ---- | M] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.04.25 18:40:04 | 000,000,472 | ---- | M] () -- H:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[5 H:\WINDOWS\System32\*.tmp files -> H:\WINDOWS\System32\*.tmp -> ]
[27 H:\WINDOWS\*.tmp files -> H:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.05.22 16:49:55 | 000,000,600 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\PUTTY.RND
[2011.05.22 11:54:30 | 000,261,312 | RHS- | C] () -- H:\cmldr
[2011.05.22 10:52:58 | 000,002,445 | ---- | C] () -- H:\Documents and Settings\wokatej\Plocha\HiJackThis.lnk
[2011.05.21 21:21:51 | 000,211,189 | ---- | C] () -- H:\WINDOWS\System32\nvapps.nvb
[2011.05.21 20:21:59 | 000,000,553 | R--- | C] () -- H:\WINDOWS\USetup.iss
[2011.05.21 20:18:26 | 000,007,207 | R--- | C] () -- H:\WINDOWS\Disktool.INI
[2011.05.21 20:18:26 | 000,006,399 | R--- | C] () -- H:\WINDOWS\fwupgrade.ini
[2011.05.21 20:18:26 | 000,003,677 | R--- | C] () -- H:\WINDOWS\PlaySnd.INI
[2011.01.09 14:01:46 | 000,016,384 | ---- | C] () -- H:\WINDOWS\System32\FileOps.exe
[2010.07.07 22:18:48 | 000,037,232 | ---- | C] () -- H:\WINDOWS\ASScrProlog.exe
[2010.05.18 23:50:35 | 000,000,089 | ---- | C] () -- H:\WINDOWS\ULead32.ini
[2010.05.18 23:45:39 | 000,000,031 | ---- | C] () -- H:\Documents and Settings\wokatej\Data aplikací\Days5.ini
[2009.11.06 11:58:04 | 000,178,975 | ---- | C] () -- H:\WINDOWS\System32\xlive.dll.cat
[2009.10.14 20:12:17 | 000,028,255 | ---- | C] () -- H:\Documents and Settings\wokatej\Data aplikací\OFMissionEditorConfig.xml
[2009.10.01 19:44:31 | 000,168,448 | ---- | C] () -- H:\WINDOWS\System32\unrar.dll
[2009.10.01 19:44:31 | 000,000,038 | ---- | C] () -- H:\WINDOWS\avisplitter.ini
[2009.10.01 19:44:30 | 003,596,288 | ---- | C] () -- H:\WINDOWS\System32\qt-dx331.dll
[2009.10.01 19:44:30 | 000,881,664 | ---- | C] () -- H:\WINDOWS\System32\xvidcore.dll
[2009.10.01 19:44:30 | 000,205,824 | ---- | C] () -- H:\WINDOWS\System32\xvidvfw.dll
[2009.10.01 19:44:29 | 000,085,504 | ---- | C] () -- H:\WINDOWS\System32\ff_vfw.dll
[2009.09.22 19:01:13 | 000,000,127 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\fusioncache.dat
[2009.09.14 23:40:21 | 000,000,319 | ---- | C] () -- H:\WINDOWS\game.ini
[2009.09.09 18:56:08 | 000,000,848 | -HS- | C] () -- H:\WINDOWS\System32\KGyGaAvL.sys
[2009.09.01 20:34:52 | 000,000,049 | ---- | C] () -- H:\WINDOWS\NeroDigital.ini
[2009.07.30 18:05:28 | 000,000,000 | ---- | C] () -- H:\WINDOWS\nsreg.dat
[2009.07.29 20:25:41 | 000,002,560 | ---- | C] () -- H:\WINDOWS\_MSRSTRT.EXE
[2009.07.28 20:08:56 | 000,086,016 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.07.23 03:11:45 | 000,004,249 | ---- | C] () -- H:\WINDOWS\ODBCINST.INI
[2009.07.23 03:08:53 | 000,298,048 | ---- | C] () -- H:\WINDOWS\System32\FNTCACHE.DAT
[2009.07.22 21:47:25 | 000,012,288 | ---- | C] () -- H:\WINDOWS\impborl.dll
[2009.07.22 21:47:23 | 007,013,905 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Install.exe
[2009.07.22 21:46:30 | 000,001,586 | ---- | C] () -- H:\WINDOWS\Ascd_tmp.ini
[2009.07.22 21:46:29 | 000,005,824 | ---- | C] () -- H:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2009.07.22 20:32:34 | 000,138,464 | ---- | C] () -- H:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009.07.22 20:32:34 | 000,022,328 | ---- | C] () -- H:\Documents and Settings\wokatej\Data aplikací\PnkBstrK.sys
[2009.07.22 20:32:15 | 000,111,928 | ---- | C] () -- H:\WINDOWS\System32\PnkBstrB.exe
[2009.07.22 20:32:15 | 000,075,064 | ---- | C] () -- H:\WINDOWS\System32\PnkBstrA.exe
[2009.07.22 20:32:14 | 000,669,184 | ---- | C] () -- H:\WINDOWS\System32\pbsvc.exe
[2009.07.22 19:26:59 | 000,002,048 | --S- | C] () -- H:\WINDOWS\bootstat.dat
[2009.07.22 19:21:58 | 000,023,524 | ---- | C] () -- H:\WINDOWS\System32\emptyregdb.dat
[2009.02.09 07:18:00 | 001,724,416 | ---- | C] () -- H:\WINDOWS\System32\nvwdmcpl.dll
[2009.02.09 07:18:00 | 001,657,376 | ---- | C] () -- H:\WINDOWS\System32\nwiz.exe
[2009.02.09 07:18:00 | 001,507,328 | ---- | C] () -- H:\WINDOWS\System32\nview.dll
[2009.02.09 07:18:00 | 001,346,080 | ---- | C] () -- H:\WINDOWS\System32\nvdspsch.exe
[2009.02.09 07:18:00 | 001,101,824 | ---- | C] () -- H:\WINDOWS\System32\nvwimg.dll
[2009.02.09 07:18:00 | 000,466,944 | ---- | C] () -- H:\WINDOWS\System32\nvshell.dll
[2009.02.09 07:18:00 | 000,449,056 | ---- | C] () -- H:\WINDOWS\System32\nvappbar.exe
[2009.02.09 07:18:00 | 000,436,768 | ---- | C] () -- H:\WINDOWS\System32\keystone.exe
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- H:\WINDOWS\System32\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelFrench.dll
[2004.09.16 13:26:40 | 000,012,634 | ---- | C] () -- H:\WINDOWS\System32\drivers\ADFUUD.SYS
[2004.09.16 13:26:40 | 000,012,634 | ---- | C] () -- H:\WINDOWS\ADFUUD.SYS
[2004.08.17 15:58:58 | 000,001,804 | ---- | C] () -- H:\WINDOWS\System32\dcache.bin
[2004.08.02 14:20:40 | 000,004,569 | ---- | C] () -- H:\WINDOWS\System32\secupd.dat
[2002.03.17 02:00:00 | 000,007,420 | ---- | C] () -- H:\WINDOWS\UA000080.DLL
[2001.10.25 16:00:00 | 013,107,200 | ---- | C] () -- H:\WINDOWS\System32\oembios.bin
[2001.10.25 16:00:00 | 000,673,088 | ---- | C] () -- H:\WINDOWS\System32\mlang.dat
[2001.10.25 16:00:00 | 000,444,740 | ---- | C] () -- H:\WINDOWS\System32\perfh009.dat
[2001.10.25 16:00:00 | 000,441,488 | ---- | C] () -- H:\WINDOWS\System32\perfh005.dat
[2001.10.25 16:00:00 | 000,272,128 | ---- | C] () -- H:\WINDOWS\System32\perfi009.dat
[2001.10.25 16:00:00 | 000,269,162 | ---- | C] () -- H:\WINDOWS\System32\perfi005.dat
[2001.10.25 16:00:00 | 000,218,003 | ---- | C] () -- H:\WINDOWS\System32\dssec.dat
[2001.10.25 16:00:00 | 000,084,608 | ---- | C] () -- H:\WINDOWS\System32\perfc005.dat
[2001.10.25 16:00:00 | 000,072,806 | ---- | C] () -- H:\WINDOWS\System32\perfc009.dat
[2001.10.25 16:00:00 | 000,046,258 | ---- | C] () -- H:\WINDOWS\System32\mib.bin
[2001.10.25 16:00:00 | 000,032,072 | ---- | C] () -- H:\WINDOWS\System32\perfd005.dat
[2001.10.25 16:00:00 | 000,028,626 | ---- | C] () -- H:\WINDOWS\System32\perfd009.dat
[2001.10.25 16:00:00 | 000,004,463 | ---- | C] () -- H:\WINDOWS\System32\oembios.dat
[2001.10.25 16:00:00 | 000,000,741 | ---- | C] () -- H:\WINDOWS\System32\noise.dat
========== LOP Check ==========
[2009.12.08 22:59:23 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\Codemasters
[2011.05.22 16:49:28 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\ESET
[2009.08.31 20:07:04 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\ICQ
[2011.05.22 16:55:45 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\SweetIM
[2010.05.18 23:53:43 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\TEMP
[2010.08.18 20:52:43 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\Ulead Systems
[2009.09.27 23:10:07 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009.09.18 23:12:24 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\DAEMON Tools
[2011.05.22 16:52:51 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\ESET
[2009.09.15 20:50:05 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\Leadertech
[2011.01.13 21:42:57 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\n-Track Software Data
[2011.01.13 21:45:03 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\n-Track Studio6
[2011.05.21 21:30:04 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\OpenCandy
[2009.08.02 20:26:57 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\Ulead Systems
[2011.01.09 19:45:05 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\Zoner
[2011.04.25 18:40:04 | 000,000,472 | ---- | M] () -- H:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
========== Purity Check ==========
< End of report >
OTL logfile created on: 23.5.2011 23:30:29 - Run 1
OTL by OldTimer - Version 3.2.23.0 Folder = H:\Documents and Settings\wokatej\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,25 Gb Total Physical Memory | 2,82 Gb Available Physical Memory | 86,66% Memory free
5,09 Gb Paging File | 4,83 Gb Available in Paging File | 94,93% Paging File free
Paging file location(s): h:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = H: | %SystemRoot% = H:\WINDOWS | %ProgramFiles% = H:\Program Files
Drive H: | 698,63 Gb Total Space | 426,50 Gb Free Space | 61,05% Space Free | Partition Type: NTFS
Computer Name: WOKATEJ-11AC7F3 | User Name: wokatej | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - H:\Documents and Settings\wokatej\Plocha\OTL.exe (OldTimer Tools)
PRC - H:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
PRC - H:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
PRC - H:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - H:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (InterVideo Inc.)
========== Modules (SafeList) ==========
MOD - H:\Documents and Settings\wokatej\Plocha\OTL.exe (OldTimer Tools)
MOD - H:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (wuauserv) -- File not found
SRV - (EhttpSrv) -- H:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe (ESET)
SRV - (ekrn) -- H:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
SRV - (Capture Device Service) -- H:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (InterVideo Inc.)
========== Driver Services (SafeList) ==========
DRV - (eamon) -- H:\WINDOWS\system32\drivers\eamon.sys (ESET)
DRV - (ehdrv) -- H:\WINDOWS\system32\drivers\ehdrv.sys (ESET)
DRV - (epfw) -- H:\WINDOWS\system32\drivers\epfw.sys (ESET)
DRV - (Epfwndis) -- H:\WINDOWS\system32\drivers\epfwndis.sys (ESET)
DRV - (epfwtdi) -- H:\WINDOWS\system32\drivers\epfwtdi.sys (ESET)
DRV - (sptd) -- H:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- H:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (RTLE8023xp) -- H:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (amdide) -- H:\WINDOWS\system32\DRIVERS\amdide.sys (Advanced Micro Devices)
DRV - (AmdPPM) -- H:\WINDOWS\system32\drivers\AmdPPM.sys (Advanced Micro Devices)
DRV - (sfdrv01) StarForce Protection Environment Driver (version 1.x) -- H:\WINDOWS\System32\drivers\sfdrv01.sys (Protection Technology)
DRV - (sfhlp02) StarForce Protection Helper Driver (version 2.x) -- H:\WINDOWS\System32\drivers\sfhlp02.sys (Protection Technology)
DRV - (sfsync02) StarForce Protection Synchronization Driver (version 2.x) -- H:\WINDOWS\System32\drivers\sfsync02.sys (Protection Technology)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.microsoft.com/isapi/redir.dl ... date&O1=b1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = H:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - H:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "softonic.com4 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search?query={searchTerms}&invocationType=tb50-ff-winamp-chromesbox-en-us&tb_uuid=20110521192950031&tb_oid=21-05-2011&tb_mrud=21-05-2011&query="
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.7
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.2.1
FF - prefs.js..extensions.enabledItems: {EEE6C361-6118-11DC-9C72-001320C79847}:1.0.0.10
FF - prefs.js..extensions.enabledItems: {0974848a-b5bc-49f2-9778-307742b4a55d}:3.2.5.2
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.14.1
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2431232&q="
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "chrome://browser-region/locale/region.properties"
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: h:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.09.01 23:16:41 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Components: H:\Program Files\Mozilla Firefox\components [2011.05.22 09:42:49 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Plugins: H:\Program Files\Mozilla Firefox\plugins [2011.05.21 21:30:03 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: H:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011.05.22 16:49:30 | 000,000,000 | ---D | M]
[2009.07.30 18:05:36 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Extensions
[2009.07.30 18:05:36 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2011.05.22 11:09:32 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions
[2011.02.03 20:33:15 | 000,000,000 | ---D | M] (softonic.com4 Community Toolbar) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{0974848a-b5bc-49f2-9778-307742b4a55d}
[2011.05.21 21:29:56 | 000,000,000 | ---D | M] (Winamp Toolbar) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2010.06.30 23:01:13 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.08.16 18:40:39 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.03.01 20:01:23 | 000,000,000 | ---D | M] (SweetIM Toolbar for Firefox) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
[2011.02.03 20:33:16 | 000,000,000 | ---D | M] (Conduit Engine) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\engine@conduit.com
[2011.05.21 21:31:42 | 000,002,354 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\aol-web-search.xml
[2011.05.22 09:23:33 | 000,002,395 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\askcom.xml
[2010.06.08 11:28:50 | 000,000,929 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\conduit.xml
[2011.05.19 19:58:11 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-1.xml
[2010.10.31 15:42:39 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-10.xml
[2010.12.12 18:57:39 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-11.xml
[2011.01.11 23:26:50 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-12.xml
[2011.03.03 20:16:58 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-13.xml
[2011.03.06 19:47:17 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-14.xml
[2011.03.26 12:28:42 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-15.xml
[2011.05.03 22:12:36 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-16.xml
[2010.04.06 23:27:08 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-2.xml
[2010.06.25 15:09:12 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-3.xml
[2010.06.30 20:38:53 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-4.xml
[2010.07.26 20:07:32 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-5.xml
[2010.07.28 22:07:38 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-6.xml
[2010.09.06 19:11:31 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-7.xml
[2010.09.17 18:15:19 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-8.xml
[2010.10.20 19:19:56 | 000,000,950 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin-9.xml
[2010.03.23 21:05:08 | 000,000,944 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\icqplugin.xml
[2009.09.19 21:54:02 | 000,003,915 | ---- | M] () -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\searchplugins\sweetim.xml
[2010.11.17 20:51:51 | 000,000,000 | ---D | M] (No name found) -- H:\Program Files\Mozilla Firefox\extensions
[2009.08.31 20:07:03 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- H:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.05.02 22:23:51 | 000,000,000 | ---D | M] (Default) -- H:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{0974848A-B5BC-49F2-9778-307742B4A55D}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{0B38152B-1B20-484D-A11F-5E04A9B0661F}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\ENGINE@CONDUIT.COM
[2011.05.02 22:23:50 | 000,025,048 | ---- | M] (Mozilla Foundation) -- H:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2011.05.02 22:23:50 | 000,140,248 | ---- | M] (Mozilla Foundation) -- H:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2009.07.07 23:20:42 | 000,061,440 | ---- | M] (AOL LLC) -- H:\Program Files\Mozilla Firefox\plugins\npdnu.dll
[2009.07.07 23:20:42 | 000,065,536 | ---- | M] (AOL LLC) -- H:\Program Files\Mozilla Firefox\plugins\npdnupdater2.dll
[2011.05.02 22:23:51 | 000,066,520 | ---- | M] (mozilla.org) -- H:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006.10.26 21:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- H:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2009.09.27 23:09:18 | 000,159,744 | ---- | M] (Apple Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2010.12.09 12:47:06 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- H:\Program Files\Mozilla Firefox\plugins\npwachk.dll
[2010.10.31 15:42:28 | 000,002,371 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.10.31 15:42:28 | 000,000,638 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.10.31 15:42:28 | 000,001,687 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.10.31 15:42:28 | 000,001,367 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.10.31 15:42:28 | 000,000,654 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.10.31 15:42:28 | 000,001,179 | ---- | M] () -- H:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2011.01.13 21:42:02 | 000,000,759 | ---- | M]) - H:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 ntrack.com
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - H:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Alcmtr] H:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [egui] H:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4 - HKLM..\Run: [NvCplDaemon] H:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [RTHDCPL] H:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKCU..\Run: [CTFMON.EXE] H:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - Startup: H:\Documents and Settings\wokatej\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = H:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - H:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - H:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - H:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - H:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - H:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - H:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - H:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - H:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://download.macromedia.com/pub/sho ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - H:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - H:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - H:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - H:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - H:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - H:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - H:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - H:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - H:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - H:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - H:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - H:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - H:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - H:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - H:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - H:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (H:\WINDOWS\system32\userinit.exe) - H:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - H:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - H:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - H:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - H:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - H:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - H:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - H:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - H:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - H:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - H:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - H:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - H:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - H:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - H:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - H:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - H:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - H:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - H:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - H:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - H:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - H:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - H:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - H:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - H:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - H:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
File not found -- H:\Documents and Settings\wokatej\Dokumenty\wokatej.
[2011.05.23 23:21:29 | 000,580,096 | ---- | C] (OldTimer Tools) -- H:\Documents and Settings\wokatej\Plocha\OTL.exe
[2011.05.23 07:17:06 | 000,000,000 | RH-D | C] -- H:\Documents and Settings\wokatej\Recent
[2011.05.22 17:06:08 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Dokumenty\Oberon Media
[2011.05.22 16:52:51 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\ESET
[2011.05.22 16:52:51 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Data aplikací\ESET
[2011.05.22 16:50:03 | 000,000,000 | ---D | C] -- H:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
[2011.05.22 16:49:28 | 000,000,000 | ---D | C] -- H:\Program Files\ESET
[2011.05.22 16:49:28 | 000,000,000 | ---D | C] -- H:\Documents and Settings\All Users\Nabídka Start\Programy\ESET
[2011.05.22 16:49:28 | 000,000,000 | ---D | C] -- H:\Documents and Settings\All Users\Data aplikací\ESET
[2011.05.22 16:02:36 | 000,000,000 | RHSD | C] -- H:\cmdcons
[2011.05.22 11:07:15 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Data aplikací\Malwarebytes
[2011.05.22 11:06:54 | 000,000,000 | ---D | C] -- H:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2011.05.22 11:06:52 | 000,000,000 | ---D | C] -- H:\Program Files\Malwarebytes' Anti-Malware
[2011.05.22 10:52:58 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Nabídka Start\Programy\HiJackThis
[2011.05.22 10:52:57 | 000,000,000 | ---D | C] -- H:\Program Files\Trend Micro
[2011.05.22 09:25:12 | 001,626,000 | ---- | C] (Microsoft Corporation) -- H:\Documents and Settings\wokatej\Plocha\ShowMyPC3055.exe
[2011.05.21 21:30:04 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Data aplikací\OpenCandy
[2011.05.21 21:30:03 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Nabídka Start\Programy\Winamp Detector Plug-in
[2011.05.21 21:30:03 | 000,000,000 | ---D | C] -- H:\Program Files\Winamp Detect
[2011.05.21 21:29:51 | 000,000,000 | ---D | C] -- H:\Program Files\Common Files\Software Update Utility
[2011.05.21 21:20:36 | 000,000,000 | ---D | C] -- H:\Program Files\My Company Name
[2011.05.21 20:28:36 | 000,000,000 | ---D | C] -- H:\Program Files\Common Files\ATI Technologies
[2011.05.21 20:21:54 | 000,000,000 | ---D | C] -- H:\WINDOWS\System32\RTCOM
[2011.05.21 20:21:47 | 000,290,816 | ---- | C] (Realtek Semiconductor Crop.) -- H:\WINDOWS\vncutil.exe
[2011.05.21 20:21:47 | 000,077,824 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\SOUNDMAN.EXE
[2011.05.21 20:21:45 | 001,200,128 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\RtlUpd.exe
[2011.05.21 20:21:45 | 000,266,240 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\System32\RTSndMgr.CPL
[2011.05.21 20:21:45 | 000,104,992 | ---- | C] (Realtek Semiconductor) -- H:\WINDOWS\RtkAudioService.exe
[2011.05.21 20:21:43 | 009,715,200 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\RTLCPL.EXE
[2011.05.21 20:21:40 | 004,959,232 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\System32\drivers\RtkHDAud.sys
[2011.05.21 20:21:32 | 002,168,320 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\MicCal.exe
[2011.05.21 20:21:32 | 001,389,056 | ---- | C] (Creative Technology Ltd.) -- H:\WINDOWS\System32\drivers\Monfilt.sys
[2011.05.21 20:21:29 | 002,808,832 | ---- | C] (RealTek Semicoductor Corp.) -- H:\WINDOWS\ALCWZRD.EXE
[2011.05.21 20:21:29 | 000,057,344 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\ALCMTR.EXE
[2011.05.21 20:21:27 | 001,684,736 | ---- | C] (Creative) -- H:\WINDOWS\System32\drivers\Ambfilt.sys
[2011.05.21 20:21:27 | 000,278,528 | ---- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\System32\ALSNDMGR.CPL
[2011.05.21 20:21:26 | 000,000,000 | ---D | C] -- H:\Program Files\Realtek
[2011.05.21 20:21:09 | 000,528,384 | R--- | C] (Realtek Semiconductor Corp.) -- H:\WINDOWS\RtlExUpd.dll
[2011.05.21 20:19:02 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Nabídka Start\Programy\MP3 Player Utilities 1.45
[2011.05.21 20:19:00 | 000,000,000 | ---D | C] -- H:\Program Files\MP3 Player Utilities
[2011.05.21 19:28:27 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- H:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011.05.21 19:25:04 | 000,000,000 | ---D | C] -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Secunia PSI
[2011.05.21 19:24:56 | 000,000,000 | ---D | C] -- H:\Program Files\Secunia
[2009.07.30 18:05:00 | 007,947,248 | ---- | C] (Mozilla) -- H:\Program Files\Firefox Setup 3.5.1.exe
[5 H:\WINDOWS\System32\*.tmp files -> H:\WINDOWS\System32\*.tmp -> ]
[27 H:\WINDOWS\*.tmp files -> H:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
File not found -- H:\Documents and Settings\wokatej\Dokumenty\wokatej.
[2011.05.23 23:21:30 | 000,580,096 | ---- | M] (OldTimer Tools) -- H:\Documents and Settings\wokatej\Plocha\OTL.exe
[2011.05.23 23:08:48 | 000,002,206 | ---- | M] () -- H:\WINDOWS\System32\wpa.dbl
[2011.05.23 23:08:40 | 000,205,204 | ---- | M] () -- H:\WINDOWS\System32\nvapps.xml
[2011.05.23 23:08:34 | 000,002,048 | --S- | M] () -- H:\WINDOWS\bootstat.dat
[2011.05.23 21:50:13 | 000,138,464 | ---- | M] () -- H:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011.05.23 20:58:01 | 000,002,445 | ---- | M] () -- H:\Documents and Settings\wokatej\Plocha\HiJackThis.lnk
[2011.05.22 16:50:39 | 000,000,600 | ---- | M] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\PUTTY.RND
[2011.05.22 16:02:40 | 000,000,327 | RHS- | M] () -- H:\boot.ini
[2011.05.22 14:12:28 | 000,000,327 | ---- | M] () -- H:\Boot.bak
[2011.05.22 09:25:14 | 001,626,000 | ---- | M] (Microsoft Corporation) -- H:\Documents and Settings\wokatej\Plocha\ShowMyPC3055.exe
[2011.05.21 21:46:25 | 000,444,740 | ---- | M] () -- H:\WINDOWS\System32\perfh009.dat
[2011.05.21 21:46:25 | 000,441,488 | ---- | M] () -- H:\WINDOWS\System32\perfh005.dat
[2011.05.21 21:46:25 | 000,084,608 | ---- | M] () -- H:\WINDOWS\System32\perfc005.dat
[2011.05.21 21:46:25 | 000,072,806 | ---- | M] () -- H:\WINDOWS\System32\perfc009.dat
[2011.05.21 21:30:04 | 000,000,654 | ---- | M] () -- H:\Documents and Settings\All Users\Plocha\Winamp.lnk
[2011.05.21 21:11:00 | 000,000,284 | ---- | M] () -- H:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011.05.21 19:47:59 | 000,000,798 | -H-- | M] () -- H:\Documents and Settings\All Users\Dokumenty\os049389.bin
[2011.05.21 19:32:15 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- H:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011.05.12 00:07:33 | 000,086,016 | ---- | M] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.04.25 18:40:04 | 000,000,472 | ---- | M] () -- H:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[5 H:\WINDOWS\System32\*.tmp files -> H:\WINDOWS\System32\*.tmp -> ]
[27 H:\WINDOWS\*.tmp files -> H:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.05.22 16:49:55 | 000,000,600 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\PUTTY.RND
[2011.05.22 11:54:30 | 000,261,312 | RHS- | C] () -- H:\cmldr
[2011.05.22 10:52:58 | 000,002,445 | ---- | C] () -- H:\Documents and Settings\wokatej\Plocha\HiJackThis.lnk
[2011.05.21 21:21:51 | 000,211,189 | ---- | C] () -- H:\WINDOWS\System32\nvapps.nvb
[2011.05.21 20:21:59 | 000,000,553 | R--- | C] () -- H:\WINDOWS\USetup.iss
[2011.05.21 20:18:26 | 000,007,207 | R--- | C] () -- H:\WINDOWS\Disktool.INI
[2011.05.21 20:18:26 | 000,006,399 | R--- | C] () -- H:\WINDOWS\fwupgrade.ini
[2011.05.21 20:18:26 | 000,003,677 | R--- | C] () -- H:\WINDOWS\PlaySnd.INI
[2011.01.09 14:01:46 | 000,016,384 | ---- | C] () -- H:\WINDOWS\System32\FileOps.exe
[2010.07.07 22:18:48 | 000,037,232 | ---- | C] () -- H:\WINDOWS\ASScrProlog.exe
[2010.05.18 23:50:35 | 000,000,089 | ---- | C] () -- H:\WINDOWS\ULead32.ini
[2010.05.18 23:45:39 | 000,000,031 | ---- | C] () -- H:\Documents and Settings\wokatej\Data aplikací\Days5.ini
[2009.11.06 11:58:04 | 000,178,975 | ---- | C] () -- H:\WINDOWS\System32\xlive.dll.cat
[2009.10.14 20:12:17 | 000,028,255 | ---- | C] () -- H:\Documents and Settings\wokatej\Data aplikací\OFMissionEditorConfig.xml
[2009.10.01 19:44:31 | 000,168,448 | ---- | C] () -- H:\WINDOWS\System32\unrar.dll
[2009.10.01 19:44:31 | 000,000,038 | ---- | C] () -- H:\WINDOWS\avisplitter.ini
[2009.10.01 19:44:30 | 003,596,288 | ---- | C] () -- H:\WINDOWS\System32\qt-dx331.dll
[2009.10.01 19:44:30 | 000,881,664 | ---- | C] () -- H:\WINDOWS\System32\xvidcore.dll
[2009.10.01 19:44:30 | 000,205,824 | ---- | C] () -- H:\WINDOWS\System32\xvidvfw.dll
[2009.10.01 19:44:29 | 000,085,504 | ---- | C] () -- H:\WINDOWS\System32\ff_vfw.dll
[2009.09.22 19:01:13 | 000,000,127 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\fusioncache.dat
[2009.09.14 23:40:21 | 000,000,319 | ---- | C] () -- H:\WINDOWS\game.ini
[2009.09.09 18:56:08 | 000,000,848 | -HS- | C] () -- H:\WINDOWS\System32\KGyGaAvL.sys
[2009.09.01 20:34:52 | 000,000,049 | ---- | C] () -- H:\WINDOWS\NeroDigital.ini
[2009.07.30 18:05:28 | 000,000,000 | ---- | C] () -- H:\WINDOWS\nsreg.dat
[2009.07.29 20:25:41 | 000,002,560 | ---- | C] () -- H:\WINDOWS\_MSRSTRT.EXE
[2009.07.28 20:08:56 | 000,086,016 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.07.23 03:11:45 | 000,004,249 | ---- | C] () -- H:\WINDOWS\ODBCINST.INI
[2009.07.23 03:08:53 | 000,298,048 | ---- | C] () -- H:\WINDOWS\System32\FNTCACHE.DAT
[2009.07.22 21:47:25 | 000,012,288 | ---- | C] () -- H:\WINDOWS\impborl.dll
[2009.07.22 21:47:23 | 007,013,905 | ---- | C] () -- H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Install.exe
[2009.07.22 21:46:30 | 000,001,586 | ---- | C] () -- H:\WINDOWS\Ascd_tmp.ini
[2009.07.22 21:46:29 | 000,005,824 | ---- | C] () -- H:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2009.07.22 20:32:34 | 000,138,464 | ---- | C] () -- H:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009.07.22 20:32:34 | 000,022,328 | ---- | C] () -- H:\Documents and Settings\wokatej\Data aplikací\PnkBstrK.sys
[2009.07.22 20:32:15 | 000,111,928 | ---- | C] () -- H:\WINDOWS\System32\PnkBstrB.exe
[2009.07.22 20:32:15 | 000,075,064 | ---- | C] () -- H:\WINDOWS\System32\PnkBstrA.exe
[2009.07.22 20:32:14 | 000,669,184 | ---- | C] () -- H:\WINDOWS\System32\pbsvc.exe
[2009.07.22 19:26:59 | 000,002,048 | --S- | C] () -- H:\WINDOWS\bootstat.dat
[2009.07.22 19:21:58 | 000,023,524 | ---- | C] () -- H:\WINDOWS\System32\emptyregdb.dat
[2009.02.09 07:18:00 | 001,724,416 | ---- | C] () -- H:\WINDOWS\System32\nvwdmcpl.dll
[2009.02.09 07:18:00 | 001,657,376 | ---- | C] () -- H:\WINDOWS\System32\nwiz.exe
[2009.02.09 07:18:00 | 001,507,328 | ---- | C] () -- H:\WINDOWS\System32\nview.dll
[2009.02.09 07:18:00 | 001,346,080 | ---- | C] () -- H:\WINDOWS\System32\nvdspsch.exe
[2009.02.09 07:18:00 | 001,101,824 | ---- | C] () -- H:\WINDOWS\System32\nvwimg.dll
[2009.02.09 07:18:00 | 000,466,944 | ---- | C] () -- H:\WINDOWS\System32\nvshell.dll
[2009.02.09 07:18:00 | 000,449,056 | ---- | C] () -- H:\WINDOWS\System32\nvappbar.exe
[2009.02.09 07:18:00 | 000,436,768 | ---- | C] () -- H:\WINDOWS\System32\keystone.exe
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- H:\WINDOWS\System32\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- H:\WINDOWS\System32\AgCPanelFrench.dll
[2004.09.16 13:26:40 | 000,012,634 | ---- | C] () -- H:\WINDOWS\System32\drivers\ADFUUD.SYS
[2004.09.16 13:26:40 | 000,012,634 | ---- | C] () -- H:\WINDOWS\ADFUUD.SYS
[2004.08.17 15:58:58 | 000,001,804 | ---- | C] () -- H:\WINDOWS\System32\dcache.bin
[2004.08.02 14:20:40 | 000,004,569 | ---- | C] () -- H:\WINDOWS\System32\secupd.dat
[2002.03.17 02:00:00 | 000,007,420 | ---- | C] () -- H:\WINDOWS\UA000080.DLL
[2001.10.25 16:00:00 | 013,107,200 | ---- | C] () -- H:\WINDOWS\System32\oembios.bin
[2001.10.25 16:00:00 | 000,673,088 | ---- | C] () -- H:\WINDOWS\System32\mlang.dat
[2001.10.25 16:00:00 | 000,444,740 | ---- | C] () -- H:\WINDOWS\System32\perfh009.dat
[2001.10.25 16:00:00 | 000,441,488 | ---- | C] () -- H:\WINDOWS\System32\perfh005.dat
[2001.10.25 16:00:00 | 000,272,128 | ---- | C] () -- H:\WINDOWS\System32\perfi009.dat
[2001.10.25 16:00:00 | 000,269,162 | ---- | C] () -- H:\WINDOWS\System32\perfi005.dat
[2001.10.25 16:00:00 | 000,218,003 | ---- | C] () -- H:\WINDOWS\System32\dssec.dat
[2001.10.25 16:00:00 | 000,084,608 | ---- | C] () -- H:\WINDOWS\System32\perfc005.dat
[2001.10.25 16:00:00 | 000,072,806 | ---- | C] () -- H:\WINDOWS\System32\perfc009.dat
[2001.10.25 16:00:00 | 000,046,258 | ---- | C] () -- H:\WINDOWS\System32\mib.bin
[2001.10.25 16:00:00 | 000,032,072 | ---- | C] () -- H:\WINDOWS\System32\perfd005.dat
[2001.10.25 16:00:00 | 000,028,626 | ---- | C] () -- H:\WINDOWS\System32\perfd009.dat
[2001.10.25 16:00:00 | 000,004,463 | ---- | C] () -- H:\WINDOWS\System32\oembios.dat
[2001.10.25 16:00:00 | 000,000,741 | ---- | C] () -- H:\WINDOWS\System32\noise.dat
========== LOP Check ==========
[2009.12.08 22:59:23 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\Codemasters
[2011.05.22 16:49:28 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\ESET
[2009.08.31 20:07:04 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\ICQ
[2011.05.22 16:55:45 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\SweetIM
[2010.05.18 23:53:43 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\TEMP
[2010.08.18 20:52:43 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\Ulead Systems
[2009.09.27 23:10:07 | 000,000,000 | ---D | M] -- H:\Documents and Settings\All Users\Data aplikací\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009.09.18 23:12:24 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\DAEMON Tools
[2011.05.22 16:52:51 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\ESET
[2009.09.15 20:50:05 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\Leadertech
[2011.01.13 21:42:57 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\n-Track Software Data
[2011.01.13 21:45:03 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\n-Track Studio6
[2011.05.21 21:30:04 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\OpenCandy
[2009.08.02 20:26:57 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\Ulead Systems
[2011.01.09 19:45:05 | 000,000,000 | ---D | M] -- H:\Documents and Settings\wokatej\Data aplikací\Zoner
[2011.04.25 18:40:04 | 000,000,472 | ---- | M] () -- H:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
========== Purity Check ==========
< End of report >
-
- Level 1
- Příspěvky: 68
- Registrován: prosinec 09
- Bydliště: České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU +
LOG z OTL - extras.txt
OTL Extras logfile created on: 23.5.2011 23:30:29 - Run 1
OTL by OldTimer - Version 3.2.23.0 Folder = H:\Documents and Settings\wokatej\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,25 Gb Total Physical Memory | 2,82 Gb Available Physical Memory | 86,66% Memory free
5,09 Gb Paging File | 4,83 Gb Available in Paging File | 94,93% Paging File free
Paging file location(s): h:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = H: | %SystemRoot% = H:\WINDOWS | %ProgramFiles% = H:\Program Files
Drive H: | 698,63 Gb Total Space | 426,50 Gb Free Space | 61,05% Space Free | Partition Type: NTFS
Computer Name: WOKATEJ-11AC7F3 | User Name: wokatej | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- H:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "H:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "H:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "H:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 4
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"H:\WINDOWS\system32\PnkBstrA.exe" = H:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA -- ()
"H:\WINDOWS\system32\PnkBstrB.exe" = H:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB -- ()
"H:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe" = H:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM) -- (Activision Blizzard, Inc.)
"H:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe" = H:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM) -- (Activision Blizzard, Inc.)
"H:\WINDOWS\system32\dpvsetup.exe" = H:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test -- (Microsoft Corporation)
"H:\WINDOWS\system32\rundll32.exe" = H:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"H:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe" = H:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()
"H:\Program Files\Microsoft Games\Gears of War\Binaries\WarGame-G4WLive.exe" = H:\Program Files\Microsoft Games\Gears of War\Binaries\WarGame-G4WLive.exe:*:Enabled:Gears of War -- (Epic Games, Inc.)
"H:\Program Files\Bonjour\mDNSResponder.exe" = H:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour -- (Apple Inc.)
"H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe" = H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:*:Enabled:Crysis_32 -- (Crytek GmbH)
"H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe" = H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:*:Enabled:CrysisDedicatedServer_32
"H:\Program Files\Activision\Modern Warfare 2\iw4mp.exe" = H:\Program Files\Activision\Modern Warfare 2\iw4mp.exe:*:Enabled:iw4mp -- ()
"H:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = H:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"H:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = H:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"H:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = H:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"H:\Program Files\Steam\Steam.exe" = H:\Program Files\Steam\Steam.exe:*:Enabled:Steam
"H:\Program Files\Soulseek\slsk.exe" = H:\Program Files\Soulseek\slsk.exe:*:Enabled:SoulSeek
"H:\Program Files\Skype\Phone\Skype.exe" = H:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype
"H:\Documents and Settings\wokatej\Dokumenty\Stažené soubory\n11975310_09.JPG-www.facebook.exe" = h:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor
"H:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe" = H:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe:*:Disabled:BlackOps -- ()
"H:\Program Files\Mozilla Firefox\firefox.exe" = H:\Program Files\Mozilla Firefox\firefox.exe:*:Disabled:Firefox -- (Mozilla Corporation)
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\SMPCSetup.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\SMPCSetup.exe:*:Disabled:SMPCSetup
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\smwinvnc.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\smwinvnc.exe:*:Enabled:TightVNC Win32 Server
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\SMPCSetup.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\SMPCSetup.exe:*:Enabled:SMPCSetup
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\smwinvnc.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\smwinvnc.exe:*:Enabled:TightVNC Win32 Server
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{000E79B7-E725-4F01-870A-C12942B7F8E4}" = Crysis(R)
"{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0C34B801-6AEC-4667-B053-03A67E2D0415}" = Apple Application Support
"{1170D24F-42B7-40CF-AA1B-6395CE562354}" = Gears of War
"{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}" = InterVideo DeviceService
"{53C141BA-4F9E-43FB-B4F9-0C01BB716FA8}" = Adobe Audition 3.0
"{5BBFB0E4-2250-49C3-A8A3-65BE2197D13B}" = MP3 Player Utilities
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{767CC44C-9BBC-438D-BAD3-FD4595DD148B}" = VC80CRTRedist - 8.0.50727.762
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}" = ATI AVIVO Codecs
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{90120000-0010-0405-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Czech) 12
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9CE80D58-2E74-4FF4-A2D2-5E714E470F36}" = ASUS nVidia Driver
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A429C2AE-EBF1-4F81-A221-1C115CAADDAD}" = QuickTime
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A96E97134CA649888820BCDE5E300BBD}" = H.264 Decoder
"{AAC389499AEF40428987B3D30CFC76C9}" = MKV Splitter
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AEF9DC35ADDF4825B049ACBFD1C6EB37}" = AAC Decoder
"{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C151CE54-E7EA-4804-854B-F515368B0798}" = AMD Processor Driver
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.3.22 Game
"{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"{DD1865F0-AD73-40FB-B23E-1822E02396FF}" = NVIDIA PhysX
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1E1BA46-6167-4A33-95F0-A4A4475DC499}" = ESET Smart Security
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"Adobe Audition 3.0" = Adobe Audition 3.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe SVG Viewer" = Adobe SVG Viewer 3.0
"All ATI Software" = Softarová utilita ATI - Odinstalovat
"Asus_LCD_ScreenSaver" = Asus_LCD_ScreenSaver
"Call of Duty Modern Warfare 2_is1" = Call of Duty Modern Warfare 2
"Call of Duty: Black Ops_is1" = Call of Duty: Black Ops
"CCleaner" = CCleaner (remove only)
"DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
"ENTERPRISE" = Microsoft Office Enterprise 2007
"GOM Player" = GOM Player
"InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"KLiteCodecPack_is1" = K-Lite Codec Pack 5.0.5 (Full)
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.17)" = Mozilla Firefox (3.6.17)
"NVIDIA Drivers" = NVIDIA Drivers
"OpenAL" = OpenAL
"PunkBusterSvc" = PunkBuster Services
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"TheSage" = TheSage
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR
"ZonerPhotoStudio13_CZ_is1" = Zoner Photo Studio 13
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Winamp Detect" = Winamp Detector Plug-in
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 21.5.2011 14:20:29 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace winamp.exe, verze 5.5.6.2512, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error - 21.5.2011 14:31:28 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace winamp.exe, verze 5.5.6.2512, chybující modul ntdll.dll,
verze 5.1.2600.6055, adresa chyby 0x00019af2.
Error - 21.5.2011 15:36:16 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace winamp.exe, verze 5.6.0.3091, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error - 22.5.2011 3:44:03 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 3:44:20 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:42:37 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:42:46 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:48:43 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:49:27 | Computer Name = WOKATEJ-11AC7F3 | Source = MsiInstaller | ID = 11905
Description = Product: Ask Toolbar -- Error 1905.Module H:\Program Files\Ask.com\GenericAskToolbar.dll
failed to unregister. HRESULT -2147220472. Contact your support personnel.
Error - 22.5.2011 10:55:45 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
[ OSession Events ]
Error - 24.4.2011 13:41:57 | Computer Name = WOKATEJ-11AC7F3 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 106
seconds with 60 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 22.5.2011 12:37:23 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7000
Description = Služba Služba rozpoznávání pomocí protokolu SSDP neuspěla při spuštění
v důsledku následující chyby: %%1069
Error - 23.5.2011 1:08:25 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 1:09:25 | Computer Name = WOKATEJ-11AC7F3 | Source = System Error | ID = 1003
Description = Kód chyby 000000ea, parametr1 89889a58, parametr2 8a353b18, parametr3
8a2b0700, parametr4 00000001.
Error - 23.5.2011 1:09:48 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 1:10:18 | Computer Name = WOKATEJ-11AC7F3 | Source = DCOM | ID = 10010
Description = Server {E60687F7-01A1-40AA-86AC-DB1CBF673334} se v daném časovém limitu
neregistroval u služby DCOM.
Error - 23.5.2011 14:34:58 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 14:35:44 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 14:36:14 | Computer Name = WOKATEJ-11AC7F3 | Source = DCOM | ID = 10010
Description = Server {E60687F7-01A1-40AA-86AC-DB1CBF673334} se v daném časovém limitu
neregistroval u služby DCOM.
Error - 23.5.2011 16:55:29 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 17:08:48 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
< End of report >
OTL Extras logfile created on: 23.5.2011 23:30:29 - Run 1
OTL by OldTimer - Version 3.2.23.0 Folder = H:\Documents and Settings\wokatej\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,25 Gb Total Physical Memory | 2,82 Gb Available Physical Memory | 86,66% Memory free
5,09 Gb Paging File | 4,83 Gb Available in Paging File | 94,93% Paging File free
Paging file location(s): h:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = H: | %SystemRoot% = H:\WINDOWS | %ProgramFiles% = H:\Program Files
Drive H: | 698,63 Gb Total Space | 426,50 Gb Free Space | 61,05% Space Free | Partition Type: NTFS
Computer Name: WOKATEJ-11AC7F3 | User Name: wokatej | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- H:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "H:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "H:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "H:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 4
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"H:\WINDOWS\system32\PnkBstrA.exe" = H:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA -- ()
"H:\WINDOWS\system32\PnkBstrB.exe" = H:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB -- ()
"H:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe" = H:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM) -- (Activision Blizzard, Inc.)
"H:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe" = H:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM) -- (Activision Blizzard, Inc.)
"H:\WINDOWS\system32\dpvsetup.exe" = H:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test -- (Microsoft Corporation)
"H:\WINDOWS\system32\rundll32.exe" = H:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"H:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe" = H:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()
"H:\Program Files\Microsoft Games\Gears of War\Binaries\WarGame-G4WLive.exe" = H:\Program Files\Microsoft Games\Gears of War\Binaries\WarGame-G4WLive.exe:*:Enabled:Gears of War -- (Epic Games, Inc.)
"H:\Program Files\Bonjour\mDNSResponder.exe" = H:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour -- (Apple Inc.)
"H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe" = H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:*:Enabled:Crysis_32 -- (Crytek GmbH)
"H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe" = H:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:*:Enabled:CrysisDedicatedServer_32
"H:\Program Files\Activision\Modern Warfare 2\iw4mp.exe" = H:\Program Files\Activision\Modern Warfare 2\iw4mp.exe:*:Enabled:iw4mp -- ()
"H:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = H:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"H:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = H:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"H:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = H:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"H:\Program Files\Steam\Steam.exe" = H:\Program Files\Steam\Steam.exe:*:Enabled:Steam
"H:\Program Files\Soulseek\slsk.exe" = H:\Program Files\Soulseek\slsk.exe:*:Enabled:SoulSeek
"H:\Program Files\Skype\Phone\Skype.exe" = H:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype
"H:\Documents and Settings\wokatej\Dokumenty\Stažené soubory\n11975310_09.JPG-www.facebook.exe" = h:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor
"H:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe" = H:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe:*:Disabled:BlackOps -- ()
"H:\Program Files\Mozilla Firefox\firefox.exe" = H:\Program Files\Mozilla Firefox\firefox.exe:*:Disabled:Firefox -- (Mozilla Corporation)
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\SMPCSetup.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\SMPCSetup.exe:*:Disabled:SMPCSetup
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\smwinvnc.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP000.TMP\smwinvnc.exe:*:Enabled:TightVNC Win32 Server
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\SMPCSetup.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\SMPCSetup.exe:*:Enabled:SMPCSetup
"H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\smwinvnc.exe" = H:\Documents and Settings\wokatej\Local Settings\Temp\IXP001.TMP\smwinvnc.exe:*:Enabled:TightVNC Win32 Server
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{000E79B7-E725-4F01-870A-C12942B7F8E4}" = Crysis(R)
"{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0C34B801-6AEC-4667-B053-03A67E2D0415}" = Apple Application Support
"{1170D24F-42B7-40CF-AA1B-6395CE562354}" = Gears of War
"{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}" = InterVideo DeviceService
"{53C141BA-4F9E-43FB-B4F9-0C01BB716FA8}" = Adobe Audition 3.0
"{5BBFB0E4-2250-49C3-A8A3-65BE2197D13B}" = MP3 Player Utilities
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{767CC44C-9BBC-438D-BAD3-FD4595DD148B}" = VC80CRTRedist - 8.0.50727.762
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}" = ATI AVIVO Codecs
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{90120000-0010-0405-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Czech) 12
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9CE80D58-2E74-4FF4-A2D2-5E714E470F36}" = ASUS nVidia Driver
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A429C2AE-EBF1-4F81-A221-1C115CAADDAD}" = QuickTime
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A96E97134CA649888820BCDE5E300BBD}" = H.264 Decoder
"{AAC389499AEF40428987B3D30CFC76C9}" = MKV Splitter
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AEF9DC35ADDF4825B049ACBFD1C6EB37}" = AAC Decoder
"{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C151CE54-E7EA-4804-854B-F515368B0798}" = AMD Processor Driver
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.3.22 Game
"{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"{DD1865F0-AD73-40FB-B23E-1822E02396FF}" = NVIDIA PhysX
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1E1BA46-6167-4A33-95F0-A4A4475DC499}" = ESET Smart Security
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"Adobe Audition 3.0" = Adobe Audition 3.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe SVG Viewer" = Adobe SVG Viewer 3.0
"All ATI Software" = Softarová utilita ATI - Odinstalovat
"Asus_LCD_ScreenSaver" = Asus_LCD_ScreenSaver
"Call of Duty Modern Warfare 2_is1" = Call of Duty Modern Warfare 2
"Call of Duty: Black Ops_is1" = Call of Duty: Black Ops
"CCleaner" = CCleaner (remove only)
"DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
"ENTERPRISE" = Microsoft Office Enterprise 2007
"GOM Player" = GOM Player
"InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"KLiteCodecPack_is1" = K-Lite Codec Pack 5.0.5 (Full)
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.17)" = Mozilla Firefox (3.6.17)
"NVIDIA Drivers" = NVIDIA Drivers
"OpenAL" = OpenAL
"PunkBusterSvc" = PunkBuster Services
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"TheSage" = TheSage
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR
"ZonerPhotoStudio13_CZ_is1" = Zoner Photo Studio 13
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Winamp Detect" = Winamp Detector Plug-in
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 21.5.2011 14:20:29 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace winamp.exe, verze 5.5.6.2512, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error - 21.5.2011 14:31:28 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace winamp.exe, verze 5.5.6.2512, chybující modul ntdll.dll,
verze 5.1.2600.6055, adresa chyby 0x00019af2.
Error - 21.5.2011 15:36:16 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace winamp.exe, verze 5.6.0.3091, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error - 22.5.2011 3:44:03 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 3:44:20 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:42:37 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:42:46 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:48:43 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
Error - 22.5.2011 4:49:27 | Computer Name = WOKATEJ-11AC7F3 | Source = MsiInstaller | ID = 11905
Description = Product: Ask Toolbar -- Error 1905.Module H:\Program Files\Ask.com\GenericAskToolbar.dll
failed to unregister. HRESULT -2147220472. Contact your support personnel.
Error - 22.5.2011 10:55:45 | Computer Name = WOKATEJ-11AC7F3 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 6.0.2900.5512, chybující modul
urlmon.dll, verze 6.0.2900.6082, adresa chyby 0x0003e59f.
[ OSession Events ]
Error - 24.4.2011 13:41:57 | Computer Name = WOKATEJ-11AC7F3 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 106
seconds with 60 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 22.5.2011 12:37:23 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7000
Description = Služba Služba rozpoznávání pomocí protokolu SSDP neuspěla při spuštění
v důsledku následující chyby: %%1069
Error - 23.5.2011 1:08:25 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 1:09:25 | Computer Name = WOKATEJ-11AC7F3 | Source = System Error | ID = 1003
Description = Kód chyby 000000ea, parametr1 89889a58, parametr2 8a353b18, parametr3
8a2b0700, parametr4 00000001.
Error - 23.5.2011 1:09:48 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 1:10:18 | Computer Name = WOKATEJ-11AC7F3 | Source = DCOM | ID = 10010
Description = Server {E60687F7-01A1-40AA-86AC-DB1CBF673334} se v daném časovém limitu
neregistroval u služby DCOM.
Error - 23.5.2011 14:34:58 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 14:35:44 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 14:36:14 | Computer Name = WOKATEJ-11AC7F3 | Source = DCOM | ID = 10010
Description = Server {E60687F7-01A1-40AA-86AC-DB1CBF673334} se v daném časovém limitu
neregistroval u služby DCOM.
Error - 23.5.2011 16:55:29 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
Error - 23.5.2011 17:08:48 | Computer Name = WOKATEJ-11AC7F3 | Source = Service Control Manager | ID = 7023
Description = Služba Automatic Updates byla ukončena s následující chybou: %%126
< End of report >
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43293
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU +
Jestli tam ještě Ad-Aware , odinstaluj.
Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Tohle Ti něco říká:
O1 - Hosts: 127.0.0.1 ntrack.com
H:\Documents and Settings\All Users\Dokumenty\os049389.bin
??
Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Kód: Vybrat vše
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.microsoft.com/isapi/redir.dl ... date&O1=b1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = H:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "softonic.com4 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search?query={searchTerms}&invocationType=tb50-ff-winamp-chromesbox-en-us&tb_uuid=20110521192950031&tb_oid=21-05-2011&tb_mrud=21-05-2011&query="
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "chrome://browser-region/locale/region.properties"
[2009.07.30 18:05:36 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Extensions
[2009.07.30 18:05:36 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2011.05.22 11:09:32 | 000,000,000 | ---D | M] (No name found) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions
[2011.02.03 20:33:15 | 000,000,000 | ---D | M] (softonic.com4 Community Toolbar) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{0974848a-b5bc-49f2-9778-307742b4a55d}
[2011.05.21 21:29:56 | 000,000,000 | ---D | M] (Winamp Toolbar) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2010.08.16 18:40:39 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.03.01 20:01:23 | 000,000,000 | ---D | M] (SweetIM Toolbar for Firefox) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
[2011.02.03 20:33:16 | 000,000,000 | ---D | M] (Conduit Engine) -- H:\Documents and Settings\wokatej\Data aplikací\Mozilla\Firefox\Profiles\oias8ocl.default\extensions\engine@conduit.com
[2010.11.17 20:51:51 | 000,000,000 | ---D | M] (No name found) -- H:\Program Files\Mozilla Firefox\extensions
[2009.08.31 20:07:03 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- H:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{0974848A-B5BC-49F2-9778-307742B4A55D}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{0B38152B-1B20-484D-A11F-5E04A9B0661F}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}
File not found (No name found) -- H:\DOCUMENTS AND SETTINGS\WOKATEJ\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\OIAS8OCL.DEFAULT\EXTENSIONS\ENGINE@CONDUIT.COM
O1 - Hosts: 127.0.0.1 ntrack.com
O4 - HKLM..\Run: [Alcmtr] H:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://download.macromedia.com/pub/sho ... wflash.cab (Shockwave Flash Object)
O18 - Protocol\Handler\msdaipp - No CLSID value found
[2011.05.21 21:46:25 | 000,444,740 | ---- | M] () -- H:\WINDOWS\System32\perfh009.dat
[2011.05.21 21:46:25 | 000,441,488 | ---- | M] () -- H:\WINDOWS\System32\perfh005.dat
[2011.05.21 21:46:25 | 000,084,608 | ---- | M] () -- H:\WINDOWS\System32\perfc005.dat
[2011.05.21 21:46:25 | 000,072,806 | ---- | M] () -- H:\WINDOWS\System32\perfc009.dat
[2001.10.25 16:00:00 | 000,444,740 | ---- | C] () -- H:\WINDOWS\System32\perfh009.dat
[2001.10.25 16:00:00 | 000,441,488 | ---- | C] () -- H:\WINDOWS\System32\perfh005.dat
[2001.10.25 16:00:00 | 000,272,128 | ---- | C] () -- H:\WINDOWS\System32\perfi009.dat
[2001.10.25 16:00:00 | 000,269,162 | ---- | C] () -- H:\WINDOWS\System32\perfi005.dat
[2001.10.25 16:00:00 | 000,084,608 | ---- | C] () -- H:\WINDOWS\System32\perfc005.dat
[2001.10.25 16:00:00 | 000,072,806 | ---- | C] () -- H:\WINDOWS\System32\perfc009.dat
[2001.10.25 16:00:00 | 000,032,072 | ---- | C] () -- H:\WINDOWS\System32\perfd005.dat
[2001.10.25 16:00:00 | 000,028,626 | ---- | C] () -- H:\WINDOWS\System32\perfd009.dat
:Files
H:\WINDOWS\System32\*.tmp
H:\WINDOWS\*.tmp
H:\WINDOWS\system32\*.tmp.dll
H:\WINDOWS\System32\dllcache\*.tmp
H:\WINDOWS\system32\SET*.tmp
H:\windows\Tasks\*.job
H:\*.tmp
H:\Documents and Settings\All Users\Data aplikací\*.tmp
H:\Documents and Settings\wokatej\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
H:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
H:\Documents and Settings\wokatej\Data aplikací\Days5.ini
H:\WINDOWS\System32\KGyGaAvL.sys
H:\WINDOWS\_MSRSTRT.EXE
H:\Documents and Settings\wokatej\Local Settings\Data aplikací\Install.exe
H:\WINDOWS\Ascd_tmp.ini
H:\WINDOWS\UA000080.DLL
H:\Program Files\Ask.com
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" =-
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Tohle Ti něco říká:
O1 - Hosts: 127.0.0.1 ntrack.com
H:\Documents and Settings\All Users\Dokumenty\os049389.bin
??
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 1
- Příspěvky: 68
- Registrován: prosinec 09
- Bydliště: České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU +
Ještě ten LOG z MbAM:
Malwarebytes' Anti-Malware 1.50.1.1100
http://www.malwarebytes.org
Verze databáze: 6640
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
22.5.2011 15:44:56
mbam-log-2011-05-22 (15-44-56).txt
Typ kontroly: Úplný test (H:\|)
Testované objekty: 218716
Uplynulý čas: 21 minut, 44 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 1
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 1
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované hodnoty v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run\NVIDIA driver monitor (Backdoor.Agent) -> Value: NVIDIA driver monitor -> Quarantined and deleted successfully.
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
h:\documents and settings\wokatej\dokumenty\stažené soubory\stažené soubory - 1\medicina\Keygen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully.
Ani jedno mi nic říká: Hosts -jestli to není program Showmypc (showmypc.com), páč to čistíme s kámošem na dálku:):
O1 - Hosts: 127.0.0.1 ntrack.com
H:\Documents and Settings\All Users\Dokumenty\os049389.bin
LOG z OTL vložím večer....
Malwarebytes' Anti-Malware 1.50.1.1100
http://www.malwarebytes.org
Verze databáze: 6640
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
22.5.2011 15:44:56
mbam-log-2011-05-22 (15-44-56).txt
Typ kontroly: Úplný test (H:\|)
Testované objekty: 218716
Uplynulý čas: 21 minut, 44 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 1
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 1
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované hodnoty v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run\NVIDIA driver monitor (Backdoor.Agent) -> Value: NVIDIA driver monitor -> Quarantined and deleted successfully.
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
h:\documents and settings\wokatej\dokumenty\stažené soubory\stažené soubory - 1\medicina\Keygen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully.
Ani jedno mi nic říká: Hosts -jestli to není program Showmypc (showmypc.com), páč to čistíme s kámošem na dálku:):
O1 - Hosts: 127.0.0.1 ntrack.com
H:\Documents and Settings\All Users\Dokumenty\os049389.bin
LOG z OTL vložím večer....
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43293
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý počítač - PROSíM o kontrolu LOGU +
Fajn , tak já upravil ten OTL script..
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 128 hostů