Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju. Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod memphisto » 07 úno 2011 11:25

Zkus před vypnutím PC vypnout i uTorrenta. Občas se mi stávalo, že blokoval vypínání
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Reklama
android2603
nováček
Příspěvky: 31
Registrován: leden 11
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod android2603 » 11 úno 2011 16:30

tak ani to nepomohlo...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod jaro3 » 12 úno 2011 10:04

Popiš přesně , co to dělá , když dáš Start-Vypnout.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

android2603
nováček
Příspěvky: 31
Registrován: leden 11
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod android2603 » 14 úno 2011 12:59

start-vypnout-tak za 3vteriny nabehne klasicka modra obrazovka VYPÍNÁNÍ-tak za 15vterin prestane blikat kontrolka cinosti procesoru,ale modra obrazovka trci dal. zkousel sem jak dlouho a je to do doby nez se notas uplne vybije. zkousel sem vypinat pri pripojeni k proudu i bez.vypnout vsechny programy, ktere bezi. jinak notas jede normalne. dokonce mozna o trochu rychleji. je to zahada:-)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod jaro3 » 14 úno 2011 23:19

Zkontroluj záložky na napájení , možnosti napájení , spánek atd. Nějak asi neumím poradit..

Jak dlouho Ti to dělá?

Stáhni si windatfindbat of Karl83

Rozbal do složky, otevři jí poklepej na ní (ve vistě a win7 spusť jako správce). Otevře se okno DOS a posléze se objeví log.Jinak je pod názvem dirdat.txt v C:\ . Vlož sem prosím obsah toho logu, můžeš vybrat jen ty za poslední 3 měsíce.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

android2603
nováček
Příspěvky: 31
Registrován: leden 11
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod android2603 » 15 úno 2011 02:50

koukal sem na to, ale nevidim zadnej rozdil nyni a pred tim kdyz to jeste fungovalo...
dela to asi mesic...vubec si, ale nemuzu vzpomenout co jsem treba instaloval a pak to zacalo delat
tady je ten log...nevim co je dulezity, tak davam radsi cely....snad to nevadi...

Svazek v jednotce C nem  § dnou jmenovku.
S‚riov‚ źˇslo svazku je 1C0E-461A.

Věpis adres ýe C:\

15.02.2011 02:44 0 dirdat.txt
15.02.2011 02:42 2˙145˙439˙744 hiberfil.sys
15.02.2011 02:41 2˙145˙386˙496 pagefile.sys
25.01.2011 12:11 327 boot.ini
18.10.2010 14:05 0 MSDOS.SYS
18.10.2010 14:05 0 CONFIG.SYS
18.10.2010 14:05 0 IO.SYS
18.10.2010 13:42 211 Boot.bak

Věpis adres ýe C:\WINDOWS\system32

15.02.2011 02:42 13˙646 wpa.dbl
15.02.2011 02:42 50˙868 nvapps.xml
12.02.2011 03:11 134˙072 FNTCACHE.DAT
11.02.2011 15:41 37˙443˙528 MRT.exe
06.02.2011 22:43 2˙553 CONFIG.NT
06.02.2011 14:14 198˙848 rmoc3260.dll
06.02.2011 14:13 5˙632 pndx5032.dll
06.02.2011 14:13 6˙656 pndx5016.dll
06.02.2011 14:13 272˙896 pncrt.dll
21.01.2011 15:44 8˙466˙432 shell32.dll
21.01.2011 15:44 440˙320 shimgvw.dll
15.01.2011 13:38 432˙690 perfh009.dat
15.01.2011 13:38 429˙256 perfh005.dat
15.01.2011 13:38 67˙646 perfc009.dat
15.01.2011 13:38 78˙228 perfc005.dat
13.01.2011 09:47 188˙216 aswBoot.exe
07.01.2011 15:09 290˙048 atmfd.dll
31.12.2010 15:04 1˙854˙976 win32k.sys
22.12.2010 13:34 301˙568 kerberos.dll
21.12.2010 00:52 916˙480 wininet.dll
21.12.2010 00:52 1˙210˙880 urlmon.dll
21.12.2010 00:52 184˙320 iepeers.dll
21.12.2010 00:52 1˙991˙680 iertutil.dll
21.12.2010 00:52 206˙848 occache.dll
21.12.2010 00:52 1˙469˙440 inetcpl.cpl
21.12.2010 00:52 43˙520 licmgr10.dll
21.12.2010 00:52 25˙600 jsproxy.dll
21.12.2010 00:52 5˙961˙216 mshtml.dll
21.12.2010 00:52 602˙112 msfeeds.dll
21.12.2010 00:52 611˙840 mstime.dll
21.12.2010 00:52 66˙560 mshtmled.dll
21.12.2010 00:52 55˙296 msfeedsbs.dll
21.12.2010 00:52 387˙584 iedkcs32.dll
20.12.2010 18:25 729˙088 lsasrv.dll
20.12.2010 13:55 173˙568 ie4uinit.exe
20.12.2010 13:55 385˙024 html.iec
20.12.2010 11:52 11˙080˙704 ieframe.dll
17.12.2010 10:27 8˙508 TZLog.log
09.12.2010 16:15 713˙216 ntdll.dll
09.12.2010 16:14 2˙029˙056 ntkrnlpa.exe
09.12.2010 16:14 2˙150˙912 ntoskrnl.exe
09.12.2010 15:30 33˙280 csrsrv.dll
03.12.2010 03:39 16˙832 amcompat.tlb
03.12.2010 03:39 23˙392 nscompat.tlb
29.11.2010 17:38 94˙208 QuickTimeVR.qtx
29.11.2010 17:38 69˙632 QuickTime.qts
18.11.2010 19:15 81˙920 isign32.dll
09.11.2010 15:52 249˙856 odbc32.dll
03.11.2010 14:12 46˙080 tzchange.exe
01.11.2010 11:02 714˙754 PerfStringBackup.INI


Věpis adres ýe C:\WINDOWS

15.02.2011 02:44 49 wiaservc.log
15.02.2011 02:43 159 wiadebug.log
15.02.2011 02:43 248˙647 WindowsUpdate.log
15.02.2011 02:42 0 0.log
15.02.2011 02:42 2˙048 bootstat.dat
15.02.2011 02:39 117˙719 setupapi.log
14.02.2011 16:46 32˙568 SchedLgU.Txt
11.02.2011 15:43 2˙488 tabletoc.log
11.02.2011 15:43 16˙455 comsetup.log
11.02.2011 15:43 3˙088 ocmsn.log
11.02.2011 15:43 22˙571 tsoc.log
11.02.2011 15:43 53˙722 iis6.log
11.02.2011 15:43 9˙958 ntdtcsetup.log
11.02.2011 15:43 1˙374 imsins.log
11.02.2011 15:43 17˙738 KB2478971.log
11.02.2011 15:43 23˙648 ocgen.log
11.02.2011 15:43 2˙472 msgsocm.log
11.02.2011 15:43 8˙664 netfxocm.log
11.02.2011 15:43 3˙400 MedCtrOC.log
11.02.2011 15:43 49˙464 FaxSetup.log
11.02.2011 15:43 15˙518 msmqinst.log
11.02.2011 15:43 3˙718 updspapi.log
11.02.2011 15:43 1˙374 imsins.BAK
11.02.2011 15:43 17˙227 KB2485376.log
11.02.2011 15:43 17˙347 KB2479628.log
11.02.2011 15:43 16˙608 KB2483185.log
11.02.2011 15:41 15˙848 KB2482017-IE8.log
11.02.2011 15:41 12˙012 KB2476687.log
11.02.2011 15:40 11˙666 KB2478960.log
11.02.2011 15:40 9˙461 KB2393802.log
11.02.2011 15:40 0 setupact.log
11.02.2011 15:40 0 setuperr.log
07.02.2011 11:27 0 Sti_Trace.log
06.02.2011 21:57 227 system.ini
17.01.2011 21:20 22 Model.txt
13.01.2011 09:47 38˙848 avastSS.scr
27.12.2010 15:08 14˙594 ModemLog_HUAWEI Mobile Connect - 3G Modem.txt
02.12.2010 03:30 507 win.ini
02.12.2010 03:29 316˙640 WMSysPr9.prx
16.11.2010 11:53 754 WORDPAD.INI
25.10.2010 15:51 0 nsreg.dat


Věpis adres ýe C:\DOCUME~1\VAIO\LOCALS~1\Temp

15.02.2011 02:43 312 windatfind.zip
15.02.2011 02:42 2˙958 AdobeARM.log
15.02.2011 02:33 7˙690 s.ini
14.02.2011 17:04 1˙360 wmplog00.sqm
14.02.2011 16:45 62˙557 Iron_Man_2_(2010)_R5_DVDRip_XviD-MAX.torrent
14.02.2011 16:25 54˙472 t.dll
14.02.2011 16:10 17˙079 torrentdownloads net London Boulevard[2010]blacklisted_site[Eg] avi.torrent
14.02.2011 16:04 15˙240 True_Grit__2010__SCR_XviD_By_MegaPlay.torrent
14.02.2011 13:24 16˙384 Perflib_Perfdata_1f0.dat
14.02.2011 12:52 15˙114 Porno_Private_15_Meine_perverse_Ex_Freundin_German_2010_XXX_DVDR.torrent
14.02.2011 12:52 112˙687 The_Simpsons_XXX_Parody_DVDRip_XviD_Pr0nStarS.torrent
14.02.2011 12:49 28˙584 Sexy_Seductive_Housewives_XXX_DVDRip_XviD_NYMPHO.torrent
14.02.2011 12:47 15˙756 Salt_2010__DVDRip.torrent
14.02.2011 12:46 35˙044 Salt_Directors_Cut_2010_720p_BluRay_DTS_x264_xXx.torrent
14.02.2011 12:29 0 5.tmp
07.02.2011 15:14 47˙449 Uninstall Log 2011-02-07 #001.txt
07.02.2011 15:12 14˙330˙218 3d-desktop.zip
07.02.2011 15:11 108˙114 Setup Log 2011-02-07 #001.txt
07.02.2011 11:32 16˙384 Perflib_Perfdata_1f4.dat
06.02.2011 22:43 11˙546 dd_vcredistUI5BDD.txt
06.02.2011 22:43 1˙822 dd_vcredistMSI5BDD.txt
21 soubor…, 14˙900˙770 bajt…
Adres ý…: 0, Volněch bajt…: 20˙266˙713˙088

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod jaro3 » 15 úno 2011 10:00

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
C:\DOCUME~1\VAIO\LOCALS~1\Temp\t.dll

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/40 , nebo 1/40. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

android2603
nováček
Příspěvky: 31
Registrován: leden 11
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod android2603 » 20 úno 2011 12:38


Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod jaro3 » 20 úno 2011 16:17

C:\DOCUME~1\VAIO\LOCALS~1\Temp\t.dll---soubor smažeme v OTL.

Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

android2603
nováček
Příspěvky: 31
Registrován: leden 11
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod android2603 » 20 úno 2011 17:32

tady jsou OTL:
OTL logfile created on: 20.2.2011 17:14:13 - Run 1
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\VAIO\Dokumenty\Stažené soubory
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 79,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,05 Gb Total Space | 6,94 Gb Free Space | 4,65% Space Free | Partition Type: NTFS
Drive D: | 4,29 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF

Computer Name: SONY-9B8694B3A6 | User Name: VAIO | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\VAIO\Dokumenty\Stažené soubory\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
PRC - C:\Program Files\Application Updater\ApplicationUpdater.exe (Spigot, Inc.)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
PRC - C:\Program Files\Infineon\Security Platform Software\SpTNA.exe (Infineon Technologies AG)
PRC - C:\Program Files\Infineon\Security Platform Software\PSDrt.exe (Infineon Technologies AG)
PRC - C:\Program Files\Infineon\Security Platform Software\PSDsrvc.EXE (Infineon Technologies AG)


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\VAIO\Dokumenty\Stažené soubory\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Alwil Software\Avast5\snxhk.dll (AVAST Software)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (Application Updater) -- C:\Program Files\Application Updater\ApplicationUpdater.exe (Spigot, Inc.)
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (VAIO Event Service) -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
SRV - (PersonalSecureDriveService) -- C:\Program Files\Infineon\Security Platform Software\PSDsrvc.EXE (Infineon Technologies AG)


========== Driver Services (SafeList) ==========

DRV - (aswSP) -- C:\WINDOWS\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswTdi) -- C:\WINDOWS\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswMon2) -- C:\WINDOWS\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswRdr) -- C:\WINDOWS\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (Aavmker4) -- C:\WINDOWS\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (Avgmfx86) -- C:\WINDOWS\system32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (NETw5x32) Intel(R) -- C:\WINDOWS\system32\drivers\NETw5x32.sys (Intel Corporation)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (usbaudio) Ovladač zvukové karty USB (WDM) -- C:\WINDOWS\system32\drivers\USBAUDIO.sys (Microsoft Corporation)
DRV - (ialm) -- C:\WINDOWS\system32\drivers\igxpmp32.sys (Intel Corporation)
DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (STHDA) -- C:\WINDOWS\system32\drivers\sthda.sys (SigmaTel, Inc.)
DRV - (ti21sony) -- C:\WINDOWS\system32\drivers\ti21sony.sys (Texas Instruments)
DRV - (Tosrfhid) -- C:\WINDOWS\system32\drivers\tosrfhid.sys (TOSHIBA Corporation.)
DRV - (Tosrfbd) -- C:\WINDOWS\system32\drivers\tosrfbd.sys (TOSHIBA CORPORATION)
DRV - (Tosrfusb) -- C:\WINDOWS\system32\drivers\tosrfusb.sys (TOSHIBA CORPORATION)
DRV - (TcUsb) -- C:\WINDOWS\system32\drivers\tcusb.sys (UPEK Inc.)
DRV - (Mvc25U870_VID_1262&PID_25FD) -- C:\WINDOWS\system32\drivers\Mvc25U870.sys (Micro Vision Co.,Ltd)
DRV - (Tosrfbnp) -- C:\WINDOWS\system32\drivers\tosrfbnp.sys (TOSHIBA Corporation)
DRV - (PersonalSecureDrive) -- C:\WINDOWS\System32\drivers\psd.sys (Infineon Technologies AG)
DRV - (tosporte) -- C:\WINDOWS\system32\drivers\tosporte.sys (TOSHIBA Corporation)
DRV - (TosRfSnd) Bluetooth Audio Device (WDM) -- C:\WINDOWS\system32\drivers\tosrfsnd.sys (TOSHIBA Corporation)
DRV - (IFXTPM) -- C:\WINDOWS\system32\drivers\ifxtpm.sys (Infineon Technologies AG)
DRV - (HSF_DPV) -- C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)
DRV - (HSFHWAZL) -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys (Conexant Systems, Inc.)
DRV - (winachsf) -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (yukonwxp) -- C:\WINDOWS\system32\drivers\yk51x86.sys (Marvell)
DRV - (Tosrfcom) -- C:\WINDOWS\system32\drivers\tosrfcom.sys (TOSHIBA Corporation)
DRV - (toshidpt) -- C:\WINDOWS\system32\drivers\toshidpt.sys (TOSHIBA Corporation.)
DRV - (tosrfnds) -- C:\WINDOWS\system32\drivers\tosrfnds.sys (TOSHIBA Corporation.)
DRV - (ASNDIS5) -- C:\WINDOWS\system32\ASNDIS5.sys (Printing Communications Assoc., Inc. (PCAUSA))
DRV - (SPI) -- C:\WINDOWS\system32\drivers\SonyPI.sys (Sony Corporation)
DRV - (SNC) -- C:\WINDOWS\system32\drivers\SonyNC.sys (Sony Corporation)
DRV - (DMICall) -- C:\WINDOWS\system32\drivers\DMICall.sys (Sony Corporation)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\..\URLSearchHook: {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.3\iobitToolbarIE.dll (Spigot, Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=723823"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..browser.startup.homepage: "https://mail.google.com/mail/?shva=1#inbox"
FF - prefs.js..extensions.enabledItems: testpilot@labs.mozilla.com:1.0.3
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.2
FF - prefs.js..extensions.enabledItems: wtxpcom@mybrowserbar.com:4.3
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=723823&p="
FF - prefs.js..network.proxy.type: 0

FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011.02.06 14:14:15 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox 4.0 Beta 6\components [2011.02.06 14:14:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox 4.0 Beta 6\plugins [2011.02.14 15:19:25 | 000,000,000 | ---D | M]

[2010.10.25 15:56:47 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\VAIO\Data aplikací\Mozilla\Extensions
[2011.02.15 02:35:11 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\VAIO\Data aplikací\Mozilla\Firefox\Profiles\f8sw89hx.default\extensions
[2011.01.20 13:31:34 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\VAIO\Data aplikací\Mozilla\Firefox\Profiles\f8sw89hx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}(2)
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DATA APLIKACĂ­\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
[2011.02.15 02:14:24 | 000,000,000 | ---D | M] (Widgi Toolbar Platform) -- C:\PROGRAM FILES\COMMON FILES\SPIGOT\WTXPCOM
[2010.10.25 15:50:47 | 000,000,000 | ---D | M] (Feedback) -- C:\PROGRAM FILES\MOZILLA FIREFOX 4.0 BETA 6\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM

O1 HOSTS File: ([2011.02.06 21:57:47 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (IObit Toolbar) - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.3\iobitToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O3 - HKLM\..\Toolbar: (IObit Toolbar) - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.3\iobitToolbarIE.dll (Spigot, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D5D47440-0750-463D-BAEF-A47D02414806} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [SonyPowerCfg] C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Sony Corporation)
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab (Windows Genuine Advantage Validation Tool)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\IfxWlxEN: DllName - IfxWlxEN.dll - C:\WINDOWS\System32\IfxWlxEN.dll (Infineon Technologies AG)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\VESWinlogon: DllName - VESWinlogon.dll - C:\WINDOWS\System32\VESWinlogon.dll (Sony Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011.02.20 15:03:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\VAIO\Recent
[2011.02.16 19:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Plocha\Gmail
[2011.02.15 03:35:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Plocha\mluvené slovo
[2011.02.15 02:14:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\Search Settings
[2011.02.15 02:14:22 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Spigot
[2011.02.15 02:14:22 | 000,000,000 | ---D | C] -- C:\Program Files\IObit Toolbar
[2011.02.15 02:14:22 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater
[2011.02.14 16:23:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\ALLConverter PRO
[2011.02.14 16:23:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Local Settings\Data aplikací\ALLConverter
[2011.02.14 16:23:06 | 000,000,000 | ---D | C] -- C:\Program Files\ALLConverter PRO
[2011.02.12 03:16:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\vlc
[2011.02.12 03:16:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\VideoLAN
[2011.02.11 16:29:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Plocha\Nick_Cave_and_Grinderman_-_Grinderman-2007-PirateK
[2011.02.11 16:27:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Plocha\Screaming Headless Torsos Discography
[2011.02.07 17:02:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\IObit
[2011.02.07 17:02:48 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2011.02.07 15:22:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\DeviceDoctorSoftware
[2011.02.07 15:13:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\Registry Mechanic
[2011.02.07 15:13:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Uniblue
[2011.02.07 15:10:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2011.02.06 22:43:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\avast! Free Antivirus
[2011.02.06 22:43:19 | 000,294,608 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011.02.06 22:43:19 | 000,017,744 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011.02.06 22:43:17 | 000,047,440 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011.02.06 22:43:17 | 000,023,632 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011.02.06 22:43:16 | 000,100,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011.02.06 22:43:16 | 000,094,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011.02.06 22:43:15 | 000,029,392 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011.02.06 22:43:09 | 000,038,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011.02.06 22:43:08 | 000,188,216 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011.02.06 22:43:03 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2011.02.06 22:43:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
[2011.02.06 22:31:02 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.02.06 22:29:12 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011.02.06 22:00:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2011.02.06 21:17:11 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2011.02.06 14:14:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\xing shared
[2011.02.06 14:14:06 | 000,198,848 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\rmoc3260.dll
[2011.02.06 14:13:57 | 000,006,656 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5016.dll
[2011.02.06 14:13:57 | 000,005,632 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5032.dll
[2011.02.06 14:13:56 | 000,272,896 | ---- | C] (Progressive Networks) -- C:\WINDOWS\System32\pncrt.dll
[2011.02.06 14:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Real
[2011.02.06 14:13:50 | 000,000,000 | ---D | C] -- C:\Program Files\Real
[2011.02.06 14:13:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Real
[2011.02.06 14:13:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\Real
[2011.02.06 14:09:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\QuickTime
[2011.02.02 20:41:35 | 000,000,000 | ---D | C] -- C:\Program Files\Software Informer
[2011.02.02 20:41:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Software Informer
[2011.02.02 20:40:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\Software Informer
[2011.02.02 19:59:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Game Booster
[2011.02.02 19:47:10 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2011.01.26 23:08:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Plocha\fwpardubice25_1_2011
[2011.01.25 12:10:56 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011.01.24 18:34:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\Malwarebytes
[2011.01.24 18:34:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2011.01.24 14:29:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Local Settings\Data aplikací\OpenCandy
[2011.01.24 14:29:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\OpenCandy
[2011.01.24 14:21:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Nabídka Start\Programy\HiJackThis
[2011.01.24 13:52:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Data aplikací\Uniblue
[2011.01.24 13:52:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\VAIO\Local Settings\Data aplikací\PackageAware
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.02.20 17:13:47 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-507921405-1454471165-1801674531-1003.job
[2011.02.20 17:13:47 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-507921405-1454471165-1801674531-1003.job
[2011.02.20 15:40:29 | 000,000,246 | ---- | M] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2011.02.20 15:06:33 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.02.20 15:06:15 | 000,050,868 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2011.02.20 15:06:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.02.20 15:06:07 | 2145,439,744 | -HS- | M] () -- C:\hiberfil.sys
[2011.02.20 15:04:17 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{8263B088-95B7-4138-84B8-5DF5C3F5663F}.job
[2011.02.16 19:50:56 | 000,994,558 | ---- | M] () -- C:\Documents and Settings\VAIO\Plocha\Gmail.zip
[2011.02.15 03:13:48 | 000,053,248 | ---- | M] () -- C:\Documents and Settings\VAIO\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.14 16:23:08 | 000,000,773 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\ALLConverter PRO.lnk
[2011.02.14 15:19:26 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Adobe Reader 9.lnk
[2011.02.12 03:16:00 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\VLC media player.lnk
[2011.02.12 03:11:35 | 000,134,072 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.02.07 17:02:50 | 000,000,821 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Switch to Gaming Mode.lnk
[2011.02.07 17:02:50 | 000,000,809 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Game Booster.lnk
[2011.02.06 22:43:20 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
[2011.02.06 22:43:16 | 000,002,553 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.02.06 22:36:16 | 000,002,551 | ---- | M] () -- C:\Documents and Settings\VAIO\Plocha\HiJackThis.lnk
[2011.02.06 22:31:03 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2011.02.06 21:57:47 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011.02.06 14:14:26 | 000,001,601 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Free Offers.lnk
[2011.02.06 14:14:26 | 000,000,929 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\RealPlayer.lnk
[2011.02.06 14:14:06 | 000,198,848 | ---- | M] (RealNetworks, Inc.) -- C:\WINDOWS\System32\rmoc3260.dll
[2011.02.06 14:13:57 | 000,006,656 | ---- | M] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5016.dll
[2011.02.06 14:13:57 | 000,005,632 | ---- | M] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5032.dll
[2011.02.06 14:13:56 | 000,272,896 | ---- | M] (Progressive Networks) -- C:\WINDOWS\System32\pncrt.dll
[2011.01.26 11:58:22 | 001,603,924 | ---- | M] () -- C:\Documents and Settings\VAIO\Plocha\fwpardubice25_1_2011.zip
[2011.01.25 12:11:06 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2011.01.25 11:30:52 | 104,840,651 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011.01.23 18:24:54 | 000,012,288 | ---- | M] () -- C:\Documents and Settings\VAIO\Plocha\životopis Starbag.doc
[2011.01.23 18:24:44 | 000,014,681 | ---- | M] () -- C:\Documents and Settings\VAIO\Plocha\životopis Starbag
[2011.01.23 16:52:18 | 000,073,216 | ---- | M] () -- C:\Documents and Settings\VAIO\Plocha\ondrej bauer CV cz.doc
[2011.01.23 16:52:06 | 000,068,096 | ---- | M] () -- C:\Documents and Settings\VAIO\Plocha\životopis Ondřej Bauer.doc
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.02.16 19:50:55 | 000,994,558 | ---- | C] () -- C:\Documents and Settings\VAIO\Plocha\Gmail.zip
[2011.02.14 16:23:08 | 000,000,773 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\ALLConverter PRO.lnk
[2011.02.12 03:16:00 | 000,000,719 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\VLC media player.lnk
[2011.02.07 17:03:00 | 000,000,246 | ---- | C] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2011.02.07 17:02:50 | 000,000,821 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Switch to Gaming Mode.lnk
[2011.02.07 17:02:50 | 000,000,809 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Game Booster.lnk
[2011.02.06 22:46:21 | 2145,439,744 | -HS- | C] () -- C:\hiberfil.sys
[2011.02.06 22:43:20 | 000,001,700 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
[2011.02.06 22:31:03 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2011.02.06 21:49:21 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-507921405-1454471165-1801674531-1003.job
[2011.02.06 21:49:21 | 000,000,276 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-507921405-1454471165-1801674531-1003.job
[2011.02.06 14:14:26 | 000,001,601 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Free Offers.lnk
[2011.02.06 14:14:26 | 000,000,929 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\RealPlayer.lnk
[2011.01.26 11:58:20 | 001,603,924 | ---- | C] () -- C:\Documents and Settings\VAIO\Plocha\fwpardubice25_1_2011.zip
[2011.01.25 12:11:06 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2011.01.25 12:10:59 | 000,261,312 | RHS- | C] () -- C:\cmldr
[2011.01.24 14:21:38 | 000,002,551 | ---- | C] () -- C:\Documents and Settings\VAIO\Plocha\HiJackThis.lnk
[2011.01.23 18:24:54 | 000,012,288 | ---- | C] () -- C:\Documents and Settings\VAIO\Plocha\životopis Starbag.doc
[2011.01.23 18:06:53 | 000,014,681 | ---- | C] () -- C:\Documents and Settings\VAIO\Plocha\životopis Starbag
[2011.01.23 16:52:17 | 000,073,216 | ---- | C] () -- C:\Documents and Settings\VAIO\Plocha\ondrej bauer CV cz.doc
[2011.01.23 16:52:03 | 000,068,096 | ---- | C] () -- C:\Documents and Settings\VAIO\Plocha\životopis Ondřej Bauer.doc
[2010.11.27 12:20:05 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\xmltok.dll
[2010.11.27 12:20:05 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\xmlparse.dll
[2010.11.26 10:49:44 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2010.11.22 13:29:30 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010.11.16 11:53:57 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2010.11.12 18:11:26 | 000,056,320 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll
[2010.10.25 18:17:51 | 000,053,248 | ---- | C] () -- C:\Documents and Settings\VAIO\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.10.18 15:39:36 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010.10.18 15:26:26 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll
[2010.10.18 15:09:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\tosOBEX.INI
[2010.02.01 02:49:18 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2006.06.20 18:45:00 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2005.09.02 13:44:08 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\TosBtAcc.dll
[2005.07.22 20:30:20 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\TosCommAPI.dll
[2004.07.20 16:04:02 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\TosBtHcrpAPI.dll
[2004.01.15 13:43:28 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TBTMonUI.dll

========== LOP Check ==========

[2010.12.16 16:17:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ableton
[2011.02.06 22:43:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
[2010.11.22 13:14:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
[2011.01.25 11:55:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVG10
[2010.10.18 16:58:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\avg9
[2010.10.18 17:09:51 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2010.10.18 15:06:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Infineon
[2011.02.07 17:02:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\IObit
[2010.12.16 15:47:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\M-Audio
[2010.10.18 17:00:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2010.11.15 09:38:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NeoSoftTools
[2011.02.07 15:14:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2010.10.25 16:25:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010.12.16 16:17:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\Ableton
[2011.01.25 11:55:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\AVG10
[2011.02.07 15:22:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\DeviceDoctorSoftware
[2010.10.18 15:06:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\Infineon
[2011.02.06 16:49:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\IObit
[2010.11.15 09:38:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\NeoSoftTools
[2011.01.24 14:29:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\OpenCandy
[2010.10.18 15:39:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\OpenOffice.org
[2011.02.07 15:13:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\Registry Mechanic
[2011.02.15 02:14:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\Search Settings
[2010.11.12 18:03:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\Simnet
[2011.02.03 10:23:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\Software Informer
[2011.02.07 15:16:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\Uniblue
[2011.02.20 17:26:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\VAIO\Data aplikací\uTorrent
[2011.02.20 15:40:29 | 000,000,246 | ---- | M] () -- C:\WINDOWS\Tasks\Game_Booster_Startup.job
[2011.02.20 15:04:17 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{8263B088-95B7-4138-84B8-5DF5C3F5663F}.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1

< End of report >

Extras:
OTL Extras logfile created on: 20.2.2011 17:14:13 - Run 1
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\VAIO\Dokumenty\Stažené soubory
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 79,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,05 Gb Total Space | 6,94 Gb Free Space | 4,65% Space Free | Partition Type: NTFS
Drive D: | 4,29 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF

Computer Name: SONY-9B8694B3A6 | User Name: VAIO | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox 4.0 Beta 6\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 4

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Program Files\Velvet Assassin\Launcher.exe" = C:\Program Files\Velvet Assassin\Launcher.exe:*:Enabled:Velvet_Assassin-1 -- ()
"C:\Program Files\Velvet Assassin\replay.exe" = C:\Program Files\Velvet Assassin\replay.exe:*:Enabled:Velvet_Assassin-2 -- (cd)
"C:\Program Files\VideoLAN\VLC\vlc.exe" = C:\Program Files\VideoLAN\VLC\vlc.exe:*:Disabled:VLC media player -- ()


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}" = Sony MP4 Shared Library
"{1417F599-1DBD-4499-9375-B2813E9F890C}" = VAIO Camera Utility
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}" = Wireless Switch Setting Utility
"{2A8CF485-5A4D-4C7D-8ACF-4AB98914D529}" = Infineon TPM Professional Package
"{2CE5A2E7-3437-4CE7-BCF4-85ED6EEFF9E4}" = iTunes
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{59452470-A902-477F-9338-9B88101681BD}" = Setting Utility Series
"{5958CAC6-373E-402F-84FE-0A699AA920B9}" = LAN Setting Utility
"{5DE71D48-01EB-4BF2-A643-50FE6C9B6AC9}" = OpenOffice.org 3.2
"{61D6E4FB-1A62-4EB1-BE56-929B00C155CF}" = Wireless LAN Starter
"{62B9E29A-BC60-4829-8724-100ACFF7E63D}" = IObit Toolbar v4.3
"{71ED4CA9-9AC5-48D9-A2AC-B1E4DFA84F62}" = ASUS Wireless Router WL-520GC Utilities
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.1
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9E319E96-ED8E-4B01-9775-C521A1869A25}" = VAIO Power Management
"{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}" = SigmaTel Audio
"{A4D77A09-10EA-4574-8C09-9B6E1A21C95F}" = Virus Guard - powered by BitDefender
"{AC76BA86-7AD7-1029-7B44-A94000000001}" = Adobe Reader 9.4.2 - Czech
"{BE56FEF0-1A0F-4719-B3AD-34B5087AFA6D}" = Sony Video Shared Library
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C518C7BF-A345-4019-815B-FFDF32EBCAD9}" = VAIO HDD Protection
"{C72D7008-266D-4DD8-BF3C-296B736127F6}" = Mafia
"{CCA1EEA3-555E-4D05-AC46-4B49C6C5D887}" = Apple Mobile Device Support
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{D6DBDC2A-E72C-4284-B6AD-6B3B61B4DABC}" = Far Cry
"{DD1865F0-AD73-40FB-B23E-1822E02396FF}" = NVIDIA PhysX
"{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support
"{EF3D45BB-2260-4008-88EA-492E7744A9DF}" = Sony Utilities DLL
"{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}" = VAIO Event Service
"{FC37C108-821D-4EDE-8F40-D5B497586805}" = VAIO Control Center
"{FF1C31AE-0CDC-40CE-AB85-406F8B70D643}" = Bonjour
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"avast5" = avast! Free Antivirus
"CCleaner" = CCleaner
"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_20030003" = HDAUDIO SoftV92 Data Fax Modem with SmartCP
"Game Booster_is1" = Game Booster
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"ie8" = Windows Internet Explorer 8
"Indeo® Software" = Indeo® Software
"InstallShield_{D6DBDC2A-E72C-4284-B6AD-6B3B61B4DABC}" = Far Cry
"Live 8.0.7" = Live 8.0.7
"MouseSuite98" = Sony USB Mouse
"Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NVIDIA Drivers" = NVIDIA Drivers
"PapíííClock_is1" = PapíííClock 1.2
"RealPlayer 12.0" = RealPlayer
"Revo Uninstaller" = Revo Uninstaller 1.91
"Satsuki Decoder Pack" = Satsuki Decoder Pack 4304
"Software Informer_is1" = Software Informer 1.0 BETA
"uTorrent" = µTorrent
"VLC media player" = VLC media player 1.1.7
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WinRAR archiver" = WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"Xvid_is1" = Xvid 1.2.1 final uninstall

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 20.2.2011 10:03:13 | Computer Name = SONY-9B8694B3A6 | Source = Application Error | ID = 1000
Description = Chybující aplikace plugin-container.exe, verze 1.9.2.3989, chybující
modul ntdll.dll, verze 5.1.2600.6055, adresa chyby 0x0000100b.

[ System Events ]
Error - 14.2.2011 12:04:30 | Computer Name = SONY-9B8694B3A6 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 14.2.2011 21:42:44 | Computer Name = SONY-9B8694B3A6 | Source = Service Control Manager | ID = 7034
Description = Služba NVIDIA Display Driver Service byla neočekávaně ukončena. Tento
stav nastal již 1krát.

Error - 15.2.2011 22:26:21 | Computer Name = SONY-9B8694B3A6 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 19.2.2011 7:28:45 | Computer Name = SONY-9B8694B3A6 | Source = Service Control Manager | ID = 7034
Description = Služba NVIDIA Display Driver Service byla neočekávaně ukončena. Tento
stav nastal již 1krát.


< End of report >

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod jaro3 » 20 úno 2011 20:48

Odinstaluj:
IObit Toolbar
vše od AVG
Search Settings


Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
DRV - (Avgmfx86) -- C:\WINDOWS\system32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
FF - prefs.js..extensions.enabledItems: wtxpcom@mybrowserbar.com:4.3
O2 - BHO: (IObit Toolbar) - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.3\iobitToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (IObit Toolbar) - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.3\iobitToolbarIE.dll (Spigot, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D5D47440-0750-463D-BAEF-A47D02414806} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
@Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
c:\windows\Tasks\*.job
C:\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Documents and Settings\VAIO\Data aplikací\Search Settings
C:\Program Files\Common Files\Spigot\Search Settings
C:\DOCUME~1\VAIO\LOCALS~1\Temp\t.dll
C:\Program Files\IObit Toolbar
C:\WINDOWS\System32\drivers\AVG\incavi.avm
C:\WINDOWS\System32\drivers\AVG
C:\Documents and Settings\VAIO\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
C:\Documents and Settings\All Users\Data aplikací\AVG10
C:\Documents and Settings\All Users\Data aplikací\avg9
C:\Documents and Settings\VAIO\Data aplikací\AVG10

:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" =-

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

Drive C: | 149,05 Gb Total Space | 6,94 Gb Free Space | 4,65% Space Free | Partition Type: NTFS

Nedostatek místa na systémovém disku , něco odinstaluj , smaž....doporučuje se 15% volného místa pro chod windows.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

android2603
nováček
Příspěvky: 31
Registrován: leden 11
Pohlaví: Muž
Stav:
Offline

Re: Pocitac mi nejde vypnout, prosim o kontrolu Logu.dekuju.

Příspěvekod android2603 » 20 úno 2011 22:44

uklid se provedl,ale pri restartu muselo prijit opet vypnuti na tvrdo,pac se pri vypinani kousl.
tady je log:

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service Avgmfx86 stopped successfully!
Service Avgmfx86 deleted successfully!
C:\WINDOWS\system32\drivers\avgmfx86.sys moved successfully.
Prefs.js: wtxpcom@mybrowserbar.com:4.3 removed from extensions.enabledItems
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}\ not found.
File C:\Program Files\IObit Toolbar\IE\4.3\iobitToolbarIE.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}\ not found.
File C:\Program Files\IObit Toolbar\IE\4.3\iobitToolbarIE.dll not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D5D47440-0750-463D-BAEF-A47D02414806} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D5D47440-0750-463D-BAEF-A47D02414806}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run not found.
File C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe not found.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveSearch deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1 deleted successfully.
========== FILES ==========
C:\WINDOWS\System32\CONFIG.TMP moved successfully.
C:\WINDOWS\System32\SET116.tmp moved successfully.
C:\WINDOWS\System32\SET11A.tmp moved successfully.
C:\WINDOWS\System32\SET11B.tmp moved successfully.
C:\WINDOWS\System32\SET122.tmp moved successfully.
C:\WINDOWS\msdownld.tmp folder moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
c:\windows\Tasks\Game_Booster_Startup.job moved successfully.
c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-507921405-1454471165-1801674531-1003.job moved successfully.
c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-507921405-1454471165-1801674531-1003.job moved successfully.
c:\windows\Tasks\User_Feed_Synchronization-{8263B088-95B7-4138-84B8-5DF5C3F5663F}.job moved successfully.
File\Folder C:\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
File\Folder C:\Documents and Settings\VAIO\Data aplikací\Search Settings not found.
File\Folder C:\Program Files\Common Files\Spigot\Search Settings not found.
C:\DOCUME~1\VAIO\LOCALS~1\Temp\t.dll moved successfully.
File\Folder C:\Program Files\IObit Toolbar not found.
C:\WINDOWS\System32\drivers\AVG\incavi.avm moved successfully.
C:\WINDOWS\System32\drivers\AVG folder moved successfully.
C:\Documents and Settings\VAIO\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini moved successfully.
File\Folder C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\AVG10 not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\avg9 not found.
C:\Documents and Settings\VAIO\Data aplikací\AVG10 folder moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\\DisableSR deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: VAIO
->Temp folder emptied: 36423201 bytes
->Temporary Internet Files folder emptied: 6952697 bytes
->FireFox cache emptied: 100666377 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 2828550 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 483 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 140,00 mb


OTL by OldTimer - Version 3.2.20.6 log created on 02202011_223824

Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\temp\_avast5_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 138 hostů