ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
http://www.edisk.cz/stahni/29485/T-Clea ... 8.5KB.html
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj antivir a antispyware ,následně T-Cleaner smaž a zapni si znovu antivir a antispyware.
Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Pomalý PC - kontrola HJT Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý PC - kontrola HJT
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Pomalý PC - kontrola HJT
vše podle ávodu, tady je log OTL:
OTL logfile created on: 24.6.2011 20:44:07 - Run 1
OTL by OldTimer - Version 3.2.24.1 Folder = C:\Users\Iva Vlčková\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,88 Gb Available Physical Memory | 62,64% Memory free
6,19 Gb Paging File | 5,23 Gb Available in Paging File | 84,50% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 279,19 Gb Free Space | 59,94% Space Free | Partition Type: NTFS
Computer Name: IVAVLČKOVÁ-PC | User Name: Iva Vlčková | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Iva Vlčková\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conime.exe (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - C:\Users\Iva Vlčková\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\AVAST Software\Avast\snxhk.dll (AVAST Software)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (MBAMService) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (MgiSvr) -- C:\Program Files\ArcSoft\Magic-i 3\uMgiSvr.exe (ArcSoft, Inc.)
========== Driver Services (SafeList) ==========
DRV - (catchme) -- File not found
DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (aswSnx) -- C:\Windows\System32\drivers\aswSnx.sys (AVAST Software)
DRV - (aswSP) -- C:\Windows\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswTdi) -- C:\Windows\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\Windows\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (RTLE8023xp) -- C:\Windows\System32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (PAC207) -- C:\Windows\System32\drivers\PFC027.SYS (PixArt Imaging Inc.)
DRV - (ARCSOFTVIRTUALCAPTURE) -- C:\Windows\System32\drivers\ArcSoftVirtualCapture.sys (ArcSoft, Inc.)
DRV - (RTL8169) -- C:\Windows\System32\drivers\Rtlh86.sys (Realtek Corporation)
DRV - (Afc) -- C:\Windows\System32\drivers\afc.sys (Arcsoft, Inc.)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\Iva Vlčková\Documents
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 1B 43 CF C8 58 A7 CA 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Centrum.cz Search"
FF - prefs.js..browser.search.defaultthis.engineName: "Conduit Engine Customized Web Search"
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.2.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16
FF - prefs.js..extensions.enabledItems: wrc@avast.com:20110101
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.3
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.06.24 05:33:36 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011.06.07 20:24:11 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.04.10 22:05:08 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.06.15 06:47:51 | 000,000,000 | ---D | M]
[2010.02.03 22:56:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions
[2010.02.03 22:56:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2011.06.24 19:44:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions
[2011.04.28 20:53:05 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.12.15 21:17:50 | 000,000,913 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\conduit.xml
[2010.02.03 22:57:19 | 000,009,949 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\mywebsearch.xml
[2010.05.28 06:27:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.04.27 15:30:37 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.05.28 06:27:11 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
[2011.06.07 20:24:11 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
File not found (No name found) -- C:\USERS\IVA VLčKOVá\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\10BKLBJ2.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
[2010.04.01 19:59:58 | 000,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.04.01 19:59:58 | 000,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2010.08.24 01:39:29 | 000,119,808 | ---- | M] (Google) -- C:\Program Files\Mozilla Firefox\components\GoogleDesktopMozilla.dll
[2010.04.01 19:59:58 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2011.06.07 12:35:34 | 000,103,864 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2010.04.01 18:51:34 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.08.24 01:39:31 | 000,002,020 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\googledesktop.xml
[2010.04.01 18:51:34 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.04.01 18:51:34 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.04.01 18:51:34 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.04.01 18:51:34 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.04.01 18:51:34 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2011.06.24 19:16:50 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Windows Live Messenger Companion Helper) - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - File not found
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O3 - HKLM\..\Toolbar: (@C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (&S-Rank) - {B71B15CF-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Postak\SRank.dll (Seznam.cz a.s.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - File not found
O3 - HKCU\..\Toolbar\WebBrowser: (&S-Rank) - {B71B15CF-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Postak\SRank.dll (Seznam.cz a.s.)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe ()
O4 - HKCU..\Run: [ehTray.exe] C:\Windows\ehome\ehtray.exe (Microsoft Corporation)
O4 - HKCU..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Společnost Microsoft)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\System32\wshbth.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 192.168.0.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\Windows\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\Windows\System32\browseui.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.06.24 20:42:07 | 000,579,072 | ---- | C] (OldTimer Tools) -- C:\Users\Iva Vlčková\Desktop\OTL.exe
[2011.06.24 20:37:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011.06.24 20:37:48 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.06.24 20:35:49 | 003,096,424 | ---- | C] (Piriform Ltd) -- C:\Users\Iva Vlčková\Desktop\ccsetup307.exe
[2011.06.24 19:23:57 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Local\temp
[2011.06.24 19:22:51 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011.06.24 17:58:59 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011.06.24 17:50:23 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011.06.24 17:50:23 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011.06.24 17:50:23 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011.06.24 17:50:17 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011.06.24 17:50:14 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011.06.24 03:36:20 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Local\ATI
[2011.06.24 03:18:11 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Local\Apple
[2011.06.24 03:11:14 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2011.06.24 03:11:13 | 001,797,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2011.06.24 03:11:13 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2011.06.24 03:11:13 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2011.06.23 21:29:16 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Roaming\Malwarebytes
[2011.06.23 21:28:42 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2011.06.23 21:28:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.06.23 21:28:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.06.23 21:28:38 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011.06.23 21:28:38 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.06.23 21:24:05 | 009,435,312 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Iva Vlčková\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.23 19:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2011.06.23 19:31:41 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011.06.12 07:38:16 | 000,000,000 | R--D | C] -- C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011.06.07 08:12:36 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\Zábava
[2011.06.07 08:09:40 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\Nová složka (2)
[2011.06.07 08:09:28 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\Nová složka
[2011.06.07 08:07:44 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\návody
[2011.05.31 22:07:53 | 000,000,000 | ---D | C] -- C:\Microsoft Bluetooth Enumerator
[2011.05.31 21:18:17 | 000,000,000 | ---D | C] -- C:\Zvukové zařízení High Definition Audio
[2011.05.31 21:12:25 | 000,662,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCOMCT2.OCX
[2011.05.31 21:12:24 | 000,000,000 | ---D | C] -- C:\Program Files\Driver-Soft
[2011.05.28 19:21:58 | 000,000,000 | ---D | C] -- C:\$WINDOWS.~BT
[2010.03.14 23:51:48 | 000,047,360 | ---- | C] (VSO Software) -- C:\Users\Iva Vlčková\AppData\Roaming\pcouffin.sys
[3 C:\Users\Iva Vlčková\AppData\Local\*.tmp files -> C:\Users\Iva Vlčková\AppData\Local\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.06.24 20:42:12 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Iva Vlčková\Desktop\OTL.exe
[2011.06.24 20:37:50 | 000,000,804 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.06.24 20:35:55 | 003,096,424 | ---- | M] (Piriform Ltd) -- C:\Users\Iva Vlčková\Desktop\ccsetup307.exe
[2011.06.24 19:28:42 | 000,001,041 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\vso_ts_preview.xml
[2011.06.24 19:26:54 | 000,007,663 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\hijackthis_
[2011.06.24 19:26:29 | 000,002,535 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\HiJackThis.lnk
[2011.06.24 19:16:50 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2011.06.24 19:14:57 | 000,065,536 | ---- | M] () -- C:\Windows\System32\Ikeext.etl
[2011.06.24 19:14:45 | 000,004,448 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.06.24 19:14:45 | 000,004,448 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.06.24 19:14:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.06.24 19:14:34 | 3220,488,192 | -HS- | M] () -- C:\hiberfil.sys
[2011.06.24 19:13:54 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2011.06.24 03:08:24 | 000,607,232 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2011.06.24 03:08:24 | 000,595,798 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.06.24 03:08:24 | 000,117,912 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2011.06.24 03:08:24 | 000,103,872 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.06.23 21:28:43 | 000,000,906 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.23 21:24:40 | 009,435,312 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Iva Vlčková\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.23 19:31:10 | 001,402,880 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\HijackThis.msi
[2011.06.23 18:17:47 | 000,001,971 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2011.06.23 18:14:04 | 000,000,379 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\Documents – zástupce.lnk
[2011.06.15 06:47:52 | 000,001,887 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2011.06.08 20:01:48 | 000,076,800 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.06.07 20:30:18 | 000,001,829 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011.06.07 20:30:16 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2011.06.05 23:35:20 | 000,000,000 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9}
[2011.06.05 08:17:00 | 000,000,000 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD}
[2011.05.29 21:02:31 | 000,000,000 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3}
[2011.05.29 09:11:30 | 000,039,984 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2011.05.29 09:11:20 | 000,022,712 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011.05.29 08:08:05 | 000,002,168 | ---- | M] () -- C:\Windows\diagwrn.xml
[2011.05.29 08:08:05 | 000,001,905 | ---- | M] () -- C:\Windows\diagerr.xml
[3 C:\Users\Iva Vlčková\AppData\Local\*.tmp files -> C:\Users\Iva Vlčková\AppData\Local\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.06.24 20:37:50 | 000,000,804 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.06.24 19:26:54 | 000,007,663 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\hijackthis_
[2011.06.24 17:50:23 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2011.06.24 17:50:23 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011.06.24 17:50:23 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011.06.24 17:50:23 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011.06.24 17:50:23 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011.06.23 21:28:43 | 000,000,906 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.23 19:31:41 | 000,002,535 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\HiJackThis.lnk
[2011.06.23 19:31:06 | 001,402,880 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\HijackThis.msi
[2011.06.23 18:14:04 | 000,000,379 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\Documents – zástupce.lnk
[2011.06.05 23:35:20 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9}
[2011.06.05 08:17:00 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD}
[2011.05.29 21:01:57 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3}
[2011.04.16 20:14:05 | 000,002,528 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\$_hpcst$.hpc
[2010.04.27 15:10:35 | 000,004,685 | ---- | C] () -- C:\Windows\wininit.ini
[2010.03.14 23:55:33 | 000,001,041 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\vso_ts_preview.xml
[2010.03.14 23:51:48 | 000,087,608 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\inst.exe
[2010.03.14 23:51:48 | 000,007,887 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\pcouffin.cat
[2010.03.14 23:51:48 | 000,001,144 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\pcouffin.inf
[2010.03.04 08:18:30 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\downloads.m3u
[2010.03.04 08:17:52 | 000,000,186 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\default.rss
[2010.02.07 10:55:36 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2010.02.07 10:55:35 | 000,881,664 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2010.02.07 10:55:35 | 000,205,824 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.02.07 10:55:34 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2010.02.07 10:55:33 | 000,085,504 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2010.02.03 22:56:20 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010.01.26 23:29:17 | 000,178,176 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2009.12.30 23:31:21 | 000,078,185 | ---- | C] () -- C:\Windows\hpqins05.dat
[2009.09.24 06:42:40 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009.09.24 06:42:40 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009.01.31 19:42:48 | 000,000,012 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2009.01.14 13:09:24 | 000,000,149 | ---- | C] () -- C:\Windows\ADStahovac.INI
[2009.01.03 18:58:57 | 000,010,240 | ---- | C] () -- C:\Windows\System32\vidx16.dll
[2009.01.02 14:33:38 | 000,000,004 | ---- | C] () -- C:\Windows\WTRDCTM.INI
[2009.01.02 14:33:33 | 000,001,027 | ---- | C] () -- C:\Windows\WDICT32.INI
[2009.01.02 14:33:32 | 000,004,566 | ---- | C] () -- C:\Windows\WTRAN32.INI
[2009.01.01 22:52:55 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2009.01.01 22:49:56 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2008.12.27 19:59:21 | 000,024,206 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\UserTile.png
[2008.12.26 09:58:12 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008.12.25 13:17:43 | 000,000,566 | ---- | C] () -- C:\Windows\System32\SP207.INI
[2008.12.25 13:14:33 | 000,076,800 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.12.23 21:37:30 | 000,175,771 | ---- | C] () -- C:\Windows\hpoins27.dat
[2008.12.23 21:37:30 | 000,000,932 | ---- | C] () -- C:\Windows\hpomdl27.dat
[2008.12.23 21:29:11 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2008.12.23 21:16:25 | 000,000,658 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\wklnhst.dat
[2008.02.26 05:10:10 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2008.02.13 19:02:56 | 000,166,450 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2007.08.22 00:51:16 | 000,081,920 | ---- | C] () -- C:\Windows\System32\ATIODE.exe
[2007.08.21 22:36:12 | 000,040,960 | ---- | C] () -- C:\Windows\System32\ATIODCLI.exe
[2007.01.08 23:09:29 | 000,607,232 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2007.01.08 23:09:29 | 000,286,912 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2007.01.08 23:09:29 | 000,117,912 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2007.01.08 23:09:29 | 000,034,724 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:47:37 | 000,297,736 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 12:33:01 | 000,595,798 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,103,872 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
========== LOP Check ==========
[2010.01.27 21:31:39 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\BSplayer
[2010.01.27 19:00:41 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\BSplayer Pro
[2009.01.03 16:20:32 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\KWorld Multimedia
[2009.01.29 08:14:34 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\OpenOffice.org
[2008.12.27 19:59:21 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\PeerNetworking
[2009.01.08 20:55:50 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Software602
[2008.12.23 21:16:29 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Template
[2011.05.28 20:37:00 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\uTorrent
[2011.06.24 19:28:42 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Vso
[2009.02.21 17:22:20 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Zoner
[2011.06.24 19:13:55 | 000,032,542 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 817 bytes -> C:\Users\Iva Vlčková\shell - SMART heslo.eml:OECustomProperty
< End of report >
OTL logfile created on: 24.6.2011 20:44:07 - Run 1
OTL by OldTimer - Version 3.2.24.1 Folder = C:\Users\Iva Vlčková\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,88 Gb Available Physical Memory | 62,64% Memory free
6,19 Gb Paging File | 5,23 Gb Available in Paging File | 84,50% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 279,19 Gb Free Space | 59,94% Space Free | Partition Type: NTFS
Computer Name: IVAVLČKOVÁ-PC | User Name: Iva Vlčková | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Iva Vlčková\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conime.exe (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - C:\Users\Iva Vlčková\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\AVAST Software\Avast\snxhk.dll (AVAST Software)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (MBAMService) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (MgiSvr) -- C:\Program Files\ArcSoft\Magic-i 3\uMgiSvr.exe (ArcSoft, Inc.)
========== Driver Services (SafeList) ==========
DRV - (catchme) -- File not found
DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (aswSnx) -- C:\Windows\System32\drivers\aswSnx.sys (AVAST Software)
DRV - (aswSP) -- C:\Windows\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswTdi) -- C:\Windows\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\Windows\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (RTLE8023xp) -- C:\Windows\System32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (PAC207) -- C:\Windows\System32\drivers\PFC027.SYS (PixArt Imaging Inc.)
DRV - (ARCSOFTVIRTUALCAPTURE) -- C:\Windows\System32\drivers\ArcSoftVirtualCapture.sys (ArcSoft, Inc.)
DRV - (RTL8169) -- C:\Windows\System32\drivers\Rtlh86.sys (Realtek Corporation)
DRV - (Afc) -- C:\Windows\System32\drivers\afc.sys (Arcsoft, Inc.)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\Iva Vlčková\Documents
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 1B 43 CF C8 58 A7 CA 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Centrum.cz Search"
FF - prefs.js..browser.search.defaultthis.engineName: "Conduit Engine Customized Web Search"
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.2.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16
FF - prefs.js..extensions.enabledItems: wrc@avast.com:20110101
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.3
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.06.24 05:33:36 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011.06.07 20:24:11 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.04.10 22:05:08 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.06.15 06:47:51 | 000,000,000 | ---D | M]
[2010.02.03 22:56:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions
[2010.02.03 22:56:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2011.06.24 19:44:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions
[2011.04.28 20:53:05 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.12.15 21:17:50 | 000,000,913 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\conduit.xml
[2010.02.03 22:57:19 | 000,009,949 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\mywebsearch.xml
[2010.05.28 06:27:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.04.27 15:30:37 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.05.28 06:27:11 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
[2011.06.07 20:24:11 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
File not found (No name found) -- C:\USERS\IVA VLčKOVá\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\10BKLBJ2.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
[2010.04.01 19:59:58 | 000,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.04.01 19:59:58 | 000,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2010.08.24 01:39:29 | 000,119,808 | ---- | M] (Google) -- C:\Program Files\Mozilla Firefox\components\GoogleDesktopMozilla.dll
[2010.04.01 19:59:58 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2011.06.07 12:35:34 | 000,103,864 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2011.04.10 22:05:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2010.04.01 18:51:34 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.08.24 01:39:31 | 000,002,020 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\googledesktop.xml
[2010.04.01 18:51:34 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.04.01 18:51:34 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.04.01 18:51:34 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.04.01 18:51:34 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.04.01 18:51:34 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2011.06.24 19:16:50 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Windows Live Messenger Companion Helper) - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - File not found
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O3 - HKLM\..\Toolbar: (@C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (&S-Rank) - {B71B15CF-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Postak\SRank.dll (Seznam.cz a.s.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - File not found
O3 - HKCU\..\Toolbar\WebBrowser: (&S-Rank) - {B71B15CF-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Postak\SRank.dll (Seznam.cz a.s.)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe ()
O4 - HKCU..\Run: [ehTray.exe] C:\Windows\ehome\ehtray.exe (Microsoft Corporation)
O4 - HKCU..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Společnost Microsoft)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\System32\wshbth.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 192.168.0.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\Windows\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\Windows\System32\browseui.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.06.24 20:42:07 | 000,579,072 | ---- | C] (OldTimer Tools) -- C:\Users\Iva Vlčková\Desktop\OTL.exe
[2011.06.24 20:37:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011.06.24 20:37:48 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.06.24 20:35:49 | 003,096,424 | ---- | C] (Piriform Ltd) -- C:\Users\Iva Vlčková\Desktop\ccsetup307.exe
[2011.06.24 19:23:57 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Local\temp
[2011.06.24 19:22:51 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011.06.24 17:58:59 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011.06.24 17:50:23 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011.06.24 17:50:23 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011.06.24 17:50:23 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011.06.24 17:50:17 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011.06.24 17:50:14 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011.06.24 03:36:20 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Local\ATI
[2011.06.24 03:18:11 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Local\Apple
[2011.06.24 03:11:14 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2011.06.24 03:11:13 | 001,797,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2011.06.24 03:11:13 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2011.06.24 03:11:13 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2011.06.23 21:29:16 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Roaming\Malwarebytes
[2011.06.23 21:28:42 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2011.06.23 21:28:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.06.23 21:28:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.06.23 21:28:38 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011.06.23 21:28:38 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.06.23 21:24:05 | 009,435,312 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Iva Vlčková\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.23 19:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2011.06.23 19:31:41 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011.06.12 07:38:16 | 000,000,000 | R--D | C] -- C:\Users\Iva Vlčková\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011.06.07 08:12:36 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\Zábava
[2011.06.07 08:09:40 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\Nová složka (2)
[2011.06.07 08:09:28 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\Nová složka
[2011.06.07 08:07:44 | 000,000,000 | ---D | C] -- C:\Users\Iva Vlčková\Documents\návody
[2011.05.31 22:07:53 | 000,000,000 | ---D | C] -- C:\Microsoft Bluetooth Enumerator
[2011.05.31 21:18:17 | 000,000,000 | ---D | C] -- C:\Zvukové zařízení High Definition Audio
[2011.05.31 21:12:25 | 000,662,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCOMCT2.OCX
[2011.05.31 21:12:24 | 000,000,000 | ---D | C] -- C:\Program Files\Driver-Soft
[2011.05.28 19:21:58 | 000,000,000 | ---D | C] -- C:\$WINDOWS.~BT
[2010.03.14 23:51:48 | 000,047,360 | ---- | C] (VSO Software) -- C:\Users\Iva Vlčková\AppData\Roaming\pcouffin.sys
[3 C:\Users\Iva Vlčková\AppData\Local\*.tmp files -> C:\Users\Iva Vlčková\AppData\Local\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.06.24 20:42:12 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Iva Vlčková\Desktop\OTL.exe
[2011.06.24 20:37:50 | 000,000,804 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.06.24 20:35:55 | 003,096,424 | ---- | M] (Piriform Ltd) -- C:\Users\Iva Vlčková\Desktop\ccsetup307.exe
[2011.06.24 19:28:42 | 000,001,041 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\vso_ts_preview.xml
[2011.06.24 19:26:54 | 000,007,663 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\hijackthis_
[2011.06.24 19:26:29 | 000,002,535 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\HiJackThis.lnk
[2011.06.24 19:16:50 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2011.06.24 19:14:57 | 000,065,536 | ---- | M] () -- C:\Windows\System32\Ikeext.etl
[2011.06.24 19:14:45 | 000,004,448 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.06.24 19:14:45 | 000,004,448 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.06.24 19:14:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.06.24 19:14:34 | 3220,488,192 | -HS- | M] () -- C:\hiberfil.sys
[2011.06.24 19:13:54 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2011.06.24 03:08:24 | 000,607,232 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2011.06.24 03:08:24 | 000,595,798 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.06.24 03:08:24 | 000,117,912 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2011.06.24 03:08:24 | 000,103,872 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.06.23 21:28:43 | 000,000,906 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.23 21:24:40 | 009,435,312 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Iva Vlčková\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.23 19:31:10 | 001,402,880 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\HijackThis.msi
[2011.06.23 18:17:47 | 000,001,971 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2011.06.23 18:14:04 | 000,000,379 | ---- | M] () -- C:\Users\Iva Vlčková\Desktop\Documents – zástupce.lnk
[2011.06.15 06:47:52 | 000,001,887 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2011.06.08 20:01:48 | 000,076,800 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.06.07 20:30:18 | 000,001,829 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011.06.07 20:30:16 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2011.06.05 23:35:20 | 000,000,000 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9}
[2011.06.05 08:17:00 | 000,000,000 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD}
[2011.05.29 21:02:31 | 000,000,000 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3}
[2011.05.29 09:11:30 | 000,039,984 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2011.05.29 09:11:20 | 000,022,712 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011.05.29 08:08:05 | 000,002,168 | ---- | M] () -- C:\Windows\diagwrn.xml
[2011.05.29 08:08:05 | 000,001,905 | ---- | M] () -- C:\Windows\diagerr.xml
[3 C:\Users\Iva Vlčková\AppData\Local\*.tmp files -> C:\Users\Iva Vlčková\AppData\Local\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.06.24 20:37:50 | 000,000,804 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.06.24 19:26:54 | 000,007,663 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\hijackthis_
[2011.06.24 17:50:23 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2011.06.24 17:50:23 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011.06.24 17:50:23 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011.06.24 17:50:23 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011.06.24 17:50:23 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011.06.23 21:28:43 | 000,000,906 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.23 19:31:41 | 000,002,535 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\HiJackThis.lnk
[2011.06.23 19:31:06 | 001,402,880 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\HijackThis.msi
[2011.06.23 18:14:04 | 000,000,379 | ---- | C] () -- C:\Users\Iva Vlčková\Desktop\Documents – zástupce.lnk
[2011.06.05 23:35:20 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9}
[2011.06.05 08:17:00 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD}
[2011.05.29 21:01:57 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3}
[2011.04.16 20:14:05 | 000,002,528 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\$_hpcst$.hpc
[2010.04.27 15:10:35 | 000,004,685 | ---- | C] () -- C:\Windows\wininit.ini
[2010.03.14 23:55:33 | 000,001,041 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\vso_ts_preview.xml
[2010.03.14 23:51:48 | 000,087,608 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\inst.exe
[2010.03.14 23:51:48 | 000,007,887 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\pcouffin.cat
[2010.03.14 23:51:48 | 000,001,144 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\pcouffin.inf
[2010.03.04 08:18:30 | 000,000,000 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\downloads.m3u
[2010.03.04 08:17:52 | 000,000,186 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\default.rss
[2010.02.07 10:55:36 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2010.02.07 10:55:35 | 000,881,664 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2010.02.07 10:55:35 | 000,205,824 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.02.07 10:55:34 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2010.02.07 10:55:33 | 000,085,504 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2010.02.03 22:56:20 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010.01.26 23:29:17 | 000,178,176 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2009.12.30 23:31:21 | 000,078,185 | ---- | C] () -- C:\Windows\hpqins05.dat
[2009.09.24 06:42:40 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009.09.24 06:42:40 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009.01.31 19:42:48 | 000,000,012 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2009.01.14 13:09:24 | 000,000,149 | ---- | C] () -- C:\Windows\ADStahovac.INI
[2009.01.03 18:58:57 | 000,010,240 | ---- | C] () -- C:\Windows\System32\vidx16.dll
[2009.01.02 14:33:38 | 000,000,004 | ---- | C] () -- C:\Windows\WTRDCTM.INI
[2009.01.02 14:33:33 | 000,001,027 | ---- | C] () -- C:\Windows\WDICT32.INI
[2009.01.02 14:33:32 | 000,004,566 | ---- | C] () -- C:\Windows\WTRAN32.INI
[2009.01.01 22:52:55 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2009.01.01 22:49:56 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2008.12.27 19:59:21 | 000,024,206 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\UserTile.png
[2008.12.26 09:58:12 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008.12.25 13:17:43 | 000,000,566 | ---- | C] () -- C:\Windows\System32\SP207.INI
[2008.12.25 13:14:33 | 000,076,800 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.12.23 21:37:30 | 000,175,771 | ---- | C] () -- C:\Windows\hpoins27.dat
[2008.12.23 21:37:30 | 000,000,932 | ---- | C] () -- C:\Windows\hpomdl27.dat
[2008.12.23 21:29:11 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2008.12.23 21:16:25 | 000,000,658 | ---- | C] () -- C:\Users\Iva Vlčková\AppData\Roaming\wklnhst.dat
[2008.02.26 05:10:10 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2008.02.13 19:02:56 | 000,166,450 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2007.08.22 00:51:16 | 000,081,920 | ---- | C] () -- C:\Windows\System32\ATIODE.exe
[2007.08.21 22:36:12 | 000,040,960 | ---- | C] () -- C:\Windows\System32\ATIODCLI.exe
[2007.01.08 23:09:29 | 000,607,232 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2007.01.08 23:09:29 | 000,286,912 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2007.01.08 23:09:29 | 000,117,912 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2007.01.08 23:09:29 | 000,034,724 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:47:37 | 000,297,736 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 12:33:01 | 000,595,798 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,103,872 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
========== LOP Check ==========
[2010.01.27 21:31:39 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\BSplayer
[2010.01.27 19:00:41 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\BSplayer Pro
[2009.01.03 16:20:32 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\KWorld Multimedia
[2009.01.29 08:14:34 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\OpenOffice.org
[2008.12.27 19:59:21 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\PeerNetworking
[2009.01.08 20:55:50 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Software602
[2008.12.23 21:16:29 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Template
[2011.05.28 20:37:00 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\uTorrent
[2011.06.24 19:28:42 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Vso
[2009.02.21 17:22:20 | 000,000,000 | ---D | M] -- C:\Users\Iva Vlčková\AppData\Roaming\Zoner
[2011.06.24 19:13:55 | 000,032,542 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 817 bytes -> C:\Users\Iva Vlčková\shell - SMART heslo.eml:OECustomProperty
< End of report >
Re: Pomalý PC - kontrola HJT
a log Extras:
OTL Extras logfile created on: 24.6.2011 20:44:07 - Run 1
OTL by OldTimer - Version 3.2.24.1 Folder = C:\Users\Iva Vlčková\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,88 Gb Available Physical Memory | 62,64% Memory free
6,19 Gb Paging File | 5,23 Gb Available in Paging File | 84,50% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 279,19 Gb Free Space | 59,94% Space Free | Partition Type: NTFS
Computer Name: IVAVLČKOVÁ-PC | User Name: Iva Vlčková | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{07D75733-102C-4809-8F37-21CDE28BF02F}" = rport=5722 | protocol=6 | dir=out | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{085117FF-7773-4EC6-BDFD-5107CD725562}" = rport=3587 | protocol=6 | dir=out | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{12299F4D-799B-4D5F-9838-91C1D7BACE9C}" = rport=5357 | protocol=6 | dir=out | app=system |
"{13BB4477-79B8-492F-B564-B6D00707530F}" = rport=5722 | protocol=6 | dir=out | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{14DA8511-F209-4C1F-9E8B-238D05998661}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{1756DD71-A981-4E9D-B7F1-29BD1F220CEB}" = rport=445 | protocol=6 | dir=out | app=system |
"{1825E031-62B2-49FF-A62B-90BBAF7E6D88}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{28B1D582-FA31-4EF9-B279-8B152E45F2F4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{29DCB3D5-BCF8-4F14-9B41-7EFD4E73325B}" = lport=5357 | protocol=6 | dir=in | app=system |
"{2A4137BE-6969-4B30-8DA6-F95805A65FF1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2BDAAD4E-E1A2-4EF4-AA15-C436AE753444}" = rport=5358 | protocol=6 | dir=out | app=system |
"{3EEEDC09-E775-425E-8D42-F88AF66E22FF}" = lport=3587 | protocol=6 | dir=in | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{4C4EBD3A-5EEF-41CC-B027-0245432F7A78}" = rport=137 | protocol=17 | dir=out | app=system |
"{4CCD3269-3AE2-4591-9346-2246AD41B202}" = lport=5722 | protocol=6 | dir=in | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{4D90D8BD-C3B6-457B-9238-DEE827C2E43E}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{59452032-9E32-4878-9AFD-B98354AF7CC0}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\netproj.exe |
"{5D7DA8D9-13C8-446A-BAEE-9B8F37F7ED7B}" = rport=3587 | protocol=6 | dir=out | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{67BE7B0C-E602-4134-8254-78C3A11C1871}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{713E29E2-2A1A-48AC-8723-168A1EF6C0E1}" = lport=139 | protocol=6 | dir=in | app=system |
"{79AB1F7E-4606-4D47-BA7D-E401F9993FDF}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{7B3347E8-91C0-4502-AB1C-3FA51C655EA7}" = lport=5722 | protocol=6 | dir=in | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{7C900ED3-A843-417D-9BB7-5FA6E4C03FD2}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{82A500B4-DFD0-49D5-B88A-71DBCA5C4BFB}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\netproj.exe |
"{831C5AE4-D2CE-4DCB-8E2D-C596B81D3A5E}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{8B9D2BFC-AED1-4EAF-A94E-E51D17DCA373}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{8ED01281-CAA2-4DE5-9016-9E88A7F821FF}" = lport=138 | protocol=17 | dir=in | app=system |
"{9A754F56-D325-4A99-B54C-5DB86A38B003}" = lport=445 | protocol=6 | dir=in | app=system |
"{AA9C81BD-0806-4480-A04D-0ECED827DF11}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{AEF31D96-6B27-498C-92DE-610134B1FBB3}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\netproj.exe |
"{B5C89CC1-0382-433D-A6E7-EBE6F7852F7D}" = lport=5358 | protocol=6 | dir=in | app=system |
"{BF035000-B1C3-428D-9DEA-8AAF86DF27B0}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{C2658CC5-E9AD-4608-AC25-DDB39E4C67C7}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{C5E3BFBB-623B-4491-B4E4-B94D960F4F28}" = lport=137 | protocol=17 | dir=in | app=system |
"{E23A88F9-D425-4755-9C6E-29721153F002}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\netproj.exe |
"{E75F002D-FB7D-441D-A992-49F55CB26AF9}" = rport=138 | protocol=17 | dir=out | app=system |
"{E888E488-A09C-465A-AC93-1EAA7A4AC3AA}" = rport=139 | protocol=6 | dir=out | app=system |
"{F65112C3-A8C9-43CF-AB9D-A091E1A4853D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F7AB0278-40D2-4A9D-85C2-1C2A7D80ABFA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F84A4B49-3135-48D8-A4F9-6838E290D5FB}" = lport=3587 | protocol=6 | dir=in | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{FB26861A-036F-43E4-A657-77F9C0B183B1}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06A27AF2-15EA-4193-8621-E120C7F89216}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{0A0290CF-C9BE-4786-8271-22727EDB26F3}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{0E3968B6-CBD4-4003-98C6-C829E848A107}" = protocol=17 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{0F5209AB-4BA0-4378-886C-CA319C6FEF70}" = protocol=6 | dir=in | app=%systemroot%\system32\netproj.exe |
"{20D53A11-9577-4E9A-9E2B-0D42E0881C94}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{2123B038-411C-489F-9A5E-111D7B2EE945}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{3EDBAD90-2D22-4624-8B74-99EEF23A40C2}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{5149354E-0930-441F-9743-B51139357FF2}" = protocol=17 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{606311D0-6608-4A10-9CAC-D511804D3F61}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{60FFCAEB-2564-4B9D-996E-749F1F2B8639}" = dir=in | app=c:\program files\windows live\mesh\moe.exe |
"{72706F23-7912-4D55-99BD-8A8944F7006B}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{89E9FEAA-14B8-498F-82AA-737BEDA57DC3}" = protocol=17 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{8C0F7CAC-3790-4C3B-A65F-D13F56BD3B77}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe |
"{8C8259A9-ECDC-4D73-BF8F-EE74E7F61D00}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{8CA1BDE0-3F40-4A5D-BFA5-4121087488A5}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{957C60CA-9F93-42AB-8D42-3E5CCC9C08C6}" = protocol=6 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{A6698AB8-4E40-4CE0-ABE0-0160CE995789}" = protocol=6 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{B6D1BC4A-4EEA-4CB8-9213-6DAE64115C4D}" = protocol=17 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{BD38E355-9042-4FF0-B5FF-257292576044}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{BF6C6599-7E3F-4BC8-B448-FC10D84D8010}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E87513D8-549A-46F0-B690-AE836C103FBA}" = protocol=6 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{E9C9BF72-20FF-45A5-9319-40371BF91F84}" = protocol=6 | dir=out | app=%systemroot%\system32\netproj.exe |
"{EB386596-7ACB-465B-B3D4-70CBE819A84F}" = protocol=6 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{FDB18BB4-1A22-47FE-804B-7B589FECCA79}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{FE18A9F8-90D9-43C2-8C34-B8D2D80ED0B1}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"TCP Query User{01C68D13-084E-4695-A09E-38BE8799DCD9}C:\users\iva vlčková\documents\utorrent.exe" = protocol=6 | dir=in | app=c:\users\iva vlčková\documents\utorrent.exe |
"TCP Query User{0FC3C466-7057-4C77-83B5-1A00385C2FD1}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{D8494322-DF5D-4F88-88BC-F7529698DE74}C:\program files\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files\emule\emule.exe |
"UDP Query User{2FAF80C3-3AEE-4B57-85C0-283213F94D8B}C:\users\iva vlčková\documents\utorrent.exe" = protocol=17 | dir=in | app=c:\users\iva vlčková\documents\utorrent.exe |
"UDP Query User{DE10C8F1-C429-4456-93A1-619E028537AF}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{FCE99BE0-61DE-4313-8CA8-0F46B458CF7D}C:\program files\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files\emule\emule.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{05B988AF-94B9-7C59-CCE8-18145910D360}" = Catalyst Control Center Graphics Full New
"{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = Panel nástrojů Bing
"{0891B708-EF3F-4D7E-9724-265245F46276}" = Windows Live Remote Service Resources
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0F7C2E47-089E-4d23-B9F7-39BE00100776}" = Toolbox
"{121D88B9-907E-4A8F-9CFC-240472DBE299}" = Su Doku
"{12BBD72B-525B-AEC4-933B-2C42CECA45E9}" = ccc-utility
"{15A7B79C-7E70-8A15-38D8-E2C0A699FB88}" = Catalyst Control Center HydraVision Full
"{18669FF9-C8FE-407a-9F70-E674896B1DB4}" = GPBaseService
"{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client
"{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{23B2AD65-34F7-B826-D941-EF1AF86EFD06}" = HydraVision
"{244E21B9-164C-4EC1-AED8-9BD64161E66D}" = ArcSoft VideoImpression 2
"{26A24AE4-039D-4CA4-87B4-2F83216016F0}" = Java(TM) 6 Update 16
"{26A24AE4-039D-4CA4-87B4-2F83216016FF}" = Java(TM) 6 Update 20
"{32CCE6B1-F9F2-76AD-66D0-FC6DD216C880}" = Catalyst Control Center Graphics Previews Common
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34BFB099-07B2-4E95-A673-7362D60866A2}" = PSSWCORE
"{3700194C-C5DD-439A-BE06-A66960CA4C70}" = MSVCSetup
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{44E393CA-AEC7-2F57-0408-77D79C759390}" = Skins
"{454F5782-A4C3-480E-A629-D435795DEFD8}" = Windows Live Remote Client Resources
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter
"{4C9D4AE8-FCB0-4E09-A8E4-1E60D9D7C30B}" = WinTalker Voice pro 602
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{5109C064-813E-4e87-B0DE-C8AF7B5BC02B}" = SmartWebPrintingOC
"{52A69E11-7CEB-4a7d-9607-68BA4F39A89B}" = DeviceDiscovery
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{58E38911-9022-6A24-0D53-6FD1280B805D}" = Catalyst Control Center Graphics Light
"{5ACE69F0-A3E8-44eb-88C1-0A841E700180}" = TrayApp
"{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI
"{6087F45E-358C-4173-8CB1-DE0AE26FFAE1}" = Catalyst Control Center - Branding
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{65C0025A-2CDE-43C5-82D0-C7A56EF0DB39}" = Bing Bar Platform
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{67163724-3AB4-3B48-A617-66A4923637D8}" = Catalyst Control Center Core Implementation
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{687FEF8A-8597-40b4-832C-297EA3F35817}" = BufferChm
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6AE9A059-6372-435D-A5FE-0568A3B67F19}" = HyperMediaCenter
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7814358B-1284-4305-AE5A-6667DBDF4771}" = ArcSoft WebCam Companion 2
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7988ba74-4a27-4685-991a-53f072f22808}" = F2200_Help
"{80533B67-C407-485D-8B5D-63BB8ED9D878}" = Scan
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}" = ATI AVIVO Codecs
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A30D5C0-BD4A-4E65-AADF-20A457DE6D38}" = Windows Live Family Safety
"{8A85DEAD-7C1F-4368-881C-72AC74CB2E91}" = UnloadSupport
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0020-0405-0000-0000000FF1CE}" = Sada Compatibility Pack pro systém Office 2007
"{90850405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003
"{90AF0405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office PowerPoint Viewer 2003
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00AF-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Czech)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9E655FA7-355E-49CB-B742-9508B8AA5C8B}" = ArcSoft Magic-i 3
"{9F251952-43A3-1305-997C-5B285C76FCAD}" = ATI Catalyst Install Manager
"{A0B9F8DF-C949-45ed-9808-7DC5C0C19C81}" = Status
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC76BA86-7AD7-1029-7B44-A94000000001}" = Adobe Reader 9.4.5 - Czech
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update
"{B44F3823-52DD-45CA-A916-8B320778715D}" = Messenger Companion
"{B6190387-0036-4BEB-8D74-A0AFC5F14706}" = Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars
"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = PowerProducer
"{B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF}" = HPSSupply
"{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}" = HP Photosmart Essential 2.5
"{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{c6922d7f-c698-4d9e-9671-8b3de04d1511}" = DJ_AIO_03_F2200_Software_Min
"{C73B5B3B-F974-48CA-8B91-3E8A432AEA5B}" = Microsoft Works
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CCB9B81A-167F-4832-B305-D2A0430840B3}" = WebReg
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D2DE0770-0E7A-5A28-A0F6-FDB4483C4252}" = Catalyst Control Center Graphics Previews Vista
"{D2E0F0CC-6BE0-490b-B08B-9267083E34C9}" = MarketResearch
"{D338A23C-182F-FBED-4DE6-FE6B0E332653}" = CCC Help Czech
"{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow! 1.0
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D71A25BE-52DF-40C0-AD74-020377C354EB}" = Catalyst Control Center Localization Czech
"{D77D43B5-ED55-426b-B67B-E21F804F6102}" = HP Deskjet F2200 All-In-One Driver Software 10.0 Rel .3
"{D99A8E3A-AE5A-4692-8B19-6F16D454E240}" = Destination Component
"{db18dc72-cd20-4801-be82-f5d2caeec4d7}" = DJ_AIO_03_F2200_Software
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.8.320
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC}" = VideoToolkit01
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{e97a9fd7-2fa1-4474-820d-3f8893a5b78a}" = F2200
"{EA57EFB9-A257-4DD0-BC6D-0FA5625F3421}" = ArcSoft PhotoImpression 5
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{eca3039b-e429-420f-bd5e-7dec0683fc32}" = DJ_AIO_03_F2200_ProductContext
"{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer
"{F42CD69D-E393-47c8-B2CD-B139C4ADA9A8}" = Copy
"{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety
"{F9BE104A-701D-FB9F-EF91-6AD9FB134726}" = ccc-core-static
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF52BA2B-D353-F8A1-3851-F9FCC2D68FB9}" = Catalyst Control Center Graphics Full Existing
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"avast" = avast! Free Antivirus
"CCleaner" = CCleaner
"Google Desktop" = Google Desktop
"Google Chrome" = Google Chrome
"HP Imaging Device Functions" = HP Imaging Device Functions 10.0
"HP Photosmart Essential" = HP Photosmart Essential 2.5
"HP Smart Web Printing" = HP Smart Web Printing
"HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0
"HPExtendedCapabilities" = HP Customer Participation Program 10.0
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 5.7.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware verze 1.51.0.1200
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"Router Screenshot Grabber" = Router Screenshot Grabber 1.0.115
"Shop for HP Supplies" = Shop for HP Supplies
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR
========== Last 10 Event Log Errors ==========
[ Antivirus Events ]
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:07 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
[ Application Events ]
Error - 15.6.2011 9:19:38 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={8913DE1C-E15E-4495-B412-C7047313A925}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 9:21:07 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={0675A049-0D81-4010-B6C7-23AC8588291B}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 9:38:56 | Computer Name = IvaVlčková-PC | Source = EventSystem | ID = 4621
Description =
Error - 15.6.2011 10:47:29 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={11224BA8-C520-44A6-B831-7063CFA175A5}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 10:56:42 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={8A86E70E-3533-4792-89C7-105288248B3E}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 0.
Error - 15.6.2011 11:42:08 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={3F06C99D-B803-49D5-A923-58EF9A082005}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 0.
Error - 15.6.2011 11:49:43 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={001FEC20-37A8-4234-B58C-39C02BF37ABB}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 14:08:26 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={97F84467-FC75-415F-818F-F92EEBB0FB8B}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 16.6.2011 14:15:32 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={F6973184-F345-4E3E-8F35-6A7C5F13E802}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 16.6.2011 15:27:15 | Computer Name = IvaVlčková-PC | Source = EventSystem | ID = 4621
Description =
[ System Events ]
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7034
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7034
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 13:00:21 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7032
Description =
Error - 24.6.2011 13:07:52 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 24.6.2011 13:13:49 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 24.6.2011 13:16:22 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7022
Description =
< End of report >
OTL Extras logfile created on: 24.6.2011 20:44:07 - Run 1
OTL by OldTimer - Version 3.2.24.1 Folder = C:\Users\Iva Vlčková\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,88 Gb Available Physical Memory | 62,64% Memory free
6,19 Gb Paging File | 5,23 Gb Available in Paging File | 84,50% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 279,19 Gb Free Space | 59,94% Space Free | Partition Type: NTFS
Computer Name: IVAVLČKOVÁ-PC | User Name: Iva Vlčková | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{07D75733-102C-4809-8F37-21CDE28BF02F}" = rport=5722 | protocol=6 | dir=out | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{085117FF-7773-4EC6-BDFD-5107CD725562}" = rport=3587 | protocol=6 | dir=out | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{12299F4D-799B-4D5F-9838-91C1D7BACE9C}" = rport=5357 | protocol=6 | dir=out | app=system |
"{13BB4477-79B8-492F-B564-B6D00707530F}" = rport=5722 | protocol=6 | dir=out | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{14DA8511-F209-4C1F-9E8B-238D05998661}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{1756DD71-A981-4E9D-B7F1-29BD1F220CEB}" = rport=445 | protocol=6 | dir=out | app=system |
"{1825E031-62B2-49FF-A62B-90BBAF7E6D88}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{28B1D582-FA31-4EF9-B279-8B152E45F2F4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{29DCB3D5-BCF8-4F14-9B41-7EFD4E73325B}" = lport=5357 | protocol=6 | dir=in | app=system |
"{2A4137BE-6969-4B30-8DA6-F95805A65FF1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2BDAAD4E-E1A2-4EF4-AA15-C436AE753444}" = rport=5358 | protocol=6 | dir=out | app=system |
"{3EEEDC09-E775-425E-8D42-F88AF66E22FF}" = lport=3587 | protocol=6 | dir=in | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{4C4EBD3A-5EEF-41CC-B027-0245432F7A78}" = rport=137 | protocol=17 | dir=out | app=system |
"{4CCD3269-3AE2-4591-9346-2246AD41B202}" = lport=5722 | protocol=6 | dir=in | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{4D90D8BD-C3B6-457B-9238-DEE827C2E43E}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{59452032-9E32-4878-9AFD-B98354AF7CC0}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\netproj.exe |
"{5D7DA8D9-13C8-446A-BAEE-9B8F37F7ED7B}" = rport=3587 | protocol=6 | dir=out | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{67BE7B0C-E602-4134-8254-78C3A11C1871}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{713E29E2-2A1A-48AC-8723-168A1EF6C0E1}" = lport=139 | protocol=6 | dir=in | app=system |
"{79AB1F7E-4606-4D47-BA7D-E401F9993FDF}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{7B3347E8-91C0-4502-AB1C-3FA51C655EA7}" = lport=5722 | protocol=6 | dir=in | svc=dfsr | app=%systemroot%\system32\dfsr.exe |
"{7C900ED3-A843-417D-9BB7-5FA6E4C03FD2}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{82A500B4-DFD0-49D5-B88A-71DBCA5C4BFB}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\netproj.exe |
"{831C5AE4-D2CE-4DCB-8E2D-C596B81D3A5E}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{8B9D2BFC-AED1-4EAF-A94E-E51D17DCA373}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{8ED01281-CAA2-4DE5-9016-9E88A7F821FF}" = lport=138 | protocol=17 | dir=in | app=system |
"{9A754F56-D325-4A99-B54C-5DB86A38B003}" = lport=445 | protocol=6 | dir=in | app=system |
"{AA9C81BD-0806-4480-A04D-0ECED827DF11}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{AEF31D96-6B27-498C-92DE-610134B1FBB3}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\netproj.exe |
"{B5C89CC1-0382-433D-A6E7-EBE6F7852F7D}" = lport=5358 | protocol=6 | dir=in | app=system |
"{BF035000-B1C3-428D-9DEA-8AAF86DF27B0}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{C2658CC5-E9AD-4608-AC25-DDB39E4C67C7}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{C5E3BFBB-623B-4491-B4E4-B94D960F4F28}" = lport=137 | protocol=17 | dir=in | app=system |
"{E23A88F9-D425-4755-9C6E-29721153F002}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\netproj.exe |
"{E75F002D-FB7D-441D-A992-49F55CB26AF9}" = rport=138 | protocol=17 | dir=out | app=system |
"{E888E488-A09C-465A-AC93-1EAA7A4AC3AA}" = rport=139 | protocol=6 | dir=out | app=system |
"{F65112C3-A8C9-43CF-AB9D-A091E1A4853D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F7AB0278-40D2-4A9D-85C2-1C2A7D80ABFA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F84A4B49-3135-48D8-A4F9-6838E290D5FB}" = lport=3587 | protocol=6 | dir=in | svc=p2psvc | app=%systemroot%\system32\svchost.exe |
"{FB26861A-036F-43E4-A657-77F9C0B183B1}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06A27AF2-15EA-4193-8621-E120C7F89216}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{0A0290CF-C9BE-4786-8271-22727EDB26F3}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{0E3968B6-CBD4-4003-98C6-C829E848A107}" = protocol=17 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{0F5209AB-4BA0-4378-886C-CA319C6FEF70}" = protocol=6 | dir=in | app=%systemroot%\system32\netproj.exe |
"{20D53A11-9577-4E9A-9E2B-0D42E0881C94}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{2123B038-411C-489F-9A5E-111D7B2EE945}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{3EDBAD90-2D22-4624-8B74-99EEF23A40C2}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
"{5149354E-0930-441F-9743-B51139357FF2}" = protocol=17 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{606311D0-6608-4A10-9CAC-D511804D3F61}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{60FFCAEB-2564-4B9D-996E-749F1F2B8639}" = dir=in | app=c:\program files\windows live\mesh\moe.exe |
"{72706F23-7912-4D55-99BD-8A8944F7006B}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{89E9FEAA-14B8-498F-82AA-737BEDA57DC3}" = protocol=17 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{8C0F7CAC-3790-4C3B-A65F-D13F56BD3B77}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe |
"{8C8259A9-ECDC-4D73-BF8F-EE74E7F61D00}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{8CA1BDE0-3F40-4A5D-BFA5-4121087488A5}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{957C60CA-9F93-42AB-8D42-3E5CCC9C08C6}" = protocol=6 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{A6698AB8-4E40-4CE0-ABE0-0160CE995789}" = protocol=6 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{B6D1BC4A-4EEA-4CB8-9213-6DAE64115C4D}" = protocol=17 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{BD38E355-9042-4FF0-B5FF-257292576044}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{BF6C6599-7E3F-4BC8-B448-FC10D84D8010}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E87513D8-549A-46F0-B690-AE836C103FBA}" = protocol=6 | dir=in | app=%programfiles%\windows collaboration\wincollab.exe |
"{E9C9BF72-20FF-45A5-9319-40371BF91F84}" = protocol=6 | dir=out | app=%systemroot%\system32\netproj.exe |
"{EB386596-7ACB-465B-B3D4-70CBE819A84F}" = protocol=6 | dir=out | app=%programfiles%\windows collaboration\wincollab.exe |
"{FDB18BB4-1A22-47FE-804B-7B589FECCA79}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{FE18A9F8-90D9-43C2-8C34-B8D2D80ED0B1}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"TCP Query User{01C68D13-084E-4695-A09E-38BE8799DCD9}C:\users\iva vlčková\documents\utorrent.exe" = protocol=6 | dir=in | app=c:\users\iva vlčková\documents\utorrent.exe |
"TCP Query User{0FC3C466-7057-4C77-83B5-1A00385C2FD1}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{D8494322-DF5D-4F88-88BC-F7529698DE74}C:\program files\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files\emule\emule.exe |
"UDP Query User{2FAF80C3-3AEE-4B57-85C0-283213F94D8B}C:\users\iva vlčková\documents\utorrent.exe" = protocol=17 | dir=in | app=c:\users\iva vlčková\documents\utorrent.exe |
"UDP Query User{DE10C8F1-C429-4456-93A1-619E028537AF}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{FCE99BE0-61DE-4313-8CA8-0F46B458CF7D}C:\program files\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files\emule\emule.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{05B988AF-94B9-7C59-CCE8-18145910D360}" = Catalyst Control Center Graphics Full New
"{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = Panel nástrojů Bing
"{0891B708-EF3F-4D7E-9724-265245F46276}" = Windows Live Remote Service Resources
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0F7C2E47-089E-4d23-B9F7-39BE00100776}" = Toolbox
"{121D88B9-907E-4A8F-9CFC-240472DBE299}" = Su Doku
"{12BBD72B-525B-AEC4-933B-2C42CECA45E9}" = ccc-utility
"{15A7B79C-7E70-8A15-38D8-E2C0A699FB88}" = Catalyst Control Center HydraVision Full
"{18669FF9-C8FE-407a-9F70-E674896B1DB4}" = GPBaseService
"{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client
"{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{23B2AD65-34F7-B826-D941-EF1AF86EFD06}" = HydraVision
"{244E21B9-164C-4EC1-AED8-9BD64161E66D}" = ArcSoft VideoImpression 2
"{26A24AE4-039D-4CA4-87B4-2F83216016F0}" = Java(TM) 6 Update 16
"{26A24AE4-039D-4CA4-87B4-2F83216016FF}" = Java(TM) 6 Update 20
"{32CCE6B1-F9F2-76AD-66D0-FC6DD216C880}" = Catalyst Control Center Graphics Previews Common
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34BFB099-07B2-4E95-A673-7362D60866A2}" = PSSWCORE
"{3700194C-C5DD-439A-BE06-A66960CA4C70}" = MSVCSetup
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{44E393CA-AEC7-2F57-0408-77D79C759390}" = Skins
"{454F5782-A4C3-480E-A629-D435795DEFD8}" = Windows Live Remote Client Resources
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter
"{4C9D4AE8-FCB0-4E09-A8E4-1E60D9D7C30B}" = WinTalker Voice pro 602
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{5109C064-813E-4e87-B0DE-C8AF7B5BC02B}" = SmartWebPrintingOC
"{52A69E11-7CEB-4a7d-9607-68BA4F39A89B}" = DeviceDiscovery
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{58E38911-9022-6A24-0D53-6FD1280B805D}" = Catalyst Control Center Graphics Light
"{5ACE69F0-A3E8-44eb-88C1-0A841E700180}" = TrayApp
"{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI
"{6087F45E-358C-4173-8CB1-DE0AE26FFAE1}" = Catalyst Control Center - Branding
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{65C0025A-2CDE-43C5-82D0-C7A56EF0DB39}" = Bing Bar Platform
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{67163724-3AB4-3B48-A617-66A4923637D8}" = Catalyst Control Center Core Implementation
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{687FEF8A-8597-40b4-832C-297EA3F35817}" = BufferChm
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6AE9A059-6372-435D-A5FE-0568A3B67F19}" = HyperMediaCenter
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7814358B-1284-4305-AE5A-6667DBDF4771}" = ArcSoft WebCam Companion 2
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7988ba74-4a27-4685-991a-53f072f22808}" = F2200_Help
"{80533B67-C407-485D-8B5D-63BB8ED9D878}" = Scan
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}" = ATI AVIVO Codecs
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A30D5C0-BD4A-4E65-AADF-20A457DE6D38}" = Windows Live Family Safety
"{8A85DEAD-7C1F-4368-881C-72AC74CB2E91}" = UnloadSupport
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0020-0405-0000-0000000FF1CE}" = Sada Compatibility Pack pro systém Office 2007
"{90850405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003
"{90AF0405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office PowerPoint Viewer 2003
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00AF-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Czech)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9E655FA7-355E-49CB-B742-9508B8AA5C8B}" = ArcSoft Magic-i 3
"{9F251952-43A3-1305-997C-5B285C76FCAD}" = ATI Catalyst Install Manager
"{A0B9F8DF-C949-45ed-9808-7DC5C0C19C81}" = Status
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC76BA86-7AD7-1029-7B44-A94000000001}" = Adobe Reader 9.4.5 - Czech
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update
"{B44F3823-52DD-45CA-A916-8B320778715D}" = Messenger Companion
"{B6190387-0036-4BEB-8D74-A0AFC5F14706}" = Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars
"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = PowerProducer
"{B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF}" = HPSSupply
"{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}" = HP Photosmart Essential 2.5
"{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{c6922d7f-c698-4d9e-9671-8b3de04d1511}" = DJ_AIO_03_F2200_Software_Min
"{C73B5B3B-F974-48CA-8B91-3E8A432AEA5B}" = Microsoft Works
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CCB9B81A-167F-4832-B305-D2A0430840B3}" = WebReg
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D2DE0770-0E7A-5A28-A0F6-FDB4483C4252}" = Catalyst Control Center Graphics Previews Vista
"{D2E0F0CC-6BE0-490b-B08B-9267083E34C9}" = MarketResearch
"{D338A23C-182F-FBED-4DE6-FE6B0E332653}" = CCC Help Czech
"{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow! 1.0
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D71A25BE-52DF-40C0-AD74-020377C354EB}" = Catalyst Control Center Localization Czech
"{D77D43B5-ED55-426b-B67B-E21F804F6102}" = HP Deskjet F2200 All-In-One Driver Software 10.0 Rel .3
"{D99A8E3A-AE5A-4692-8B19-6F16D454E240}" = Destination Component
"{db18dc72-cd20-4801-be82-f5d2caeec4d7}" = DJ_AIO_03_F2200_Software
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.8.320
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC}" = VideoToolkit01
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{e97a9fd7-2fa1-4474-820d-3f8893a5b78a}" = F2200
"{EA57EFB9-A257-4DD0-BC6D-0FA5625F3421}" = ArcSoft PhotoImpression 5
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{eca3039b-e429-420f-bd5e-7dec0683fc32}" = DJ_AIO_03_F2200_ProductContext
"{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer
"{F42CD69D-E393-47c8-B2CD-B139C4ADA9A8}" = Copy
"{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety
"{F9BE104A-701D-FB9F-EF91-6AD9FB134726}" = ccc-core-static
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF52BA2B-D353-F8A1-3851-F9FCC2D68FB9}" = Catalyst Control Center Graphics Full Existing
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"avast" = avast! Free Antivirus
"CCleaner" = CCleaner
"Google Desktop" = Google Desktop
"Google Chrome" = Google Chrome
"HP Imaging Device Functions" = HP Imaging Device Functions 10.0
"HP Photosmart Essential" = HP Photosmart Essential 2.5
"HP Smart Web Printing" = HP Smart Web Printing
"HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0
"HPExtendedCapabilities" = HP Customer Participation Program 10.0
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 5.7.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware verze 1.51.0.1200
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"Router Screenshot Grabber" = Router Screenshot Grabber 1.0.115
"Shop for HP Supplies" = Shop for HP Supplies
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR
========== Last 10 Event Log Errors ==========
[ Antivirus Events ]
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:06 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 4.4.2011 17:07:07 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
Error - 10.4.2011 18:06:47 | Computer Name = IvaVlčková-PC | Source = avast! | ID = 33554522
Description =
[ Application Events ]
Error - 15.6.2011 9:19:38 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={8913DE1C-E15E-4495-B412-C7047313A925}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 9:21:07 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={0675A049-0D81-4010-B6C7-23AC8588291B}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 9:38:56 | Computer Name = IvaVlčková-PC | Source = EventSystem | ID = 4621
Description =
Error - 15.6.2011 10:47:29 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={11224BA8-C520-44A6-B831-7063CFA175A5}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 10:56:42 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={8A86E70E-3533-4792-89C7-105288248B3E}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 0.
Error - 15.6.2011 11:42:08 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={3F06C99D-B803-49D5-A923-58EF9A082005}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 0.
Error - 15.6.2011 11:49:43 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={001FEC20-37A8-4234-B58C-39C02BF37ABB}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 15.6.2011 14:08:26 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={97F84467-FC75-415F-818F-F92EEBB0FB8B}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 16.6.2011 14:15:32 | Computer Name = IvaVlčková-PC | Source = RasClient | ID = 20227
Description = CoID={F6973184-F345-4E3E-8F35-6A7C5F13E802}: Uživatel IvaVlčková-PC\Iva
Vlčková vytočil připojení s názvem Širokopásmové připojení, které se nezdařilo.
Kód chyby vrácený při selhání je 815.
Error - 16.6.2011 15:27:15 | Computer Name = IvaVlčková-PC | Source = EventSystem | ID = 4621
Description =
[ System Events ]
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7034
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7034
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 12:59:51 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7031
Description =
Error - 24.6.2011 13:00:21 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7032
Description =
Error - 24.6.2011 13:07:52 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 24.6.2011 13:13:49 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7030
Description =
Error - 24.6.2011 13:16:22 | Computer Name = IvaVlčková-PC | Source = Service Control Manager | ID = 7022
Description =
< End of report >
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý PC - kontrola HJT
Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Aktualizuj javu:
Java SE Runtime Environment 6u25
Klikni na Accept License Agreement
Vyber OS (Windows nebo Windows x64, Offline Installation)
jre-6u25-windows-i586-p.exe nebo
jre-6u25-windows-x64.exe
Ostatní javy odeber v přidat/odebrat programy.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Kód: Vybrat vše
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
DRV - (catchme) -- File not found
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
FF - prefs.js..browser.search.defaultthis.engineName: "Conduit Engine Customized Web Search"
[2010.02.03 22:56:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions
[2010.02.03 22:56:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2011.06.24 19:44:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions
[2010.12.15 21:17:50 | 000,000,913 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\conduit.xml
[2010.02.03 22:57:19 | 000,009,949 | ---- | M] () -- C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\mywebsearch.xml
[2010.05.28 06:27:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
File not found (No name found) -- C:\USERS\IVA VLčKOVá\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\10BKLBJ2.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
O1 HOSTS File: ([2011.06.24 19:16:50 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
[2011.06.24 03:08:24 | 000,607,232 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2011.06.24 03:08:24 | 000,595,798 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.06.24 03:08:24 | 000,117,912 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2011.06.24 03:08:24 | 000,103,872 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2007.01.08 23:09:29 | 000,607,232 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2007.01.08 23:09:29 | 000,286,912 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2007.01.08 23:09:29 | 000,117,912 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2007.01.08 23:09:29 | 000,034,724 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2006.11.02 12:33:01 | 000,595,798 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,103,872 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
c:\windows\Tasks\*.job
C:\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SWREG.exe
C:\Windows\SWSC.exe
C:\Windows\NIRCMD.exe
C:\Qoobox
[3 C:\Users\Iva Vlčková\AppData\Local\*.tmp files -> C:\Users\Iva Vlčková\AppData\Local\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
C:\Windows\bthservsdp.dat
C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9}
C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD}
C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3}
C:\Windows\PEV.exe
C:\Windows\sed.exe
C:\Windows\grep.exe
C:\Windows\zip.exe
C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9}
C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD}
C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3}
C:\Windows\ativpsrm.bin
C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\ProgramData\ezsidmv.dat
C:\Users\Iva Vlčková\AppData\Roaming\wklnhst.dat
c:\users\Iva Vlčková\AppData\Local\BITE*.tmp
:Reg
:Commands
[purity]
[emptytemp]
[EMPTYFLASH]
[start explorer]
[Reboot]
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Aktualizuj javu:
Java SE Runtime Environment 6u25
Klikni na Accept License Agreement
Vyber OS (Windows nebo Windows x64, Offline Installation)
jre-6u25-windows-i586-p.exe nebo
jre-6u25-windows-x64.exe
Ostatní javy odeber v přidat/odebrat programy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Pomalý PC - kontrola HJT
tady je log:
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service catchme stopped successfully!
Service catchme deleted successfully!
File File not found not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
Prefs.js: "Conduit Engine Customized Web Search" removed from browser.search.defaultthis.engineName
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions folder moved successfully.
Folder C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\ not found.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults\preferences folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\chrome folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\conduit.xml moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\mywebsearch.xml moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-TW\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-TW folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-CN\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-CN folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\sv-SE\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\sv-SE folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ko-KR\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ko-KR folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ja-JP\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ja-JP folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\it-IT\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\it-IT folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\fr-FR\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\fr-FR folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\es-ES\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\es-ES folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\en-US\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\en-US folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\de-DE\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\de-DE folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\content\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\content folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions folder moved successfully.
127.0.0.1 localhost removed from HOSTS file successfully
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {D27CDB6E-AE6D-11CF-96B8-444553540000}
C:\Windows\Downloaded Program Files\swflash.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ deleted successfully.
C:\Windows\System32\perfh005.dat moved successfully.
C:\Windows\System32\perfh009.dat moved successfully.
C:\Windows\System32\perfc005.dat moved successfully.
C:\Windows\System32\perfc009.dat moved successfully.
File C:\Windows\System32\perfh005.dat not found.
C:\Windows\System32\perfi005.dat moved successfully.
File C:\Windows\System32\perfc005.dat not found.
C:\Windows\System32\perfd005.dat moved successfully.
File C:\Windows\System32\perfh009.dat not found.
C:\Windows\System32\perfi009.dat moved successfully.
File C:\Windows\System32\perfc009.dat not found.
C:\Windows\System32\perfd009.dat moved successfully.
========== FILES ==========
C:\WINDOWS\System32\SET6166.tmp moved successfully.
C:\WINDOWS\System32\SET9069.tmp moved successfully.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder c:\windows\Tasks\*.job not found.
File\Folder C:\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
C:\Windows\SWREG.exe moved successfully.
C:\Windows\SWSC.exe moved successfully.
C:\Windows\NIRCMD.exe moved successfully.
C:\Qoobox\Quarantine\C folder moved successfully.
C:\Qoobox\Quarantine folder moved successfully.
Folder move failed. C:\Qoobox\BackEnv scheduled to be moved on reboot.
C:\Qoobox folder moved successfully.
File\Folder [3 C:\Users\Iva Vlčková\AppData\Local\*.tmp files -> C:\Users\Iva Vlčková\AppData\Local\*.tmp -> ] not found.
File\Folder [2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] not found.
C:\Windows\bthservsdp.dat moved successfully.
C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini moved successfully.
C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9} moved successfully.
C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD} moved successfully.
C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3} moved successfully.
C:\Windows\PEV.exe moved successfully.
C:\Windows\sed.exe moved successfully.
C:\Windows\grep.exe moved successfully.
C:\Windows\zip.exe moved successfully.
File\Folder C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9} not found.
File\Folder C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD} not found.
File\Folder C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3} not found.
C:\Windows\ativpsrm.bin moved successfully.
File\Folder C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini not found.
C:\ProgramData\ezsidmv.dat moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\wklnhst.dat moved successfully.
c:\users\Iva Vlčková\AppData\Local\BITE11A.tmp moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Iva Vlčková
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 1112276 bytes
->Java cache emptied: 32202551 bytes
->FireFox cache emptied: 48032562 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 602 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1242 bytes
RecycleBin emptied: 100864 bytes
Total Files Cleaned = 78,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Iva Vlčková
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.24.1 log created on 06252011_073438
Files\Folders moved on Reboot...
File\Folder C:\Qoobox\BackEnv not found!
Registry entries deleted on Reboot...
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service catchme stopped successfully!
Service catchme deleted successfully!
File File not found not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
Prefs.js: "Conduit Engine Customized Web Search" removed from browser.search.defaultthis.engineName
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions folder moved successfully.
Folder C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\ not found.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults\preferences folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\chrome folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\extensions folder moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\conduit.xml moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\Mozilla\Firefox\Profiles\10bklbj2.default\searchplugins\mywebsearch.xml moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-TW\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-TW folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-CN\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\zh-CN folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\sv-SE\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\sv-SE folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ko-KR\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ko-KR folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ja-JP\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\ja-JP folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\it-IT\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\it-IT folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\fr-FR\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\fr-FR folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\es-ES\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\es-ES folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\en-US\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\en-US folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\de-DE\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale\de-DE folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\locale folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\content\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome\content folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\chrome folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions folder moved successfully.
127.0.0.1 localhost removed from HOSTS file successfully
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {D27CDB6E-AE6D-11CF-96B8-444553540000}
C:\Windows\Downloaded Program Files\swflash.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ deleted successfully.
C:\Windows\System32\perfh005.dat moved successfully.
C:\Windows\System32\perfh009.dat moved successfully.
C:\Windows\System32\perfc005.dat moved successfully.
C:\Windows\System32\perfc009.dat moved successfully.
File C:\Windows\System32\perfh005.dat not found.
C:\Windows\System32\perfi005.dat moved successfully.
File C:\Windows\System32\perfc005.dat not found.
C:\Windows\System32\perfd005.dat moved successfully.
File C:\Windows\System32\perfh009.dat not found.
C:\Windows\System32\perfi009.dat moved successfully.
File C:\Windows\System32\perfc009.dat not found.
C:\Windows\System32\perfd009.dat moved successfully.
========== FILES ==========
C:\WINDOWS\System32\SET6166.tmp moved successfully.
C:\WINDOWS\System32\SET9069.tmp moved successfully.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder c:\windows\Tasks\*.job not found.
File\Folder C:\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
C:\Windows\SWREG.exe moved successfully.
C:\Windows\SWSC.exe moved successfully.
C:\Windows\NIRCMD.exe moved successfully.
C:\Qoobox\Quarantine\C folder moved successfully.
C:\Qoobox\Quarantine folder moved successfully.
Folder move failed. C:\Qoobox\BackEnv scheduled to be moved on reboot.
C:\Qoobox folder moved successfully.
File\Folder [3 C:\Users\Iva Vlčková\AppData\Local\*.tmp files -> C:\Users\Iva Vlčková\AppData\Local\*.tmp -> ] not found.
File\Folder [2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] not found.
C:\Windows\bthservsdp.dat moved successfully.
C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini moved successfully.
C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9} moved successfully.
C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD} moved successfully.
C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3} moved successfully.
C:\Windows\PEV.exe moved successfully.
C:\Windows\sed.exe moved successfully.
C:\Windows\grep.exe moved successfully.
C:\Windows\zip.exe moved successfully.
File\Folder C:\Users\Iva Vlčková\AppData\Local\{DF1F8813-A906-4F2A-A348-33851D44E9B9} not found.
File\Folder C:\Users\Iva Vlčková\AppData\Local\{56BD7510-5643-4990-B12E-9BFC24CA24CD} not found.
File\Folder C:\Users\Iva Vlčková\AppData\Local\{99C3F745-3A8E-4583-BED7-666E0FB40DE3} not found.
C:\Windows\ativpsrm.bin moved successfully.
File\Folder C:\Users\Iva Vlčková\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini not found.
C:\ProgramData\ezsidmv.dat moved successfully.
C:\Users\Iva Vlčková\AppData\Roaming\wklnhst.dat moved successfully.
c:\users\Iva Vlčková\AppData\Local\BITE11A.tmp moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Iva Vlčková
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 1112276 bytes
->Java cache emptied: 32202551 bytes
->FireFox cache emptied: 48032562 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 602 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1242 bytes
RecycleBin emptied: 100864 bytes
Total Files Cleaned = 78,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Iva Vlčková
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.24.1 log created on 06252011_073438
Files\Folders moved on Reboot...
File\Folder C:\Qoobox\BackEnv not found!
Registry entries deleted on Reboot...
Re: Pomalý PC - kontrola HJT
ohledně té Javy... na tomto PC jsou Visty, 32 bitový systém a na tom odkazu není taková možnost, co tam mám dát????
Download
Linux x86 - RPM Installer 20.06 MB jre-6u25-linux-i586-rpm.bin
Linux x86 - Self Extracting Installer 20.58 MB jre-6u25-linux-i586.bin
Linux x64 - RPM Installer 19.62 MB jre-6u25-linux-x64-rpm.bin
Linux x64 - Self Extracting Installer 20.20 MB jre-6u25-linux-x64.bin
Solaris x86 - Self Extracting Binary 20.22 MB jre-6u25-solaris-i586.sh
Solaris SPARC - Self Extracting Binary 25.05 MB jre-6u25-solaris-sparc.sh
Solaris SPARC 64-bit - Self Extracting Binary 11.19 MB jre-6u25-solaris-sparcv9.sh
Solaris x64 - Self Extracting Binary 7.48 MB jre-6u25-solaris-x64.sh
Windows x86 Online 0.85 MB jre-6u25-windows-i586-iftw.exe
Windows x86 Offline 15.77 MB jre-6u25-windows-i586.exe
Windows x64 16.09 MB jre-6u25-windows-x64.exe
Download
Linux x86 - RPM Installer 20.06 MB jre-6u25-linux-i586-rpm.bin
Linux x86 - Self Extracting Installer 20.58 MB jre-6u25-linux-i586.bin
Linux x64 - RPM Installer 19.62 MB jre-6u25-linux-x64-rpm.bin
Linux x64 - Self Extracting Installer 20.20 MB jre-6u25-linux-x64.bin
Solaris x86 - Self Extracting Binary 20.22 MB jre-6u25-solaris-i586.sh
Solaris SPARC - Self Extracting Binary 25.05 MB jre-6u25-solaris-sparc.sh
Solaris SPARC 64-bit - Self Extracting Binary 11.19 MB jre-6u25-solaris-sparcv9.sh
Solaris x64 - Self Extracting Binary 7.48 MB jre-6u25-solaris-x64.sh
Windows x86 Online 0.85 MB jre-6u25-windows-i586-iftw.exe
Windows x86 Offline 15.77 MB jre-6u25-windows-i586.exe
Windows x64 16.09 MB jre-6u25-windows-x64.exe
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pomalý PC - kontrola HJT
Windows x86 Offline 15.77 MB jre-6u25-windows-i586.exe
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Pomalý PC - kontrola HJT
OK, Java nainstalovaná, ostatní Javy odebrány..co dál?
Re: Pomalý PC - kontrola HJT
Jak to teď vypadá s počítačem?
Re: Pomalý PC - kontrola HJT
Počítač jsem vypnula, nechala ho 3 hodiny "odpočinout" a teď jsem ho zapnula..na první pokus se nestalo nic, disk se roztočil, ale pak už nic..tak jsem ho natvrdo vypnula a zapnula znovu, už to šlo, ale start trvá stále dlouho..
Re: Pomalý PC - kontrola HJT
Stáhni http://www.slunecnice.cz/sw/crystaldiskinfo/
- spusť ho a v nabídce zvol Kopírovat.
- Data ze schránky sem pak vlož pomocí Ctrl+V
- spusť ho a v nabídce zvol Kopírovat.
- Data ze schránky sem pak vlož pomocí Ctrl+V
Re: Pomalý PC - kontrola HJT
----------------------------------------------------------------------------
CrystalDiskInfo 4.0.1 (C) 2008-2011 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows Vista Home Premium Edition SP2 [6.0 Build 6002] (x86)
Date : 2011/06/25 17:38:50
-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
+ Kanál IDE (0)
- HL-DT-ST DVD-RAM GH22NP20 ATA Device
- Kanál IDE (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 1 - 2921 [ATA]
+ Kanál IDE (0)
- WDC WD5000AAKS-00A7B0 ATA Device
- Kanál IDE (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 2 - 2926 [ATA]
- Kanál IDE (0)
- Kanál IDE (1)
- Iniciátor iSCSI společnosti Microsoft [SCSI]
-- Disk List ---------------------------------------------------------------
(1) WDC WD5000AAKS-00A7B0 : 500.1 GB [0-2-0, pd1]
----------------------------------------------------------------------------
(1) WDC WD5000AAKS-00A7B0
----------------------------------------------------------------------------
Model : WDC WD5000AAKS-00A7B0
Firmware : 01.03B01
Serial Number : WD-WMASY2943862
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 4078 hod.
Power On Count : 2576 krát
Temparature : 43 C (109 F)
Health Status : Pozor
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 160 155 _21 000000001388 Čas na roztočení ploten
04 _98 _98 __0 000000000A45 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 _51 000000000000 Počet chybných hledání
09 _95 _95 __0 000000000FEE Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 _51 000000000000 Počet pokusů o překalibrování
0C _98 _98 __0 000000000A10 Počet cyklů zapnutí zařízení
C0 200 200 __0 0000000000CB Počet vypnutí disku
C1 200 200 __0 000000000A45 Počet cyklů načítání/vymazání
C2 104 _96 __0 00000000002B Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000001 Počet podezřelých sektorů
C6 200 200 __0 000000000002 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 _51 000000000000 Počet chyb při zápisu sektorů
-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 42 7A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 57 44 2D 57 4D 41 53
020: 59 32 39 34 33 38 36 32 00 00 80 00 00 32 30 31
030: 2E 30 33 42 30 31 57 44 43 20 57 44 35 30 30 30
040: 41 41 4B 53 2D 30 30 41 37 42 30 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 01 00 00 00 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 07 06 00 00 00 44 00 40
0A0: 01 FE 00 00 74 6B 7F 61 41 23 74 69 BC 41 41 23
0B0: 20 7F 00 37 00 37 00 00 FF FE 00 00 80 FE 00 00
0C0: 00 00 00 00 00 00 00 00 60 30 3A 38 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 01 4E E0 00 D0 66 C6
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 10
0F0: 40 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 00 00 00 00 00 00 00 00 16 9D 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 30 3F 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 10 0E 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 10 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 37 A5
CrystalDiskInfo 4.0.1 (C) 2008-2011 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows Vista Home Premium Edition SP2 [6.0 Build 6002] (x86)
Date : 2011/06/25 17:38:50
-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
+ Kanál IDE (0)
- HL-DT-ST DVD-RAM GH22NP20 ATA Device
- Kanál IDE (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 1 - 2921 [ATA]
+ Kanál IDE (0)
- WDC WD5000AAKS-00A7B0 ATA Device
- Kanál IDE (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 2 - 2926 [ATA]
- Kanál IDE (0)
- Kanál IDE (1)
- Iniciátor iSCSI společnosti Microsoft [SCSI]
-- Disk List ---------------------------------------------------------------
(1) WDC WD5000AAKS-00A7B0 : 500.1 GB [0-2-0, pd1]
----------------------------------------------------------------------------
(1) WDC WD5000AAKS-00A7B0
----------------------------------------------------------------------------
Model : WDC WD5000AAKS-00A7B0
Firmware : 01.03B01
Serial Number : WD-WMASY2943862
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 4078 hod.
Power On Count : 2576 krát
Temparature : 43 C (109 F)
Health Status : Pozor
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 160 155 _21 000000001388 Čas na roztočení ploten
04 _98 _98 __0 000000000A45 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 _51 000000000000 Počet chybných hledání
09 _95 _95 __0 000000000FEE Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 _51 000000000000 Počet pokusů o překalibrování
0C _98 _98 __0 000000000A10 Počet cyklů zapnutí zařízení
C0 200 200 __0 0000000000CB Počet vypnutí disku
C1 200 200 __0 000000000A45 Počet cyklů načítání/vymazání
C2 104 _96 __0 00000000002B Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000001 Počet podezřelých sektorů
C6 200 200 __0 000000000002 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 _51 000000000000 Počet chyb při zápisu sektorů
-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 42 7A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 57 44 2D 57 4D 41 53
020: 59 32 39 34 33 38 36 32 00 00 80 00 00 32 30 31
030: 2E 30 33 42 30 31 57 44 43 20 57 44 35 30 30 30
040: 41 41 4B 53 2D 30 30 41 37 42 30 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 01 00 00 00 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 07 06 00 00 00 44 00 40
0A0: 01 FE 00 00 74 6B 7F 61 41 23 74 69 BC 41 41 23
0B0: 20 7F 00 37 00 37 00 00 FF FE 00 00 80 FE 00 00
0C0: 00 00 00 00 00 00 00 00 60 30 3A 38 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 01 4E E0 00 D0 66 C6
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 10
0F0: 40 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 00 00 00 00 00 00 00 00 16 9D 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 30 3F 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 10 0E 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 10 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 37 A5
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 113 hostů