Prosím o kontrolu logu - zasekaný PC / Videa

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 26 kvě 2015 20:37

Zdravím, chtěl bych vás poprosit o kontrolu logu, Pc je totálně zasekaný a videa sotva jednou, vím je to stará plečka, ale tohle by to dělat nemělo.
Hlavně se nejde přihlásit na Facebook, prý je napaden Pc malware.

Děkuji!

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:35:30, on 26.5.2015
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

FIREFOX: 38.0.1 (x86 cs)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\wbem\unsecapp.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Jana\Plocha\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 3529 bytes

Reklama
Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod jerabina » 26 kvě 2015 21:31

Podíváme se na to uvidíme, co se s tím dá dělat.

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.

===================================================

Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

===================================================

Stáhni AdwCleaner (by Xplode)

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

===================================================

Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na Kopírovat do schránky a a vlož sem celý log.

- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).

Pokud budou problémy , spusť v nouz. režimu.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 27 kvě 2015 18:31

Tak tu je log z AdwCleaneru, jinak s malwarebytes anti-malware mám problém s nainstalováním ... viz obrázek

Obrázek

# AdwCleaner v4.205 - Logfile created 27/05/2015 at 18:19:28
# Updated 21/05/2015 by Xplode
# Database : 2015-05-21.2 [Local]
# Operating system : Microsoft Windows XP Service Pack 2 (x86)
# Username : Jana - JANA-UWIXIIE91A
# Running from : C:\Documents and Settings\Jana\Plocha\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v6.0.2900.2180


-\\ Mozilla Firefox v38.0.1 (x86 cs)


*************************

AdwCleaner[R0].txt - [630 bytes] - [27/05/2015 18:19:28]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [688 bytes] ##########

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod jaro3 » 27 kvě 2015 20:18

Platform: Windows XP SP2 --- doinstaluj si SP3!!


Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean

Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 20 čer 2015 13:52

# AdwCleaner v4.205 - Logfile created 20/06/2015 at 13:47:18
# Updated 21/05/2015 by Xplode
# Database : 2015-05-21.2 [Local]
# Operating system : Microsoft Windows XP Service Pack 2 (x86)
# Username : Jana - JANA-UWIXIIE91A
# Running from : C:\Documents and Settings\Jana\Plocha\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v6.0.2900.2180


-\\ Mozilla Firefox v38.0.5 (x86 cs)


*************************

AdwCleaner[R0].txt - [766 bytes] - [27/05/2015 18:19:28]
AdwCleaner[R1].txt - [824 bytes] - [20/06/2015 13:43:57]
AdwCleaner[S0].txt - [750 bytes] - [20/06/2015 13:47:18]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [808 bytes] ##########

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 20 čer 2015 13:56

QuickScan 32-bitv0.9.9.140
--------------------------
Scan date: Tue May 26 20:22:14 2015
Machine ID: 506E0047



No infection found.
-------------------



Processes
---------
(verified) Avast Antivirus 1384 C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(verified) Avast Antivirus 1664 C:\Program Files\AVAST Software\Avast\AvastUI.exe
(verified) Firefox 812 C:\Program Files\Mozilla Firefox\firefox.exe
(verified) Firefox 2576 C:\Program Files\Mozilla Firefox\plugin-container.exe
(verified) Java(TM) Platform SE 7 U21 2020 C:\Program Files\Java\jre7\bin\jqs.exe
(verified) Java(TM) Platform SE Auto Updater 3384 C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(verified) Java(TM) Platform SE Auto Updater 1656 C:\Program Files\Common Files\Java\Java Update\jusched.exe
(verified) Microsoft(R) Windows (R) 2000 Operating 1552 C:\WINDOWS\explorer.exe
(verified) Microsoft® Windows® Operating System 1236 C:\WINDOWS\system32\alg.exe
(verified) Microsoft® Windows® Operating System 608 C:\WINDOWS\system32\csrss.exe
(verified) Microsoft® Windows® Operating System 1676 C:\WINDOWS\system32\ctfmon.exe
(verified) Microsoft® Windows® Operating System 696 C:\WINDOWS\system32\lsass.exe
(verified) Microsoft® Windows® Operating System 1724 C:\WINDOWS\system32\spoolsv.exe
(verified) Microsoft® Windows® Operating System 244 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 856 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 932 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 1028 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 1124 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 1268 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 2412 C:\WINDOWS\system32\wbem\unsecapp.exe
(verified) Microsoft® Windows® Operating System 1312 C:\WINDOWS\system32\wbem\wmiprvse.exe
(verified) Microsoft® Windows® Operating System 1512 C:\WINDOWS\system32\wscntfy.exe
(verified) NVIDIA Driver Helper Service, Version 9 120 C:\WINDOWS\system32\nvsvc32.exe
(verified) Operační systém Microsoft® Windows® 1648 C:\WINDOWS\system32\rundll32.exe
(verified) Operační systém Microsoft® Windows® 684 C:\WINDOWS\system32\services.exe
(verified) Operační systém Microsoft® Windows® 544 C:\WINDOWS\system32\smss.exe
(verified) Operační systém Microsoft® Windows® 632 C:\WINDOWS\system32\winlogon.exe


Network activity
----------------
Process firefox.exe (812) connected on port 443 (HTTP over SSL) --> 74.125.133.154
Process firefox.exe (812) connected on port 443 (HTTP over SSL) --> 5.45.58.101
Process firefox.exe (812) connected on port 443 (HTTP over SSL) --> 173.194.122.13
Process firefox.exe (812) connected on port 443 (HTTP over SSL) --> 31.13.93.3
Process firefox.exe (812) connected on port 443 (HTTP over SSL) --> 173.194.122.26
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.26
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 62.67.193.25
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 80.239.200.43
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 46.255.224.26
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 46.255.224.22
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 23.62.237.88
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 23.62.237.88
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 52.16.98.15
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 77.234.41.65
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.16
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.25
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.13
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 54.228.187.145
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 52.16.98.15
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 93.184.220.29
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.4
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 2.16.30.218
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 62.67.193.25
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 23.37.37.163
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.15
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.1
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 173.194.122.1
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 62.67.193.25
Process AvastSvc.exe (1384) connected on port 80 (HTTP) --> 62.67.193.25

Process svchost.exe (932) listens on ports: 135 (RPC)


Autoruns and critical files
---------------------------
(verified) Adobe® Flash® Player Update Service C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
(verified) Avast Antivirus C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
(verified) Avast Antivirus C:\Program Files\AVAST Software\Avast\AvastUI.exe
(verified) Java(TM) Platform SE Auto Updater C:\Program Files\Common Files\Java\Java Update\jusched.exe
(verified) Microsoft(R) Windows (R) 2000 Operating C:\WINDOWS\system32\browseui.dll
(verified) Microsoft(R) Windows (R) 2000 Operating C:\WINDOWS\system32\shell32.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\cryptnet.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\cscdll.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\ctfmon.exe
(verified) NVIDIA Compatible Windows 2000 Display C:\WINDOWS\system32\nvcpl.dll
(verified) NVIDIA Media Center Library C:\WINDOWS\system32\nvmctray.dll
(unsigned) nwiz.exe C:\WINDOWS\system32\nwiz.exe
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\crypt32.dll
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\logon.scr
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\logonui.exe
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\sclgntfy.dll
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\stobject.dll
(verified) Operační systém Microsoft® Windows® c:\WINDOWS\system32\userinit.exe
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\webcheck.dll
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\wlnotify.dll


Browser plugins
---------------
(verified) Bitdefender QuickScan C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
(unsigned) gmpopenh264.dll C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default\gmp-gmpopenh264\1.1\gmpopenh264.dll
(unsigned) gmpopenh264.dll C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default\gmp-gmpopenh264\1.4\gmpopenh264.dll
(verified) Java Deployment Toolkit 7.0.210.11 C:\WINDOWS\system32\npDeployJava1.dll
(verified) Java(TM) Platform SE 7 U21 c:\program files\Java\jre7\bin\jp2ssv.dll
(verified) Java(TM) Platform SE 7 U21 C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
(verified) Java(TM) Platform SE 7 U21 c:\program files\Java\jre7\bin\ssv.dll
(verified) Messenger C:\Program Files\Messenger\msmsgs.exe
(verified) Microsoft(R) Windows (R) 2000 Operating C:\WINDOWS\system32\shdocvw.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\winrnr.dll
(verified) NPSWF32_16_0_0_305.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll
(verified) Operační systém Microsoft® Windows® C:\WINDOWS\system32\mswsock.dll


Scan
----
MD5: 4e7d4a67e774addd7fd68b20692a0af5 C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
MD5: 7cc4965741508bb6ac40e366f5190cf0 C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default\gmp-gmpopenh264\1.1\gmpopenh264.dll
MD5: c012f71d06b0e4914ccf98c1125e688e C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default\gmp-gmpopenh264\1.4\gmpopenh264.dll
MD5: 6891adfec0c50400511fb16dfff86d00 C:\Program Files\AVAST Software\Avast\1029\Base.dll
MD5: 03053fe02c86462715f98842a04d4790 C:\Program Files\AVAST Software\Avast\1029\uiLangRes.dll
MD5: 324376e364d0491a3d32ddc8a07a6bbb C:\Program Files\AVAST Software\Avast\Aavm4h.dll
MD5: d10b15d6babf8387ff8a8aaccd7c093c C:\Program Files\AVAST Software\Avast\AavmRpch.dll
MD5: 68c5dcbaaaa6caad57f9cda8b94f2811 C:\Program Files\AVAST Software\Avast\AhResMai.dll
MD5: 8389d2407451d8ab3117dca36a20ee9d C:\Program Files\AVAST Software\Avast\AhResStd.dll
MD5: 8fe99f1aff5aeac000cb646e421c8cf2 C:\Program Files\AVAST Software\Avast\AhResWS.dll
MD5: aaa82fd6c6222b9533520e326c6c651b C:\Program Files\AVAST Software\Avast\AhResWS2.dll
MD5: 412350fcf57a83664b65d521cfae8167 C:\Program Files\AVAST Software\Avast\ashBase.dll
MD5: c5ae09c02db271fdf38c07f19d42609b C:\Program Files\AVAST Software\Avast\ashMaiSv.dll
MD5: c05f075af8de52d7dedf42d738f5fe93 C:\Program Files\AVAST Software\Avast\ashServ.dll
MD5: 4c235455ba906beb43fc899b77668f06 C:\Program Files\AVAST Software\Avast\ashShell.dll
MD5: b557cb17d1a0939b9191944aeb0252fb C:\Program Files\AVAST Software\Avast\ashTask.dll
MD5: fdaf2e84e880238fa0769bc3eff08a1d C:\Program Files\AVAST Software\Avast\ashTaskEx.dll
MD5: b2bc0f09a1b7fca91b8f2afdc5e47a24 C:\Program Files\AVAST Software\Avast\ashWebSv.dll
MD5: c36cd03ca418201d29262c838850207e C:\Program Files\AVAST Software\Avast\ashWsFtr.dll
MD5: 7a18e6d6b50e9a1504fab897a0997d8a C:\Program Files\AVAST Software\Avast\aswAra.dll
MD5: 04ac7d0eeaf0aa0ae5e7a8631b896ce3 C:\Program Files\AVAST Software\Avast\aswAux.dll
MD5: 3f13f6097b6693a15eacbac3d083aa4b C:\Program Files\AVAST Software\Avast\aswCmnBS.dll
MD5: 7f54cdae5635deef75061f09c12c5ce5 C:\Program Files\AVAST Software\Avast\aswCmnIS.dll
MD5: 0285d178c4882810381a71606c93a6ed C:\Program Files\AVAST Software\Avast\aswCmnOS.dll
MD5: 9a294720aab24893cb72d8292236a1ed C:\Program Files\AVAST Software\Avast\aswData.dll
MD5: 33e791cebbd799e45b0f1a976c09fefa C:\Program Files\AVAST Software\Avast\aswEngLdr.dll
MD5: 33f7ef5c1b460950812cd4dc5a70cc85 C:\Program Files\AVAST Software\Avast\aswJSScan.dll
MD5: ae098e835009a5cecfaf4a275bd4f55f C:\Program Files\AVAST Software\Avast\aswLog.dll
MD5: 76b7796a2e4764062f35a470859e1790 C:\Program Files\AVAST Software\Avast\aswPatchMgt.dll
MD5: b24202c9bcd3386b27e1f905f592f4a4 C:\Program Files\AVAST Software\Avast\aswProperty.dll
MD5: a0c0bc5f9aa1542c0454dd7520bf8fa4 C:\Program Files\AVAST Software\Avast\aswRemoteCache.dll
MD5: 6055b7c3cd0f97667140227b73c87130 C:\Program Files\AVAST Software\Avast\aswSqLt.dll
MD5: 66e0912ed2f9ff12733619f0577b9ef4 C:\Program Files\AVAST Software\Avast\aswStrm.dll
MD5: 58655e2798eab2b693efeaada116669d C:\Program Files\AVAST Software\Avast\aswUtil.dll
MD5: c50b830ca9bcd63754928cd6c0e2b114 C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
MD5: ab75d87c16b94e8ec80dbc7636235baa C:\Program Files\AVAST Software\Avast\avastIP.dll
MD5: 54236e79a44f909612391c8a2d70d512 C:\Program Files\AVAST Software\Avast\AvastSvc.exe
MD5: 65c6aa484ad2287d20541c7735989437 C:\Program Files\AVAST Software\Avast\AvastUI.exe
MD5: ce52ccc47f916f19d71b839cc1829b54 C:\Program Files\AVAST Software\Avast\CommChannel.dll
MD5: b93377ed3ecd4bc4aadf74a68c2b68b1 C:\Program Files\AVAST Software\Avast\CommonRes.dll
MD5: 5c5e3afd499e5146fef1da5ef8a23205 C:\Program Files\AVAST Software\Avast\dbghelp.dll
MD5: c7fa89135a0cde9050acc6e7f413f1b8 C:\Program Files\AVAST Software\Avast\defs\15052600\algo.dll
MD5: af42f71f100789e43157eb3c867c71d7 C:\Program Files\AVAST Software\Avast\defs\15052600\aswCleanerDLL.dll
MD5: fb94eddc96e7a62f27ea8a234ae450d3 C:\Program Files\AVAST Software\Avast\defs\15052600\aswCmnBS.dll
MD5: 9ddb2ea92592899e4794f033bd1a8bdc C:\Program Files\AVAST Software\Avast\defs\15052600\aswCmnIS.dll
MD5: ae3eb54cbd586a59f93915c64af35695 C:\Program Files\AVAST Software\Avast\defs\15052600\aswCmnOS.dll
MD5: 6a0cc6454af412c52559264b64f8414d C:\Program Files\AVAST Software\Avast\defs\15052600\aswEngin.dll
MD5: 2c090c62dc71e6f7c00894f427a2473b C:\Program Files\AVAST Software\Avast\defs\15052600\aswFiDb.dll
MD5: 6fa1233c920f5d2be134e1d43be04b3b C:\Program Files\AVAST Software\Avast\defs\15052600\aswRep.dll
MD5: d030cfa02c57a99539b6032f52c4cc41 C:\Program Files\AVAST Software\Avast\defs\15052600\aswScan.dll
MD5: 993f409151f34f1d452bb945e14fd60d C:\Program Files\AVAST Software\Avast\defs\15052600\swhealthex.dll
MD5: 1fe4c38c6ffd425455e55ca935f6ac0e C:\Program Files\AVAST Software\Avast\defs\15052600\uiext.dll
MD5: 2427406f4aa14011911a18a4aac865fa C:\Program Files\AVAST Software\Avast\HTMLayout.dll
MD5: 1bc3368e7c13fa7ceacd9d3e41eea36d C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
MD5: 1c90330daef6acc78ad6c906a46a26d6 C:\Program Files\AVAST Software\Avast\libcef.dll
MD5: 2540fa75ceafd9d52cbfe63198d42aad C:\Program Files\AVAST Software\Avast\libeay32.dll
MD5: e171bf7bb72025749d4e660f2c49d3ad C:\Program Files\AVAST Software\Avast\log.dll
MD5: b20060a3b091f4280cedb391ab2eee2a C:\Program Files\AVAST Software\Avast\snxhk.dll
MD5: 7bc66bf9eb965eab0907943872e9b811 C:\Program Files\AVAST Software\Avast\ssleay32.dll
MD5: a2cb714dcf8f0e134f2429af673c7c08 C:\Program Files\Common Files\Java\Java Update\jucheck.exe
MD5: d63797e8e7781ee1500a810cb6194fa6 C:\Program Files\Common Files\Java\Java Update\jusched.exe
MD5: 7420e9943ba6565abaa7cc9a15ab4afb c:\program files\Java\jre7\bin\jp2ssv.dll
MD5: 5739f2821d49975cede6bf0153d0cf01 C:\Program Files\Java\jre7\bin\jqs.exe
MD5: 67ec459e42d3081dd8fd34356f7cafc1 C:\Program Files\Java\jre7\bin\msvcr100.dll
MD5: 8f24103ab984847aa2939f58f19ccc98 C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
MD5: a4f59871290f2e559ca651af0e7b215b c:\program files\Java\jre7\bin\ssv.dll
MD5: c409470435c4a09cfe8bb63df3dc7af4 C:\Program Files\Messenger\msmsgs.exe
MD5: 2ecbc0b86ba20c6268232f4325f677fe C:\Program Files\Mozilla Firefox\browser\components\browsercomps.dll
MD5: 14cf73d771fa977a9f1cbaa5c301f912 C:\Program Files\Mozilla Firefox\firefox.exe
MD5: d0610098e4bd2bb8bb75bcc02b9fdc6f C:\Program Files\Mozilla Firefox\freebl3.dll
MD5: 7fbd2628eeb3afa6fb4f90540cc5bf47 C:\Program Files\Mozilla Firefox\icudt52.dll
MD5: 964bf6fb6965c76c85c56bc38f5149d4 C:\Program Files\Mozilla Firefox\icuin52.dll
MD5: 08b8350ba9a6dc294a5b63464d7090b5 C:\Program Files\Mozilla Firefox\icuuc52.dll
MD5: df057e50f94662bec95b1c408ed3899d C:\Program Files\Mozilla Firefox\mozalloc.dll
MD5: 0e6216623a0e70cd25c336ea82312592 C:\Program Files\Mozilla Firefox\mozglue.dll
MD5: fd5cabbe52272bd76007b68186ebaf00 C:\Program Files\Mozilla Firefox\msvcp120.dll
MD5: 034ccadc1c073e4216e9466b720f9849 C:\Program Files\Mozilla Firefox\msvcr120.dll
MD5: 2d18e8917983c8c3c78df289ab85370e C:\Program Files\Mozilla Firefox\nss3.dll
MD5: 316d78c5b8cf704b9abaa17ded23c06b C:\Program Files\Mozilla Firefox\nssckbi.dll
MD5: c6c7d3d43ea85d1a5d3b2addc8a46e3a C:\Program Files\Mozilla Firefox\nssdbm3.dll
MD5: d20916c6ea423de829717357be09731c C:\Program Files\Mozilla Firefox\plugin-container.exe
MD5: 08ee9f127c6bef53c13b8f7b586db9db C:\Program Files\Mozilla Firefox\sandboxbroker.dll
MD5: 2858e20feca5f79ae779906559884bc4 C:\Program Files\Mozilla Firefox\softokn3.dll
MD5: ba6697da1c0f70f56d87232901b4429f C:\Program Files\Mozilla Firefox\xul.dll
MD5: dd370a8148862150ba81a3f5c56a1e40 C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
MD5: 5056aa8bb37feaaa3d46f388fee083af C:\WINDOWS\AppPatch\acgenral.dll
MD5: 53114d57ab73a406ac7f602227781a99 C:\WINDOWS\explorer.exe
MD5: f59152272782fed8a8197fa788287f68 C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
MD5: 0161d9cf2097efc0b00ce473647f8deb C:\WINDOWS\system32\activeds.dll
MD5: 835113fa5b05c0c48c7d0716320e7da7 C:\WINDOWS\system32\actxprxy.dll
MD5: c3f03be6927fc9107886e48f8a415231 C:\WINDOWS\system32\adsldpc.dll
MD5: 0cdc4a0c6b820fad99fb4ca74cd0c476 C:\WINDOWS\system32\advapi32.dll
MD5: 93a2aae5b4344c702c41e15f06a01f24 C:\WINDOWS\system32\advpack.dll
MD5: b3f690bf43f93a012a52f28f234faa1b C:\WINDOWS\system32\alg.exe
MD5: 026ddaa7e6f8d49df82c7a98bae5d0d1 C:\WINDOWS\system32\alrsvc.dll
MD5: de58be5500a9105127f3995c8c30f547 C:\WINDOWS\system32\apphelp.dll
MD5: ba92b89b30e85999c63fd0088c5cbada C:\WINDOWS\system32\atl.dll
MD5: 40d78f514c8588ef12ec718d2af0fc4e C:\WINDOWS\system32\audiosrv.dll
MD5: b2370507bf7228b0238709885c628728 C:\WINDOWS\system32\authz.dll
MD5: f642f3368d2839798da79e7ba9218481 C:\WINDOWS\system32\basesrv.dll
MD5: 9a1a488a3fba380d6e69b1ca637bf3e2 C:\WINDOWS\system32\batmeter.dll
MD5: 8374183a4db34916aca54f1afb8a29df C:\WINDOWS\system32\browselc.dll
MD5: f219e27e88107a50544153898dd8178e C:\WINDOWS\system32\browser.dll
MD5: f0a799052b8d77fabc4630ef3bbb32d6 C:\WINDOWS\system32\browseui.dll
MD5: f50e7561e78b58df4203ff68b12253ae C:\WINDOWS\system32\cabinet.dll
MD5: 3067a1df068dcee90922590edd24f12f C:\WINDOWS\system32\certcli.dll
MD5: d1ef8a82d7bed1ec56c8791c495ec74f C:\WINDOWS\system32\cfgmgr32.dll
MD5: 9e21229e04e1d301bb40222fe4641cb2 C:\WINDOWS\system32\cisvc.exe
MD5: ad2e8119c400d3a9002abe9eb4ef238f C:\WINDOWS\system32\clbcatq.dll
MD5: d3dc45553c8025338e08a60e95b1b91d C:\WINDOWS\system32\clipsrv.exe
MD5: 2144e0a2e64e78076966b4a7bad10443 C:\WINDOWS\system32\clusapi.dll
MD5: 4e5be66cd70d52637589e9c3e2c1696d C:\WINDOWS\system32\cmd.exe
MD5: 05e04940bb3693cd7692d76da546375e C:\WINDOWS\system32\cnbjmon.dll
MD5: 9e6fe6129619598f5738d62d5f68a039 C:\WINDOWS\system32\colbact.dll
MD5: 876c658c44f2bf4af050e5534a9f066f C:\WINDOWS\system32\comctl32.dll
MD5: 31c8f1d88871132daca8262cc30e3ddc C:\WINDOWS\system32\comdlg32.dll
MD5: b44f68274ab7b8a54e9ad74aff0efaac C:\WINDOWS\system32\comres.dll
MD5: d32c1d39332b30e91e172713a4ae6ddf C:\WINDOWS\system32\comsvcs.dll
MD5: b848d125e938aa2b16fccec482b23463 C:\WINDOWS\system32\credui.dll
MD5: 6bdb36e60a2514a5a1927bdecaa9911e C:\WINDOWS\system32\crypt32.dll
MD5: fe8e85a1d8f080c5901dd6fe102e675f C:\WINDOWS\system32\cryptdll.dll
MD5: 509fc425705937f3be30ded93f7582f7 C:\WINDOWS\system32\cryptnet.dll
MD5: 70d2a1756f4b2067658a186c963fcabd C:\WINDOWS\system32\cryptsvc.dll
MD5: 1ac3d5212669f95800e8be8bf2408e0e C:\WINDOWS\system32\cryptui.dll
MD5: 36b7cd28481085aada7f1515915c18ca C:\WINDOWS\system32\cscdll.dll
MD5: 46297f66729fa6ddb70b3859232a52d3 C:\WINDOWS\system32\cscui.dll
MD5: ed0bb61f31da099f6abd48025156601b C:\WINDOWS\system32\csrsrv.dll
MD5: 490e6e57e54faf5f23f658ea188405a1 C:\WINDOWS\system32\csrss.exe
MD5: a5baa91475167161dea02ba3c4ca4f59 C:\WINDOWS\system32\ctfmon.exe
MD5: 59e54c2697c0b4c127d44d19d41bf2bc C:\WINDOWS\system32\davclnt.dll
MD5: f3d89178658c5a6e5615f0eca2989f57 C:\WINDOWS\system32\dbghelp.dll
MD5: 562830efb7cf367fb773fea5256e67c8 C:\WINDOWS\system32\dhcpcsvc.dll
MD5: 52e64c28764d0139e1246eaa3d608591 C:\WINDOWS\system32\dllhost.exe
MD5: 6d873441516cc07c330c8b6569e25e9d C:\WINDOWS\system32\dmadmin.exe
MD5: 7b3ca72885923eb947221f17f3e3ac59 C:\WINDOWS\system32\dmserver.dll
MD5: caefc013964f57072b8096187419d6c0 C:\WINDOWS\system32\dnsapi.dll
MD5: f605b3f5674d67587c4b6c9e92a3e025 C:\WINDOWS\system32\dnsrslvr.dll
MD5: 0f2d66d5f08ebe2f77bb904288dcf6f0 C:\WINDOWS\system32\drivers\ac97intc.sys
MD5: fa2fbcda96d2385f773b059fe5a125a6 C:\WINDOWS\system32\drivers\acpi.sys
MD5: afdff022a01f0b11c776f0860c3b282f C:\WINDOWS\system32\drivers\acpiec.sys
MD5: 2c428fa0c3e3a01ed93c9b2a27d8d4bb C:\WINDOWS\system32\drivers\agp440.sys
MD5: efdef61c488a193986d4672658e91532 C:\WINDOWS\system32\drivers\aswHwid.sys
MD5: 91aaf4792987b43c0653d74516f092c8 C:\WINDOWS\system32\drivers\ASWMONFLT.sys
MD5: 8fe9bb175e9c789fed4cb6cefec4ee18 C:\WINDOWS\system32\drivers\aswRdr.sys
MD5: 2db91ce80c367acdd1331de9b1e3eaef C:\WINDOWS\system32\drivers\aswRvrt.sys
MD5: 83df5b3de1c6527972946cdb328446f7 C:\WINDOWS\system32\drivers\aswSnx.sys
MD5: cb2b9fbff7a3104a6aa60e797156800f C:\WINDOWS\system32\drivers\aswSP.sys
MD5: 9064b31fa781b925136dd68c17c0b1b4 C:\WINDOWS\system32\drivers\aswTdi.sys
MD5: d45875d018f9fb9bf19b976ad8791de9 C:\WINDOWS\system32\drivers\aswVmm.sys
MD5: e1968edec81c430108feb23ab07bdb14 C:\WINDOWS\system32\drivers\dmboot.sys
MD5: 1b1520a82e396e46b9ae9fa6b03ff6c6 C:\WINDOWS\system32\drivers\dmio.sys
MD5: 866b8ee30e4504c11ae0d29ed6f8824b C:\WINDOWS\system32\drivers\e100b325.sys
MD5: 266dab58619b17bdf37fabbd48d875ca C:\WINDOWS\system32\drivers\fips.sys
MD5: 4e664d8541db4a66b73a24257e322e1f C:\WINDOWS\system32\drivers\ftdisk.sys
MD5: 0f42de9909b5dbf2c48dd1a79d491af5 C:\WINDOWS\system32\drivers\i8042prt.sys
MD5: ef4fda4841001a4b98c411797db8894a C:\WINDOWS\system32\drivers\intelide.sys
MD5: 1091528512e4dd7ed5fddcc4df1c53d7 C:\WINDOWS\system32\drivers\isapnp.sys
MD5: 6f877bf8dc01a550cd666f3bedb2213c C:\WINDOWS\system32\drivers\kbdclass.sys
MD5: 60210deb037846afe521ebf349964f6b C:\WINDOWS\system32\drivers\modem.sys
MD5: b160ec94114715675509115986400fd9 C:\WINDOWS\system32\drivers\mouclass.sys
MD5: ba1b732c1a70cfea0c1b64f2850bf44f C:\WINDOWS\system32\drivers\nv4_mini.sys
MD5: 76a18caa2fefb28a4ced38d76837e86e C:\WINDOWS\system32\drivers\parport.sys
MD5: 1fae19d0457176318bba4a8795656ebc C:\WINDOWS\system32\drivers\parvdm.sys
MD5: b7979f37bb7b9df2230046134955e6e7 C:\WINDOWS\system32\drivers\pci.sys
MD5: 90505755634407d4ef4c6dea60fc1df9 C:\WINDOWS\system32\drivers\pcmcia.sys
MD5: 9a10e4fd13824823da50d4758bd0a645 C:\WINDOWS\system32\drivers\processr.sys
MD5: aba13d33e1f888c9a68599a48a8840d6 C:\WINDOWS\system32\drivers\redbook.sys
MD5: d7fd0ff761e28ac0ea35ad71e0cd67e9 C:\WINDOWS\system32\drivers\scsiport.sys
MD5: c1ddbc85251551a840212999da3d95f3 C:\WINDOWS\system32\drivers\serial.sys
MD5: a74035ea526db97d9d50d2143a55f5cf C:\WINDOWS\system32\drivers\sr.sys
MD5: cd8cce067f7e9cbd762c00bdddecaa34 C:\WINDOWS\system32\drivers\volsnap.sys
MD5: 1bcd6fd806fae40fd37ba88d1da1367c C:\WINDOWS\system32\drprov.dll
MD5: cacd2c63a79268d131ea37e85524cc44 C:\WINDOWS\system32\dssenh.dll
MD5: 9b85cccc70f19afac434fb6cbb351289 C:\WINDOWS\system32\duser.dll
MD5: d6f7428b201e33bc80066b47144cb568 C:\WINDOWS\system32\ersvc.dll
MD5: 972378b907070f64932a87c90a035487 C:\WINDOWS\system32\es.dll
MD5: 7c260ab0f09d2d493a008adc9943702c C:\WINDOWS\system32\esent.dll
MD5: 6eb66066d5c0175320cfea0a4c74c88f C:\WINDOWS\system32\eventlog.dll
MD5: e98e2f02a875b2fdbba20ce6db5302e4 C:\WINDOWS\system32\fltlib.dll
MD5: 41d8adc476e1a1db0628280774904243 C:\WINDOWS\system32\gdi32.dll
MD5: faaba83be47c5b15f620faa53267a9b8 C:\WINDOWS\system32\hnetcfg.dll
MD5: 69abcc7245d98f31def317a53d547657 C:\WINDOWS\system32\icaapi.dll
MD5: 99147d46b3702cdd293c4850e385e427 C:\WINDOWS\system32\icm32.dll
MD5: 1063d8d06835aac0360bf6fc82d53e26 C:\WINDOWS\system32\imagehlp.dll
MD5: cf9d286b34cb4912f3b28b4972d5cb33 C:\WINDOWS\system32\imapi.exe
MD5: 2413635113361e54b62f0c40e4e4dae6 C:\WINDOWS\system32\imm32.dll
MD5: 763de5266639c75550706299a8e3047b C:\WINDOWS\system32\inetpp.dll
MD5: 43cde44202cfefc9a1d4b39200617cd6 C:\WINDOWS\system32\iphlpapi.dll
MD5: 6a93501bcdebf159109429b022c0ff83 C:\WINDOWS\system32\ipnathlp.dll
MD5: 030b997eb7de1ada071fe5d6efcf3ed3 C:\WINDOWS\system32\ipsecsvc.dll
MD5: a6e01c674df87ba767f6d72873f9c9f5 C:\WINDOWS\system32\kerberos.dll
MD5: 98da079f61265bc26d4587e280b79f30 C:\WINDOWS\system32\kernel32.dll
MD5: ee1f842db2ae412136643b0814d770a6 C:\WINDOWS\system32\linkinfo.dll
MD5: f9ee6d2aab0690b34ae35ba9921a1414 C:\WINDOWS\system32\lmhsvc.dll
MD5: 9c8e1a06256fa7bb5d952edf240af5c0 C:\WINDOWS\system32\loadperf.dll
MD5: 4293f5f4a7405d7d8a5d428855c9c274 C:\WINDOWS\system32\localspl.dll
MD5: c8a3b668985d61249f2dc71716c58de8 C:\WINDOWS\system32\locator.exe
MD5: a77a5b1625274fed47a25c7743ec59e3 C:\WINDOWS\system32\logon.scr
MD5: 3e8ecdbadccdf9aa52ee12b516ae98b5 C:\WINDOWS\system32\logonui.exe
MD5: 527fc50ccb2fd088a458c69134a5a1ff C:\WINDOWS\system32\lsasrv.dll
MD5: 82a362fe1d4980b71b588d9c10748511 C:\WINDOWS\system32\lsass.exe
MD5: 080255cdcb878813b481b8c348d47d8e C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
MD5: c62322c77d1aab77b1cf1130fcc3673a C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll
MD5: c0b677971967e6807f280a0d184dd533 C:\WINDOWS\system32\mfc42loc.dll
MD5: 45c181e47f1863f119da0a352e848d81 C:\WINDOWS\system32\mfc42u.dll
MD5: b356dd67178b22a8c2fbd47316ccb43b C:\WINDOWS\system32\midimap.dll
MD5: 3a304b1792edc522e14c1940a647711d C:\WINDOWS\system32\mlang.dll
MD5: 7d137132d6a9b41ef800e59a771ed48c C:\WINDOWS\system32\mnmsrvc.exe
MD5: 47f5733a51eecc78f9b2da3f9ee6d8b7 C:\WINDOWS\system32\mpr.dll
MD5: e25a7df3f422a5e0b775159ef4c7ba7f C:\WINDOWS\system32\mprapi.dll
MD5: eb5e1a601e5a1908a87e4d5a41803d98 C:\WINDOWS\system32\mprdim.dll
MD5: 2a88f0cbca405859d5282d0c86311fd7 C:\WINDOWS\system32\msacm32.dll
MD5: 58a0d4a0db5fb76438a38f30e666b212 C:\WINDOWS\system32\msacm32.drv
MD5: 6eebffb5c24c88863a509533d9e25525 C:\WINDOWS\system32\msasn1.dll
MD5: bcb7b2576bf0fca695d7db4da3daa8f3 C:\WINDOWS\system32\mscms.dll
MD5: 67e605837840c521bb69074f55f866c3 C:\WINDOWS\system32\msctf.dll
MD5: 944a24032aed84c59455b981f6ca1c1a C:\WINDOWS\system32\msdtc.exe
MD5: 2cbc50bd91947ef2784638d0528f8fa6 C:\WINDOWS\system32\msdtcprx.dll
MD5: 6deeba9fa83c8cec3fb22b4f5fe4fb1b C:\WINDOWS\system32\msdtcuiu.dll
MD5: 1fc0a99c167479b04325861acad465f8 C:\WINDOWS\system32\msgina.dll
MD5: 8b2fcbd881879b55be40b41f12ffc431 C:\WINDOWS\system32\msgsvc.dll
MD5: b9c794ea475837f53205d10cdcb79cc7 C:\WINDOWS\system32\msi.dll
MD5: 9cc4e25b84458207e4120645298a614c C:\WINDOWS\system32\msidle.dll
MD5: 6d90878cf4a800661f017a18ca9d46a5 C:\WINDOWS\system32\msiexec.exe
MD5: 227163195e9495bd99c915ef5f42445c C:\WINDOWS\system32\msimg32.dll
MD5: fc56ad7e70f257f1192d8d232e1a191e C:\WINDOWS\system32\mspatcha.dll
MD5: e02e913b3841717a890a644ee167b9a5 C:\WINDOWS\system32\mspmsnsv.dll
MD5: 4f3348d753fc2c6d46300f65d77b840b C:\WINDOWS\system32\msprivs.dll
MD5: b3ff8c662ebabc6d42689f09fd4ef521 C:\WINDOWS\system32\mstlsapi.dll
MD5: 565fdf3854e8cc0efde2d542163b91d4 C:\WINDOWS\system32\msutb.dll
MD5: 8c3b94ee342503e871e0c0f72c376af0 C:\WINDOWS\system32\msv1_0.dll
MD5: 3313c68cf5b43dca01509773b6b43def C:\WINDOWS\system32\msvcp60.dll
MD5: 91cc3e4ccdbbf8e224182c76c87e454f C:\WINDOWS\system32\msvcrt.dll
MD5: 64c078bd4efd441c3f159edc5ea4420a C:\WINDOWS\system32\mswsock.dll
MD5: 57f1e544a27cf584e124e18944d74f58 C:\WINDOWS\system32\mtxclu.dll
MD5: 247a0ea0c4c2a5a10d98a604cb736abc C:\WINDOWS\system32\ncobjapi.dll
MD5: c686934b723a49e4adccc66254d4bb3b C:\WINDOWS\system32\nddeapi.dll
MD5: 50a18e377de034c4b6fbd5233b603794 C:\WINDOWS\system32\netapi32.dll
MD5: 818053225bf4aac5f0f718001e492f70 C:\WINDOWS\system32\netdde.exe
MD5: 2591cadaef7d2242039255028e577688 C:\WINDOWS\system32\netlogon.dll
MD5: af342d2781225a8769686e0d47e3123e C:\WINDOWS\system32\netman.dll
MD5: 8066ff5677dc47b4af5c677f88e6322e C:\WINDOWS\system32\netrap.dll
MD5: 38e2364ea6f352a359ad143e6ebea9b0 C:\WINDOWS\system32\netshell.dll
MD5: 7b5e0a4cd56e0288ca380b02be626c1b C:\WINDOWS\system32\netui0.dll
MD5: 88f382e821fa0dabebf6663d6c0758f6 C:\WINDOWS\system32\netui1.dll
MD5: adc539f67d3198679f480974ee203678 C:\WINDOWS\system32\npDeployJava1.dll
MD5: 24b856f2fa9cba678e067b398eac1bed C:\WINDOWS\system32\ntdll.dll
MD5: 9630bd8135940ff6daea76472c06178c C:\WINDOWS\system32\ntdsapi.dll
MD5: f77883f3fbaf4ffd6852075ee7c0e416 C:\WINDOWS\system32\ntlanman.dll
MD5: 62479909fc474e4afb57741f3ff3f39d C:\WINDOWS\system32\ntmarta.dll
MD5: d8d2b13ba93ae830b1a637df571d1195 C:\WINDOWS\system32\ntmssvc.dll
MD5: c159ee0e584730ddc23d74781f92f798 C:\WINDOWS\system32\ntshrui.dll
MD5: a007278ec9d59216274dd0154ff0bbaa C:\WINDOWS\system32\nvapi.dll
MD5: c1ea489dd8b5e57b03e2fd5a1500621b C:\WINDOWS\system32\nvcpl.dll
MD5: 1ff171fbaf6e5a29c07b1f8d318b607a C:\WINDOWS\system32\nvmctray.dll
MD5: 0febe37db6650faa5965c00545009d1d C:\WINDOWS\system32\nvsvc32.exe
MD5: 0294e2a5e89bf786f24a9cc2fd753191 C:\WINDOWS\system32\nwiz.exe
MD5: 0e62ed8fe41443eb21c67da215ef29f0 C:\WINDOWS\system32\oakley.dll
MD5: 99dbd95b8eb2cb87c21f17d59f2215ba C:\WINDOWS\system32\odbc32.dll
MD5: a62e00895fa6e767967eb20e8d97f0f7 C:\WINDOWS\system32\odbcbcp.dll
MD5: 82cdcb14c304b458529a05bb6c803b45 C:\WINDOWS\system32\odbcint.dll
MD5: 7fe54c063dda8ef226846510852e6b1b C:\WINDOWS\system32\ole32.dll
MD5: 4d3e8b43b117af50358dbeeab367b0a2 C:\WINDOWS\system32\oleacc.dll
MD5: db6130116362bc1ef5ce70deffa92cac C:\WINDOWS\system32\oleaut32.dll
MD5: 434830efd397cebc55e2c1ff59202084 C:\WINDOWS\system32\pdh.dll
MD5: 6c08ff4b76506676617e03c34eccfb11 C:\WINDOWS\system32\perfctrs.dll
MD5: 6016df898ffd90c9dedcdc6631be5afe C:\WINDOWS\system32\perfdisk.dll
MD5: f4e2d0b770f865f416af3313215b8b0c C:\WINDOWS\system32\perfnet.dll
MD5: da32253cb23de90d7232d2f95d6378c0 C:\WINDOWS\system32\perfos.dll
MD5: 4cff7471cf8f78d6875db5916c774cea C:\WINDOWS\system32\perfproc.dll
MD5: 83848520d0a1e55d821e0bbf87d3137a C:\WINDOWS\system32\perfts.dll
MD5: 6afad3b0576473578a221c54cace7822 C:\WINDOWS\system32\pjlmon.dll
MD5: 134b95a1d8fafd74a68e4b2116defa7d C:\WINDOWS\system32\powrprof.dll
MD5: 354b33931aa885c40f80eb75302e1b8f C:\WINDOWS\system32\profmap.dll
MD5: fbf21330b53f92c17f4ff5f7b0c23bdb C:\WINDOWS\system32\psapi.dll
MD5: 23519ecbdbb26ab19dd03cc4aa14d9c6 C:\WINDOWS\system32\psbase.dll
MD5: 27fbc2d5736c4c6f09e94c8d587d5276 C:\WINDOWS\system32\pschdprf.dll
MD5: 183a46179fdc11b6b9ae655be81c76da C:\WINDOWS\system32\pstorsvc.dll
MD5: e774a26610ec92674273486612c11cfc C:\WINDOWS\system32\qmgr.dll
MD5: 2244ad636c6c3976cfe1c1acd4bf4c48 C:\WINDOWS\system32\qmgrprxy.dll
MD5: e769a4c146f6f82851882b3a5ad34f8d C:\WINDOWS\system32\query.dll
MD5: 630a1012af129918d2e2d70727d69351 C:\WINDOWS\system32\rasadhlp.dll
MD5: 6cc5c55ddc6dc2ff6d00145af3937bd9 C:\WINDOWS\system32\rasapi32.dll
MD5: e68b6f9a726a444059705ab43b5656d1 C:\WINDOWS\system32\rasauto.dll
MD5: 4e7cf2b2d978f1f077cd3e9ff1fdb7d5 C:\WINDOWS\system32\raschap.dll
MD5: 47ccd1175116a3cd2062239b092799ce C:\WINDOWS\system32\rasdlg.dll
MD5: 87c120a6b7c3844f6de4fea7defac3ae C:\WINDOWS\system32\rasman.dll
MD5: 6e519d777c91e90592403c9f981fdf03 C:\WINDOWS\system32\rasmans.dll
MD5: f982fe0e10a2c8a9ad32ecb657bdbd26 C:\WINDOWS\system32\rastls.dll
MD5: a8330491a4df77b0af39f9ae78b0347d C:\WINDOWS\system32\regapi.dll
MD5: f43dbbbd943c01d975778b8874abdad5 C:\WINDOWS\system32\resutils.dll
MD5: f0dc396de971a9a23c780dd8d0efbf1a C:\WINDOWS\system32\rpcrt4.dll
MD5: c72c15ee57e248c66e57c76cab086cf2 C:\WINDOWS\system32\rpcss.dll
MD5: 26acbd865f8cff730f1791c4d0854352 C:\WINDOWS\system32\rsaenh.dll
MD5: 09ab2e71e58b078038e3bfdba7ffc984 C:\WINDOWS\system32\rsvp.exe
MD5: fcb47a0198599ef5b19ce6b685216699 C:\WINDOWS\system32\rsvpperf.dll
MD5: e4aa163f80161c40e7eb4008b47dcec3 C:\WINDOWS\system32\rsvpsp.dll
MD5: 1319f5d5c01277318bd66214a81f0da3 C:\WINDOWS\system32\rtutils.dll
MD5: 69b5ce8a9d8446c9cd0390276123be3a C:\WINDOWS\system32\rundll32.exe
MD5: 55c37415668d1f46aac7617d7ece35ed C:\WINDOWS\system32\samlib.dll
MD5: 90b7ea55552782ae944e1212bfcb82ed C:\WINDOWS\system32\samsrv.dll
MD5: c177354e995cc1aa1f767bcd9980434a C:\WINDOWS\system32\scardsvr.exe
MD5: 07119058d451cb7ea4317bcfda8599a6 C:\WINDOWS\system32\scecli.dll
MD5: 9ab820d13f6d6391e04ea0df572893f6 C:\WINDOWS\system32\scesrv.dll
MD5: e924d0f899cc8567cca36f1a7fe7a7ae C:\WINDOWS\system32\schannel.dll
MD5: 29ac93307c6182dbe336bca314947f28 C:\WINDOWS\system32\schedsvc.dll
MD5: a5d6b13fe285b5bbae06203796e01983 C:\WINDOWS\system32\sclgntfy.dll
MD5: c76cb8a133374fac6805f83ff7b7da03 C:\WINDOWS\system32\seclogon.dll
MD5: 7bc93f007b9e095a35b20bec5eee86c0 C:\WINDOWS\system32\secur32.dll
MD5: b7dcbc1fd649252182cb0018a5735770 C:\WINDOWS\system32\security.dll
MD5: 220ad85ba9c5b3011296354011b901cc C:\WINDOWS\system32\sens.dll
MD5: c601a02cb2218539b0a502fef85e71f7 C:\WINDOWS\system32\sensapi.dll
MD5: 6e401e61f952fbbf708afbecefafae81 C:\WINDOWS\system32\services.exe
MD5: 125acf258da9633f748131a0e0185af3 C:\WINDOWS\system32\sessmgr.exe
MD5: 16dba3c4c38b72ae88f3e7a6b4bf82f1 C:\WINDOWS\system32\setupapi.dll
MD5: 6cc2d21488333133ae0c9f44f6051cb7 C:\WINDOWS\system32\sfc.dll
MD5: e9af00964da9b8838e850f12229df9a4 C:\WINDOWS\system32\sfc_os.dll
MD5: 6d6aebeaeb71e306cf69558514273ef8 C:\WINDOWS\system32\shdocvw.dll
MD5: aa69a61b70e6116db6dcd4dce6fb5a83 C:\WINDOWS\system32\shell32.dll
MD5: 860b28b3c4b052293226563a0afc0763 C:\WINDOWS\system32\shfolder.dll
MD5: 64427059b1811efd9faf0a4749d8c96a C:\WINDOWS\system32\shimeng.dll
MD5: 1003e388f5b39353ddfc221d74ee5ffb C:\WINDOWS\system32\shlwapi.dll
MD5: 8ba76bd2a943f642f267a296a15776d2 C:\WINDOWS\system32\shsvcs.dll
MD5: d9c9ecff4904e6151525c533aeedf8f4 C:\WINDOWS\system32\smlogsvc.exe
MD5: 04b69d49d7fc3358a372e97db6d39447 C:\WINDOWS\system32\smss.exe
MD5: 2e4cd086d04a29036fa12be4a693f7bf C:\WINDOWS\system32\spoolss.dll
MD5: 21b6faa88044a41640e03ebb68be93e8 C:\WINDOWS\system32\spoolsv.exe
MD5: 3cd57f31a64d32fdb28918b16d1e6aac C:\WINDOWS\system32\srsvc.dll
MD5: 6d6bdd68b775986577c48a8df961a05c C:\WINDOWS\system32\srvsvc.dll
MD5: 5c98408e620a2aac7894108769138676 C:\WINDOWS\system32\ssdpapi.dll
MD5: 88c28f53f53438dafcd95e99c837c61e C:\WINDOWS\system32\ssdpsrv.dll
MD5: 2040dcfee216d843c1a715bee5ee6fbd C:\WINDOWS\system32\sti.dll
MD5: 43eefc84a67cd22c5ff60cb08794d11d C:\WINDOWS\system32\stobject.dll
MD5: dfba2915b0bf58abb288cd4c9318cb3f C:\WINDOWS\system32\svchost.exe
MD5: 5d63f6807e4948750b52f8d82b5c5514 C:\WINDOWS\system32\sxs.dll
MD5: 8cad9e3669e56a8b77d83b4cbb1c78bd C:\WINDOWS\system32\tapi32.dll
MD5: a4e77cc9730b7c3e67fa57915e077aff C:\WINDOWS\system32\tapiperf.dll
MD5: 37162d29cd61519e6f5ea0de99786ff6 C:\WINDOWS\system32\tapisrv.dll
MD5: 9545b3cfeeeebe726f8bad19480af259 C:\WINDOWS\system32\tcpmon.dll
MD5: 2f5919f2f6ee7a845893d9c3aa2bc56a C:\WINDOWS\system32\termsrv.dll
MD5: bea26f76b3a46e5e0c6a5081046b8280 C:\WINDOWS\system32\themeui.dll
MD5: a095acba4257cff80d7ef00e82bbe7a4 C:\WINDOWS\system32\traffic.dll
MD5: 4dce17221b1a87fb47e36842f3e38753 C:\WINDOWS\system32\trkwks.dll
MD5: a39ebfd9bbe21a060b7f01997d955924 C:\WINDOWS\system32\umpnpmgr.dll
MD5: a1f34bd1fdb397059b38ee86e6d1ca7c C:\WINDOWS\system32\upnp.dll
MD5: 984fc1518b0d5b31d76f0e63608e0500 C:\WINDOWS\system32\upnphost.dll
MD5: 6148a3ba4d9cc628357fc92014fea30e C:\WINDOWS\system32\ups.exe
MD5: 79494a7cfb9d55bb611768f54e7eb2cf C:\WINDOWS\system32\urlmon.dll
MD5: a92e91a5b245e4c7a808c0a1de4233cd C:\WINDOWS\system32\usbmon.dll
MD5: 1b4ccc59980da34e75f20e42b283b027 C:\WINDOWS\system32\user32.dll
MD5: 618b52c1daabaf5a738b532c3858b14a C:\WINDOWS\system32\userenv.dll
MD5: 836f7960362ff95c5d49e40b891f2cfc c:\WINDOWS\system32\userinit.exe
MD5: e28340f6cb7bac3eacda9c74a0be42be C:\WINDOWS\system32\usp10.dll
MD5: dfa75a66069b12b329d434d06f2199d5 C:\WINDOWS\system32\utildll.dll
MD5: 0d3c98f2d11978d67dd4102471cfbfac C:\WINDOWS\system32\uxtheme.dll
MD5: e472bda53a4dcd2142143af9fd25c99a C:\WINDOWS\system32\version.dll
MD5: 7b7ee0be462654a8830d15cfa954ac4a C:\WINDOWS\system32\vssapi.dll
MD5: 043539881667bb37b07524032d6ffc3e C:\WINDOWS\system32\vssvc.exe
MD5: 2ceebb402187ae56b585701f3d191fb3 C:\WINDOWS\system32\w32time.dll
MD5: da826826c5c9116f47e0cd0ca8cc7c11 C:\WINDOWS\system32\w3ssl.dll
MD5: 5500031928b9d15b0a8987ed80eae952 C:\WINDOWS\system32\wbem\cimwin32.dll
MD5: 235b8d0e1dc80ccb93165b839157b6a0 C:\WINDOWS\system32\wbem\esscli.dll
MD5: c372f827ecc796afda0f904af58ca045 C:\WINDOWS\system32\wbem\fastprox.dll
MD5: 45c89b8f297cd56f84c1084d868a855c C:\WINDOWS\system32\wbem\framedyn.dll
MD5: 6b7895ee9cf76d59a25a5d4415dc5619 C:\WINDOWS\system32\wbem\ncprov.dll
MD5: 0809388eb4e7ae2065b0ff1b1abaf58a C:\WINDOWS\system32\wbem\repdrvfs.dll
MD5: 87ed195ff0307a3285ebdfffdf467a64 C:\WINDOWS\system32\wbem\unsecapp.exe
MD5: bc80d7a3346dc441653a100a01169cda C:\WINDOWS\system32\wbem\wbemcomn.dll
MD5: 6b560d98b52cf2af84fa64c8594c0a6b C:\WINDOWS\system32\wbem\wbemcore.dll
MD5: 64a14b31fbf66a4696d8abae4b7221ae C:\WINDOWS\system32\wbem\wbemdisp.dll
MD5: 43949c22325695d0e8e30b790dd06fdb C:\WINDOWS\system32\wbem\wbemess.dll
MD5: 3f23e87f1b9e1512ccf58d1e9e73718c C:\WINDOWS\system32\wbem\wbemprox.dll
MD5: f14d2c0d1d9ec31976aea8a35ca6076f C:\WINDOWS\system32\wbem\wbemsvc.dll
MD5: 744b8b9258c8ee4770283c653c889ac2 C:\WINDOWS\system32\wbem\wmiaprpl.dll
MD5: bcd21b989f0fd4ace78287fc01b4693d C:\WINDOWS\system32\wbem\wmiapsrv.exe
MD5: d83b2827b75aaf00338c0f29fe6ba22a C:\WINDOWS\system32\wbem\wmiprvsd.dll
MD5: ef897ddcd9e269b83f03f328698aae7a C:\WINDOWS\system32\wbem\wmiprvse.exe
MD5: e12084ea622bdf2262c637bef15dd85c C:\WINDOWS\system32\wbem\wmisvc.dll
MD5: 7ecfdf734c710fff1d020d3242aa796a C:\WINDOWS\system32\wbem\wmiutils.dll
MD5: 36a876e71d71ec0dd06cbd53e744c2b4 C:\WINDOWS\system32\wdigest.dll
MD5: 812d645aeb941c63ad33ba98db31697c C:\WINDOWS\system32\wdmaud.drv
MD5: 7668071c692b4ff1bf77765d4648049c C:\WINDOWS\system32\webcheck.dll
MD5: 3791adf1d3466ac6b4b662d3f79cbfec C:\WINDOWS\system32\webclnt.dll
MD5: 0645ccdddd27f96eea3534c1def736d9 C:\WINDOWS\system32\wiaservc.dll
MD5: 02971c5a9e4ccd508ccf4533eac9c3d0 C:\WINDOWS\system32\win32spl.dll
MD5: 92393a08bc2b04842acc087c09396a65 C:\WINDOWS\system32\winhttp.dll
MD5: 50d263e3454e8357d13bb598129185ad C:\WINDOWS\system32\wininet.dll
MD5: 3d253a2d2648777afe6aeaaa50b3b139 C:\WINDOWS\system32\winipsec.dll
MD5: 221c29ae1b4cc61d11d8b27de78b2307 C:\WINDOWS\system32\winlogon.exe
MD5: 4b9fdd69ae4fd774e5f2f70c2bc540ed C:\WINDOWS\system32\winmm.dll
MD5: d7b6bc808ebe3c9e509c9f7bada1287f C:\WINDOWS\system32\winrnr.dll
MD5: 12f369513123acff55886ef411960136 C:\WINDOWS\system32\winscard.dll
MD5: bdab541c731d3ac59f623b88142036b7 C:\WINDOWS\system32\winspool.drv
MD5: e4e57fba176f2752527b1d53a663d2d7 C:\WINDOWS\system32\winsrv.dll
MD5: dcf3abc0ef6493a8931f3fbfff410fc8 C:\WINDOWS\system32\winsta.dll
MD5: d1f434ea13285d09c82140bf39d9fe78 C:\WINDOWS\system32\wintrust.dll
MD5: 69b0569aae33f0d5057ca0e8577aaf07 C:\WINDOWS\system32\wkssvc.dll
MD5: 86fd541ea30251adca771251c49ef0e4 C:\WINDOWS\system32\wldap32.dll
MD5: c30bfc4b8739522ace6174a204d5a087 C:\WINDOWS\system32\wlnotify.dll
MD5: d1a454aff01f7184c1a32079d5a7d0ce C:\WINDOWS\system32\wmi.dll
MD5: 382e9b87f1282e697c67af84e34e35e2 C:\WINDOWS\system32\ws2_32.dll
MD5: c2b86666fc44b48903ad6016d15a23df C:\WINDOWS\system32\ws2help.dll
MD5: 93f75ff033baa186d08115d73bfe3d32 C:\WINDOWS\system32\wscntfy.exe
MD5: 4aded1adef25041d9827f9a79c0fda13 C:\WINDOWS\system32\wscsvc.dll
MD5: b75f372796170ebd15df35ae9963bfb8 C:\WINDOWS\system32\wshtcpip.dll
MD5: a543fc88a320a0758a55be03789eaf7c C:\WINDOWS\system32\wsock32.dll
MD5: b79f1ab8754dd2ccf24a716005637c6d C:\WINDOWS\system32\wtsapi32.dll
MD5: d6730ae698de4b62077a1091e906fc35 C:\WINDOWS\system32\wuaueng.dll
MD5: 21f5169ca14e0b25c757644456f637df C:\WINDOWS\system32\wuauserv.dll
MD5: cbd5db25f3451935ff2a01fcc83ef892 C:\WINDOWS\system32\wups.dll
MD5: 6cdfd3e50bcf69edd7522bcc978e84e7 C:\WINDOWS\system32\wzcsapi.dll
MD5: 325cedef696ef4b649ddcd3968d085c9 C:\WINDOWS\system32\wzcsvc.dll
MD5: 9b835d4c64860b155a1701d5092ec9e4 C:\WINDOWS\system32\xmlprov.dll
MD5: 44ffe27bfa2ca81bcf8f938236aa3601 C:\WINDOWS\system32\xpsp2res.dll
MD5: b8de851298e99a005bfd34aa906b3fe8 C:\WINDOWS\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_x-ww_e6822ee2\mfc110u.dll
MD5: 3e29914113ec4b968ba5eb1f6d194a0a C:\WINDOWS\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_x-ww_e6822ee2\msvcp110.dll
MD5: 4ba25d2cbe1587a841dcfb8c8c4a6ea6 C:\WINDOWS\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_x-ww_e6822ee2\msvcr110.dll
MD5: f76b3003366a205e05afc0d034c7d3e9 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll


No file uploaded.

Scan finished - communication took 9 sec
Total traffic - 0.01 MB sent, 1.54 KB recvd
Scanned 513 files and modules - 523 seconds

==============================================================================

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 20 čer 2015 14:49

RogueKiller V10.8.4.0 [Jun 15 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 2) 32 bits version
Spuštěno : Normální režim
Uživatel : Jana [Práva správce]
Started from : C:\Documents and Settings\Jana\Plocha\RogueKiller.exe
Mód : Prohledat -- Datum : 06/20/2015 14:10:08

¤¤¤ Procesy : 0 ¤¤¤

¤¤¤ Registry : 0 ¤¤¤

¤¤¤ Úlohy : 0 ¤¤¤

¤¤¤ Soubory : 0 ¤¤¤

¤¤¤ Soubor HOSTS : 1 ¤¤¤
[C:\WINDOWS\system32\drivers\etc\hosts] 127.0.0.1 localhost

¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD800AAJB-00J3A0 +++++
--- User ---
[MBR] 54498ac069349368ce8561c995991dc6
[BSP] c8b276318ba8f1909e520181bfd5b7d1 : Windows XP|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 63 | Size: 76308 MB [Windows XP Bootstrap | Windows XP Bootloader]
User = LL1 ... OK
Error reading LL2 MBR! ([1] Nesprávná funkce. )

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod Orcus » 20 čer 2015 17:14

Stáhni
Zoek.exe

a ulož si ho na plochu.
Zavři všechny ostatní programy, okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor, náběh programu může trvat déle.

Do okna programu vlož skript níže:

Kód: Vybrat vše

autoclean;
emptyclsid;
iedefaults;
FFdefaults;
CHRdefaults;
emptyalltemp;
resethosts;


Klikni na Run Script
Program provede sken, opravu, sken i oprava může trvat i více minut, je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .

Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů, jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.

====================================================

Co problémy? + nový log z HJT
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 21 čer 2015 13:54

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by Jana on ne 21.06.2015 at 13:18:11,09.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\Jana\Plocha\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

21.6.2015 13:19:58 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
HKEY_USERS\S-1-5-21-682003330-1788223648-725345543-1004\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully

==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\Program Files\ComPlus Applications deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [26.05.2015 19:47]

==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[26.05.2015 19:47]

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Reset Google Chrome ======================

Nothing found to reset

==== Empty IE Cache ======================

C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Jana\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1 folders=1 170 bytes)

==== Empty Temp Folders ======================

C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\Jana\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\Jana\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found

==== EOF on ne 21.06.2015 at 13:48:31,03 ======================

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 21 čer 2015 14:02

Tak "problémy" ono to možná bude tou starou sestavou, videa např. na idnes se stále sekají i zvuk je trhanej .. Facebook už frčí

Nvidia geforce4 mx 4000
intel pentium 4 cpu 1.5 GHz
1.25 GB RAM

Asi by bylo vhodnější investovat do nových komponentů i když je to jen na procházení internetu bez her a kancelářské práce

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:54:44, on 21.6.2015
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

FIREFOX: 38.0.5 (x86 cs)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\wbem\unsecapp.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Documents and Settings\Jana\Plocha\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 3500 bytes

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod jerabina » 21 čer 2015 16:31

Doinstaluj si ten Service Pack 3 !!

Ten HW je doopravdy slabý, takže to klidně může být tím způsobeno.

Zavři ostatní programy/prohlížeče, odpoj se od internetu a v HJT fixni:
NÁVOD

Kód: Vybrat vše

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"


Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit Farbar Recovery Scan Tool (FRST)
32bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
64bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
a ulož jej na plochu. ,pak spusť FRST jako správce
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

asusmaniac
Level 2
Level 2
Příspěvky: 179
Registrován: leden 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - zasekaný PC / Videa

Příspěvekod asusmaniac » 21 čer 2015 20:50

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 21-06-2015 01
Ran by Jana (administrator) on JANA-UWIXIIE91A on 21-06-2015 20:43:24
Running from C:\Documents and Settings\Jana\Plocha
Loaded Profiles: Jana (Available Profiles: Jana)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [nwiz] => nwiz.exe /install
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-26] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-05-26] (Avast Software s.r.o.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKU\S-1-5-21-682003330-1788223648-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-682003330-1788223648-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: HKU\S-1-5-21-682003330-1788223648-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\System32\shdocvw.dll (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-682003330-1788223648-725345543-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2013-05-04] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-04] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-682003330-1788223648-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll [2008-04-14] (Společnost Microsoft)

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default
FF DefaultSearchEngine: Seznam
FF SelectedSearchEngine: Seznam
FF Homepage: hxxp://seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-07] ()
FF Plugin: @java.com/DTPlugin,version=10.21.2 -> C:\WINDOWS\system32\npDeployJava1.dll [2013-05-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.21.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2013-05-04] (Oracle Corporation)
FF Extension: Bitdefender QuickScan - C:\Documents and Settings\Jana\Data aplikací\Mozilla\Firefox\Profiles\ftj5i0on.default\Extensions\{e001c731-5e37-4538-a5cb-8168736a2360} [2015-06-06]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-05-04]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-05-26]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-26] (Avast Software s.r.o.)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [181664 2013-05-04] (Oracle Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ac97intc; C:\WINDOWS\System32\drivers\ac97intc.sys [96256 2001-08-17] (Intel Corporation)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24144 2015-05-26] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [74976 2015-05-26] (Avast Software s.r.o.)
R1 AswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55200 2015-05-26] (Avast Software s.r.o.)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49904 2015-05-26] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787760 2015-05-26] (Avast Software s.r.o.)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [427992 2015-05-26] (Avast Software s.r.o.)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57888 2015-05-26] (Avast Software s.r.o.)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [209048 2015-05-26] ()
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-21 20:43 - 2015-06-21 20:43 - 00007266 _____ C:\Documents and Settings\Jana\Plocha\FRST.txt
2015-06-21 20:43 - 2015-06-21 20:43 - 00000000 ____D C:\FRST
2015-06-21 20:42 - 2015-06-21 20:42 - 00000000 ____D C:\Documents and Settings\Jana\Plocha\backups
2015-06-21 20:39 - 2015-06-21 20:40 - 01148928 _____ (Farbar) C:\Documents and Settings\Jana\Plocha\FRST.exe
2015-06-21 20:37 - 2015-06-21 20:37 - 00000226 _____ C:\WINDOWS\DtcInstall.log
2015-06-21 20:37 - 2008-04-14 08:52 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\setb0.tmp
2015-06-21 20:36 - 2015-06-21 20:38 - 00001776 _____ C:\WINDOWS\wmsetup.log
2015-06-21 20:36 - 2015-06-21 20:36 - 00000187 _____ C:\WINDOWS\spupdsvc.log.1.log
2015-06-21 20:04 - 2015-06-21 20:38 - 00069072 _____ C:\WINDOWS\spupdsvc.log
2015-06-21 20:04 - 2015-06-21 20:04 - 00000259 _____ C:\WINDOWS\sessmgr.setup.log
2015-06-21 20:04 - 2015-06-21 20:04 - 00000200 _____ C:\WINDOWS\cmsetacl.log
2015-06-21 20:03 - 2008-04-14 08:52 - 04874240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmp.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 01119744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmsdmoe2.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 01001472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmvdmoe2.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 00897024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmspdmoe.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 00786432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\migrate.exe
2015-06-21 20:03 - 2008-04-14 08:52 - 00485376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmspdmod.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 00233472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpdxm.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 00221184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpns.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 00151552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmidx.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 00114688 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpasf.dll
2015-06-21 20:03 - 2008-04-14 08:52 - 00098304 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpband.dll
2015-06-21 20:03 - 2008-04-14 08:51 - 01306624 ____N (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-06-21 20:03 - 2008-04-14 08:51 - 01306624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6.dll
2015-06-21 20:03 - 2008-04-14 08:51 - 00384512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mp4sdmod.dll
2015-06-21 20:03 - 2008-04-14 08:51 - 00368640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mpvis.dll
2015-06-21 20:03 - 2008-04-14 08:51 - 00310272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mp43dmod.dll
2015-06-21 20:03 - 2008-04-14 08:51 - 00052224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspmsnsv.dll
2015-06-21 20:03 - 2008-04-14 08:51 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\custsat.dll
2015-06-21 20:03 - 2008-04-14 08:50 - 00086016 ____C (Sipro Lab Telecom Inc.) C:\WINDOWS\system32\dllcache\sl_anet.acm
2015-06-21 20:03 - 2008-04-14 08:48 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msaud32.acm
2015-06-21 20:03 - 2008-04-14 08:48 - 00290816 ____C (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\dllcache\l3codeca.acm
2015-06-21 20:03 - 2008-04-14 08:00 - 00080896 ____N (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2015-06-21 20:03 - 2008-04-14 08:00 - 00080896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6r.dll
2015-06-21 20:03 - 2008-04-14 07:49 - 00173056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmerror.dll
2015-06-21 20:03 - 2007-06-26 11:30 - 00572557 ____C C:\WINDOWS\system32\dllcache\rtuner.wmv
2015-06-21 20:03 - 2007-06-26 11:30 - 00457607 ____C C:\WINDOWS\system32\dllcache\mdlib.wmv
2015-06-21 20:03 - 2007-06-26 11:30 - 00381425 ____C C:\WINDOWS\system32\dllcache\copycd.wmv
2015-06-21 20:03 - 2007-06-26 11:30 - 00375519 ____C C:\WINDOWS\system32\dllcache\nuskin.wmv
2015-06-21 20:03 - 2007-06-26 11:30 - 00354468 ____C C:\WINDOWS\system32\dllcache\wmpaud1.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00343204 ____C C:\WINDOWS\system32\dllcache\wmpaud7.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00343204 ____C C:\WINDOWS\system32\dllcache\wmpaud6.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00300969 ____C C:\WINDOWS\system32\dllcache\viz.wmv
2015-06-21 20:03 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud9.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud8.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud3.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00086196 ____C C:\WINDOWS\system32\dllcache\wmpaud5.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00086180 ____C C:\WINDOWS\system32\dllcache\wmpaud4.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00086180 ____C C:\WINDOWS\system32\dllcache\wmpaud2.wav
2015-06-21 20:03 - 2007-06-26 11:30 - 00022060 ____C C:\WINDOWS\system32\dllcache\npds.zip
2015-06-21 20:03 - 2007-06-26 11:30 - 00010457 ____C C:\WINDOWS\system32\dllcache\wmptour.hta
2015-06-21 20:03 - 2007-06-26 11:30 - 00009585 ____C C:\WINDOWS\system32\dllcache\controls.css
2015-06-21 20:03 - 2007-06-26 11:30 - 00008298 ____C C:\WINDOWS\system32\dllcache\contents.htm
2015-06-21 20:03 - 2007-06-26 11:30 - 00006878 ____C C:\WINDOWS\system32\dllcache\controls.js
2015-06-21 20:03 - 2007-06-26 11:30 - 00005971 ____C C:\WINDOWS\system32\dllcache\events.js
2015-06-21 20:03 - 2007-06-26 11:30 - 00003187 ____C C:\WINDOWS\system32\dllcache\tour.js
2015-06-21 20:03 - 2007-06-26 11:30 - 00001771 ____C C:\WINDOWS\system32\dllcache\wmptour.css
2015-06-21 20:03 - 2007-06-26 11:30 - 00001148 ____C C:\WINDOWS\system32\dllcache\snd.htm
2015-06-21 20:03 - 2007-06-26 11:30 - 00000420 ____C C:\WINDOWS\system32\dllcache\wmploc.js
2015-06-21 20:03 - 2007-06-26 11:29 - 00097117 ____C C:\WINDOWS\system32\dllcache\mplayer2.hlp
2015-06-21 20:03 - 2007-06-26 11:29 - 00001885 ____C C:\WINDOWS\system32\dllcache\mplayer2.cnt
2015-06-21 20:03 - 2007-06-26 11:26 - 00000403 ____C C:\WINDOWS\system32\dllcache\npdrmv2.zip
2015-06-21 20:03 - 2007-03-14 17:13 - 00069570 ____C C:\WINDOWS\system32\dllcache\wmplayer.adm
2015-06-21 20:03 - 2007-03-14 16:01 - 00028164 ____C C:\WINDOWS\system32\dllcache\wmplay.chm
2015-06-21 20:03 - 2007-03-14 15:36 - 00674168 ____C C:\WINDOWS\system32\dllcache\wmplayer.chm
2015-06-21 20:03 - 2007-03-14 15:36 - 00184130 ____C C:\WINDOWS\system32\dllcache\compact.wmz
2015-06-21 20:03 - 2007-03-14 15:36 - 00066170 ____C C:\WINDOWS\system32\dllcache\revert.wmz
2015-06-21 20:03 - 2007-03-14 15:36 - 00001483 ____C C:\WINDOWS\system32\dllcache\plylst6.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001480 ____C C:\WINDOWS\system32\dllcache\plylst5.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001479 ____C C:\WINDOWS\system32\dllcache\plylst3.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001465 ____C C:\WINDOWS\system32\dllcache\plylst12.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001462 ____C C:\WINDOWS\system32\dllcache\plylst4.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001263 ____C C:\WINDOWS\system32\dllcache\plylst1.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001059 ____C C:\WINDOWS\system32\dllcache\plylst2.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001042 ____C C:\WINDOWS\system32\dllcache\plylst7.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00001034 ____C C:\WINDOWS\system32\dllcache\plylst8.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00000809 ____C C:\WINDOWS\system32\dllcache\plylst11.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00000806 ____C C:\WINDOWS\system32\dllcache\plylst10.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00000783 ____C C:\WINDOWS\system32\dllcache\plylst13.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00000777 ____C C:\WINDOWS\system32\dllcache\plylst9.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00000774 ____C C:\WINDOWS\system32\dllcache\plylst14.wpl
2015-06-21 20:03 - 2007-03-14 15:36 - 00000722 ____C C:\WINDOWS\system32\dllcache\plylst15.wpl
2015-06-21 20:03 - 2007-03-14 15:35 - 00086446 ____C C:\WINDOWS\system32\dllcache\plyr_err.chm
2015-06-21 20:02 - 2015-06-21 20:02 - 00000000 ____D C:\WINDOWS\system32\cs
2015-06-21 20:02 - 2015-06-21 20:02 - 00000000 ____D C:\WINDOWS\system32\bits
2015-06-21 20:02 - 2015-06-21 20:02 - 00000000 ____D C:\WINDOWS\l2schemas
2015-06-21 20:02 - 2008-04-14 08:52 - 00712704 ____N (Microsoft Corporation) C:\WINDOWS\system32\windowscodecs.dll
2015-06-21 20:02 - 2008-04-14 08:52 - 00346112 ____N (Microsoft Corporation) C:\WINDOWS\system32\windowscodecsext.dll
2015-06-21 20:02 - 2008-04-14 08:52 - 00276992 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmphoto.dll
2015-06-21 20:02 - 2008-04-14 08:52 - 00176640 ____N (Microsoft Corporation) C:\WINDOWS\system32\napstat.exe
2015-06-21 20:02 - 2008-04-14 08:52 - 00121856 ____N (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2015-06-21 20:02 - 2008-04-14 08:52 - 00069120 ____N (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2015-06-21 20:02 - 2008-04-14 08:52 - 00060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\tzchange.exe
2015-06-21 20:02 - 2008-04-14 08:52 - 00053248 ____N (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2015-06-21 20:02 - 2008-04-14 08:52 - 00050688 ____N (Microsoft Corporation) C:\WINDOWS\system32\tspkg.dll
2015-06-21 20:02 - 2008-04-14 08:52 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcperf.exe
2015-06-21 20:02 - 2008-04-14 08:52 - 00032768 ____N (Microsoft Corporation) C:\WINDOWS\system32\setupn.exe
2015-06-21 20:02 - 2008-04-14 08:52 - 00028672 ____N (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe
2015-06-21 20:02 - 2008-04-14 08:51 - 00651264 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00412160 ____N (Microsoft Corporation) C:\WINDOWS\system32\photometadatahandler.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00397312 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcex.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00293376 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagentrt.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00290304 ____N (Microsoft Corporation) C:\WINDOWS\system32\rhttpaa.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00233472 ____N (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00197632 ____N (Microsoft Corporation) C:\WINDOWS\system32\napmontr.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00184832 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\microsoft.managementconsole.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00179200 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00155136 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00150528 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagent.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00144384 ____N (Microsoft Corporation) C:\WINDOWS\system32\onex.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00136192 ____N (Microsoft Corporation) C:\WINDOWS\system32\aaclient.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00132608 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00126976 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00106496 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcfxcommon.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00094208 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00076800 ____N (Microsoft Corporation) C:\WINDOWS\system32\qutil.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00062464 ____N (Microsoft Corporation) C:\WINDOWS\system32\qcliprov.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00061952 ____N (Microsoft Corporation) C:\WINDOWS\system32\rasqec.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00061440 ____N (Microsoft Corporation) C:\WINDOWS\system32\kmsvc.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00059392 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapqec.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00057856 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3cfg.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00056320 ____N (Společnost Microsoft) C:\WINDOWS\system32\dot3msm.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00048640 ____N (Microsoft Corporation) C:\WINDOWS\system32\dhcpqec.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00040960 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3gpclnt.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00037376 ____N (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00030720 ____N (Microsoft Corporation) C:\WINDOWS\system32\napipsec.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00030720 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapolqec.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00026112 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00019456 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsntfy.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00009216 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3dlg.dll
2015-06-21 20:02 - 2008-04-14 08:51 - 00007168 ____N (Microsoft Corporation) C:\WINDOWS\system32\bitsprx4.dll
2015-06-21 20:02 - 2008-04-14 08:48 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdpash.dll
2015-06-21 20:02 - 2008-04-14 08:48 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdnepr.dll
2015-06-21 20:02 - 2008-04-14 08:48 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdiultn.dll
2015-06-21 20:02 - 2008-04-14 08:48 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdbhc.dll
2015-06-21 20:02 - 2008-04-14 07:58 - 00078848 ____N (Microsoft Corporation) C:\WINDOWS\system32\msshavmsg.dll
2015-06-21 20:02 - 2008-04-14 00:09 - 00717312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xpsp3res.dll
2015-06-21 19:58 - 2008-04-14 08:53 - 02109440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmvcore.dll
2015-06-21 19:58 - 2008-04-14 08:53 - 00695808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmv2clt.dll
2015-06-21 19:58 - 2008-04-14 08:53 - 00356352 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msscp.dll
2015-06-21 19:58 - 2008-04-14 08:53 - 00299520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmclien.dll
2015-06-21 19:58 - 2008-04-14 08:53 - 00259072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msnetobj.dll
2015-06-21 19:58 - 2008-04-14 08:53 - 00226816 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\npdrmv2.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 01053184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmnetmgr.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00809984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmvdmod.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00774144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\setup_wm.exe
2015-06-21 19:58 - 2008-04-14 08:52 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmsdmod.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00670720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmadmoe.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00408064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmadmod.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00303616 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmstream.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dlimport.exe
2015-06-21 19:58 - 2008-04-14 08:52 - 00278559 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmv8ds32.ax
2015-06-21 19:58 - 2008-04-14 08:52 - 00262144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mpg4ds32.ax
2015-06-21 19:58 - 2008-04-14 08:52 - 00258048 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmvds32.ax
2015-06-21 19:58 - 2008-04-14 08:52 - 00246814 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\strmdll.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00230912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmasf.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00221184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadds32.ax
2015-06-21 19:58 - 2008-04-14 08:52 - 00208896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\unregmp2.exe
2015-06-21 19:58 - 2008-04-14 08:52 - 00123904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mplay32.exe
2015-06-21 19:58 - 2008-04-14 08:52 - 00115200 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmsdmoe.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00103936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logagent.exe
2015-06-21 19:58 - 2008-04-14 08:52 - 00102400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpshell.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00073728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmplayer.exe
2015-06-21 19:58 - 2008-04-14 08:52 - 00069632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msscds32.ax
2015-06-21 19:58 - 2008-04-14 08:52 - 00027136 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmdmlog.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00023552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmdmps.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpui.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpcore.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpcd.dll
2015-06-21 19:58 - 2008-04-14 08:52 - 00004639 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mplayer2.exe
2015-06-21 19:58 - 2008-04-14 08:51 - 00499254 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dxmasf.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00364544 ____C (Microsoft Corporation (written by Digital Renaissance Inc.)) C:\WINDOWS\system32\dllcache\npdsplay.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00286720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\blackbox.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00245760 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mswmdm.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00240640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mpg4dmod.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00201728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspmsp.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00159232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cewmdm.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00155136 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shmedia.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00087040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmstor.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\npwmsdrm.dll
2015-06-21 19:58 - 2008-04-14 08:51 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\laprxy.dll
2015-06-21 19:58 - 2008-04-14 08:50 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmp.ocx
2015-06-21 19:58 - 2008-04-14 08:48 - 00846874 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdxm.ocx
2015-06-21 19:58 - 2008-04-14 08:48 - 00004126 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdxmlc.dll
2015-06-21 19:58 - 2008-04-14 07:55 - 02957312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmploc.dll
2015-06-21 19:58 - 2008-04-14 07:39 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asferror.dll
2015-06-21 19:56 - 2015-06-21 20:03 - 00099414 _____ C:\WINDOWS\updspapi.log
2015-06-21 19:56 - 2008-04-14 00:10 - 00010240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sffp_mmc.sys
2015-06-21 19:56 - 2008-04-13 22:06 - 00144384 ____N (Windows (R) Server 2003 DDK provider) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2015-06-21 19:54 - 2015-06-21 20:34 - 00003775 _____ C:\WINDOWS\tsoc.log
2015-06-21 19:54 - 2015-06-21 20:34 - 00003522 _____ C:\WINDOWS\comsetup.log
2015-06-21 19:54 - 2015-06-21 20:34 - 00002675 _____ C:\WINDOWS\imsins.log
2015-06-21 19:54 - 2015-06-21 20:34 - 00001882 _____ C:\WINDOWS\ntdtcsetup.log
2015-06-21 19:54 - 2015-06-21 20:34 - 00001207 _____ C:\WINDOWS\iis6.log
2015-06-21 19:54 - 2015-06-21 20:34 - 00000591 _____ C:\WINDOWS\ocmsn.log
2015-06-21 19:54 - 2015-06-21 20:07 - 00012366 _____ C:\WINDOWS\FaxSetup.log
2015-06-21 19:54 - 2015-06-21 20:07 - 00005821 _____ C:\WINDOWS\ocgen.log
2015-06-21 19:54 - 2015-06-21 20:07 - 00000462 _____ C:\WINDOWS\msgsocm.log
2015-06-21 19:54 - 2006-12-29 00:31 - 00019569 _____ C:\WINDOWS\004829_.tmp
2015-06-21 19:50 - 2015-06-21 19:50 - 00000589 _____ C:\WINDOWS\medctroc.Log
2015-06-21 19:47 - 2015-06-21 20:41 - 00012466 _____ C:\WINDOWS\setupapi.log
2015-06-21 19:46 - 2015-06-21 20:34 - 00455689 _____ C:\WINDOWS\svcpack.log
2015-06-21 13:59 - 2015-06-21 13:59 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-06-21 13:59 - 2015-06-21 13:59 - 00000000 _____ C:\WINDOWS\setupact.log
2015-06-21 13:44 - 2015-06-21 20:43 - 00000000 ____D C:\Documents and Settings\Jana\Local Settings\Temp
2015-06-21 13:44 - 2015-06-21 13:18 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2015-06-21 13:19 - 2015-06-21 13:48 - 00005229 _____ C:\zoek-results.log
2015-06-21 13:18 - 2015-06-21 13:36 - 00000000 ____D C:\zoek_backup
2015-06-21 13:15 - 2015-06-21 13:15 - 01308672 _____ C:\Documents and Settings\Jana\Plocha\zoek.exe
2015-06-20 14:00 - 2015-06-20 14:49 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\RogueKiller
2015-06-20 14:00 - 2015-06-20 14:00 - 00035064 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-06-20 13:52 - 2015-06-20 13:52 - 00000000 ____D C:\RegBackup
2015-06-20 13:43 - 2015-06-20 13:58 - 17659640 _____ C:\Documents and Settings\Jana\Plocha\RogueKiller.exe
2015-06-20 13:42 - 2015-06-20 13:43 - 02950750 _____ (Thisisu) C:\Documents and Settings\Jana\Plocha\JRT.exe
2015-06-03 01:54 - 2015-06-06 01:53 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-05-27 18:23 - 2015-05-27 18:23 - 00000766 _____ C:\Documents and Settings\Jana\Plocha\AdwCleaner[R0].txt
2015-05-27 18:19 - 2015-06-20 13:47 - 00000000 ____D C:\AdwCleaner
2015-05-27 18:06 - 2015-05-27 18:06 - 02223104 _____ C:\Documents and Settings\Jana\Plocha\AdwCleaner.exe
2015-05-27 18:04 - 2015-05-27 18:05 - 00448512 _____ (OldTimer Tools) C:\Documents and Settings\Jana\Plocha\TFC.exe
2015-05-27 18:03 - 2015-05-27 18:03 - 00050688 _____ (Atribune.org) C:\Documents and Settings\Jana\Plocha\ATF-Cleaner.exe
2015-05-26 20:35 - 2015-06-21 13:54 - 00003501 _____ C:\Documents and Settings\Jana\Plocha\hijackthis.log
2015-05-26 20:34 - 2015-05-26 20:34 - 00388608 _____ (Trend Micro Inc.) C:\Documents and Settings\Jana\Plocha\HijackThis.exe
2015-05-26 20:21 - 2015-05-26 20:30 - 00041561 _____ C:\Report 2015-05-26 20.21.10.txt
2015-05-26 20:17 - 2015-05-26 20:17 - 00000000 ____D C:\Program Files\Reason
2015-05-26 20:00 - 2015-05-26 20:00 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2015-05-26 19:48 - 2015-05-26 19:48 - 00001689 _____ C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2015-05-26 19:47 - 2015-05-26 19:47 - 00291312 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\aswBoot.exe
2015-05-26 19:47 - 2015-05-26 19:47 - 00043112 _____ (Avast Software s.r.o.) C:\WINDOWS\avastSS.scr

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-21 20:44 - 2013-05-04 00:48 - 00000364 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2015-06-21 20:43 - 2013-05-04 00:36 - 00000000 ____D C:\Documents and Settings\Jana\Dokumenty\Stažené soubory
2015-06-21 20:43 - 2013-05-03 23:47 - 00000000 ____D C:\Documents and Settings\Jana\Plocha
2015-06-21 20:42 - 2013-05-04 00:28 - 00359607 _____ C:\WINDOWS\WindowsUpdate.log
2015-06-21 20:38 - 2013-05-04 00:30 - 00000792 _____ C:\Documents and Settings\LocalService\Nabídka Start\Programy\Windows Media Player.lnk
2015-06-21 20:38 - 2013-05-04 00:29 - 00000000 ____D C:\Documents and Settings\LocalService\Nabídka Start\Programy
2015-06-21 20:38 - 2013-05-04 00:22 - 00316640 _____ C:\WINDOWS\WMSysPr9.prx
2015-06-21 20:38 - 2013-05-04 00:16 - 00088566 _____ C:\WINDOWS\system32\nvapps.xml
2015-06-21 20:37 - 2013-05-03 23:47 - 00000792 _____ C:\Documents and Settings\Jana\Nabídka Start\Programy\Windows Media Player.lnk
2015-06-21 20:37 - 2013-05-03 23:47 - 00000767 _____ C:\Documents and Settings\Jana\Nabídka Start\Programy\Internet Explorer.lnk
2015-06-21 20:37 - 2013-05-03 23:47 - 00000738 _____ C:\Documents and Settings\Jana\Nabídka Start\Programy\Outlook Express.lnk
2015-06-21 20:37 - 2013-05-03 23:47 - 00000000 __RHD C:\Documents and Settings\Jana\Data aplikací
2015-06-21 20:37 - 2013-05-03 23:47 - 00000000 ___RD C:\Documents and Settings\Jana\Oblíbené položky
2015-06-21 20:37 - 2013-05-03 23:47 - 00000000 ___RD C:\Documents and Settings\Jana\Nabídka Start\Programy
2015-06-21 20:37 - 2013-05-03 23:47 - 00000000 ___RD C:\Documents and Settings\Jana\Dokumenty\Obrázky
2015-06-21 20:37 - 2013-05-03 23:47 - 00000000 ___RD C:\Documents and Settings\Jana\Dokumenty\Hudba
2015-06-21 20:37 - 2013-05-03 23:47 - 00000000 ___RD C:\Documents and Settings\Jana\Dokumenty
2015-06-21 20:36 - 2013-05-04 01:19 - 00000159 _____ C:\WINDOWS\wiadebug.log
2015-06-21 20:36 - 2013-05-04 01:19 - 00000049 _____ C:\WINDOWS\wiaservc.log
2015-06-21 20:36 - 2013-05-04 00:28 - 00000269 _____ C:\WINDOWS\system32\spupdwxp.log
2015-06-21 20:36 - 2002-09-23 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2015-06-21 20:35 - 2013-05-04 01:16 - 00095072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-06-21 20:35 - 2013-05-03 23:43 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-06-21 20:34 - 2013-05-04 01:10 - 00000000 ____D C:\WINDOWS\security
2015-06-21 20:34 - 2013-05-03 23:47 - 00000178 ___SH C:\Documents and Settings\Jana\ntuser.ini
2015-06-21 20:34 - 2013-05-03 23:47 - 00000000 ____D C:\Documents and Settings\Jana
2015-06-21 20:34 - 2013-05-03 23:46 - 00032568 _____ C:\WINDOWS\SchedLgU.Txt
2015-06-21 20:26 - 2013-05-04 00:38 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-06-21 20:04 - 2013-05-04 01:17 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start
2015-06-21 20:04 - 2013-05-03 23:43 - 00001563 _____ C:\Documents and Settings\All Users\Nabídka Start\Přístup a výchozí nastavení programů.lnk
2015-06-21 20:03 - 2013-05-04 01:10 - 00000000 ____D C:\WINDOWS\ime
2015-06-21 20:03 - 2013-05-04 01:10 - 00000000 ____D C:\WINDOWS\Help
2015-06-21 20:03 - 2013-05-04 00:20 - 00000000 ____D C:\WINDOWS\ServicePackFiles
2015-06-21 20:03 - 2013-05-03 23:38 - 00000000 ____D C:\Program Files\Messenger
2015-06-21 20:03 - 2013-05-03 23:29 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství
2015-06-21 20:02 - 2013-05-04 01:10 - 00000000 ____D C:\WINDOWS\system32\usmt
2015-06-21 20:02 - 2013-05-04 00:21 - 00000000 ____D C:\WINDOWS\peernet
2015-06-21 20:02 - 2013-05-03 23:40 - 00000000 ____D C:\Program Files\Movie Maker
2015-06-21 19:58 - 2013-05-04 01:10 - 00000000 ____D C:\WINDOWS\system32\npp
2015-06-21 19:58 - 2013-05-04 01:10 - 00000000 ____D C:\WINDOWS\system
2015-06-21 19:58 - 2013-05-04 01:10 - 00000000 ____D C:\WINDOWS\msagent
2015-06-21 19:58 - 2013-05-03 23:40 - 00000000 ____D C:\WINDOWS\system32\Restore
2015-06-21 19:58 - 2013-05-03 23:40 - 00000000 ____D C:\WINDOWS\srchasst
2015-06-21 19:58 - 2013-05-03 23:40 - 00000000 ____D C:\Program Files\Outlook Express
2015-06-21 19:58 - 2013-05-03 23:40 - 00000000 ____D C:\Program Files\NetMeeting
2015-06-21 19:58 - 2013-05-03 23:39 - 00000000 ____D C:\Program Files\Common Files\System
2015-06-21 19:58 - 2013-05-03 23:37 - 00000000 ____D C:\WINDOWS\system32\Com
2015-06-21 19:58 - 2013-05-03 23:37 - 00000000 ____D C:\Program Files\Windows NT
2015-06-21 19:55 - 2002-09-23 14:00 - 00250576 __RSH C:\ntldr
2015-06-21 19:54 - 2013-05-04 00:16 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups
2015-06-21 19:54 - 2013-05-04 00:13 - 00000000 __HDC C:\WINDOWS\$NtServicePackUninstall$
2015-06-20 14:00 - 2013-05-04 01:16 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2015-06-06 09:45 - 2013-05-04 00:33 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-05-27 18:08 - 2013-05-03 23:46 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Temp
2015-05-26 20:06 - 2013-05-04 01:17 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2015-05-26 20:06 - 2013-05-04 01:17 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2015-05-26 20:05 - 2013-05-04 00:01 - 00000000 ___SD C:\Documents and Settings\Jana\UserData
2015-05-26 19:47 - 2014-10-03 12:51 - 00024144 _____ C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-05-26 19:47 - 2013-05-04 00:48 - 00787760 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-05-26 19:47 - 2013-05-04 00:48 - 00427992 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-05-26 19:47 - 2013-05-04 00:48 - 00209048 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-05-26 19:47 - 2013-05-04 00:48 - 00074976 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-05-26 19:47 - 2013-05-04 00:48 - 00057888 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswTdi.sys
2015-05-26 19:47 - 2013-05-04 00:48 - 00055200 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswRdr.sys
2015-05-26 19:47 - 2013-05-04 00:48 - 00049904 _____ C:\WINDOWS\system32\Drivers\aswRvrt.sys

==================== Files in the root of some directories =======

2013-07-30 19:54 - 2015-02-07 01:42 - 0009728 _____ () C:\Documents and Settings\Jana\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End of log ============================




Additional scan result of Farbar Recovery Scan Tool (x86) Version: 21-06-2015 01
Ran by Jana at 2015-06-21 20:44:52
Running from C:\Documents and Settings\Jana\Plocha
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-682003330-1788223648-725345543-500 - Administrator - Enabled)
Guest (S-1-5-21-682003330-1788223648-725345543-501 - Limited - Disabled)
HelpAssistant (S-1-5-21-682003330-1788223648-725345543-1000 - Limited - Disabled)
Jana (S-1-5-21-682003330-1788223648-725345543-1004 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Jana
SUPPORT_388945a0 (S-1-5-21-682003330-1788223648-725345543-1002 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM\...\avast) (Version: 10.2.2218 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 4.07 - Piriform)
Java 7 Update 21 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217021FF}) (Version: 7.0.210 - Oracle)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 cs) (HKLM\...\Mozilla Firefox 38.0.5 (x86 cs)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: - )
WebFldrs XP (Version: 9.50.6513 - Microsoft Corporation) Hidden
Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031517 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

28-04-2015 12:38:58 Kontrolní bod systému
30-04-2015 09:19:14 Kontrolní bod systému
01-05-2015 11:10:35 Kontrolní bod systému
02-05-2015 11:10:44 Kontrolní bod systému
03-05-2015 11:51:05 Kontrolní bod systému
04-05-2015 14:56:45 Kontrolní bod systému
05-05-2015 15:03:11 Kontrolní bod systému
06-05-2015 15:52:11 Kontrolní bod systému
07-05-2015 16:10:31 Kontrolní bod systému
08-05-2015 16:15:55 Kontrolní bod systému
09-05-2015 17:03:43 Kontrolní bod systému
10-05-2015 17:28:31 Kontrolní bod systému
12-05-2015 09:28:22 Kontrolní bod systému
13-05-2015 14:21:49 Kontrolní bod systému
14-05-2015 14:40:41 Kontrolní bod systému
15-05-2015 14:43:30 Kontrolní bod systému
16-05-2015 15:22:50 Kontrolní bod systému
17-05-2015 15:45:31 Kontrolní bod systému
19-05-2015 09:40:38 Kontrolní bod systému
20-05-2015 10:07:06 Kontrolní bod systému
21-05-2015 11:23:31 Kontrolní bod systému
22-05-2015 12:09:35 Kontrolní bod systému
23-05-2015 12:33:25 Kontrolní bod systému
24-05-2015 12:36:18 Kontrolní bod systému
25-05-2015 14:43:06 Kontrolní bod systému
26-05-2015 19:38:52 avast! antivirus system restore point
27-05-2015 20:20:17 Kontrolní bod systému
28-05-2015 21:44:35 Kontrolní bod systému
29-05-2015 22:20:21 Kontrolní bod systému
30-05-2015 23:20:21 Kontrolní bod systému
01-06-2015 00:20:28 Kontrolní bod systému
02-06-2015 00:55:18 Kontrolní bod systému
03-06-2015 02:25:32 Kontrolní bod systému
04-06-2015 03:20:32 Kontrolní bod systému
05-06-2015 04:20:41 Kontrolní bod systému
06-06-2015 10:15:05 Kontrolní bod systému
07-06-2015 10:38:50 Kontrolní bod systému
08-06-2015 11:05:00 Kontrolní bod systému
09-06-2015 11:26:17 Kontrolní bod systému
10-06-2015 11:33:17 Kontrolní bod systému
11-06-2015 11:43:20 Kontrolní bod systému
12-06-2015 12:03:37 Kontrolní bod systému
13-06-2015 12:23:13 Kontrolní bod systému
14-06-2015 13:04:30 Kontrolní bod systému
15-06-2015 15:03:49 Kontrolní bod systému
16-06-2015 15:11:31 Kontrolní bod systému
17-06-2015 15:19:16 Kontrolní bod systému
18-06-2015 15:26:06 Kontrolní bod systému
19-06-2015 16:01:45 Kontrolní bod systému
20-06-2015 16:58:22 Kontrolní bod systému
21-06-2015 13:19:58 zoek.exe restore point
21-06-2015 19:54:55 Nainstalováno Windows XP Service Pack 3.

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2002-09-23 14:00 - 2015-06-21 13:20 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-05-26 19:47 - 2015-05-26 19:47 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-05-26 19:47 - 2015-05-26 19:47 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-06-21 13:49 - 2015-06-21 13:49 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15062100\algo.dll
2015-06-21 20:38 - 2015-06-21 20:38 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15062101\algo.dll
2006-10-22 12:22 - 2006-10-22 12:22 - 00212992 _____ () C:\WINDOWS\system32\nvapi.dll
2014-10-03 12:51 - 2015-05-26 19:47 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UploadMgr => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-682003330-1788223648-725345543-1004\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\Jana\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
DNS Servers: Media is not connected to internet.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)

==================== Faulty Device Manager Devices =============

Name: Intel® PRO/100 VE Desktop Connection
Description: Intel® PRO/100 VE Desktop Connection
Class Guid: {4D36E972-E325-11CE-BFC1-08002BE10318}
Manufacturer: IBM
Service: E100B
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/26/2015 08:06:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace mbam.exe, verze 1.0.2.929, chybující modul msvcr100.dll, verze 10.0.40219.325, adresa chyby 0x0008d6fd.
Zpracování události, specifické pro médium ([mbam.exe!ws!])

Error: (05/26/2015 08:02:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace mbam.exe, verze 1.0.2.929, chybující modul msvcr100.dll, verze 10.0.40219.325, adresa chyby 0x0008d6fd.
Zpracování události, specifické pro médium ([mbam.exe!ws!])

Error: (05/26/2015 08:00:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace mbam.exe, verze 1.0.2.929, chybující modul msvcr100.dll, verze 10.0.40219.325, adresa chyby 0x0008d6fd.
Zpracování události, specifické pro médium ([mbam.exe!ws!])

Error: (05/26/2015 08:00:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace mbam.exe, verze 1.0.2.929, chybující modul msvcr100.dll, verze 10.0.40219.325, adresa chyby 0x0008d6fd.
Zpracování události, specifické pro médium ([mbam.exe!ws!])

Error: (05/14/2015 07:02:16 AM) (Source: crypt32) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Error: (05/14/2015 07:02:16 AM) (Source: crypt32) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Error: (12/27/2014 01:18:02 AM) (Source: EventSystem) (EventID: 4609) (User: )
Description: Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný návratový kód. Hodnota HRESULT byla 80070005 z řádku 44 v d:\qxp_slp\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte se na služby odborné pomoci společnosti Microsoft a informujte je o této chybě.


System errors:
=============
Error: (06/20/2015 01:47:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adaptér výkonu služby WMI byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2015 01:47:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Služba brány aplikačního rozhraní byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2015 01:47:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba NVIDIA Display Driver Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2015 01:47:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Java Quick Starter byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (06/20/2015 01:47:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Zařazování tisku byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (05/27/2015 06:09:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba NVIDIA Display Driver Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (05/27/2015 06:09:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Java Quick Starter byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (05/26/2015 08:02:08 PM) (Source: Schannel) (EventID: 4108) (User: )
Description: Certifikát získaný ze vzdáleného serveru nebyl správně ověřen. Kód chyby
je 0x80096004. Žádost o připojení SLL byla odmítnuta. Přiložená data
obsahují certifikát serveru.

Error: (05/26/2015 07:49:40 PM) (Source: DCOM) (EventID: 10010) (User: JANA-UWIXIIE91A)
Description: Server {49BD2028-1523-11D1-AD79-00C04FD8FDFF} se v daném časovém limitu neregistroval u služby DCOM.


Microsoft Office:
=========================
Error: (05/26/2015 08:06:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.2.929msvcr100.dll10.0.40219.3250008d6fd

Error: (05/26/2015 08:02:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.2.929msvcr100.dll10.0.40219.3250008d6fd

Error: (05/26/2015 08:00:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.2.929msvcr100.dll10.0.40219.3250008d6fd

Error: (05/26/2015 08:00:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.2.929msvcr100.dll10.0.40219.3250008d6fd

Error: (05/14/2015 07:02:16 AM) (Source: crypt32) (EventID: 11) (User: )
Description: http://www.download.windowsupdate.com/m ... otstl.cabPři ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Error: (05/14/2015 07:02:16 AM) (Source: crypt32) (EventID: 11) (User: )
Description: http://www.download.windowsupdate.com/m ... otstl.cabPři ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Error: (12/27/2014 01:18:02 AM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\qxp_slp\com\com1x\src\events\tier1\eventsystemobj.cpp4480070005


==================== Memory info ===========================

Processor: Intel(R) Pentium(R) 4 CPU 1.50GHz
Percentage of memory in use: 30%
Total physical RAM: 1278.73 MB
Available physical RAM: 892.17 MB
Total Pagefile: 3053.75 MB
Available Pagefile: 2791.19 MB
Total Virtual: 2047.88 MB
Available Virtual: 1962.31 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:74.52 GB) (Free:50.23 GB) NTFS ==>[Drive with boot components (Windows XP)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 74.5 GB) (Disk ID: 45184517)
Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS)

==================== End of log ============================


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 115 hostů