Stáhni si a nainstaluj WhoCrashed
otevři ho a klikni na Analyze.
Program vytvoří zprávu , zkopíruj celou a vlož prosím sem.
ale spíš so zadej téma do této sekce:
viewforum.php?f=118
Prosím o kontrolu logu - "chroupe" Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43287
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu - "chroupe"
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu - "chroupe"
Do současné doby se žádná další zpráva o chybách nezobrazila.
Zpráva z WhoCrashed je toto? Nic jiného se neobjevilo.
--------------------------------------------------------------------------------
System Information (local)
--------------------------------------------------------------------------------
Computer name: NONAME-ZIQKCX9Z
Windows version: Windows XP Service Pack 3, 5.1, build: 2600
Windows dir: C:\WINDOWS
Hardware: MS-7250, MSI
CPU: AuthenticAMD AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ AMD586, level: 15
2 logical processors, active mask: 3
RAM: 2146807808 bytes total
--------------------------------------------------------------------------------
Crash Dump Analysis
--------------------------------------------------------------------------------
Crash dump directory: C:\WINDOWS\Minidump
Crash dumps are enabled on your computer.
No valid crash dumps have been found on your computer
--------------------------------------------------------------------------------
Conclusion
--------------------------------------------------------------------------------
Crash dumps are enabled but no valid crash dumps have been found. In case you are experiencing system crashes, it may be that crash dumps are prevented from being written out. Check out the following article for possible causes: If crash dumps are not written out.
Read the topic general suggestions for troubleshooting system crashes for more information.
Note that it's not always possible to state with certainty whether a reported driver is responsible for crashing your system or that the root cause is in another module. Nonetheless it's suggested you look for updates for the products that these drivers belong to and regularly visit Windows update or enable automatic updates for Windows. In case a piece of malfunctioning hardware is causing trouble, a search with Google on the bug check errors together with the model name and brand of your computer may help you investigate this further.
Zpráva z WhoCrashed je toto? Nic jiného se neobjevilo.
--------------------------------------------------------------------------------
System Information (local)
--------------------------------------------------------------------------------
Computer name: NONAME-ZIQKCX9Z
Windows version: Windows XP Service Pack 3, 5.1, build: 2600
Windows dir: C:\WINDOWS
Hardware: MS-7250, MSI
CPU: AuthenticAMD AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ AMD586, level: 15
2 logical processors, active mask: 3
RAM: 2146807808 bytes total
--------------------------------------------------------------------------------
Crash Dump Analysis
--------------------------------------------------------------------------------
Crash dump directory: C:\WINDOWS\Minidump
Crash dumps are enabled on your computer.
No valid crash dumps have been found on your computer
--------------------------------------------------------------------------------
Conclusion
--------------------------------------------------------------------------------
Crash dumps are enabled but no valid crash dumps have been found. In case you are experiencing system crashes, it may be that crash dumps are prevented from being written out. Check out the following article for possible causes: If crash dumps are not written out.
Read the topic general suggestions for troubleshooting system crashes for more information.
Note that it's not always possible to state with certainty whether a reported driver is responsible for crashing your system or that the root cause is in another module. Nonetheless it's suggested you look for updates for the products that these drivers belong to and regularly visit Windows update or enable automatic updates for Windows. In case a piece of malfunctioning hardware is causing trouble, a search with Google on the bug check errors together with the model name and brand of your computer may help you investigate this further.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43287
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu - "chroupe"
žádný validní soubor to nenašlo.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
pokud nainstaluješ HTML5 , tak se samo zapne a přehraje vše.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
pokud nainstaluješ HTML5 , tak se samo zapne a přehraje vše.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu - "chroupe"
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 25-09-2016
Ran by Uživatel (26-09-2016 10:43:10)
Running from C:\Documents and Settings\Uživatel\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) (2013-06-26 13:11:59)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1292428093-1965331169-725345543-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator
ASPNET (S-1-5-21-1292428093-1965331169-725345543-1004 - Limited - Enabled)
Guest (S-1-5-21-1292428093-1965331169-725345543-501 - Limited - Enabled)
HelpAssistant (S-1-5-21-1292428093-1965331169-725345543-1000 - Limited - Disabled)
SUPPORT_388945a0 (S-1-5-21-1292428093-1965331169-725345543-1002 - Limited - Disabled)
UpdatusUser (S-1-5-21-1292428093-1965331169-725345543-1008 - Limited - Enabled) => %SystemDrive%\Documents and Settings\UpdatusUser
Uživatel (S-1-5-21-1292428093-1965331169-725345543-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Uživatel
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Smart Security 9.0.376.1 (Enabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personální firewall (Disabled) {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated)
Adobe Flash Player 23 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.08) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Airlive WN300PCI WLAN (HKLM\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 1.5.5.0 - Ovislink)
Aktualizace NVIDIA 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden
Aktualizace systému Windows XP (KB2467659) (HKLM\...\KB2467659) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2909921) (HKLM\...\KB2909921-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB982381) (HKLM\...\KB982381-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB923789) (HKLM\...\KB923789) (Version: - Microsoft Corporation)
aTube Catcher (HKLM\...\aTube Catcher) (Version: 2.9.4272 - DsNET Corp)
aTube Catcher verze 3.8 (HKLM\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.8.4.3036 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM\...\{44181DF6-2751-48C7-B918-72F14508F127}) (Version: 0.8.4.3036 - BlueStack Systems, Inc.)
Bontia Studio (HKLM\...\{881a8143-cdc0-4171-8574-3ee69e3e8edf}) (Version: 5.2.4286.18713 - Bontia a.s.)
Bontia Studio 5.2 (Version: 5.2.4286.0 - Bontia, a.s.) Hidden
Call of Duty(R) - World at War(TM) (Version: 1.0 - Cenega) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) (Version: 1.00.0000 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (Version: 1.6 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (Version: 1.7 - Activision) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.21 - Piriform)
CS Poker (HKLM\...\CS Poker 0) (Version: - )
CZShare Manager (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\7f4182272b52fd8f) (Version: 0.0.1.35 - CZShare)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
EAX4 Unified Redist (HKLM\...\{89661B04-C646-4412-B6D3-5E19F02F1F37}) (Version: 4.001 - Creative Labs)
ESET Smart Security (HKLM\...\{78703924-AE07-4AAB-B9A0-3CA1260FFB15}) (Version: 9.0.376.1 - ESET, spol. s r.o.)
Facebook Plug-In (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Facebook Plug-In) (Version: - Facebook, Inc.)
FlashGet 3.3 (HKLM\...\FlashGet 3.3) (Version: 3.3.0.1092 - hxxp://www.FlashGet.com)
FM Screen Capture Codec (Remove Only) (HKLM\...\FMCODEC) (Version: - )
Google Update Helper (Version: 1.3.21.169 - Google Inc.) Hidden
hppscan3390 (Version: 001.102.00071 - Hewlett-Packard) Hidden
ICQ7.5 (HKLM\...\{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}) (Version: 7.5 - ICQ)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 Czech Language Pack (HKLM\...\{5E65E94D-69F2-4850-9E93-6459C53A0F50}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2656370) (HKLM\...\M2656370) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version: - )
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - CSY (HKLM\...\{129DDEC1-A6A3-3D60-AABE-76E6E5334922}) (Version: 2.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - CSY (HKLM\...\{6FE8B722-4D7E-3CD7-BB3A-3AD1684B1295}) (Version: 3.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack - CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack - csy) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2003 (HKLM\...\{90AF0405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8305.0 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft XNA Framework Redistributable 3.1 (HKLM\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Mozilla Firefox 49.0.1 (x86 cs) (HKLM\...\Mozilla Firefox 49.0.1 (x86 cs)) (Version: 49.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 6.0 Parser (KB933579) (HKLM\...\{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}) (Version: 6.10.1200.0 - Microsoft Corporation)
MSXML4 Parser (HKLM\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Nero 6 Ultra Edition (HKLM\...\Nero - Burning Rom!UninstallKey) (Version: - )
Nokia PC Suite (HKLM\...\Nokia PC Suite) (Version: 6.83.14.1 - Nokia)
Nokia PC Suite (Version: 6.83.14.1 - Nokia) Hidden
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (HKLM\...\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.6793 - NVIDIA Corporation)
NVIDIA GeForce Experience 1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5 - NVIDIA Corporation)
NVIDIA nView 140.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 140.54 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 320.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.18 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
Ovládací panel NVIDIA 320.18 (Version: 320.18 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
ParadisePoker 1.0.0 (HKLM\...\ParadisePoker_is1) (Version: 1.0.0 - SBS)
partypoker (HKLM\...\PartyPoker) (Version: - PartyGaming)
PC-Draw 5.1 (HKLM\...\PC-Draw 5.1) (Version: - )
Pinnacle Studio 15 (HKLM\...\{1362E602-9625-42D3-B57F-CDA9D26F9DA8}) (Version: 15.0.0.7593 - Pinnacle Systems)
PokerStars (HKLM\...\PokerStars) (Version: - PokerStars)
PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
QuickTime (HKLM\...\QuickTime) (Version: - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.6914 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver and Utility (HKLM\...\{BE686891-3C56-4714-AFEF-341A7867BA80}) (Version: 1.00.0145 - REALTEK Semiconductor Corp.)
Revo Uninstaller 2.0.1 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.1 - VS Revo Group, Ltd.)
Sada Compatibility Pack pro systém Office 2007 (HKLM\...\{90120000-0020-0405-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
Scan (Version: 8.1.0.0 - Hewlett-Packard) Hidden
SDFormatter (HKLM\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
SEGA Rally AUTO BILD DEMO (Version: 1.00.0000 - SEGA) Hidden
Skype™ 7.24 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
SOAP3 and XML4 (Version: 1.0.0 - Xara - Microsoft) Hidden
Split/Second (HKLM\...\{28526951-55EF-4901-A0CA-B9AC966D1DD1}) (Version: 1.00.0000 - Disney Interactive Studios)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Testy Autoškola (HKLM\...\{E42D62BA-2D98-4D08-8242-9F410ACA4727}) (Version: 1.6.16 - Pythagoras s.r.o.)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: - )
Unity Web Player (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS)
USB Disk Win98 Driver (HKLM\...\{BF5EE349-90CD-4422-A43B-661778180173}) (Version: - )
VIMICRO USB2.0 PC Camera (VC0323) (HKLM\...\{36820BCA-FC55-452E-9085-6E6F1F55508D}) (Version: 1.00.000 - )
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
WebFldrs XP (Version: 9.50.5318 - Microsoft Corporation) Hidden
Winamp (HKLM\...\Winamp) (Version: 5.581 - Nullsoft, Inc)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
WordPad (HKLM\...\WordPad) (Version: - )
XML Paper Specification Shared Components Pack 1.0 (Version: - Microsoft Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{0F130AC8-CDF1-4DAA-AA9B-7B4083F49EA4}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\PtContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{32C3FEAE-0877-4767-8C20-62A5829A0945}\InprocServer32 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\axfbootloader.dll ( )
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{492042A2-4432-44A1-9A39-85B2D3C0119E}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\PtContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{5B004CDE-0211-469C-B9B5-0552E7E63917}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{77D8C8C7-6B46-4429-B876-DBC006C96EB1}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarAPI.dll (Playtech)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{89425F5E-A2BD-44CD-9E4F-F1498522F0E5}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarManagerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{C98FE784-B96E-41e1-8399-1337AE3E539F}\InprocServer32 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\npfbplugin_1_0_3.dll ( )
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{CD37ED08-860C-4B86-AD25-5587D8386587}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarAPI.dll (Playtech)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Documents and Settings\Uživatel\Okolní síť\Webové servery ve službě MSN\target.lnk -> hxxp://www.msnusers.com
==================== Loaded Modules (Whitelisted) ==============
2007-04-11 20:52 - 2006-12-03 14:53 - 00126464 _____ () C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\rarext.dll
2007-04-11 20:52 - 2006-12-06 18:13 - 00315392 _____ () C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\rarlng.dll
2013-06-27 10:33 - 2013-05-12 23:37 - 00455968 _____ () C:\Program Files\NVIDIA Corporation\nview\nvshell.dll
2010-11-07 16:06 - 2006-09-19 14:26 - 00212992 _____ () C:\WINDOWS\VMSnap23.exe
2008-04-14 08:51 - 2008-04-14 08:51 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2016-08-05 18:52 - 2016-08-05 18:52 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2013-06-27 11:31 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\EnumDevLib.dll
2013-06-27 11:31 - 2007-07-12 11:11 - 01163264 _____ () C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\acAuth.dll
2007-08-21 15:06 - 2014-09-21 20:48 - 00075136 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2008-06-03 15:20 - 2008-04-07 23:45 - 00241734 _____ () C:\Program Files\CyberLink\Shared files\RichVideo.exe
2008-09-08 11:10 - 2008-09-08 11:10 - 00450560 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
2008-09-08 10:57 - 2008-09-08 10:57 - 00102400 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll
2016-09-14 13:57 - 2016-09-14 13:57 - 19588800 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll
2016-06-01 16:17 - 2016-06-01 16:17 - 00144832 _____ () C:\Program Files\VideoLAN\VLC\libvlc.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 02632640 _____ () C:\Program Files\VideoLAN\VLC\libvlccore.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00554944 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libdshow_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00041920 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_output\libdirectsound_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00039872 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00086464 _____ () C:\Program Files\VideoLAN\VLC\plugins\video_output\libdirect3d_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00078272 _____ () C:\Program Files\VideoLAN\VLC\plugins\video_output\libdirectdraw_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00114112 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00245184 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00089536 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libvdr_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00055744 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00072128 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libsmooth_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00598976 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libhttplive_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00771520 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libdash_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00131520 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libzip_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00052672 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\librar_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00023488 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\librecord_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00145856 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01566656 _____ () C:\Program Files\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00334784 _____ () C:\Program Files\VideoLAN\VLC\plugins\lua\liblua_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01265600 _____ () C:\Program Files\VideoLAN\VLC\plugins\misc\libxml_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libwin_msg_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00069568 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00048576 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libwin_hotkeys_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00242624 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00108992 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libavi_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00096704 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libasf_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00091584 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 12001728 _____ () C:\Program Files\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00036800 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libes_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00032192 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libnuv_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libtta_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00084928 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libmpc_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00030144 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libwav_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00034752 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libcaf_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00961472 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libsid_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00137152 _____ () C:\Program Files\VideoLAN\VLC\plugins\services_discovery\libsap_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01308096 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libmkv_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024000 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libdiracsys_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00337856 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libogg_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00728512 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\liblive555_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00031680 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libsmf_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00418240 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libgme_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00035264 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libimage_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022976 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libxa_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00029632 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libpva_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00027072 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libvoc_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libau_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00046528 _____ () C:\Program Files\VideoLAN\VLC\plugins\meta_engine\libfolder_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00344512 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00157632 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00754624 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00031680 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00089024 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_h264_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00032192 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_flac_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00040384 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_dirac_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00030144 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mlp_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00078272 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4audio_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00044992 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_vc1_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00026048 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libsvcdsub_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028608 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00035264 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4video_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00037312 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpegvideo_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libcvdsub_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00025536 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_hevc_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 14929344 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libavcodec_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00261056 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libjpeg_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00027072 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00298944 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libpng_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 01291200 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028608 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libdts_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00036800 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libaraw_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00052160 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libsubstx3g_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00456128 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libflac_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00035776 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libg711_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 02680768 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00356288 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liba52_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00022464 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_mixer\libfloat_mixer_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00027072 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00140224 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libmpgatofixed32_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00176576 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdtstofloat32_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00067520 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\liba52tofloat32_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01504704 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libsimple_channel_mixer_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022464 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\liba52tospdif_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022976 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdtstospdif_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00029632 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdolby_surround_decoder_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022464 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libugly_resampler_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libtrivial_channel_mixer_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00034240 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libaudio_format_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00370112 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libopus_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00121792 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libdvbsub_plugin.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Documents and Settings\All Users\Plocha:$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM [85]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{1a3e09be-1e45-494b-9174-d7385b45bbf5} => ""=""
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\.DEFAULT\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\.DEFAULT\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\.DEFAULT\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\.DEFAULT\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\.DEFAULT\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\.DEFAULT\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\.DEFAULT\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\.DEFAULT\...\2020search.com -> www.2020search.com
IE restricted site: HKU\.DEFAULT\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\.DEFAULT\...\2211.net -> wwww.2211.net
IE restricted site: HKU\.DEFAULT\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\.DEFAULT\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\.DEFAULT\...\24teen.com -> www.24teen.com
IE restricted site: HKU\.DEFAULT\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\.DEFAULT\...\2search.com -> feeds.2search.com
IE restricted site: HKU\.DEFAULT\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\.DEFAULT\...\2squared.com -> www.2squared.com
IE restricted site: HKU\.DEFAULT\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\.DEFAULT\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\.DEFAULT\...\36site.com -> www.36site.com
There are 4084 more sites.
IE restricted site: HKU\S-1-5-19\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-19\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-19\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-19\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-19\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-19\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-19\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-19\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-19\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-19\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-19\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-19\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-19\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-19\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-19\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-19\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-19\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-19\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-19\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-19\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE restricted site: HKU\S-1-5-20\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-20\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-20\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-20\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-20\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-20\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-20\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-20\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-20\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-20\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-20\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-20\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-20\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-20\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-20\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-20\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-20\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-20\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-20\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-20\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\kuaiche.com -> hxxp://software.kuaiche.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2squared.com -> www.2squared.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\36site.com -> www.36site.com
There are 4082 more sites.
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com
There are 4104 more sites.
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2001-10-25 14:00 - 2016-08-17 18:04 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Control Panel\Desktop\\Wallpaper -> (Žádný)
DNS Servers: 10.0.0.138
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
DomainProfile\AuthorizedApplications: [C:\Nexon\Combat Arms EU\CombatArms.exe] => :*Enabled:CombatArms.exe
DomainProfile\AuthorizedApplications: [C:\Nexon\Combat Arms EU\Engine.exe] => :*Enabled:Engine.exe
DomainProfile\AuthorizedApplications: [C:\Program Files\ICQ7.5\ICQ.exe] => Enabled:ICQ7.5
StandardProfile\AuthorizedApplications: [C:\Program Files\Microsoft ActiveSync\wcescomm.exe] => Enabled:ActiveSync Connection Manager
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Plocha\Hry\ET\ET.exe] => Enabled:ET
StandardProfile\AuthorizedApplications: [C:\Program Files\xchat\xchat.exe] => Enabled:XChat IRC Client
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\PnkBstrA.exe] => Enabled:PnkBstrA
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\PnkBstrB.exe] => Enabled:PnkBstrB
StandardProfile\AuthorizedApplications: [C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe] => Enabled:NEXON_EU_Downloader_Engine
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\NGM.exe] => Enabled:Nexon Game Manager
StandardProfile\AuthorizedApplications: [C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe] => Enabled:Flashget3
StandardProfile\AuthorizedApplications: [C:\Program Files\ICQ7.5\ICQ.exe] => Enabled:ICQ7.5
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe] => Enabled:Render Manager
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe] => Enabled:Studio
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe] => Enabled:umi
StandardProfile\AuthorizedApplications: [C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe] => Enabled:Daemonu.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe] => Enabled:RtWlan
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Data aplikací\GameRanger\GameRanger\GameRanger.exe] => Enabled:GameRanger
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Plocha\Hry\Carel\Prográmky\utorrent\utorrent.exe] => Enabled:µTorrent
StandardProfile\AuthorizedApplications: [E:\Hry\COD\iw3mp.exe] => Enabled:Call of Duty(R) 4 - Modern Warfare(TM)
StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Phone\Skype.exe] => Enabled:Skype
StandardProfile\AuthorizedApplications: [E:\Hry\Poker\Paradise poker\ParadisePoker\Sportingbet\ParadisePoker.exe] => Disabled:ParadisePoker
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)
DomainProfile\GloballyOpenPorts: [139:TCP] => Enabled:@xpsp2res.dll,-22004
DomainProfile\GloballyOpenPorts: [445:TCP] => Enabled:@xpsp2res.dll,-22005
DomainProfile\GloballyOpenPorts: [137:UDP] => Enabled:@xpsp2res.dll,-22001
DomainProfile\GloballyOpenPorts: [138:UDP] => Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22007
StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22008
StandardProfile\GloballyOpenPorts: [139:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22004
StandardProfile\GloballyOpenPorts: [445:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22005
StandardProfile\GloballyOpenPorts: [137:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22001
StandardProfile\GloballyOpenPorts: [138:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1542:TCP] => Enabled:Realtek WPS TCP Prot
StandardProfile\GloballyOpenPorts: [1542:UDP] => Enabled:Realtek WPS UDP Prot
StandardProfile\GloballyOpenPorts: [53:UDP] => Enabled:Realtek AP UDP Prot
StandardProfile\GloballyOpenPorts: [443:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [20010:UDP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [3478:UDP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7850:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7852:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7853:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [27022:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [6881:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [33333:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [20443:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [8090:TCP] => Enabled:War Thunder
==================== Restore Points =========================
13-09-2016 13:12:43 Kontrolní bod systému
13-09-2016 13:12:43 Kontrolní bod systému
13-09-2016 13:12:44 Kontrolní bod systému
13-09-2016 13:12:44 Installed Sophos Virus Removal Tool.
13-09-2016 13:12:44 Kontrolní bod systému
13-09-2016 13:12:44 Kontrolní bod systému
13-09-2016 13:12:45 Kontrolní bod systému
13-09-2016 13:12:45 Kontrolní bod systému
13-09-2016 13:12:45 Software Distribution Service 3.0
13-09-2016 13:12:45 Byla nainstalována aplikace Windows Internet Explorer 8.
13-09-2016 13:12:46 Software Distribution Service 3.0
13-09-2016 13:12:46 Kontrolní bod systému
13-09-2016 13:12:47 Kontrolní bod systému
13-09-2016 13:12:47 Removed Sophos Virus Removal Tool.
13-09-2016 13:12:48 Revo Uninstaller's restore point - Malwarebytes Anti-Malware verze 2.2.1.1043
13-09-2016 13:12:49 Revo Uninstaller's restore point - Malwarebytes Anti-Malware verze 2.2.1.1043
13-09-2016 13:13:06 End of disinfection
13-09-2016 13:40:45 Bontia Studio
14-09-2016 13:39:14 Revo Uninstaller's restore point - Adobe Flash Player 23 NPAPI
15-09-2016 16:48:36 Kontrolní bod systému
18-09-2016 10:34:46 Kontrolní bod systému
19-09-2016 11:00:30 Kontrolní bod systému
20-09-2016 11:48:46 Kontrolní bod systému
21-09-2016 09:42:48 Revo Uninstaller's restore point - Battle.net
22-09-2016 10:16:12 Kontrolní bod systému
23-09-2016 16:50:58 Kontrolní bod systému
24-09-2016 17:12:48 Kontrolní bod systému
25-09-2016 20:53:53 Kontrolní bod systému
26-09-2016 10:28:03 Revo Uninstaller's restore point - WhoCrashed 5.52
==================== Faulty Device Manager Devices =============
Name: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Description: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Class Guid: {4D36E96B-E325-11CE-BFC1-08002BE10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Myš Microsoft pro port PS/2
Description: Myš Microsoft pro port PS/2
Class Guid: {4D36E96F-E325-11CE-BFC1-08002BE10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/26/2016 07:34:56 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/25/2016 06:31:03 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/25/2016 08:42:39 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/24/2016 11:10:26 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/23/2016 09:40:50 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/22/2016 08:14:00 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/20/2016 02:00:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace pprekop.exe, verze 4.2.0.172, chybující modul ole32.dll, verze 5.1.2600.2182, adresa chyby 0x10017bed.
Zpracování události, specifické pro médium ([pprekop.exe!ws!])
Error: (09/20/2016 07:16:48 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/19/2016 08:44:55 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/18/2016 08:19:42 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
System errors:
=============
Error: (09/26/2016 07:36:34 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
32631065
i8042prt
sptd
Error: (09/26/2016 07:36:34 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba NVIDIA Update Service Daemon přestala během spouštění reagovat.
Error: (09/26/2016 07:35:09 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BlueStacks Android Service byla ukončena s následující chybou:
Při obsluze řídicí žádosti došlo ve službě k výjimce.
Error: (09/26/2016 07:35:00 AM) (Source: 0) (EventID: 4) (User: )
Description: Event-ID 4
Error: (09/25/2016 06:32:40 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
32631065
i8042prt
sptd
Error: (09/25/2016 06:32:40 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba NVIDIA Update Service Daemon přestala během spouštění reagovat.
Error: (09/25/2016 06:31:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BlueStacks Android Service byla ukončena s následující chybou:
Při obsluze řídicí žádosti došlo ve službě k výjimce.
Error: (09/25/2016 06:31:11 PM) (Source: 0) (EventID: 4) (User: )
Description: Event-ID 4
Error: (09/25/2016 08:44:17 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
32631065
i8042prt
sptd
Error: (09/25/2016 08:44:17 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba NVIDIA Update Service Daemon přestala během spouštění reagovat.
==================== Memory info ===========================
Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+
Percentage of memory in use: 82%
Total physical RAM: 2047.36 MB
Available physical RAM: 352.58 MB
Total Virtual: 3939.12 MB
Available Virtual: 2423.64 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:127.99 GB) (Free:44.55 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive e: () (Fixed) (Total:170.1 GB) (Free:61.14 GB) NTFS
Drive f: (SAMSUNG externí disk) (Fixed) (Total:931.51 GB) (Free:794.65 GB) NTFS
Drive g: (VOLUME) (CDROM) (Total:1.29 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 017F017E)
Partition 1: (Active) - (Size=128 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=170.1 GB) - (Type=OF Extended)
========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 37EE35C4)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Ran by Uživatel (26-09-2016 10:43:10)
Running from C:\Documents and Settings\Uživatel\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) (2013-06-26 13:11:59)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1292428093-1965331169-725345543-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator
ASPNET (S-1-5-21-1292428093-1965331169-725345543-1004 - Limited - Enabled)
Guest (S-1-5-21-1292428093-1965331169-725345543-501 - Limited - Enabled)
HelpAssistant (S-1-5-21-1292428093-1965331169-725345543-1000 - Limited - Disabled)
SUPPORT_388945a0 (S-1-5-21-1292428093-1965331169-725345543-1002 - Limited - Disabled)
UpdatusUser (S-1-5-21-1292428093-1965331169-725345543-1008 - Limited - Enabled) => %SystemDrive%\Documents and Settings\UpdatusUser
Uživatel (S-1-5-21-1292428093-1965331169-725345543-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Uživatel
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Smart Security 9.0.376.1 (Enabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personální firewall (Disabled) {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated)
Adobe Flash Player 23 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.08) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Airlive WN300PCI WLAN (HKLM\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 1.5.5.0 - Ovislink)
Aktualizace NVIDIA 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden
Aktualizace systému Windows XP (KB2467659) (HKLM\...\KB2467659) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2909921) (HKLM\...\KB2909921-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB982381) (HKLM\...\KB982381-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB923789) (HKLM\...\KB923789) (Version: - Microsoft Corporation)
aTube Catcher (HKLM\...\aTube Catcher) (Version: 2.9.4272 - DsNET Corp)
aTube Catcher verze 3.8 (HKLM\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.8.4.3036 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM\...\{44181DF6-2751-48C7-B918-72F14508F127}) (Version: 0.8.4.3036 - BlueStack Systems, Inc.)
Bontia Studio (HKLM\...\{881a8143-cdc0-4171-8574-3ee69e3e8edf}) (Version: 5.2.4286.18713 - Bontia a.s.)
Bontia Studio 5.2 (Version: 5.2.4286.0 - Bontia, a.s.) Hidden
Call of Duty(R) - World at War(TM) (Version: 1.0 - Cenega) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) (Version: 1.00.0000 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (Version: 1.6 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (Version: 1.7 - Activision) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.21 - Piriform)
CS Poker (HKLM\...\CS Poker 0) (Version: - )
CZShare Manager (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\7f4182272b52fd8f) (Version: 0.0.1.35 - CZShare)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
EAX4 Unified Redist (HKLM\...\{89661B04-C646-4412-B6D3-5E19F02F1F37}) (Version: 4.001 - Creative Labs)
ESET Smart Security (HKLM\...\{78703924-AE07-4AAB-B9A0-3CA1260FFB15}) (Version: 9.0.376.1 - ESET, spol. s r.o.)
Facebook Plug-In (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Facebook Plug-In) (Version: - Facebook, Inc.)
FlashGet 3.3 (HKLM\...\FlashGet 3.3) (Version: 3.3.0.1092 - hxxp://www.FlashGet.com)
FM Screen Capture Codec (Remove Only) (HKLM\...\FMCODEC) (Version: - )
Google Update Helper (Version: 1.3.21.169 - Google Inc.) Hidden
hppscan3390 (Version: 001.102.00071 - Hewlett-Packard) Hidden
ICQ7.5 (HKLM\...\{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}) (Version: 7.5 - ICQ)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 Czech Language Pack (HKLM\...\{5E65E94D-69F2-4850-9E93-6459C53A0F50}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2656370) (HKLM\...\M2656370) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version: - )
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - CSY (HKLM\...\{129DDEC1-A6A3-3D60-AABE-76E6E5334922}) (Version: 2.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - CSY (HKLM\...\{6FE8B722-4D7E-3CD7-BB3A-3AD1684B1295}) (Version: 3.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack - CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack - csy) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2003 (HKLM\...\{90AF0405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8305.0 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft XNA Framework Redistributable 3.1 (HKLM\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Mozilla Firefox 49.0.1 (x86 cs) (HKLM\...\Mozilla Firefox 49.0.1 (x86 cs)) (Version: 49.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 6.0 Parser (KB933579) (HKLM\...\{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}) (Version: 6.10.1200.0 - Microsoft Corporation)
MSXML4 Parser (HKLM\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Nero 6 Ultra Edition (HKLM\...\Nero - Burning Rom!UninstallKey) (Version: - )
Nokia PC Suite (HKLM\...\Nokia PC Suite) (Version: 6.83.14.1 - Nokia)
Nokia PC Suite (Version: 6.83.14.1 - Nokia) Hidden
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (HKLM\...\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.6793 - NVIDIA Corporation)
NVIDIA GeForce Experience 1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5 - NVIDIA Corporation)
NVIDIA nView 140.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 140.54 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 320.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.18 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
Ovládací panel NVIDIA 320.18 (Version: 320.18 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
ParadisePoker 1.0.0 (HKLM\...\ParadisePoker_is1) (Version: 1.0.0 - SBS)
partypoker (HKLM\...\PartyPoker) (Version: - PartyGaming)
PC-Draw 5.1 (HKLM\...\PC-Draw 5.1) (Version: - )
Pinnacle Studio 15 (HKLM\...\{1362E602-9625-42D3-B57F-CDA9D26F9DA8}) (Version: 15.0.0.7593 - Pinnacle Systems)
PokerStars (HKLM\...\PokerStars) (Version: - PokerStars)
PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
QuickTime (HKLM\...\QuickTime) (Version: - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.6914 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver and Utility (HKLM\...\{BE686891-3C56-4714-AFEF-341A7867BA80}) (Version: 1.00.0145 - REALTEK Semiconductor Corp.)
Revo Uninstaller 2.0.1 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.1 - VS Revo Group, Ltd.)
Sada Compatibility Pack pro systém Office 2007 (HKLM\...\{90120000-0020-0405-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
Scan (Version: 8.1.0.0 - Hewlett-Packard) Hidden
SDFormatter (HKLM\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
SEGA Rally AUTO BILD DEMO (Version: 1.00.0000 - SEGA) Hidden
Skype™ 7.24 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
SOAP3 and XML4 (Version: 1.0.0 - Xara - Microsoft) Hidden
Split/Second (HKLM\...\{28526951-55EF-4901-A0CA-B9AC966D1DD1}) (Version: 1.00.0000 - Disney Interactive Studios)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Testy Autoškola (HKLM\...\{E42D62BA-2D98-4D08-8242-9F410ACA4727}) (Version: 1.6.16 - Pythagoras s.r.o.)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: - )
Unity Web Player (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS)
USB Disk Win98 Driver (HKLM\...\{BF5EE349-90CD-4422-A43B-661778180173}) (Version: - )
VIMICRO USB2.0 PC Camera (VC0323) (HKLM\...\{36820BCA-FC55-452E-9085-6E6F1F55508D}) (Version: 1.00.000 - )
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
WebFldrs XP (Version: 9.50.5318 - Microsoft Corporation) Hidden
Winamp (HKLM\...\Winamp) (Version: 5.581 - Nullsoft, Inc)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
WordPad (HKLM\...\WordPad) (Version: - )
XML Paper Specification Shared Components Pack 1.0 (Version: - Microsoft Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{0F130AC8-CDF1-4DAA-AA9B-7B4083F49EA4}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\PtContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{32C3FEAE-0877-4767-8C20-62A5829A0945}\InprocServer32 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\axfbootloader.dll ( )
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{492042A2-4432-44A1-9A39-85B2D3C0119E}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\PtContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{5B004CDE-0211-469C-B9B5-0552E7E63917}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{77D8C8C7-6B46-4429-B876-DBC006C96EB1}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarAPI.dll (Playtech)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{89425F5E-A2BD-44CD-9E4F-F1498522F0E5}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarManagerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{C98FE784-B96E-41e1-8399-1337AE3E539F}\InprocServer32 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\npfbplugin_1_0_3.dll ( )
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{CD37ED08-860C-4B86-AD25-5587D8386587}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarAPI.dll (Playtech)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Documents and Settings\Uživatel\Okolní síť\Webové servery ve službě MSN\target.lnk -> hxxp://www.msnusers.com
==================== Loaded Modules (Whitelisted) ==============
2007-04-11 20:52 - 2006-12-03 14:53 - 00126464 _____ () C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\rarext.dll
2007-04-11 20:52 - 2006-12-06 18:13 - 00315392 _____ () C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\rarlng.dll
2013-06-27 10:33 - 2013-05-12 23:37 - 00455968 _____ () C:\Program Files\NVIDIA Corporation\nview\nvshell.dll
2010-11-07 16:06 - 2006-09-19 14:26 - 00212992 _____ () C:\WINDOWS\VMSnap23.exe
2008-04-14 08:51 - 2008-04-14 08:51 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2016-08-05 18:52 - 2016-08-05 18:52 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2013-06-27 11:31 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\EnumDevLib.dll
2013-06-27 11:31 - 2007-07-12 11:11 - 01163264 _____ () C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\acAuth.dll
2007-08-21 15:06 - 2014-09-21 20:48 - 00075136 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2008-06-03 15:20 - 2008-04-07 23:45 - 00241734 _____ () C:\Program Files\CyberLink\Shared files\RichVideo.exe
2008-09-08 11:10 - 2008-09-08 11:10 - 00450560 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
2008-09-08 10:57 - 2008-09-08 10:57 - 00102400 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll
2016-09-14 13:57 - 2016-09-14 13:57 - 19588800 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll
2016-06-01 16:17 - 2016-06-01 16:17 - 00144832 _____ () C:\Program Files\VideoLAN\VLC\libvlc.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 02632640 _____ () C:\Program Files\VideoLAN\VLC\libvlccore.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00554944 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libdshow_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00041920 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_output\libdirectsound_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00039872 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00086464 _____ () C:\Program Files\VideoLAN\VLC\plugins\video_output\libdirect3d_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00078272 _____ () C:\Program Files\VideoLAN\VLC\plugins\video_output\libdirectdraw_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00114112 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00245184 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00089536 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libvdr_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00055744 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00072128 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libsmooth_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00598976 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libhttplive_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00771520 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libdash_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00131520 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libzip_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00052672 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\librar_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00023488 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\librecord_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00145856 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01566656 _____ () C:\Program Files\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00334784 _____ () C:\Program Files\VideoLAN\VLC\plugins\lua\liblua_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01265600 _____ () C:\Program Files\VideoLAN\VLC\plugins\misc\libxml_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libwin_msg_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00069568 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00048576 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libwin_hotkeys_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00242624 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00108992 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libavi_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00096704 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libasf_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00091584 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 12001728 _____ () C:\Program Files\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00036800 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libes_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00032192 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libnuv_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libtta_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00084928 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libmpc_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00030144 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libwav_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00034752 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libcaf_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00961472 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libsid_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00137152 _____ () C:\Program Files\VideoLAN\VLC\plugins\services_discovery\libsap_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01308096 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libmkv_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024000 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libdiracsys_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00337856 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libogg_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00728512 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\liblive555_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00031680 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libsmf_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00418240 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libgme_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00035264 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libimage_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022976 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libxa_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00029632 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libpva_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00027072 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libvoc_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libau_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00046528 _____ () C:\Program Files\VideoLAN\VLC\plugins\meta_engine\libfolder_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00344512 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00157632 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00754624 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00031680 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00089024 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_h264_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00032192 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_flac_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00040384 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_dirac_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00030144 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mlp_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00078272 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4audio_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00044992 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_vc1_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00026048 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libsvcdsub_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028608 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00035264 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4video_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00037312 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpegvideo_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libcvdsub_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00025536 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_hevc_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 14929344 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libavcodec_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00261056 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libjpeg_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00027072 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00298944 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libpng_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 01291200 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028608 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libdts_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00036800 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libaraw_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00052160 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libsubstx3g_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00456128 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libflac_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00035776 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libg711_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 02680768 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00356288 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liba52_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00022464 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_mixer\libfloat_mixer_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00027072 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00140224 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libmpgatofixed32_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00176576 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdtstofloat32_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00067520 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\liba52tofloat32_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 01504704 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00028096 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libsimple_channel_mixer_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022464 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\liba52tospdif_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022976 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdtstospdif_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00029632 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdolby_surround_decoder_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00022464 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libugly_resampler_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00024512 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libtrivial_channel_mixer_plugin.dll
2016-06-01 16:18 - 2016-06-01 16:18 - 00034240 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libaudio_format_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00370112 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libopus_plugin.dll
2016-06-01 16:19 - 2016-06-01 16:19 - 00121792 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libdvbsub_plugin.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Documents and Settings\All Users\Plocha:$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM [85]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{1a3e09be-1e45-494b-9174-d7385b45bbf5} => ""=""
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\.DEFAULT\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\.DEFAULT\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\.DEFAULT\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\.DEFAULT\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\.DEFAULT\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\.DEFAULT\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\.DEFAULT\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\.DEFAULT\...\2020search.com -> www.2020search.com
IE restricted site: HKU\.DEFAULT\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\.DEFAULT\...\2211.net -> wwww.2211.net
IE restricted site: HKU\.DEFAULT\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\.DEFAULT\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\.DEFAULT\...\24teen.com -> www.24teen.com
IE restricted site: HKU\.DEFAULT\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\.DEFAULT\...\2search.com -> feeds.2search.com
IE restricted site: HKU\.DEFAULT\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\.DEFAULT\...\2squared.com -> www.2squared.com
IE restricted site: HKU\.DEFAULT\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\.DEFAULT\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\.DEFAULT\...\36site.com -> www.36site.com
There are 4084 more sites.
IE restricted site: HKU\S-1-5-19\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-19\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-19\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-19\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-19\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-19\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-19\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-19\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-19\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-19\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-19\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-19\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-19\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-19\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-19\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-19\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-19\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-19\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-19\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-19\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE restricted site: HKU\S-1-5-20\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-20\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-20\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-20\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-20\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-20\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-20\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-20\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-20\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-20\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-20\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-20\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-20\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-20\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-20\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-20\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-20\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-20\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-20\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-20\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\kuaiche.com -> hxxp://software.kuaiche.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2squared.com -> www.2squared.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\36site.com -> www.36site.com
There are 4082 more sites.
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com
There are 4104 more sites.
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2001-10-25 14:00 - 2016-08-17 18:04 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Control Panel\Desktop\\Wallpaper -> (Žádný)
DNS Servers: 10.0.0.138
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
DomainProfile\AuthorizedApplications: [C:\Nexon\Combat Arms EU\CombatArms.exe] => :*Enabled:CombatArms.exe
DomainProfile\AuthorizedApplications: [C:\Nexon\Combat Arms EU\Engine.exe] => :*Enabled:Engine.exe
DomainProfile\AuthorizedApplications: [C:\Program Files\ICQ7.5\ICQ.exe] => Enabled:ICQ7.5
StandardProfile\AuthorizedApplications: [C:\Program Files\Microsoft ActiveSync\wcescomm.exe] => Enabled:ActiveSync Connection Manager
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Plocha\Hry\ET\ET.exe] => Enabled:ET
StandardProfile\AuthorizedApplications: [C:\Program Files\xchat\xchat.exe] => Enabled:XChat IRC Client
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\PnkBstrA.exe] => Enabled:PnkBstrA
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\PnkBstrB.exe] => Enabled:PnkBstrB
StandardProfile\AuthorizedApplications: [C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe] => Enabled:NEXON_EU_Downloader_Engine
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\NGM.exe] => Enabled:Nexon Game Manager
StandardProfile\AuthorizedApplications: [C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe] => Enabled:Flashget3
StandardProfile\AuthorizedApplications: [C:\Program Files\ICQ7.5\ICQ.exe] => Enabled:ICQ7.5
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe] => Enabled:Render Manager
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe] => Enabled:Studio
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe] => Enabled:umi
StandardProfile\AuthorizedApplications: [C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe] => Enabled:Daemonu.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe] => Enabled:RtWlan
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Data aplikací\GameRanger\GameRanger\GameRanger.exe] => Enabled:GameRanger
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Plocha\Hry\Carel\Prográmky\utorrent\utorrent.exe] => Enabled:µTorrent
StandardProfile\AuthorizedApplications: [E:\Hry\COD\iw3mp.exe] => Enabled:Call of Duty(R) 4 - Modern Warfare(TM)
StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Phone\Skype.exe] => Enabled:Skype
StandardProfile\AuthorizedApplications: [E:\Hry\Poker\Paradise poker\ParadisePoker\Sportingbet\ParadisePoker.exe] => Disabled:ParadisePoker
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)
DomainProfile\GloballyOpenPorts: [139:TCP] => Enabled:@xpsp2res.dll,-22004
DomainProfile\GloballyOpenPorts: [445:TCP] => Enabled:@xpsp2res.dll,-22005
DomainProfile\GloballyOpenPorts: [137:UDP] => Enabled:@xpsp2res.dll,-22001
DomainProfile\GloballyOpenPorts: [138:UDP] => Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22007
StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22008
StandardProfile\GloballyOpenPorts: [139:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22004
StandardProfile\GloballyOpenPorts: [445:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22005
StandardProfile\GloballyOpenPorts: [137:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22001
StandardProfile\GloballyOpenPorts: [138:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1542:TCP] => Enabled:Realtek WPS TCP Prot
StandardProfile\GloballyOpenPorts: [1542:UDP] => Enabled:Realtek WPS UDP Prot
StandardProfile\GloballyOpenPorts: [53:UDP] => Enabled:Realtek AP UDP Prot
StandardProfile\GloballyOpenPorts: [443:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [20010:UDP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [3478:UDP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7850:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7852:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7853:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [27022:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [6881:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [33333:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [20443:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [8090:TCP] => Enabled:War Thunder
==================== Restore Points =========================
13-09-2016 13:12:43 Kontrolní bod systému
13-09-2016 13:12:43 Kontrolní bod systému
13-09-2016 13:12:44 Kontrolní bod systému
13-09-2016 13:12:44 Installed Sophos Virus Removal Tool.
13-09-2016 13:12:44 Kontrolní bod systému
13-09-2016 13:12:44 Kontrolní bod systému
13-09-2016 13:12:45 Kontrolní bod systému
13-09-2016 13:12:45 Kontrolní bod systému
13-09-2016 13:12:45 Software Distribution Service 3.0
13-09-2016 13:12:45 Byla nainstalována aplikace Windows Internet Explorer 8.
13-09-2016 13:12:46 Software Distribution Service 3.0
13-09-2016 13:12:46 Kontrolní bod systému
13-09-2016 13:12:47 Kontrolní bod systému
13-09-2016 13:12:47 Removed Sophos Virus Removal Tool.
13-09-2016 13:12:48 Revo Uninstaller's restore point - Malwarebytes Anti-Malware verze 2.2.1.1043
13-09-2016 13:12:49 Revo Uninstaller's restore point - Malwarebytes Anti-Malware verze 2.2.1.1043
13-09-2016 13:13:06 End of disinfection
13-09-2016 13:40:45 Bontia Studio
14-09-2016 13:39:14 Revo Uninstaller's restore point - Adobe Flash Player 23 NPAPI
15-09-2016 16:48:36 Kontrolní bod systému
18-09-2016 10:34:46 Kontrolní bod systému
19-09-2016 11:00:30 Kontrolní bod systému
20-09-2016 11:48:46 Kontrolní bod systému
21-09-2016 09:42:48 Revo Uninstaller's restore point - Battle.net
22-09-2016 10:16:12 Kontrolní bod systému
23-09-2016 16:50:58 Kontrolní bod systému
24-09-2016 17:12:48 Kontrolní bod systému
25-09-2016 20:53:53 Kontrolní bod systému
26-09-2016 10:28:03 Revo Uninstaller's restore point - WhoCrashed 5.52
==================== Faulty Device Manager Devices =============
Name: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Description: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Class Guid: {4D36E96B-E325-11CE-BFC1-08002BE10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Myš Microsoft pro port PS/2
Description: Myš Microsoft pro port PS/2
Class Guid: {4D36E96F-E325-11CE-BFC1-08002BE10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/26/2016 07:34:56 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/25/2016 06:31:03 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/25/2016 08:42:39 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/24/2016 11:10:26 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/23/2016 09:40:50 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/22/2016 08:14:00 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/20/2016 02:00:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace pprekop.exe, verze 4.2.0.172, chybující modul ole32.dll, verze 5.1.2600.2182, adresa chyby 0x10017bed.
Zpracování události, specifické pro médium ([pprekop.exe!ws!])
Error: (09/20/2016 07:16:48 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/19/2016 08:44:55 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Error: (09/18/2016 08:19:42 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
System errors:
=============
Error: (09/26/2016 07:36:34 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
32631065
i8042prt
sptd
Error: (09/26/2016 07:36:34 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba NVIDIA Update Service Daemon přestala během spouštění reagovat.
Error: (09/26/2016 07:35:09 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BlueStacks Android Service byla ukončena s následující chybou:
Při obsluze řídicí žádosti došlo ve službě k výjimce.
Error: (09/26/2016 07:35:00 AM) (Source: 0) (EventID: 4) (User: )
Description: Event-ID 4
Error: (09/25/2016 06:32:40 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
32631065
i8042prt
sptd
Error: (09/25/2016 06:32:40 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba NVIDIA Update Service Daemon přestala během spouštění reagovat.
Error: (09/25/2016 06:31:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BlueStacks Android Service byla ukončena s následující chybou:
Při obsluze řídicí žádosti došlo ve službě k výjimce.
Error: (09/25/2016 06:31:11 PM) (Source: 0) (EventID: 4) (User: )
Description: Event-ID 4
Error: (09/25/2016 08:44:17 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
32631065
i8042prt
sptd
Error: (09/25/2016 08:44:17 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba NVIDIA Update Service Daemon přestala během spouštění reagovat.
==================== Memory info ===========================
Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+
Percentage of memory in use: 82%
Total physical RAM: 2047.36 MB
Available physical RAM: 352.58 MB
Total Virtual: 3939.12 MB
Available Virtual: 2423.64 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:127.99 GB) (Free:44.55 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive e: () (Fixed) (Total:170.1 GB) (Free:61.14 GB) NTFS
Drive f: (SAMSUNG externí disk) (Fixed) (Total:931.51 GB) (Free:794.65 GB) NTFS
Drive g: (VOLUME) (CDROM) (Total:1.29 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 017F017E)
Partition 1: (Active) - (Size=128 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=170.1 GB) - (Type=OF Extended)
========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 37EE35C4)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Re: Prosím o kontrolu logu - "chroupe"
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-09-2016
Ran by Uživatel (administrator) on NONAME-ZIQKCX9Z (26-09-2016 10:41:55)
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profiles: Uživatel & UpdatusUser (Available Profiles: Uživatel & UpdatusUser & Administrator)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(ali) C:\WINDOWS\UMStor\Res.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
() C:\WINDOWS\VMSnap23.exe
(Vimicro) C:\WINDOWS\Domino.exe
(Microsoft Corporation) C:\Program Files\Microsoft ActiveSync\wcescomm.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Ralink Technology, Corp.) C:\Program Files\Ovislink\Common\RaRegistry.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(VideoLAN) C:\Program Files\VideoLAN\VLC\vlc.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [USB Storage Toolbox] => C:\WINDOWS\UMStor\Res.EXE [65536 2005-09-14] (ali)
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15677728 2013-05-12] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] => C:\WINDOWS\system32\NvMCTray.dll [223008 2013-05-12] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2562848 2013-05-12] ()
HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [20143176 2013-04-02] (Realtek Semiconductor Corp.)
HKLM\...\Run: [BigDogPath323VMSnap] => C:\WINDOWS\VMSnap23.exe [212992 2006-09-19] ()
HKLM\...\Run: [BigDogPath323Domino] => C:\WINDOWS\Domino.exe [49152 2006-06-28] (Vimicro)
HKLM\...\Run: [QuickTime Task] => C:\DOCUMENTS AND SETTINGS\UŽIVATEL\PLOCHA\HUMUS\POTŘEBA\OLYMPUS\qttask.exe [77824 2007-10-06] (Apple Computer, Inc.)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [H/PC Connection Agent] => C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE [401491 2004-02-24] (Microsoft Corporation)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6854360 2016-08-05] (Piriform Ltd)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ACTUAL~1.SCR [111616 2008-06-06] ()
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\Run: [Nokia.PCSync] => E:\HUMUS\Nokia PC Suite 6\PcSync2.exe [1744896 2007-03-27] (Time Information Services Ltd.)
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => E:\HUMUS\Nokia PC Suite 6\PcSync2.exe [1744896 2007-03-27] (Time Information Services Ltd.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187B Wireless LAN Utility.lnk [2013-06-27]
ShortcutTarget: REALTEK RTL8187B Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0100E881-AA8D-4A4C-B6F7-6D93DF16FF0E}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
URLSearchHook: HKU\S-1-5-21-1292428093-1965331169-725345543-1008 -> Default = {855F3B16-6D32-4fe6-8A56-BBB695989046}
BHO: FlashGetBHO -> {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} -> C:\Documents and Settings\Uživatel\Data aplikací\FlashGetBHO\FlashGetBHO3.dll [2009-12-22] (Trend Media Group)
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll [2014-02-25] (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://download.microsoft.com/download/ ... ontrol.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://windowsupdate.microsoft.com/wind ... 2444724093
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} hxxp://office.microsoft.com/officeupdat ... /opuc4.cab
Handler: lid - {5C135180-9973-46D9-ABF4-148267CBB8BF} - C:\WINDOWS\System32\msvidctl.dll [2008-04-14] (Microsoft Corporation)
Handler: mctp - {d7b95390-b1c5-11d0-b111-0080c712fe82} - C:\Program Files\Microsoft ActiveSync\aatp.dll [2004-02-24] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2000-04-19] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\osde3ijm.default-1361893236593
FF NewTab: about:newtab
FF Homepage: hxxps://www.seznam.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-14] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw_1213153.dll [2014-06-24] (Adobe Systems, Inc.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @ngm.nexoneu.com/NxGame -> C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\npNxGameeu.dll [2009-12-07] (Nexon)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @facebook.com/FBPlugin,version=1.0.3 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\npfbplugin_1_0_3.dll [2010-03-06] ( )
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll [2016-07-14] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll [2009-06-25] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL [2007-03-22] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Extension: (Firefox Hotfix) - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\osde3ijm.default-1361893236593\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-08]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-09-02] [not signed]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [402192 2013-12-20] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [385808 2013-12-20] (BlueStack Systems, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983264 2016-03-03] (ESET)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [450560 2008-09-08] () [File not signed]
S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [225280 2007-01-02] (Hewlett-Packard Co.) [File not signed]
S4 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S4 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [184320 2008-09-08] () [File not signed]
S4 ose; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [89136 2007-04-11] (Microsoft Corporation) [File not signed]
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [75136 2014-09-21] ()
R2 RalinkRegistryWriter; C:\Program Files\Ovislink\Common\RaRegistry.exe [185632 2009-12-17] (Ralink Technology, Corp.)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [241734 2008-04-07] () [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21361 2013-06-27] (Cisco Systems, Inc.) [File not signed]
S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [281760 2010-03-23] ()
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [106256 2013-12-20] (BlueStack Systems)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S1 Changer; C:\WINDOWS\system32\Drivers\Changer.sys [8192 2008-04-14] (Microsoft Corporation)
S3 Dot4Scan; C:\WINDOWS\System32\DRIVERS\Dot4Scan.sys [8704 2001-08-17] (Microsoft Corporation)
R1 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [242240 2013-08-16] (DT Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [206312 2016-04-14] (ESET)
R1 ehdrv; C:\WINDOWS\System32\DRIVERS\ehdrv.sys [146024 2016-04-14] (ESET)
R2 ekbdflt; C:\WINDOWS\System32\DRIVERS\ekbdflt.sys [111040 2016-04-14] (ESET)
R1 epfw; C:\WINDOWS\System32\DRIVERS\epfw.sys [152728 2016-04-14] (ESET)
R3 Epfwndis; C:\WINDOWS\System32\DRIVERS\Epfwndis.sys [47168 2016-04-14] (ESET)
R1 epfwtdi; C:\WINDOWS\System32\DRIVERS\epfwtdi.sys [69816 2016-04-14] (ESET)
S3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 HPFXBULK; C:\WINDOWS\System32\drivers\hpfxbulk.sys [9344 2007-07-06] (Hewlett Packard)
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49920 2005-10-21] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2005-10-21] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2005-10-21] (HP)
R0 imagedrv; C:\WINDOWS\System32\Drivers\imagedrv.sys [5888 2005-09-01] (Ahead Software AG) [File not signed]
R0 imagesrv; C:\WINDOWS\System32\DRIVERS\imagesrv.sys [127488 2005-09-01] (Ahead Software AG) [File not signed]
R3 irsir; C:\WINDOWS\System32\DRIVERS\irsir.sys [18688 2001-08-17] (Microsoft Corporation)
S1 lbrtfdc; C:\WINDOWS\system32\Drivers\lbrtfdc.sys [34688 2008-04-14] (Toshiba Corp.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [25888 2010-03-23] ()
R3 MarvinBus; C:\WINDOWS\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
S3 MREMP50; C:\Program Files\Common Files\Motive\mremp50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\mresp50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-14] (Microsoft Corporation)
S3 nmwcd; C:\WINDOWS\System32\drivers\nmwcd.sys [137216 2007-02-22] (Nokia) [File not signed]
S3 nmwcdc; C:\WINDOWS\System32\drivers\nmwcdc.sys [8320 2007-02-22] (Nokia) [File not signed]
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54784 2008-08-01] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [145952 2008-08-18] (NVIDIA Corporation)
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2008-08-01] (NVIDIA Corporation)
R1 PCLEPCI; C:\WINDOWS\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R1 prodrv06; C:\WINDOWS\System32\drivers\prodrv06.sys [53920 2004-08-09] (Protection Technology) [File not signed]
R0 prohlp02; C:\WINDOWS\System32\drivers\prohlp02.sys [114016 2004-08-09] (Protection Technology) [File not signed]
R0 prosync1; C:\WINDOWS\System32\drivers\prosync1.sys [7040 2004-07-19] (Protection Technology) [File not signed]
R3 Rasirda; C:\WINDOWS\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation)
S3 RT80x86; C:\WINDOWS\System32\DRIVERS\RT2860.sys [1069824 2009-10-07] (Ralink Technology, Corp.) [File not signed]
S3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
S3 s3legacy; C:\WINDOWS\System32\DRIVERS\s3legacy.sys [65664 2001-08-17] (Microsoft Corporation)
R2 Scutum50; C:\WINDOWS\System32\Drivers\Scutum50.sys [19072 2009-10-07] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
R0 sfdrv01; C:\WINDOWS\System32\drivers\sfdrv01.sys [50688 2005-08-10] (Protection Technology) [File not signed]
R0 sfdrv01a; C:\WINDOWS\System32\drivers\sfdrv01a.sys [63352 2006-07-05] (Protection Technology (StarForce))
R0 sfdrv02; C:\WINDOWS\System32\drivers\sfdrv02.sys [67960 2006-09-11] (Protection Technology (StarForce))
R0 sfhlp01; C:\WINDOWS\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) [File not signed]
R0 sfsync05; C:\WINDOWS\System32\drivers\sfsync05.sys [59776 2006-08-11] (Protection Technology (StarForce))
R0 sfvfs02; C:\WINDOWS\System32\drivers\sfvfs02.sys [82296 2007-01-12] (Protection Technology (StarForce))
S0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2010-02-16] (Duplex Secure Ltd.)
U3 TrueSight; C:\WINDOWS\system32\drivers\TrueSight.sys [24688 2016-08-17] ()
R3 vmfilter323; C:\WINDOWS\System32\drivers\vmfilter323.sys [476672 2006-08-08] (Vimicro Corporation)
S3 wceusbsh; C:\WINDOWS\System32\DRIVERS\wceusbsh.sys [31744 2008-04-14] (Microsoft Corporation)
R3 ZSMC326; C:\WINDOWS\System32\Drivers\usbvm323.sys [260096 2006-12-28] (Vimicro Corporation)
S0 32631065; system32\DRIVERS\32631065.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-26 10:41 - 2016-09-26 10:42 - 00017455 _____ C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2016-09-26 10:41 - 2016-09-26 10:41 - 00000000 ____D C:\FRST
2016-09-26 10:39 - 2016-09-26 10:40 - 01753600 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2016-09-24 12:07 - 2016-09-26 08:04 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-09-22 21:26 - 2016-09-22 21:26 - 01015476 _____ C:\Documents and Settings\Uživatel\Plocha\Habermanni, Klátovec a kovárna patří k sobě - Jihlavský deník.htm
2016-09-22 21:26 - 2016-09-22 21:26 - 00000000 ____D C:\Documents and Settings\Uživatel\Plocha\Habermanni, Klátovec a kovárna patří k sobě - Jihlavský deník_soubory
2016-09-21 09:50 - 2016-09-21 09:50 - 00086528 _____ C:\WINDOWS\bnetunin.exe
2016-09-21 09:50 - 2016-09-21 09:50 - 00061440 _____ C:\WINDOWS\diabswun.exe
2016-09-21 08:10 - 2016-09-21 08:10 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Blizzard Entertainment
2016-09-20 19:57 - 2016-09-20 19:57 - 00000047 _____ C:\Documents and Settings\Uživatel\Plocha\Zobcová flétna - první kroky hry na zobcovou flétnu.URL
2016-09-20 19:56 - 2016-09-20 19:56 - 00000085 _____ C:\Documents and Settings\Uživatel\Plocha\Jak hrát na zobcovou flétnu – wikiHow.URL
2016-09-20 14:03 - 2016-09-20 14:03 - 00000000 ____D C:\Documents and Settings\Uživatel\Nabídka Start\Programy\partypoker
2016-09-20 14:03 - 2016-09-20 14:03 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\CEF
2016-09-20 14:03 - 2016-09-20 14:03 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\cef3-cache
2016-09-14 13:57 - 2016-09-26 10:31 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-09-14 13:57 - 2016-09-20 14:03 - 00796352 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-09-14 13:57 - 2016-09-20 14:03 - 00142528 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-09-14 13:36 - 2016-09-26 10:27 - 00000882 _____ C:\Documents and Settings\All Users\Plocha\Revo Uninstaller.lnk
2016-09-14 13:36 - 2016-09-26 10:27 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Revo Uninstaller
2016-09-14 13:36 - 2016-09-14 13:36 - 00000000 ____D C:\Program Files\VS Revo Group
2016-09-13 17:36 - 2016-09-13 17:36 - 06502080 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2016-09-13 13:40 - 2016-09-13 13:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Package Cache
2016-09-13 13:36 - 2016-09-13 13:36 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\Exec
2016-09-12 11:41 - 2016-09-12 11:41 - 00860862 _____ C:\Documents and Settings\Uživatel\Plocha\voucher-NAK00203xetqqsmf.pdf
2016-09-12 10:50 - 2016-09-12 10:50 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity
2016-09-11 11:28 - 2016-09-11 11:28 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikac�eoComply
2016-09-11 11:28 - 2016-09-11 11:28 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikac�
2016-09-11 11:17 - 2016-09-11 11:17 - 00000000 ____D C:\Documents and Settings\Uživatel\.oracle_jre_usage
2016-09-11 10:07 - 2016-09-11 10:07 - 00000000 __SHD C:\Documents and Settings\Uživatel\IECompatCache
2016-09-09 11:59 - 2016-09-09 11:59 - 00000803 _____ C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Internet Explorer.lnk
2016-09-09 11:57 - 2016-09-09 11:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2467659$
2016-09-09 11:56 - 2016-09-09 11:58 - 00000000 ___HD C:\WINDOWS\msdownld.tmp
2016-09-09 11:50 - 2016-09-09 11:56 - 00000000 __HDC C:\WINDOWS\ie8
2016-09-04 17:52 - 2016-09-04 17:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Sophos
2016-09-03 10:49 - 2016-09-11 10:08 - 00000099 _____ C:\Documents and Settings\Uživatel\Plocha\Farmapark - celodenní vstup pro rodinu Nakupvakci.cz.URL
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-26 10:42 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\temp
2016-09-26 10:41 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Plocha
2016-09-26 10:39 - 2013-05-29 11:45 - 00029888 _____ C:\WINDOWS\system32\nvAppTimestamps
2016-09-26 10:28 - 2007-04-10 20:23 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2016-09-26 10:27 - 2007-04-10 20:23 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2016-09-26 07:37 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\UpdatusUser\Local Settings\temp
2016-09-26 07:34 - 2007-04-10 18:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-09-25 23:22 - 2014-04-10 12:45 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\vlc
2016-09-25 23:22 - 2011-09-24 07:01 - 00032614 _____ C:\WINDOWS\SchedLgU.Txt
2016-09-25 23:22 - 2007-04-10 19:09 - 00000272 ___SH C:\Documents and Settings\Uživatel\ntuser.ini
2016-09-25 21:05 - 2008-06-06 11:56 - 00001517 _____ C:\WINDOWS\system32\sun_debug.txt
2016-09-25 21:05 - 2008-06-06 11:56 - 00000021 _____ C:\WINDOWS\system32\sun_debug1.txt
2016-09-25 18:30 - 2008-12-19 12:27 - 00000000 __SHD C:\WINDOWS\CSC
2016-09-24 11:10 - 2001-10-25 14:00 - 00002228 _____ C:\WINDOWS\system32\wpa.dbl
2016-09-22 23:42 - 2012-11-04 02:52 - 08252736 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1292428093-1965331169-725345543-1003-0.dat
2016-09-22 23:42 - 2012-11-04 02:52 - 00313846 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
2016-09-22 15:34 - 2007-04-10 19:09 - 00000000 ____D C:\Documents and Settings\Uživatel
2016-09-22 15:22 - 2008-04-22 19:43 - 00000000 ____D C:\WINDOWS\Minidump
2016-09-22 14:49 - 2012-11-03 15:57 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\firebird
2016-09-21 14:14 - 2007-04-26 20:26 - 00000116 _____ C:\WINDOWS\NeroDigital.ini
2016-09-21 12:39 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Nabídka Start\Programy
2016-09-21 09:45 - 2007-04-10 20:23 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2016-09-21 09:43 - 2007-04-10 19:09 - 00000000 __RHD C:\Documents and Settings\Uživatel\Data aplikací
2016-09-21 09:43 - 2007-04-10 19:09 - 00000000 ___HD C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2016-09-21 08:09 - 2010-03-17 17:18 - 00000000 ___HD C:\Documents and Settings\All Users\Data aplikací\Blizzard Entertainment
2016-09-20 14:03 - 2013-10-20 09:10 - 00000000 ____D C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Games
2016-09-20 14:03 - 2011-06-23 19:10 - 00000691 _____ C:\Documents and Settings\Uživatel\Nabídka Start\partypoker.lnk
2016-09-20 14:03 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Nabídka Start
2016-09-20 14:01 - 2007-04-10 18:40 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-09-14 13:58 - 2014-08-30 12:51 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Adobe
2016-09-13 13:41 - 2016-07-04 13:22 - 00001803 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Bontia Studio.lnk
2016-09-13 13:41 - 2016-07-04 13:22 - 00001797 _____ C:\Documents and Settings\All Users\Plocha\Bontia Studio.lnk
2016-09-12 11:25 - 2010-02-16 11:28 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\DAEMON Tools Lite
2016-09-12 11:04 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\Administrator\Local Settings\temp
2016-09-12 11:03 - 2010-04-08 14:24 - 00000178 ___SH C:\Documents and Settings\Administrator\ntuser.ini
2016-09-12 10:53 - 2012-10-11 19:57 - 00000000 ____D C:\Program Files\Seznam.cz
2016-09-12 10:52 - 2007-08-22 09:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google
2016-09-12 10:52 - 2007-08-21 16:45 - 00000000 ____D C:\Program Files\Google
2016-09-12 10:52 - 2007-08-21 16:45 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Google
2016-09-12 00:49 - 2007-04-10 20:20 - 00000000 ___HD C:\WINDOWS\inf
2016-09-11 11:28 - 2007-04-10 20:23 - 00000000 ____D C:\Documents and Settings\All Users
2016-09-09 19:45 - 2010-02-22 20:44 - 00000292 _____ C:\WINDOWS\system32\secustat.dat
2016-09-09 19:45 - 2009-11-09 17:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\BITS
2016-09-09 12:25 - 2011-12-11 16:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\ESET
2016-09-09 11:59 - 2007-04-10 20:20 - 00000000 RSHDC C:\WINDOWS\system32\dllcache
2016-09-09 11:59 - 2007-04-10 20:20 - 00000000 ____D C:\WINDOWS\Help
2016-09-09 11:59 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Dokumenty\Obrázky
2016-09-09 11:59 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Dokumenty\Hudba
2016-09-09 11:59 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Dokumenty
2016-09-09 11:57 - 2007-04-10 19:54 - 00000000 ___HD C:\WINDOWS\$hf_mig$
2016-09-09 11:24 - 2007-04-11 06:00 - 144884648 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-09 11:12 - 2014-07-28 23:33 - 00000000 ____D C:\WINDOWS\ie8updates
2016-09-04 14:32 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění
2016-09-01 22:14 - 2007-04-10 19:22 - 00113280 _____ C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
2016-09-01 22:03 - 2007-04-10 20:23 - 00365712 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-08-30 15:32 - 2007-04-11 22:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\Mozilla
2016-08-30 14:41 - 2014-02-03 00:46 - 00704168 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
2016-08-30 14:41 - 2007-04-10 19:09 - 00000000 ___HD C:\Documents and Settings\LocalService\Local Settings\Data aplikací
2016-08-30 09:41 - 2012-02-27 15:43 - 00000349 _____ C:\Documents and Settings\All Users\Dokumenty\PCLECHAL.INI
==================== Files in the root of some directories =======
2007-11-28 16:49 - 2014-11-29 20:30 - 0022328 _____ () C:\Documents and Settings\Uživatel\Data aplikací\PnkBstrK.sys
2010-01-26 18:27 - 2010-01-26 18:27 - 0175104 _____ () C:\Documents and Settings\Uživatel\Data aplikací\SQLite3.dll
2016-03-07 17:58 - 2016-08-23 16:20 - 0010752 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2007-04-11 07:28 - 2007-04-11 07:28 - 0000128 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\fusioncache.dat
2011-01-18 12:17 - 2013-05-29 15:37 - 0001200 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\SRDownloader.nast
2009-05-11 19:59 - 2009-05-11 19:59 - 0000346 ____H () C:\Documents and Settings\All Users\Data aplikací\hpzinstall.log
2011-07-18 19:32 - 2011-12-11 12:15 - 0000012 ____H () C:\Documents and Settings\All Users\Data aplikací\ReminderNextRun
Some files in TEMP:
====================
C:\Documents and Settings\Uživatel\Local Settings\temp\VSUSetup.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
Ran by Uživatel (administrator) on NONAME-ZIQKCX9Z (26-09-2016 10:41:55)
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profiles: Uživatel & UpdatusUser (Available Profiles: Uživatel & UpdatusUser & Administrator)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(ali) C:\WINDOWS\UMStor\Res.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
() C:\WINDOWS\VMSnap23.exe
(Vimicro) C:\WINDOWS\Domino.exe
(Microsoft Corporation) C:\Program Files\Microsoft ActiveSync\wcescomm.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Ralink Technology, Corp.) C:\Program Files\Ovislink\Common\RaRegistry.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(VideoLAN) C:\Program Files\VideoLAN\VLC\vlc.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [USB Storage Toolbox] => C:\WINDOWS\UMStor\Res.EXE [65536 2005-09-14] (ali)
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15677728 2013-05-12] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] => C:\WINDOWS\system32\NvMCTray.dll [223008 2013-05-12] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2562848 2013-05-12] ()
HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [20143176 2013-04-02] (Realtek Semiconductor Corp.)
HKLM\...\Run: [BigDogPath323VMSnap] => C:\WINDOWS\VMSnap23.exe [212992 2006-09-19] ()
HKLM\...\Run: [BigDogPath323Domino] => C:\WINDOWS\Domino.exe [49152 2006-06-28] (Vimicro)
HKLM\...\Run: [QuickTime Task] => C:\DOCUMENTS AND SETTINGS\UŽIVATEL\PLOCHA\HUMUS\POTŘEBA\OLYMPUS\qttask.exe [77824 2007-10-06] (Apple Computer, Inc.)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [H/PC Connection Agent] => C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE [401491 2004-02-24] (Microsoft Corporation)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6854360 2016-08-05] (Piriform Ltd)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ACTUAL~1.SCR [111616 2008-06-06] ()
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\Run: [Nokia.PCSync] => E:\HUMUS\Nokia PC Suite 6\PcSync2.exe [1744896 2007-03-27] (Time Information Services Ltd.)
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => E:\HUMUS\Nokia PC Suite 6\PcSync2.exe [1744896 2007-03-27] (Time Information Services Ltd.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187B Wireless LAN Utility.lnk [2013-06-27]
ShortcutTarget: REALTEK RTL8187B Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0100E881-AA8D-4A4C-B6F7-6D93DF16FF0E}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
URLSearchHook: HKU\S-1-5-21-1292428093-1965331169-725345543-1008 -> Default = {855F3B16-6D32-4fe6-8A56-BBB695989046}
BHO: FlashGetBHO -> {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} -> C:\Documents and Settings\Uživatel\Data aplikací\FlashGetBHO\FlashGetBHO3.dll [2009-12-22] (Trend Media Group)
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll [2014-02-25] (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://download.microsoft.com/download/ ... ontrol.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://windowsupdate.microsoft.com/wind ... 2444724093
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} hxxp://office.microsoft.com/officeupdat ... /opuc4.cab
Handler: lid - {5C135180-9973-46D9-ABF4-148267CBB8BF} - C:\WINDOWS\System32\msvidctl.dll [2008-04-14] (Microsoft Corporation)
Handler: mctp - {d7b95390-b1c5-11d0-b111-0080c712fe82} - C:\Program Files\Microsoft ActiveSync\aatp.dll [2004-02-24] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2000-04-19] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\osde3ijm.default-1361893236593
FF NewTab: about:newtab
FF Homepage: hxxps://www.seznam.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-14] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw_1213153.dll [2014-06-24] (Adobe Systems, Inc.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @ngm.nexoneu.com/NxGame -> C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\npNxGameeu.dll [2009-12-07] (Nexon)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @facebook.com/FBPlugin,version=1.0.3 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\npfbplugin_1_0_3.dll [2010-03-06] ( )
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll [2016-07-14] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll [2009-06-25] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL [2007-03-22] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Extension: (Firefox Hotfix) - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\osde3ijm.default-1361893236593\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-08]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-09-02] [not signed]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [402192 2013-12-20] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [385808 2013-12-20] (BlueStack Systems, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983264 2016-03-03] (ESET)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [450560 2008-09-08] () [File not signed]
S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [225280 2007-01-02] (Hewlett-Packard Co.) [File not signed]
S4 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S4 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [184320 2008-09-08] () [File not signed]
S4 ose; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [89136 2007-04-11] (Microsoft Corporation) [File not signed]
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [75136 2014-09-21] ()
R2 RalinkRegistryWriter; C:\Program Files\Ovislink\Common\RaRegistry.exe [185632 2009-12-17] (Ralink Technology, Corp.)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [241734 2008-04-07] () [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21361 2013-06-27] (Cisco Systems, Inc.) [File not signed]
S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [281760 2010-03-23] ()
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [106256 2013-12-20] (BlueStack Systems)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S1 Changer; C:\WINDOWS\system32\Drivers\Changer.sys [8192 2008-04-14] (Microsoft Corporation)
S3 Dot4Scan; C:\WINDOWS\System32\DRIVERS\Dot4Scan.sys [8704 2001-08-17] (Microsoft Corporation)
R1 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [242240 2013-08-16] (DT Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [206312 2016-04-14] (ESET)
R1 ehdrv; C:\WINDOWS\System32\DRIVERS\ehdrv.sys [146024 2016-04-14] (ESET)
R2 ekbdflt; C:\WINDOWS\System32\DRIVERS\ekbdflt.sys [111040 2016-04-14] (ESET)
R1 epfw; C:\WINDOWS\System32\DRIVERS\epfw.sys [152728 2016-04-14] (ESET)
R3 Epfwndis; C:\WINDOWS\System32\DRIVERS\Epfwndis.sys [47168 2016-04-14] (ESET)
R1 epfwtdi; C:\WINDOWS\System32\DRIVERS\epfwtdi.sys [69816 2016-04-14] (ESET)
S3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 HPFXBULK; C:\WINDOWS\System32\drivers\hpfxbulk.sys [9344 2007-07-06] (Hewlett Packard)
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49920 2005-10-21] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2005-10-21] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2005-10-21] (HP)
R0 imagedrv; C:\WINDOWS\System32\Drivers\imagedrv.sys [5888 2005-09-01] (Ahead Software AG) [File not signed]
R0 imagesrv; C:\WINDOWS\System32\DRIVERS\imagesrv.sys [127488 2005-09-01] (Ahead Software AG) [File not signed]
R3 irsir; C:\WINDOWS\System32\DRIVERS\irsir.sys [18688 2001-08-17] (Microsoft Corporation)
S1 lbrtfdc; C:\WINDOWS\system32\Drivers\lbrtfdc.sys [34688 2008-04-14] (Toshiba Corp.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [25888 2010-03-23] ()
R3 MarvinBus; C:\WINDOWS\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
S3 MREMP50; C:\Program Files\Common Files\Motive\mremp50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\mresp50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-14] (Microsoft Corporation)
S3 nmwcd; C:\WINDOWS\System32\drivers\nmwcd.sys [137216 2007-02-22] (Nokia) [File not signed]
S3 nmwcdc; C:\WINDOWS\System32\drivers\nmwcdc.sys [8320 2007-02-22] (Nokia) [File not signed]
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54784 2008-08-01] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [145952 2008-08-18] (NVIDIA Corporation)
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2008-08-01] (NVIDIA Corporation)
R1 PCLEPCI; C:\WINDOWS\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R1 prodrv06; C:\WINDOWS\System32\drivers\prodrv06.sys [53920 2004-08-09] (Protection Technology) [File not signed]
R0 prohlp02; C:\WINDOWS\System32\drivers\prohlp02.sys [114016 2004-08-09] (Protection Technology) [File not signed]
R0 prosync1; C:\WINDOWS\System32\drivers\prosync1.sys [7040 2004-07-19] (Protection Technology) [File not signed]
R3 Rasirda; C:\WINDOWS\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation)
S3 RT80x86; C:\WINDOWS\System32\DRIVERS\RT2860.sys [1069824 2009-10-07] (Ralink Technology, Corp.) [File not signed]
S3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
S3 s3legacy; C:\WINDOWS\System32\DRIVERS\s3legacy.sys [65664 2001-08-17] (Microsoft Corporation)
R2 Scutum50; C:\WINDOWS\System32\Drivers\Scutum50.sys [19072 2009-10-07] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
R0 sfdrv01; C:\WINDOWS\System32\drivers\sfdrv01.sys [50688 2005-08-10] (Protection Technology) [File not signed]
R0 sfdrv01a; C:\WINDOWS\System32\drivers\sfdrv01a.sys [63352 2006-07-05] (Protection Technology (StarForce))
R0 sfdrv02; C:\WINDOWS\System32\drivers\sfdrv02.sys [67960 2006-09-11] (Protection Technology (StarForce))
R0 sfhlp01; C:\WINDOWS\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) [File not signed]
R0 sfsync05; C:\WINDOWS\System32\drivers\sfsync05.sys [59776 2006-08-11] (Protection Technology (StarForce))
R0 sfvfs02; C:\WINDOWS\System32\drivers\sfvfs02.sys [82296 2007-01-12] (Protection Technology (StarForce))
S0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2010-02-16] (Duplex Secure Ltd.)
U3 TrueSight; C:\WINDOWS\system32\drivers\TrueSight.sys [24688 2016-08-17] ()
R3 vmfilter323; C:\WINDOWS\System32\drivers\vmfilter323.sys [476672 2006-08-08] (Vimicro Corporation)
S3 wceusbsh; C:\WINDOWS\System32\DRIVERS\wceusbsh.sys [31744 2008-04-14] (Microsoft Corporation)
R3 ZSMC326; C:\WINDOWS\System32\Drivers\usbvm323.sys [260096 2006-12-28] (Vimicro Corporation)
S0 32631065; system32\DRIVERS\32631065.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-26 10:41 - 2016-09-26 10:42 - 00017455 _____ C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2016-09-26 10:41 - 2016-09-26 10:41 - 00000000 ____D C:\FRST
2016-09-26 10:39 - 2016-09-26 10:40 - 01753600 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2016-09-24 12:07 - 2016-09-26 08:04 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-09-22 21:26 - 2016-09-22 21:26 - 01015476 _____ C:\Documents and Settings\Uživatel\Plocha\Habermanni, Klátovec a kovárna patří k sobě - Jihlavský deník.htm
2016-09-22 21:26 - 2016-09-22 21:26 - 00000000 ____D C:\Documents and Settings\Uživatel\Plocha\Habermanni, Klátovec a kovárna patří k sobě - Jihlavský deník_soubory
2016-09-21 09:50 - 2016-09-21 09:50 - 00086528 _____ C:\WINDOWS\bnetunin.exe
2016-09-21 09:50 - 2016-09-21 09:50 - 00061440 _____ C:\WINDOWS\diabswun.exe
2016-09-21 08:10 - 2016-09-21 08:10 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Blizzard Entertainment
2016-09-20 19:57 - 2016-09-20 19:57 - 00000047 _____ C:\Documents and Settings\Uživatel\Plocha\Zobcová flétna - první kroky hry na zobcovou flétnu.URL
2016-09-20 19:56 - 2016-09-20 19:56 - 00000085 _____ C:\Documents and Settings\Uživatel\Plocha\Jak hrát na zobcovou flétnu – wikiHow.URL
2016-09-20 14:03 - 2016-09-20 14:03 - 00000000 ____D C:\Documents and Settings\Uživatel\Nabídka Start\Programy\partypoker
2016-09-20 14:03 - 2016-09-20 14:03 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\CEF
2016-09-20 14:03 - 2016-09-20 14:03 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\cef3-cache
2016-09-14 13:57 - 2016-09-26 10:31 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-09-14 13:57 - 2016-09-20 14:03 - 00796352 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-09-14 13:57 - 2016-09-20 14:03 - 00142528 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-09-14 13:36 - 2016-09-26 10:27 - 00000882 _____ C:\Documents and Settings\All Users\Plocha\Revo Uninstaller.lnk
2016-09-14 13:36 - 2016-09-26 10:27 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Revo Uninstaller
2016-09-14 13:36 - 2016-09-14 13:36 - 00000000 ____D C:\Program Files\VS Revo Group
2016-09-13 17:36 - 2016-09-13 17:36 - 06502080 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2016-09-13 13:40 - 2016-09-13 13:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Package Cache
2016-09-13 13:36 - 2016-09-13 13:36 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\Exec
2016-09-12 11:41 - 2016-09-12 11:41 - 00860862 _____ C:\Documents and Settings\Uživatel\Plocha\voucher-NAK00203xetqqsmf.pdf
2016-09-12 10:50 - 2016-09-12 10:50 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity
2016-09-11 11:28 - 2016-09-11 11:28 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikac�eoComply
2016-09-11 11:28 - 2016-09-11 11:28 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikac�
2016-09-11 11:17 - 2016-09-11 11:17 - 00000000 ____D C:\Documents and Settings\Uživatel\.oracle_jre_usage
2016-09-11 10:07 - 2016-09-11 10:07 - 00000000 __SHD C:\Documents and Settings\Uživatel\IECompatCache
2016-09-09 11:59 - 2016-09-09 11:59 - 00000803 _____ C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Internet Explorer.lnk
2016-09-09 11:57 - 2016-09-09 11:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2467659$
2016-09-09 11:56 - 2016-09-09 11:58 - 00000000 ___HD C:\WINDOWS\msdownld.tmp
2016-09-09 11:50 - 2016-09-09 11:56 - 00000000 __HDC C:\WINDOWS\ie8
2016-09-04 17:52 - 2016-09-04 17:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Sophos
2016-09-03 10:49 - 2016-09-11 10:08 - 00000099 _____ C:\Documents and Settings\Uživatel\Plocha\Farmapark - celodenní vstup pro rodinu Nakupvakci.cz.URL
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-26 10:42 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\temp
2016-09-26 10:41 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Plocha
2016-09-26 10:39 - 2013-05-29 11:45 - 00029888 _____ C:\WINDOWS\system32\nvAppTimestamps
2016-09-26 10:28 - 2007-04-10 20:23 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2016-09-26 10:27 - 2007-04-10 20:23 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2016-09-26 07:37 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\UpdatusUser\Local Settings\temp
2016-09-26 07:34 - 2007-04-10 18:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-09-25 23:22 - 2014-04-10 12:45 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\vlc
2016-09-25 23:22 - 2011-09-24 07:01 - 00032614 _____ C:\WINDOWS\SchedLgU.Txt
2016-09-25 23:22 - 2007-04-10 19:09 - 00000272 ___SH C:\Documents and Settings\Uživatel\ntuser.ini
2016-09-25 21:05 - 2008-06-06 11:56 - 00001517 _____ C:\WINDOWS\system32\sun_debug.txt
2016-09-25 21:05 - 2008-06-06 11:56 - 00000021 _____ C:\WINDOWS\system32\sun_debug1.txt
2016-09-25 18:30 - 2008-12-19 12:27 - 00000000 __SHD C:\WINDOWS\CSC
2016-09-24 11:10 - 2001-10-25 14:00 - 00002228 _____ C:\WINDOWS\system32\wpa.dbl
2016-09-22 23:42 - 2012-11-04 02:52 - 08252736 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1292428093-1965331169-725345543-1003-0.dat
2016-09-22 23:42 - 2012-11-04 02:52 - 00313846 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
2016-09-22 15:34 - 2007-04-10 19:09 - 00000000 ____D C:\Documents and Settings\Uživatel
2016-09-22 15:22 - 2008-04-22 19:43 - 00000000 ____D C:\WINDOWS\Minidump
2016-09-22 14:49 - 2012-11-03 15:57 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\firebird
2016-09-21 14:14 - 2007-04-26 20:26 - 00000116 _____ C:\WINDOWS\NeroDigital.ini
2016-09-21 12:39 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Nabídka Start\Programy
2016-09-21 09:45 - 2007-04-10 20:23 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2016-09-21 09:43 - 2007-04-10 19:09 - 00000000 __RHD C:\Documents and Settings\Uživatel\Data aplikací
2016-09-21 09:43 - 2007-04-10 19:09 - 00000000 ___HD C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2016-09-21 08:09 - 2010-03-17 17:18 - 00000000 ___HD C:\Documents and Settings\All Users\Data aplikací\Blizzard Entertainment
2016-09-20 14:03 - 2013-10-20 09:10 - 00000000 ____D C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Games
2016-09-20 14:03 - 2011-06-23 19:10 - 00000691 _____ C:\Documents and Settings\Uživatel\Nabídka Start\partypoker.lnk
2016-09-20 14:03 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Nabídka Start
2016-09-20 14:01 - 2007-04-10 18:40 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-09-14 13:58 - 2014-08-30 12:51 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Adobe
2016-09-13 13:41 - 2016-07-04 13:22 - 00001803 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Bontia Studio.lnk
2016-09-13 13:41 - 2016-07-04 13:22 - 00001797 _____ C:\Documents and Settings\All Users\Plocha\Bontia Studio.lnk
2016-09-12 11:25 - 2010-02-16 11:28 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\DAEMON Tools Lite
2016-09-12 11:04 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\Administrator\Local Settings\temp
2016-09-12 11:03 - 2010-04-08 14:24 - 00000178 ___SH C:\Documents and Settings\Administrator\ntuser.ini
2016-09-12 10:53 - 2012-10-11 19:57 - 00000000 ____D C:\Program Files\Seznam.cz
2016-09-12 10:52 - 2007-08-22 09:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google
2016-09-12 10:52 - 2007-08-21 16:45 - 00000000 ____D C:\Program Files\Google
2016-09-12 10:52 - 2007-08-21 16:45 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Google
2016-09-12 00:49 - 2007-04-10 20:20 - 00000000 ___HD C:\WINDOWS\inf
2016-09-11 11:28 - 2007-04-10 20:23 - 00000000 ____D C:\Documents and Settings\All Users
2016-09-09 19:45 - 2010-02-22 20:44 - 00000292 _____ C:\WINDOWS\system32\secustat.dat
2016-09-09 19:45 - 2009-11-09 17:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\BITS
2016-09-09 12:25 - 2011-12-11 16:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\ESET
2016-09-09 11:59 - 2007-04-10 20:20 - 00000000 RSHDC C:\WINDOWS\system32\dllcache
2016-09-09 11:59 - 2007-04-10 20:20 - 00000000 ____D C:\WINDOWS\Help
2016-09-09 11:59 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Dokumenty\Obrázky
2016-09-09 11:59 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Dokumenty\Hudba
2016-09-09 11:59 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Dokumenty
2016-09-09 11:57 - 2007-04-10 19:54 - 00000000 ___HD C:\WINDOWS\$hf_mig$
2016-09-09 11:24 - 2007-04-11 06:00 - 144884648 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-09 11:12 - 2014-07-28 23:33 - 00000000 ____D C:\WINDOWS\ie8updates
2016-09-04 14:32 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění
2016-09-01 22:14 - 2007-04-10 19:22 - 00113280 _____ C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
2016-09-01 22:03 - 2007-04-10 20:23 - 00365712 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-08-30 15:32 - 2007-04-11 22:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\Mozilla
2016-08-30 14:41 - 2014-02-03 00:46 - 00704168 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
2016-08-30 14:41 - 2007-04-10 19:09 - 00000000 ___HD C:\Documents and Settings\LocalService\Local Settings\Data aplikací
2016-08-30 09:41 - 2012-02-27 15:43 - 00000349 _____ C:\Documents and Settings\All Users\Dokumenty\PCLECHAL.INI
==================== Files in the root of some directories =======
2007-11-28 16:49 - 2014-11-29 20:30 - 0022328 _____ () C:\Documents and Settings\Uživatel\Data aplikací\PnkBstrK.sys
2010-01-26 18:27 - 2010-01-26 18:27 - 0175104 _____ () C:\Documents and Settings\Uživatel\Data aplikací\SQLite3.dll
2016-03-07 17:58 - 2016-08-23 16:20 - 0010752 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2007-04-11 07:28 - 2007-04-11 07:28 - 0000128 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\fusioncache.dat
2011-01-18 12:17 - 2013-05-29 15:37 - 0001200 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\SRDownloader.nast
2009-05-11 19:59 - 2009-05-11 19:59 - 0000346 ____H () C:\Documents and Settings\All Users\Data aplikací\hpzinstall.log
2011-07-18 19:32 - 2011-12-11 12:15 - 0000012 ____H () C:\Documents and Settings\All Users\Data aplikací\ReminderNextRun
Some files in TEMP:
====================
C:\Documents and Settings\Uživatel\Local Settings\temp\VSUSetup.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
Re: Prosím o kontrolu logu - "chroupe"
Prosím o upřesnění, kde na stránce https://support.mozilla.org/cs/kb/prehr ... e-firefoxu najdu, jak nainstalovat HTML5 ??? Nikde to nemůžu najít. Děkuji
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43287
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu - "chroupe"
Co si to najít?
https://www.google.cz/search?q=st%C3%A1 ... Dz-oA9v08k
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému
Toto otestuj na Virustotal
C:\WINDOWS\bnetunin.exe
C:\WINDOWS\diabswun.exe
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Nebo na:
http://www.virscan.org/
$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM [85]
tohle znáš? Je to na ploše..
https://www.google.cz/search?q=st%C3%A1 ... Dz-oA9v08k
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Start
CloseProcesses:
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
IE restricted site: HKU\.DEFAULT\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\.DEFAULT\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\.DEFAULT\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\.DEFAULT\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\.DEFAULT\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\.DEFAULT\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\.DEFAULT\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\.DEFAULT\...\2020search.com -> www.2020search.com
IE restricted site: HKU\.DEFAULT\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\.DEFAULT\...\2211.net -> wwww.2211.net
IE restricted site: HKU\.DEFAULT\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\.DEFAULT\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\.DEFAULT\...\24teen.com -> www.24teen.com
IE restricted site: HKU\.DEFAULT\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\.DEFAULT\...\2search.com -> feeds.2search.com
IE restricted site: HKU\.DEFAULT\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\.DEFAULT\...\2squared.com -> www.2squared.com
IE restricted site: HKU\.DEFAULT\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\.DEFAULT\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\.DEFAULT\...\36site.com -> www.36site.com
There are 4084 more sites.
IE restricted site: HKU\S-1-5-19\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-19\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-19\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-19\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-19\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-19\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-19\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-19\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-19\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-19\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-19\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-19\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-19\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-19\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-19\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-19\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-19\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-19\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-19\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-19\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE restricted site: HKU\S-1-5-20\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-20\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-20\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-20\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-20\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-20\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-20\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-20\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-20\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-20\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-20\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-20\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-20\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-20\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-20\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-20\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-20\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-20\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-20\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-20\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\kuaiche.com -> hxxp://software.kuaiche.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2squared.com -> www.2squared.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\36site.com -> www.36site.com
There are 4082 more sites.
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com
There are 4104 more sites.
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
S0 32631065; system32\DRIVERS\32631065.sys [X]
C:\WINDOWS\msdownld.tmp
C:\Documents and Settings\Uživatel\Local Settings\temp\VSUSetup.exe
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému
Toto otestuj na Virustotal
C:\WINDOWS\bnetunin.exe
C:\WINDOWS\diabswun.exe
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Nebo na:
http://www.virscan.org/
$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM [85]
tohle znáš? Je to na ploše..
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu - "chroupe"
Fix result of Farbar Recovery Scan Tool (x86) Version: 28-09-2016
Ran by Uživatel (30-09-2016 12:47:37) Run:1
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profiles: Uživatel & UpdatusUser (Available Profiles: Uživatel & UpdatusUser & Administrator)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
IE restricted site: HKU\.DEFAULT\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\.DEFAULT\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\.DEFAULT\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\.DEFAULT\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\.DEFAULT\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\.DEFAULT\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\.DEFAULT\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\.DEFAULT\...\2020search.com -> www.2020search.com
IE restricted site: HKU\.DEFAULT\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\.DEFAULT\...\2211.net -> wwww.2211.net
IE restricted site: HKU\.DEFAULT\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\.DEFAULT\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\.DEFAULT\...\24teen.com -> www.24teen.com
IE restricted site: HKU\.DEFAULT\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\.DEFAULT\...\2search.com -> feeds.2search.com
IE restricted site: HKU\.DEFAULT\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\.DEFAULT\...\2squared.com -> www.2squared.com
IE restricted site: HKU\.DEFAULT\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\.DEFAULT\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\.DEFAULT\...\36site.com -> www.36site.com
There are 4084 more sites.
IE restricted site: HKU\S-1-5-19\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-19\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-19\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-19\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-19\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-19\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-19\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-19\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-19\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-19\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-19\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-19\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-19\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-19\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-19\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-19\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-19\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-19\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-19\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-19\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE restricted site: HKU\S-1-5-20\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-20\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-20\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-20\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-20\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-20\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-20\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-20\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-20\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-20\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-20\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-20\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-20\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-20\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-20\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-20\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-20\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-20\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-20\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-20\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\kuaiche.com -> hxxp://software.kuaiche.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2squared.com -> www.2squared.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\36site.com -> www.36site.com
There are 4082 more sites.
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com
There are 4104 more sites.
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
S0 32631065; system32\DRIVERS\32631065.sys [X]
C:\WINDOWS\msdownld.tmp
C:\Documents and Settings\Uživatel\Local Settings\temp\VSUSetup.exe
EmptyTemp:
End
*****************
Processes closed successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => moved successfully
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2squared.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\3322.org" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\365soft.info" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\36site.com" => key removed successfully.
There are 4084 more sites. => Error: No automatic fix found for this entry.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2every.net" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
There are 4107 more sites. => Error: No automatic fix found for this entry.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2every.net" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
There are 4107 more sites. => Error: No automatic fix found for this entry.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\kuaiche.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2squared.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\3322.org" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\365soft.info" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\36site.com" => key removed successfully.
There are 4082 more sites. => Error: No automatic fix found for this entry.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123topsearch.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\132.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\136136.net => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\163ns.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\17-plus.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\171203.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1800searchonline.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com => key not found.
There are 4104 more sites. => Error: No automatic fix found for this entry.
Could not restore Default URLSearchHook.
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
32631065 => service removed successfully.
C:\WINDOWS\msdownld.tmp => moved successfully
C:\Documents and Settings\Uživatel\Local Settings\temp\VSUSetup.exe => moved successfully
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache => 59929 B
Java, Flash, Steam htmlcache => 2193 B
Windows/system/dllcache/drivers => 0 B
Edge => 0 B
Chrome => 0 B
Firefox => 376704423 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default User => 0 B
All Users => 0 B
systemprofile => 180 B
LocalService => 692 B
NetworkService => 66228 B
Uživatel => 61453685 B
UpdatusUser => 0 B
UpdatusUser => 0 B
Administrator => 66228 B
RecycleBin => 4408609 B
EmptyTemp: => 422.3 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 12:49:25 ====
Ran by Uživatel (30-09-2016 12:47:37) Run:1
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profiles: Uživatel & UpdatusUser (Available Profiles: Uživatel & UpdatusUser & Administrator)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
IE restricted site: HKU\.DEFAULT\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\.DEFAULT\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\.DEFAULT\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\.DEFAULT\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\.DEFAULT\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\.DEFAULT\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\.DEFAULT\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\.DEFAULT\...\2020search.com -> www.2020search.com
IE restricted site: HKU\.DEFAULT\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\.DEFAULT\...\2211.net -> wwww.2211.net
IE restricted site: HKU\.DEFAULT\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\.DEFAULT\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\.DEFAULT\...\24teen.com -> www.24teen.com
IE restricted site: HKU\.DEFAULT\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\.DEFAULT\...\2search.com -> feeds.2search.com
IE restricted site: HKU\.DEFAULT\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\.DEFAULT\...\2squared.com -> www.2squared.com
IE restricted site: HKU\.DEFAULT\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\.DEFAULT\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\.DEFAULT\...\36site.com -> www.36site.com
There are 4084 more sites.
IE restricted site: HKU\S-1-5-19\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-19\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-19\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-19\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-19\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-19\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-19\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-19\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-19\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-19\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-19\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-19\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-19\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-19\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-19\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-19\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-19\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-19\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-19\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-19\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE restricted site: HKU\S-1-5-20\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-20\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-20\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-20\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-20\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-20\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-20\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-20\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-20\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-20\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-20\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-20\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-20\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-20\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-20\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-20\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-20\...\2every.net -> www.2every.net
IE restricted site: HKU\S-1-5-20\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-20\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-20\...\2search.org -> feeds2.2search.org
There are 4107 more sites.
IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\kuaiche.com -> hxxp://software.kuaiche.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1gb.ru -> people.1gb.ru
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1sexparty.com -> www.1sexparty.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stantivirus.com -> www.1stantivirus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stpagehere.com -> www.1stpagehere.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1stsearchportal.com -> www.1stsearchportal.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2006ooo.com -> www.2006ooo.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2007-download.com -> www.2007-download.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2020search.com -> www.2020search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\20x2p.com -> 20x2p.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2211.net -> wwww.2211.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7pharmacy.info -> www.24-7pharmacy.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24-7searching-and-more.com -> www.24-7searching-and-more.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\24teen.com -> www.24teen.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2ndpower.com -> 2ndpower.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.com -> feeds.2search.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2search.org -> feeds2.2search.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\2squared.com -> www.2squared.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\3322.org -> dedmazay.3322.org
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\365soft.info -> 181.365soft.info
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\36site.com -> www.36site.com
There are 4082 more sites.
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com
There are 4104 more sites.
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
S0 32631065; system32\DRIVERS\32631065.sys [X]
C:\WINDOWS\msdownld.tmp
C:\Documents and Settings\Uživatel\Local Settings\temp\VSUSetup.exe
EmptyTemp:
End
*****************
Processes closed successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => moved successfully
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2squared.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\3322.org" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\365soft.info" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\36site.com" => key removed successfully.
There are 4084 more sites. => Error: No automatic fix found for this entry.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2every.net" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
There are 4107 more sites. => Error: No automatic fix found for this entry.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2every.net" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
There are 4107 more sites. => Error: No automatic fix found for this entry.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\kuaiche.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1gb.ru" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1sexparty.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stantivirus.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stpagehere.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1stsearchportal.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2006ooo.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2007-download.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2020search.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\20x2p.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2211.net" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7pharmacy.info" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24-7searching-and-more.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\24teen.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2ndpower.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2search.org" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\2squared.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\3322.org" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\365soft.info" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\36site.com" => key removed successfully.
There are 4082 more sites. => Error: No automatic fix found for this entry.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123topsearch.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\132.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\136136.net => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\163ns.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\17-plus.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\171203.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1800searchonline.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com => key not found.
There are 4104 more sites. => Error: No automatic fix found for this entry.
Could not restore Default URLSearchHook.
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
32631065 => service removed successfully.
C:\WINDOWS\msdownld.tmp => moved successfully
C:\Documents and Settings\Uživatel\Local Settings\temp\VSUSetup.exe => moved successfully
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache => 59929 B
Java, Flash, Steam htmlcache => 2193 B
Windows/system/dllcache/drivers => 0 B
Edge => 0 B
Chrome => 0 B
Firefox => 376704423 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default User => 0 B
All Users => 0 B
systemprofile => 180 B
LocalService => 692 B
NetworkService => 66228 B
Uživatel => 61453685 B
UpdatusUser => 0 B
UpdatusUser => 0 B
Administrator => 66228 B
RecycleBin => 4408609 B
EmptyTemp: => 422.3 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 12:49:25 ====
Re: Prosím o kontrolu logu - "chroupe"
$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM [85]
tohle znáš? Je to na ploše..
- nevím, o co jde
tohle znáš? Je to na ploše..
- nevím, o co jde
Re: Prosím o kontrolu logu - "chroupe"
Flash jsem smazal, HTML5 nainstaloval, ale teď nevím kde co jak nastavit, aby FF otvíral videa za pomoci HTML. Nikde jsem nic nenašel 

- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43287
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu - "chroupe"
Stačí vyzkoušet , mělo by to chodit samo , bez nastavování.
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Co jiné problémy?
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Start
CloseProcesses:
C:\WINDOWS\bnetunin.exe
AlternateDataStreams: C:\Documents and Settings\All Users\Plocha:$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM [85]
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Co jiné problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 39 hostů