Additional scan result of Farbar Recovery Scan Tool (x86) Version:04-10-2015
Ran by Pařezí (2015-10-05 10:38:08)
Running from C:\Documents and Settings\Pařezí\Dokumenty\Stažené soubory
Systém Microsoft Windows XP Professional Service Pack 3 (X86) (2014-04-22 20:15:37)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-861567501-2000478354-682003330-500 - Administrator - Enabled)
Guest (S-1-5-21-861567501-2000478354-682003330-501 - Limited - Disabled)
HelpAssistant (S-1-5-21-861567501-2000478354-682003330-1000 - Limited - Disabled)
Pařezí (S-1-5-21-861567501-2000478354-682003330-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Pařezí
SUPPORT_388945a0 (S-1-5-21-861567501-2000478354-682003330-1002 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Antivirus (Enabled - Up to date) {AD166499-45F9-482A-A743-FDD3350758C7}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 19 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.08) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Aktualizace systému Windows Internet Explorer 8 (KB2598845) (HKLM\...\KB2598845-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB2345886) (HKLM\...\KB2345886) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB2467659) (HKLM\...\KB2467659) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB2749655) (HKLM\...\KB2749655) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB2813347-v2) (HKLM\...\KB2813347-v2) (Version: 2 - Microsoft Corporation)
Aktualizace systému Windows XP (KB2904266) (HKLM\...\KB2904266) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB2934207) (HKLM\...\KB2934207) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB898461) (HKLM\...\KB898461) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB951978) (HKLM\...\KB951978) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB955759) (HKLM\...\KB955759) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB968389) (HKLM\...\KB968389) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB971029) (HKLM\...\KB971029) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení aplikace Windows Media Player (KB2834904-v2) (HKLM\...\KB2834904-v2_WM11) (Version: - Microsoft Corporation)
Aktualizace zabezpečení pro Microsoft Windows (KB2564958) (HKLM\...\KB2564958) (Version: - Microsoft Corporation)
Aktualizace zabezpečení produktu Windows XP (KB941569) (HKLM\...\KB941569) (Version: - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2510531) (HKLM\...\KB2510531-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2862772) (HKLM\...\KB2862772-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2909210) (HKLM\...\KB2909210-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2909921) (HKLM\...\KB2909921-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2936068) (HKLM\...\KB2936068-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2964358) (HKLM\...\KB2964358-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB982381) (HKLM\...\KB982381-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2570947) (HKLM\...\KB2570947) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2603381) (HKLM\...\KB2603381) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2618451) (HKLM\...\KB2618451) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2655992) (HKLM\...\KB2655992) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2660649) (HKLM\...\KB2660649) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2661637) (HKLM\...\KB2661637) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2686509) (HKLM\...\KB2686509) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2691442) (HKLM\...\KB2691442) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2695962) (HKLM\...\KB2695962) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2698365) (HKLM\...\KB2698365) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2705219-v2) (HKLM\...\KB2705219-v2) (Version: 2 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2712808) (HKLM\...\KB2712808) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2719985) (HKLM\...\KB2719985) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2723135-v2) (HKLM\...\KB2723135-v2) (Version: 2 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2727528) (HKLM\...\KB2727528) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2757638) (HKLM\...\KB2757638) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2770660) (HKLM\...\KB2770660) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2780091) (HKLM\...\KB2780091) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2802968) (HKLM\...\KB2802968) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2807986) (HKLM\...\KB2807986) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2820917) (HKLM\...\KB2820917) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2834886) (HKLM\...\KB2834886) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2847311) (HKLM\...\KB2847311) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2850869) (HKLM\...\KB2850869) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2859537) (HKLM\...\KB2859537) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2862152) (HKLM\...\KB2862152) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2862330) (HKLM\...\KB2862330) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2862335) (HKLM\...\KB2862335) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2864063) (HKLM\...\KB2864063) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2868626) (HKLM\...\KB2868626) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2876217) (HKLM\...\KB2876217) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2876331) (HKLM\...\KB2876331) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2892075) (HKLM\...\KB2892075) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2893294) (HKLM\...\KB2893294) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2898715) (HKLM\...\KB2898715) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2900986) (HKLM\...\KB2900986) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2914368) (HKLM\...\KB2914368) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2916036) (HKLM\...\KB2916036) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2922229) (HKLM\...\KB2922229) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2929961) (HKLM\...\KB2929961) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB2930275) (HKLM\...\KB2930275) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB923561) (HKLM\...\KB923561) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB923789) (HKLM\...\KB923789) (Version: - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB970430) (HKLM\...\KB970430) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB975254) (HKLM\...\KB975254) (Version: 1 - Microsoft Corporation)
Asistent pro přihlášení ke službě Windows Live (HKLM\...\{3E62B27C-342F-4B44-9331-CA4BC59A586F}) (Version: 5.000.818.5 - Microsoft Corporation)
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.13.202 - Avira Operations GmbH & Co. KG)
Avira Launcher (Version: 1.1.45.11819 - Avira Operations GmbH & Co. KG) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - Intel Corporation)
Intel(R) PRO Network Connections Drivers (HKLM\...\PROSet) (Version: - )
Junk Mail filter update (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 29.0.1 (x86 cs) (HKLM\...\Mozilla Firefox 29.0.1 (x86 cs)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
Nástroj pro odesílání služby Windows Live (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Oprava Hotfix systému Windows XP (KB952287) (HKLM\...\KB952287) (Version: 1 - Microsoft Corporation)
Oprava Hotfix systému Windows XP (KB969084) (HKLM\...\KB969084) (Version: 3 - Microsoft Corporation)
Segoe UI (Version: 14.0.4327.805 - Microsoft Corp) Hidden
SoundMAX (HKLM\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 5.10.01.5491 - Analog Devices)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live Sync (HKLM\...\{1407B87C-36E3-4FC1-9051-D08B21E1096F}) (Version: 14.0.8117.416 - Microsoft Corporation)
WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Restore Points =========================
ATTENTION: System Restore is disabled
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-05 09:21 - 2015-10-05 09:51 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\WGASetup.job => C:\WINDOWS\system32\KB905474\wgasetup.exe
==================== Loaded Modules (Whitelisted) ==============
2015-09-16 21:33 - 2015-09-16 21:33 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-10-05 09:01 - 2015-10-05 09:01 - 03839088 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2015-10-03 20:47 - 2015-10-03 20:47 - 17592008 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_185.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-861567501-2000478354-682003330-1003\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Nebe.bmp
DNS Servers: 10.100.0.100 - 10.10.10.10
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
DomainProfile\AuthorizedApplications: [C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe] => Enabled:Windows Live Sync
StandardProfile\AuthorizedApplications: [C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe] => Enabled:Windows Live Sync
==================== Faulty Device Manager Devices =============
Name: Řadič jednoduché komunikace pro sběrnici PCI
Description: Řadič jednoduché komunikace pro sběrnici PCI
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Sériový port sběrnice PCI
Description: Sériový port sběrnice PCI
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (10/03/2015 08:27:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace mbam.exe, verze 2.3.55.0, chybující modul msvcr100.dll, verze 10.0.40219.325, adresa chyby 0x0008d6fd.
Zpracování události, specifické pro médium ([mbam.exe!ws!])
Error: (09/20/2015 05:13:36 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace iexplore.exe, verze 8.0.6001.18702, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error: (09/20/2015 05:13:33 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace iexplore.exe, verze 8.0.6001.18702, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error: (09/17/2015 06:44:49 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace iexplore.exe, verze 8.0.6001.18702, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error: (09/10/2015 05:00:32 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace iexplore.exe, verze 8.0.6001.18702, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error: (09/07/2015 07:59:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul mshtml.dll, verze 8.0.6001.23588, adresa chyby 0x0014c493.
Zpracování události, specifické pro médium ([iexplore.exe!ws!])
Error: (08/27/2015 09:06:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace iexplore.exe, verze 8.0.6001.18702, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.
Error: (08/26/2015 09:13:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace update.exe, verze 15.0.12.402, chybující modul msvcp120.dll, verze 12.0.21005.1, adresa chyby 0x0000e5a8.
Zpracování události, specifické pro médium ([update.exe!ws!])
Error: (08/16/2015 02:49:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace update.exe, verze 15.0.12.402, chybující modul msvcp120.dll, verze 12.0.21005.1, adresa chyby 0x0000e5a8.
Zpracování události, specifické pro médium ([update.exe!ws!])
System errors:
=============
Error: (10/05/2015 09:47:59 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avira Service Host byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (10/05/2015 09:47:59 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Služba brány aplikačního rozhraní byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (10/05/2015 09:47:59 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Zařazování tisku byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (10/04/2015 10:34:09 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Služba brány aplikačního rozhraní byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (10/04/2015 10:34:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avira Service Host byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (10/04/2015 10:34:08 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Zařazování tisku byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.
Error: (10/03/2015 08:41:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avira Service Host byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (10/03/2015 08:24:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avira Service Host byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (10/03/2015 08:12:59 PM) (Source: Dhcp) (EventID: 1002) (User: )
Description: Zapůjčení adresy IP 192.168.0.100 pro síťovou kartu s adresou 001E4FB9E310 byla
serverem DHCP 192.168.1.1 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error: (09/07/2015 07:36:43 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Generate Activation Context pro C:\DOCUME~1\PAEZ~1\LOCALS~1\Temp\gardens.dll se nezdařila.
Referenční chybová zpráva: Operace byla dokončena úspěšně.
.
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU E6550 @ 2.33GHz
Percentage of memory in use: 36%
Total physical RAM: 2004.54 MB
Available physical RAM: 1278.66 MB
Total Virtual: 3897.91 MB
Available Virtual: 3177.64 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:74.5 GB) (Free:67.44 GB) NTFS ==>[drive with boot components (Windows XP)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 74.5 GB) (Disk ID: 08596548)
Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:04-10-2015
Ran by Pařezí (administrator) on PAREZI-1139944E (05-10-2015 10:37:47)
Running from C:\Documents and Settings\Pařezí\Dokumenty\Stažené soubory
Loaded Profiles: Pařezí (Available Profiles: Pařezí)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1036288 2007-08-01] (Analog Devices, Inc.)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [782520 2015-09-25] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [66936 2015-08-13] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-861567501-2000478354-682003330-1003\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6495144 2015-09-16] (Piriform Ltd)
ShellExecuteHooks: - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No File [ ]
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.100.0.100 10.10.10.10
Tcpip\..\Interfaces\{7D098CAD-8EE6-470E-8FA9-DA996F93E0AF}: [DhcpNameServer] 10.100.0.100 10.10.10.10
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-861567501-2000478354-682003330-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page =
hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearchHKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page =
hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhomeHKU\S-1-5-21-861567501-2000478354-682003330-1003\Software\Microsoft\Internet Explorer\Main,Search Page =
hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearchHKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
hxxp://www.bing.com/searchSearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
hxxp://www.bing.com/searchSearchScopes: HKU\S-1-5-21-861567501-2000478354-682003330-1003 -> {012E1000-F331-11DB-8314-0800200C9A66} URL =
hxxp://www.google.com/search?q={searchTerms}
BHO: Pomocník pro přihlášení ke službě Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Pařezí\Data aplikací\Mozilla\Firefox\Profiles\th2ytidy.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-10-03] ()
FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-04-16] (Microsoft Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Extension: Seznam lištička - C:\Documents and Settings\Pařezí\Data aplikací\Mozilla\Firefox\Profiles\th2ytidy.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2015-10-05]
FF Extension: No Name - C:\Documents and Settings\PaĹ™ezĂ\Data aplikacĂ\Mozilla\Firefox\Profiles\th2ytidy.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [916968 2015-09-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [461672 2015-09-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [461672 2015-09-25] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1210512 2015-09-25] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [228104 2015-08-13] (Avira Operations GmbH & Co. KG)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [108448 2015-09-25] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [136728 2015-07-29] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\System32\DRIVERS\avkmgr.sys [37896 2015-05-07] (Avira Operations GmbH & Co. KG)
R3 SenFiltService; C:\WINDOWS\System32\drivers\Senfilt.sys [392960 2006-03-17] (Sensaura)
R1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [31848 2015-06-11] (Avira Operations GmbH & Co. KG)
S4 IntelIde; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-05 10:37 - 2015-10-05 10:37 - 00000000 ____D C:\FRST
2015-10-05 10:29 - 2015-10-05 10:29 - 00000682 _____ C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2015-10-05 10:29 - 2015-10-05 10:29 - 00000000 ____D C:\Program Files\CCleaner
2015-10-05 10:29 - 2015-10-05 10:29 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2015-10-05 09:52 - 2015-10-05 09:52 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\temp
2015-10-05 09:52 - 2015-10-05 09:52 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\temp
2015-10-05 09:50 - 2015-10-05 10:37 - 00000000 ____D C:\Documents and Settings\Pařezí\Local Settings\temp
2015-10-05 09:48 - 2008-04-14 06:51 - 00052096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\i8042prt.sys
2015-10-05 09:48 - 2008-04-14 06:51 - 00052096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys
2015-10-05 09:43 - 2015-10-05 09:43 - 00000000 ____D C:\Program Files\WinRAR
2015-10-05 09:43 - 2015-10-05 09:43 - 00000000 ____D C:\Documents and Settings\Pařezí\Nabídka Start\Programy\WinRAR
2015-10-05 09:43 - 2015-10-05 09:43 - 00000000 ____D C:\Documents and Settings\Pařezí\Data aplikací\WinRAR
2015-10-05 09:43 - 2015-10-05 09:43 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\WinRAR
2015-10-05 09:43 - 2008-04-14 06:51 - 00052096 ____N (Microsoft Corporation) C:\i8042prt.sys
2015-10-05 09:18 - 2015-10-05 10:28 - 00000000 ____D C:\WINDOWS\erdnt
2015-10-05 09:18 - 2015-10-05 09:18 - 00000000 _RSHD C:\cmdcons
2015-10-05 09:18 - 2015-10-05 09:18 - 00000000 ___RD C:\Documents and Settings\Pařezí\Nabídka Start\Programy\Nástroje pro správu
2015-10-05 09:18 - 2014-04-22 22:08 - 00000211 _____ C:\Boot.bak
2015-10-05 09:18 - 2004-08-03 23:00 - 00261312 __RSH C:\cmldr
2015-10-05 09:17 - 2015-10-05 09:17 - 05636125 ____R (Swearware) C:\Documents and Settings\Pařezí\Plocha\ComboFix.exe
2015-10-05 09:12 - 2015-10-05 09:05 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2015-10-05 09:06 - 2015-10-05 09:13 - 00003612 _____ C:\zoek-results.log
2015-10-05 09:05 - 2015-10-05 09:10 - 00000000 ____D C:\zoek_backup
2015-10-05 09:01 - 2015-10-05 09:01 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-10-03 20:55 - 2015-10-03 20:55 - 00006196 _____ C:\Documents and Settings\Pařezí\Plocha\dd.txt
2015-10-03 20:36 - 2015-10-05 10:00 - 00035064 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-10-03 20:36 - 2015-10-03 20:57 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\RogueKiller
2015-10-03 20:29 - 2015-10-04 10:34 - 00000000 ____D C:\AdwCleaner
2015-10-03 20:27 - 2015-10-03 20:27 - 00000777 _____ C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
2015-10-03 20:27 - 2015-10-03 20:27 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-10-03 20:27 - 2015-10-03 20:27 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes Anti-Malware
2015-10-03 20:27 - 2015-10-03 20:27 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2015-10-03 20:27 - 2015-06-18 08:41 - 00121560 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-10-03 20:27 - 2015-06-18 08:41 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-10-03 20:16 - 2015-10-05 10:37 - 00000000 ____D C:\Documents and Settings\Pařezí\Dokumenty\Stažené soubory
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-05 10:34 - 2014-04-22 22:11 - 01942830 _____ C:\WINDOWS\WindowsUpdate.log
2015-10-05 10:33 - 2014-04-26 09:32 - 00000260 _____ C:\WINDOWS\Tasks\WGASetup.job
2015-10-05 10:32 - 2014-04-26 11:42 - 00000224 _____ C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2015-10-05 10:32 - 2014-04-23 00:01 - 00116560 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-10-05 10:32 - 2014-04-22 22:18 - 00000178 ___SH C:\Documents and Settings\Pařezí\ntuser.ini
2015-10-05 10:32 - 2014-04-22 22:18 - 00000000 ____D C:\Documents and Settings\Pařezí
2015-10-05 10:32 - 2014-04-22 22:17 - 00032390 _____ C:\WINDOWS\SchedLgU.Txt
2015-10-05 10:32 - 2014-04-22 22:17 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-10-05 10:29 - 2014-04-23 00:02 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2015-10-05 10:29 - 2014-04-23 00:02 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2015-10-05 10:28 - 2014-04-22 22:10 - 00000000 ____D C:\WINDOWS\system32\Restore
2015-10-05 09:51 - 2001-10-25 13:00 - 00000227 _____ C:\WINDOWS\system.ini
2015-10-05 09:47 - 2014-04-22 22:18 - 00000000 __RHD C:\Documents and Settings\Pařezí\Data aplikací
2015-10-05 09:47 - 2014-04-22 22:18 - 00000000 ____D C:\Documents and Settings\Pařezí\Plocha
2015-10-05 09:43 - 2014-04-22 22:18 - 00000000 ___RD C:\Documents and Settings\Pařezí\Nabídka Start\Programy
2015-10-05 09:23 - 2014-04-22 22:16 - 00000000 __SHD C:\Documents and Settings\NetworkService
2015-10-05 09:22 - 2014-05-24 21:10 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-10-05 09:18 - 2014-04-23 00:01 - 00000327 __RSH C:\boot.ini
2015-10-05 09:10 - 2014-04-23 00:02 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2015-10-03 20:48 - 2014-04-26 08:27 - 00000000 ____D C:\Documents and Settings\Pařezí\Local Settings\Data aplikací\Adobe
2015-10-03 20:47 - 2014-04-26 08:28 - 00780488 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-10-03 20:47 - 2014-04-26 08:28 - 00142536 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-10-03 20:16 - 2014-04-22 22:18 - 00000000 ___RD C:\Documents and Settings\Pařezí\Dokumenty
2015-10-03 15:47 - 2001-10-25 13:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
2015-09-25 06:33 - 2014-04-26 08:01 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Avira
2015-09-25 06:32 - 2014-04-26 08:06 - 00108448 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2015-09-09 19:42 - 2015-02-10 09:22 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-09-08 17:05 - 2014-04-26 11:42 - 00000218 _____ C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
2015-09-07 21:23 - 2014-04-26 08:34 - 00108586 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
2015-09-07 21:23 - 2014-04-26 08:34 - 00108586 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-861567501-2000478354-682003330-1003-0.dat
==================== Files in the root of some directories =======
2014-11-30 20:04 - 2014-11-30 20:04 - 0003584 _____ () C:\Documents and Settings\Pařezí\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
Some files in TEMP:
====================
C:\Documents and Settings\Pařezí\Local Settings\temp\avgnt.exe
C:\Documents and Settings\Pařezí\Local Settings\temp\dllnt_dump.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================