Prosím o kontrolu Logu mám asi šmejda Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 08 lis 2009 10:12

Odinstaluj:
avast!
Spyware Terminator
Spybot-S&D


Znovu:

Stáhni si ToolsCleaner2( by de A.Rothstein & Dj Quiou )

na plochu a spusť ho.
Klikni na Pt. Restauration (obnova) a poté na OK.
Klikni na Corbeille (koš) a poté na OK.
Klikni na Fichiers temp (temp složky) a poté na OK.
Klikni na Recherche (hledání) a nech Cleaner pracovat. Může se během čištění zastavit , ale nech ho pokračovat.
Když program skončí , klikni na Suppression (odstranění)a odstraň nalezené.
Zavři program.
Program maže i všechny nástroje na odvirování a vytváření logů , které se zde používají (HJT, Combofix, OTM, OTL, OTS atd.)


Stáhni si Security Check by screen317 z některého odkazu
http://screen317.spywareinfoforum.org/SecurityCheck.exe
http://screen317.changelog.fr/SecurityCheck.exe

ulož si ho na plochu, poklepej na něj a postupuj podle instrukcí v černém okně. Potom se automaticky otevře pozn. Blok, bude mít název checkup.txt. Jeho obsah sem prosím zkopíruj.


Stáhni si program OTM (by OldTimer)
http://www.edisk.cz/stahni/07995/OTMove ... .39KB.html
a ulož si ho na disk C a spusť ho.
- Do levého sloupce (Paste Instructions for Items to be Moved) zkopíruj tyto cesty:
Poznámka: Nepoužij k označení funkci VYBRAT VŠE

Kód: Vybrat vše

:Processes
explorer.exe

:Services
aifo5a61;aifo5a61
aifo5a61

:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d4c13f8c-2dae-11de-80eb-001fd055266f}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveSearch"=-
"HonorAutoRunSetting"=-

:Files
C:\WINDOWS\system32\drivers\aifo5a61.sys
C:\32788R22FWJFW
C:\32788R22FWJFW.0.tmp
C:\32788R22FWJFW(2)

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


- Po zkopírování klikni na tlačítko MoveIt! a vlož sem následně celý obsah z pravého sloupce, jinak uložený ve složce C:\_OTMoveIt\MovedFiles\, který bude informovat o výsledcích
- Je možné, že pokud nebudou moci být soubory odstraněny, budeš dotázán na restart počítače, v tom případě restart potvrď.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 10:28

Spyware Terminator namůžu odstranit ani v nouzovém režimu.Nemá uninstall.
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 08 lis 2009 10:46

Nemáš ho v přidat/odebrat programy ani v CCleaneru (nástroje)?

Tak ho nainstaluj znovu a pak zase odinstaluj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 11:12

Results of screen317's Security Check version 0.99.0
Windows XP Service Pack 3
``````````````````````````````
Antivirus/Firewall Check:

Windows Security Center service is not running! This report may not be accurate!
DesetiPrsty5 5.3
Antivirus up to date! (On Access scanning disabled!)
``````````````````````````````
Anti-malware/Other Utilities Check:

Trojan Remover 6.7.5
TuneUp Utilities 2008
CCleaner (remove only)
SuperCleaner
TweakNow RegCleaner Standard
Java(TM) 6 Update 13
Java(TM) 6 Update 7
Out of date Java installed!
Adobe Flash Player 10
Adobe Reader 8 - Czech
Out of date Adobe Reader installed!
``````````````````````````````
Process Check:
objlist.exe by Laurent

Alwil Software Avast4 aswUpdSv.exe
Alwil Software Avast4 ashServ.exe
Alwil Software Avast4 ashDisp.exe
Comodo Firewall cmdagent.exe
``````````````````````````````
DNS Vulnerability Check:

GREAT! (Not vulnerable to DNS cache poisoning)

`````````End of Log```````````
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 11:21

========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Service\Driver aifo5a61;aifo5a61 not found.
Service\Driver aifo5a61;aifo5a61 not found.
Service\Driver aifo5a61 not found.
Service\Driver key aifo5a61 deleted successfully.
========== REGISTRY ==========
Registry key

HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints

2\{d4c13f8c-2dae-11de-80eb-001fd055266f}\\ deleted successfully.
Registry value

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer\\

NoResolveSearch deleted successfully.
Registry value

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer\\

HonorAutoRunSetting deleted successfully.
========== FILES ==========
File/Folder C:\WINDOWS\system32\drivers\aifo5a61.sys not found.
C:\32788R22FWJFW\License moved successfully.
C:\32788R22FWJFW\EN-US moved successfully.
Folder move failed. C:\32788R22FWJFW scheduled to be moved on reboot.
C:\32788R22FWJFW.0.tmp\License moved successfully.
C:\32788R22FWJFW.0.tmp\EN-US moved successfully.
Folder move failed. C:\32788R22FWJFW.0.tmp scheduled to be moved on reboot.
C:\32788R22FWJFW(2)\License(2) moved successfully.
C:\32788R22FWJFW(2) moved successfully.
========== COMMANDS ==========
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Temporary

Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local

Settings\Temp\Temporary Internet Files\Content.IE5\index.dat scheduled to be

deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local

Settings\Temp\History\History.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local

Settings\Temp\Cookies\index.dat scheduled to be deleted on reboot.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
File delete failed. C:\Documents and Settings\NetworkService\Local

Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted

on reboot.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_6cc.dat scheduled to be

deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_704.dat scheduled to be

deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\E4009E29d01 scheduled

to be deleted on reboot.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_001_ scheduled

to be deleted on reboot.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_002_ scheduled

to be deleted on reboot.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_003_ scheduled

to be deleted on reboot.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_MAP_ scheduled

to be deleted on reboot.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\urlclassifier3.sqlite

scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\XUL.mfl scheduled to be

deleted on reboot.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully

OTM by OldTimer - Version 2.1.0.1 log created on 11082009_111505

Files moved on Reboot...
Folder move failed. C:\32788R22FWJFW scheduled to be moved on reboot.
Folder move failed. C:\32788R22FWJFW.0.tmp scheduled to be moved on reboot.
File C:\WINDOWS\temp\Perflib_Perfdata_6cc.dat not found!
File C:\WINDOWS\temp\Perflib_Perfdata_704.dat not found!
File move failed. C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\E4009E29d01 scheduled

to be moved on reboot.
C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_001_ moved

successfully.
C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_002_ moved

successfully.
C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_003_ moved

successfully.
C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\Cache\_CACHE_MAP_ moved

successfully.
C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\urlclassifier3.sqlite moved

successfully.
C:\Documents and Settings\Milan\Local Settings\Data

aplikací\Mozilla\Firefox\Profiles\tvro34im.default\XUL.mfl moved successfully.

Registry entries deleted on Reboot...
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 08 lis 2009 13:20

Máš tam tedy jen Comodo firewall..
Můžeš ponechat Avast.

Aktualizuj javu:
Java SE Runtime Environment 6u16
Vyber OS ( předpokládám Windows), dej zatržítko agree-continue
Vyber:
Windows Offline Installation
jre-6u16-windows-i586-p.exe
Ostatní javy odeber v přidat/odebrat programy.

Zkus znovu Combofix, jsem na odchodu , takže večer.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 14:30

Combo fix nejde spustit a tak to udělám OTL jak již jednou podle návodo a vložím log.
OTL logfile created on: 8.11.2009 14:18:45 - Run 2
OTL by OldTimer - Version 3.1.4.0 Folder = C:\Documents and Settings\Milan\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,49 Gb Available Physical Memory | 74,48% Memory free
3,85 Gb Paging File | 3,39 Gb Available in Paging File | 88,17% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 131,07 Gb Free Space | 43,97% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: SESTAVA-24433
Current User Name: Milan
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Milan\Plocha\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
PRC - C:\WINDOWS\system32\PnkBstrB.exe ()
PRC - C:\WINDOWS\system32\PnkBstrA.exe ()
PRC - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (COMODO)
PRC - C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
PRC - C:\Program Files\Spyware Terminator\sp_rsser.exe (Crawler.com)
PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
PRC - C:\WINDOWS\RTHDCPL.exe (Realtek Semiconductor Corp.)
PRC - C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
PRC - C:\WINDOWS\system32\HDDSvc.exe (AltrixSoft (http://www.altrixsoft.com/))
PRC - C:\WINDOWS\system32\oodag.exe (O&O Software GmbH)
PRC - C:\Genius\ioCentre\gKbdTask.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gAutoScroll.exe ()
PRC - C:\Genius\ioCentre\gTaskBar.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gMouseTask.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gDeskMgm.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gZoom.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gTaskSwitch.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gMGlass.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gIMMgm.exe (TODO: <Company name>)
PRC - C:\Genius\ioCentre\gAutoPan.exe (TODO: <Company name>)
PRC - C:\WINDOWS\system32\PSIService.exe ()


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Milan\Plocha\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\system32\guard32.dll (COMODO)
MOD - C:\WINDOWS\system32\wbem\framedyn.dll (Microsoft Corporation)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (JavaQuickStarterService) -- C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (PnkBstrB) -- C:\WINDOWS\system32\PnkBstrB.exe ()
SRV - (PnkBstrA) -- C:\WINDOWS\system32\PnkBstrA.exe ()
SRV - (cmdAgent) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (COMODO)
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
SRV - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
SRV - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
SRV - (aswUpdSv) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia.)
SRV - (gupdate1c9cdab48401712) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (ACDaemon) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (odserv) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (TuneUp.Defrag) -- C:\WINDOWS\system32\TuneUpDefragService.exe (TuneUp Software GmbH)
SRV - (sp_rssrv) -- C:\Program Files\Spyware Terminator\sp_rsser.exe (Crawler.com)
SRV - (FontCache3.0.0.0) -- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (idsvc) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (aspnet_state) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (UleadBurningHelper) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
SRV - (helpsvc) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll (Microsoft Corporation)
SRV - (NVSvc) -- C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
SRV - (LightScribeService) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
SRV - (UxTuneUp) -- C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software GmbH)
SRV - (rpcapd) -- C:\Program Files\WinPcap\rpcapd.exe (CACE Technologies)
SRV - (HDDSvc) -- C:\WINDOWS\system32\HDDSvc.exe (AltrixSoft (http://www.altrixsoft.com/))
SRV - (O&O Defrag) -- C:\WINDOWS\system32\oodag.exe (O&O Software GmbH)
SRV - (WMPNetworkSvc) -- C:\Program Files\Windows Media Player\WMPNetwk.exe (Microsoft Corporation)
SRV - (gusvc) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (ProtexisLicensing) -- C:\WINDOWS\system32\PSIService.exe ()
SRV - (ose) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (IDriverT) -- C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (Pml Driver HPZ12) -- C:\WINDOWS\system32\hpzipm12.exe (HP)


========== Driver Services (SafeList) ==========

DRV - (pcouffin) -- C:\WINDOWS\system32\drivers\pcouffin.sys (VSO Software)
DRV - (Inspect) -- C:\WINDOWS\System32\DRIVERS\inspect.sys (COMODO)
DRV - (cmdGuard) -- C:\WINDOWS\system32\drivers\cmdguard.sys (COMODO)
DRV - (cmdHlp) -- C:\WINDOWS\system32\drivers\cmdhlp.sys (COMODO)
DRV - (aswMon2) -- C:\WINDOWS\system32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswSP) -- C:\WINDOWS\system32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswFsBlk) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - (aswTdi) -- C:\WINDOWS\system32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswRdr) -- C:\WINDOWS\system32\drivers\aswRdr.sys (ALWIL Software)
DRV - (Aavmker4) -- C:\WINDOWS\system32\drivers\aavmker4.sys (ALWIL Software)
DRV - (sptd) -- C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (UsbserFilt) -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys (Nokia)
DRV - (upperdev) -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys (Nokia)
DRV - (nmwcdc) -- C:\WINDOWS\system32\drivers\ccdcmbo.sys (Nokia)
DRV - (nmwcd) -- C:\WINDOWS\system32\drivers\ccdcmb.sys (Nokia)
DRV - (bbcap) -- C:\WINDOWS\system32\drivers\bbcap.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (atksgt) -- C:\WINDOWS\system32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\WINDOWS\system32\drivers\lirsgt.sys ()
DRV - (AFS2K) -- C:\WINDOWS\system32\drivers\AFS2K.SYS (Oak Technology Inc.)
DRV - (sp_rsdrv2) -- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys ()
DRV - (gdrv) -- C:\WINDOWS\gdrv.sys (Windows (R) 2000 DDK provider)
DRV - (pccsmcfd) -- C:\WINDOWS\system32\drivers\pccsmcfd.sys (Nokia)
DRV - ({FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}) -- C:\Program Files\CyberLink\PowerDVD8\000.fcl (Cyberlink Corp.)
DRV - (usbser) -- C:\WINDOWS\system32\drivers\usbser.sys (Microsoft Corporation)
DRV - (nm) -- C:\WINDOWS\system32\drivers\nmnt.sys (Microsoft Corporation)
DRV - (Secdrv) -- C:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (IntcAzAudAddService) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (RTLE8023xp) -- C:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (NPF) -- C:\WINDOWS\system32\drivers\npf.sys (CACE Technologies)
DRV - (Ptilink) -- C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)
DRV - (JRAID) -- C:\WINDOWS\system32\DRIVERS\jraid.sys (JMicron Technology Corp.)
DRV - (Maplom) -- C:\WINDOWS\system32\drivers\maplom.sys (SlySoft Inc.)
DRV - (ElbyCDIO) -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV - (PxHelp20) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (ElbyCDFL) -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys (SlySoft, Inc.)
DRV - (ElbyDelay) -- C:\WINDOWS\system32\drivers\ElbyDelay.sys (Elaborate Bytes AG)
DRV - (motport) -- C:\WINDOWS\system32\drivers\motport.sys (Motorola)
DRV - (motmodem) -- C:\WINDOWS\system32\drivers\motmodem.sys (Motorola)
DRV - (speedfan) -- C:\WINDOWS\system32\speedfan.sys (Windows (R) 2000 DDK provider)
DRV - (gMouPS2) -- C:\WINDOWS\system32\drivers\gMouPS2.sys ( Mouse Upfilter Driver )
DRV - (Aspi32) -- C:\WINDOWS\system32\drivers\ASPI32.SYS (Adaptec)
DRV - (HPZid412) -- C:\WINDOWS\system32\drivers\hpzid412.sys (HP)
DRV - (HPZius12) -- C:\WINDOWS\system32\drivers\HPZius12.sys (HP)
DRV - (HPZipr12) -- C:\WINDOWS\system32\drivers\HPZipr12.sys (HP)
DRV - (Iviaspi) -- C:\WINDOWS\system32\drivers\iviaspi.sys (InterVideo, Inc.)
DRV - (giveio) -- C:\WINDOWS\system32\giveio.sys ()


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledItems: {E9A1DEE0-C623-4439-8932-001E7D17607D}:2.1.0.3
FF - prefs.js..extensions.enabledItems: dwnlink@rapidzasms.cz:1.0
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.6.4
FF - prefs.js..extensions.enabledItems: {446c03e0-2c35-11db-a98b-0800200c9a66}:0.6.0.12
FF - prefs.js..extensions.enabledItems: {1018e4d6-728f-4b20-ad56-37578a4de76b}:3.3.17
FF - prefs.js..extensions.enabledItems: {bfe3406c-6f31-4789-86d5-efa50e12c9eb}:3.3
FF - prefs.js..extensions.enabledItems: {1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}:0.3.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.1
FF - prefs.js..extensions.enabledItems: {B17C1C5A-04B1-11DB-9804-B622A1EF5492}:1.2
FF - prefs.js..extensions.enabledItems: {ea614400-e918-4741-9a97-7a972ff7c30b}:1.0.7
FF - prefs.js..extensions.enabledItems: {e2c58150-9d72-11dd-ad8b-0800200c9a66}:1.3
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.5
FF - prefs.js..extensions.enabledItems: {de5809e0-2b07-11dd-bd0b-0800200c9a66}:1.1.0
FF - prefs.js..extensions.enabledItems: nasanightlaunch@example.com:0.6.20090630
FF - prefs.js..extensions.enabledItems: {9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e}:3.69
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&q="


FF - HKLM\software\mozilla\Firefox\extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.07.01 17:26:46 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2009.09.04 10:04:57 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009.11.08 13:28:52 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009.11.07 17:32:10 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009.11.07 17:32:09 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.19\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2009.06.08 21:02:16 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.19\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2009.06.08 21:02:51 | 00,000,000 | ---D | M]

[2009.08.10 14:22:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Extensions
[2009.08.10 14:22:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009.11.07 17:32:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions
[2009.10.28 19:08:47 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
[2008.10.02 16:26:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}
[2009.07.01 17:36:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009.05.25 16:28:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{446c03e0-2c35-11db-a98b-0800200c9a66}
[2009.10.23 13:51:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}
[2009.09.14 15:53:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e}
[2009.08.22 09:01:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}
[2009.10.28 19:13:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2009.08.24 18:29:27 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{bfe3406c-6f31-4789-86d5-efa50e12c9eb}
[2009.08.10 15:20:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}
[2009.10.10 09:29:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{de5809e0-2b07-11dd-bd0b-0800200c9a66}
[2009.10.28 18:59:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{e2c58150-9d72-11dd-ad8b-0800200c9a66}
[2008.12.23 14:59:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
[2009.08.10 14:23:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2009.10.05 16:18:23 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\dwnlink@rapidzasms.cz
[2009.08.10 14:38:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\extensions\nasanightlaunch@example.com
[2009.07.07 22:09:42 | 00,004,898 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\google-images.xml
[2009.11.02 15:15:22 | 00,000,961 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\icqplugin-1.xml
[2009.08.10 14:23:56 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\icqplugin-2.xml
[2009.03.01 13:02:44 | 00,000,944 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\icqplugin.xml
[2009.07.15 15:32:10 | 00,001,951 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\qrzcom.xml
[2009.07.07 22:11:52 | 00,005,372 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\searchenginesru.xml
[2009.07.07 22:12:15 | 00,001,086 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\tagesschau.xml
[2009.07.07 22:12:30 | 00,035,960 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\telebisyonnet.xml
[2009.07.07 22:12:53 | 00,001,592 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\translate---referencecom.xml
[2009.07.07 22:13:47 | 00,001,685 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\warech.xml
[2008.10.02 18:01:21 | 00,005,402 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\warez-svetnet.xml
[2009.07.07 22:14:01 | 00,001,632 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\weathercom.xml
[2009.07.07 22:14:15 | 00,001,032 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\wikipedia-eng.xml
[2009.07.07 22:14:31 | 00,002,011 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\yahooligans.xml
[2009.07.07 22:15:35 | 00,004,140 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\searchplugins\youtube.xml
[2009.11.08 13:31:04 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009.11.06 17:50:08 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2008.12.18 07:35:08 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
[2009.11.08 13:29:02 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
[2009.10.16 21:11:26 | 00,023,544 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2009.10.16 21:11:26 | 00,137,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2007.04.10 17:21:08 | 00,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
[2008.08.06 15:22:02 | 00,114,688 | ---- | M] (Adobe Systems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
[2009.11.08 13:28:51 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
[2008.10.17 19:29:52 | 01,332,224 | ---- | M] (DivX,Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdivx32.dll
[2009.10.16 21:11:26 | 00,065,016 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006.10.26 19:12:16 | 00,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2007.05.10 21:52:00 | 00,095,864 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2009.06.08 21:02:51 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2009.06.08 21:02:51 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2009.06.08 21:02:51 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2009.06.08 21:02:51 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2009.06.08 21:02:51 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2009.06.08 21:02:51 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2009.06.08 21:02:51 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2009.10.16 19:15:30 | 00,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2009.10.16 19:15:30 | 00,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2009.10.16 19:15:30 | 00,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2009.10.16 19:15:30 | 00,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2009.10.16 19:15:30 | 00,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2009.10.16 19:15:30 | 00,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: (27 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Podpora odkazu pro Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Copernic Desktop Search 2) - {968631B6-4729-440D-9BF4-251F5593EC9A} - C:\Program Files\Copernic Desktop Search 2\DesktopSearchBand2515.dll (Copernic Technologies Inc.)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\ShellBrowser: (Copernic Desktop Search 2) - {968631B6-4729-440D-9BF4-251F5593EC9A} - C:\Program Files\Copernic Desktop Search 2\DesktopSearchBand2515.dll (Copernic Technologies Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Copernic Desktop Search 2) - {968631B6-4729-440D-9BF4-251F5593EC9A} - C:\Program Files\Copernic Desktop Search 2\DesktopSearchBand2515.dll (Copernic Technologies Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&Links) - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO)
O4 - HKLM..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe (TODO: <Company name>)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\npjpi160_16.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Přeložit - {230D1201-7607-4CF6-A11F-9E4BF0A333E0} - C:\Program Files\Verdict Free\etnxp.dll ()
O9 - Extra 'Tools' menuitem : Internetový překladač... - {2C73F784-D2DE-4422-B070-2E3332FE5744} - C:\Program Files\Verdict Free\etnxp.dll ()
O9 - Extra Button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 59 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: 58 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftup ... 3098047421 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 213.46.172.37
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\WINDOWS\system32\guard32.dll) - C:\WINDOWS\system32\guard32.dll (COMODO)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\SYSTEM32\Userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.09.30 08:40:16 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (lsdelete) - File not found
O34 - HKLM BootExecute: (OODBS) - C:\WINDOWS\System32\OODBS.exe (O&O Software GmbH)
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found

========== Files/Folders - Created Within 30 Days ==========
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 14:30

[2009.11.08 13:37:13 | 00,528,896 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Milan\Plocha\OTL.exe
[2009.11.08 11:22:43 | 00,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2009.11.08 11:15:05 | 00,000,000 | ---D | C] -- C:\_OTM
[2009.11.08 11:13:33 | 00,389,632 | ---- | C] (OldTimer Tools) -- C:\OTM.exe
[2009.11.08 11:13:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Plocha\OTMoveIt
[2009.11.08 10:40:25 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Recent
[2009.11.08 09:33:32 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Plocha\Newmusic_-_Hands_Up!_Minimix_Oktober_2009-Bootleg-2009
[2009.11.08 00:46:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Plocha\Pop Party 7 2009
[2009.11.07 23:23:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\microsoft
[2009.11.07 23:16:03 | 00,417,792 | ---- | C] (vbAccelerator) -- C:\WINDOWS\System32\vbalCmdBar6.ocx
[2009.11.07 23:15:58 | 00,040,960 | ---- | C] (vbAccelerator) -- C:\WINDOWS\System32\ssubtmr6.dll
[2009.11.07 23:15:48 | 00,159,744 | ---- | C] (vbAccelerator) -- C:\WINDOWS\System32\wt_menu.dll
[2009.11.07 23:15:42 | 00,262,144 | ---- | C] (vbAccelerator) -- C:\WINDOWS\System32\lst_v.ocx
[2009.11.07 23:15:33 | 00,094,208 | ---- | C] (vbAccelerator) -- C:\WINDOWS\System32\img_lst.ocx
[2009.11.07 23:15:25 | 00,167,683 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\COMCT232.OCX
[2009.11.07 23:15:14 | 00,000,000 | ---D | C] -- C:\Program Files\Smarty Uninstaller Pro
[2009.11.07 23:00:57 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Data aplikací\URSoft
[2009.11.07 22:59:56 | 00,000,000 | ---D | C] -- C:\Program Files\Your Uninstaller
[2009.11.07 21:52:21 | 00,000,000 | ---D | C] -- C:\32788R22FWJFW
[2009.11.07 18:24:00 | 00,000,000 | ---D | C] -- C:\32788R22FWJFW.0.tmp
[2009.11.07 16:31:17 | 00,000,000 | ---D | C] -- C:\WINDOWS\temp
[2009.11.07 15:53:51 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009.11.07 15:47:33 | 00,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2009.11.06 16:31:51 | 00,000,000 | ---D | C] -- C:\$WIN_NT$.~BT
[2009.11.06 16:31:22 | 00,000,000 | ---D | C] -- C:\WINDOWS\setupupd
[2009.11.06 15:38:54 | 00,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2009.11.03 20:33:05 | 00,000,000 | ---D | C] -- C:\Program Files\Syncrosoft
[2009.11.03 20:27:33 | 00,000,000 | ---D | C] -- C:\Program Files\Eleco
[2009.11.01 13:56:50 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Xuisoft
[2009.11.01 13:56:29 | 00,000,000 | ---D | C] -- C:\Program Files\GifCreator
[2009.10.31 18:23:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\Atari
[2009.10.31 18:20:53 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Milan\Data aplikací\SecuROM
[2009.10.31 18:12:51 | 00,000,000 | ---D | C] -- C:\Program Files\Atari
[2009.10.31 18:12:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Data aplikací\gnupg
[2009.10.31 00:47:57 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\savegame
[2009.10.31 00:45:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\Codemasters
[2009.10.31 00:45:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\hardwaresettings
[2009.10.30 18:36:43 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\Tom Clancy's H.A.W.X
[2009.10.30 17:59:47 | 02,036,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_40.dll
[2009.10.30 17:59:47 | 00,452,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_40.dll
[2009.10.30 17:59:46 | 04,379,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_40.dll
[2009.10.30 17:59:45 | 00,514,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_3.dll
[2009.10.30 17:59:45 | 00,070,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_2.dll
[2009.10.30 17:59:44 | 00,235,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_3.dll
[2009.10.30 17:59:43 | 00,023,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_5.dll
[2009.10.30 17:59:42 | 00,509,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_2.dll
[2009.10.30 17:59:42 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_2.dll
[2009.10.30 17:59:42 | 00,068,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_1.dll
[2009.10.30 17:59:40 | 01,493,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_39.dll
[2009.10.30 17:59:40 | 00,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_39.dll
[2009.10.29 18:14:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\Tipard Studio
[2009.10.28 21:09:34 | 00,000,000 | ---D | C] -- C:\Program Files\TDK
[2009.10.28 19:17:43 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\dwhelper
[2009.10.20 17:26:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\ArcSoft
[2009.10.20 17:26:27 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\ArcSoft
[2009.10.20 17:25:14 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\ArcSoft
[2009.10.20 17:25:13 | 00,212,480 | ---- | C] (Eastman Kodak) -- C:\WINDOWS\PCDLIB32.DLL
[2009.10.20 17:25:13 | 00,000,000 | ---D | C] -- C:\Program Files\ArcSoft
[2009.10.20 17:24:59 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Data aplikací\ArcSoft
[2009.10.20 17:15:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\PDF files
[2009.10.14 23:52:02 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\oodag
[2009.10.14 23:40:43 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\O&O
[2009.10.14 23:36:38 | 00,000,000 | ---D | C] -- C:\Program Files\OO Software
[2009.10.14 23:10:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\O&O
[2009.10.14 17:36:13 | 00,000,000 | ---D | C] -- C:\Program Files\Total Video Converter
[2009.10.13 22:08:54 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\DVDFab
[2009.10.13 22:01:09 | 00,000,000 | ---D | C] -- C:\Program Files\DVDFab 5
[2009.10.13 21:15:34 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Corel
[2009.10.13 20:37:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\Temp
[2009.10.12 18:47:06 | 00,000,000 | ---D | C] -- C:\GTR2
[2009.10.12 18:44:03 | 00,000,000 | ---D | C] -- C:\Program Files\GTR 2 Game
[2009.10.11 17:24:07 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Milan\Dokumenty\18 WoS Extreme Trucker
[2009.10.11 17:22:30 | 00,000,000 | ---D | C] -- C:\Program Files\18.WoS-EXTREME.TRUCKER
[2008.10.02 21:36:20 | 00,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Milan\Data aplikací\pcouffin.sys
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2009.11.08 13:53:11 | 10,205,00000 | ---- | M] () -- C:\cokdyz.part2.rar
[2009.11.08 13:45:53 | 10,205,00000 | ---- | M] () -- C:\cokdyz.part1.rar
[2009.11.08 13:45:04 | 00,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2009.11.08 13:37:24 | 00,528,896 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Milan\Plocha\OTL.exe
[2009.11.08 13:28:51 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll
[2009.11.08 13:28:51 | 00,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2009.11.08 13:28:51 | 00,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2009.11.08 13:28:51 | 00,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2009.11.08 13:28:51 | 00,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2009.11.08 13:28:19 | 00,441,704 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009.11.08 13:28:19 | 00,438,434 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2009.11.08 13:28:19 | 00,082,844 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2009.11.08 13:28:19 | 00,071,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009.11.08 13:23:20 | 00,003,140 | ---- | M] () -- C:\WINDOWS\TRNCOM.INI
[2009.11.08 11:56:34 | 10,205,00000 | ---- | M] () -- C:\cokdyz.part3.rar
[2009.11.08 11:28:55 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009.11.08 11:18:00 | 00,175,033 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2009.11.08 11:17:41 | 00,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2009.11.08 11:17:38 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009.11.08 11:17:34 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009.11.08 11:17:34 | 00,000,031 | ---- | M] () -- C:\WINDOWS\System32\bbcap.err
[2009.11.08 11:17:28 | 00,088,113 | ---- | M] () -- C:\WINDOWS\System32\oodbs.lor
[2009.11.08 11:16:08 | 16,515,072 | ---- | M] () -- C:\Documents and Settings\Milan\ntuser.dat
[2009.11.08 11:16:08 | 00,000,178 | -HS- | M] () -- C:\Documents and Settings\Milan\ntuser.ini
[2009.11.08 11:09:11 | 00,843,167 | ---- | M] () -- C:\Documents and Settings\Milan\Plocha\SecurityCheck.exe
[2009.11.08 10:32:03 | 00,455,680 | ---- | M] () -- C:\Documents and Settings\Milan\Plocha\ToolsCleaner2.exe
[2009.11.08 10:20:19 | 00,002,553 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2009.11.08 10:13:07 | 36,484,776 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\Mature Japan.mp4
[2009.11.08 10:12:02 | 00,088,576 | ---- | M] () -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.11.08 10:08:22 | 36,822,925 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\Pink - Please Don t Leave Me.mp4
[2009.11.08 09:59:12 | 08,111,950 | ---- | M] () -- C:\Documents and Settings\Milan\Plocha\Please Don_t Leave Me - Pink.flv
[2009.11.07 21:46:49 | 00,003,865 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\LDR.jpg
[2009.11.07 21:45:59 | 00,095,274 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\žřřžžžž.jpg
[2009.11.07 18:31:59 | 00,067,227 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\error.jpg
[2009.11.07 18:24:58 | 00,055,580 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\rrrrrrrrrr.jpg
[2009.11.07 16:38:50 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2009.11.07 16:38:37 | 00,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2009.11.07 16:04:00 | 00,088,200 | ---- | M] () -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
[2009.11.07 11:59:46 | 00,124,685 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\kklklluu.jpg
[2009.11.07 11:59:07 | 00,051,828 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\kprincip.jpg
[2009.11.07 11:58:28 | 00,074,670 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\princip 2.jpg
[2009.11.07 11:57:44 | 00,065,200 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\princip.jpg
[2009.11.07 11:51:17 | 00,146,198 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\kklkll.jpg
[2009.11.07 11:41:17 | 01,028,280 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\transformatory.pdf
[2009.11.07 11:25:24 | 00,126,938 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\iiii.jpg
[2009.11.07 11:24:57 | 00,094,974 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\kk.jpg
[2009.11.07 11:22:56 | 00,106,638 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\dd.jpg
[2009.11.06 23:17:58 | 25,477,994 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\Tsuyako Kano.mp4
[2009.11.06 22:02:50 | 00,062,185 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\složka ve složce.jpg
[2009.11.06 22:02:02 | 00,130,907 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\složka.jpg
[2009.11.06 21:54:17 | 00,149,996 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\log 1.jpg
[2009.11.06 21:53:12 | 00,150,979 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\log.jpg
[2009.11.06 21:50:30 | 00,000,374 | ---- | M] () -- C:\WINDOWS\tasks\Úklid 1 kliknutím.job
[2009.11.06 17:17:41 | 00,000,376 | ---- | M] () -- C:\WINDOWS\tasks\1-Click Maintenance.job
[2009.11.06 16:32:34 | 00,000,274 | RHS- | M] () -- C:\boot.ini
[2009.11.06 16:19:41 | 00,000,274 | RHS- | M] () -- C:\BOOT.BAK
[2009.11.03 20:50:40 | 00,000,471 | ---- | M] () -- C:\WINDOWS\System32\Datei4
[2009.11.03 20:50:40 | 00,000,470 | ---- | M] () -- C:\WINDOWS\System32\Datei3
[2009.11.03 20:50:40 | 00,000,470 | ---- | M] () -- C:\WINDOWS\System32\Datei2
[2009.11.03 20:50:40 | 00,000,470 | ---- | M] () -- C:\WINDOWS\System32\Datei1
[2009.11.03 20:50:40 | 00,000,469 | ---- | M] () -- C:\WINDOWS\System32\Datei7
[2009.11.03 20:50:40 | 00,000,469 | ---- | M] () -- C:\WINDOWS\System32\Datei5
[2009.11.03 20:50:40 | 00,000,468 | ---- | M] () -- C:\WINDOWS\System32\Datei0
[2009.11.03 20:50:40 | 00,000,467 | ---- | M] () -- C:\WINDOWS\System32\Datei9
[2009.11.03 20:50:40 | 00,000,467 | ---- | M] () -- C:\WINDOWS\System32\Datei8
[2009.11.03 20:50:40 | 00,000,465 | ---- | M] () -- C:\WINDOWS\System32\Datei6
[2009.11.03 20:10:45 | 06,232,087 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\my dog fuck my cat.mp4
[2009.11.03 19:18:21 | 06,981,696 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\Trapas v počasí telerána~1.mp4
[2009.11.03 17:35:53 | 28,680,141 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\HotDicksforHornyChicks_scene2_Vidz.com_gal3min.wmv
[2009.11.02 20:09:43 | 00,000,127 | -HS- | M] () -- C:\Documents and Settings\All Users\Data aplikací\.zreglib
[2009.11.02 17:37:08 | 10,274,6103 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\SC3036.wmv
[2009.11.02 17:35:14 | 10,026,651 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\My big Nipples (1_06).wmv
[2009.11.02 17:35:04 | 76,732,581 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\movies_154478_hairy_hippie.html.wmv
[2009.11.02 17:33:28 | 18,968,315 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\German Mature Milking Tits On Beach.wmv
[2009.11.02 17:33:10 | 28,881,255 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\7459.wmv
[2009.11.02 17:32:47 | 03,712,895 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\32c51f321527fb189aae05dd88352d75.wmv
[2009.11.02 17:32:44 | 23,163,923 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\4a36ca0c3bd42_saggy_bbw_boobs_flv.wmv
[2009.11.02 17:32:23 | 53,646,065 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\vintage 70s german - Zum Knutschkeller - cc79.wmv
[2009.11.02 15:08:24 | 05,074,474 | ---- | M] () -- C:\Documents and Settings\Milan\Dokumenty\Trapas v počasí telerána.mp4
[2009.11.02 00:26:57 | 00,001,385 | ---- | M] () -- C:\WINDOWS\wincmd.ini
[2009.11.01 21:25:21 | 00,000,155 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2009.11.01 13:56:50 | 00,000,507 | ---- | M] () -- C:\WINDOWS\System32\trlantsvrp32.ime
[2009.10.31 08:35:53 | 00,288,496 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009.10.28 19:34:53 | 00,000,010 | ---- | M] () -- C:\WINDOWS\Sierra.ini
[2009.10.22 10:18:24 | 05,939,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mshtml.dll
[2009.10.22 10:18:24 | 05,939,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll
[2009.10.16 18:19:53 | 00,000,133 | ---- | M] () -- C:\Documents and Settings\Milan\default.pls
[2009.10.16 15:30:26 | 01,005,402 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009.10.15 07:08:35 | 00,000,253 | ---- | M] () -- C:\WINDOWS\cfplogvw.INI
[2009.10.13 22:02:11 | 00,087,608 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\inst.exe
[2009.10.13 22:02:11 | 00,047,360 | ---- | M] (VSO Software) -- C:\WINDOWS\System32\drivers\pcouffin.sys
[2009.10.13 22:02:11 | 00,047,360 | ---- | M] (VSO Software) -- C:\Documents and Settings\Milan\Data aplikací\pcouffin.sys
[2009.10.13 22:02:11 | 00,007,887 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\pcouffin.cat
[2009.10.13 22:02:11 | 00,001,144 | ---- | M] () -- C:\Documents and Settings\Milan\Data aplikací\pcouffin.inf
[2009.10.13 21:49:16 | 00,002,516 | -HS- | M] () -- C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys
[2009.10.13 21:15:38 | 00,000,008 | RHS- | M] () -- C:\Documents and Settings\All Users\Data aplikací\14CDC500DA.sys
[2009.10.13 21:13:35 | 00,000,040 | -H-- | M] () -- C:\WINDOWS\System32\ivireg.ivr
[2009.10.12 15:39:48 | 00,003,185 | ---- | M] () -- C:\WINDOWS\FantasyDVD.ini
[2009.10.12 15:39:48 | 00,002,417 | ---- | M] () -- C:\WINDOWS\ShortCutInf.ini
[2009.10.12 15:39:48 | 00,000,000 | ---- | M] () -- C:\WINDOWS\PlayList.Fpl
[2009.10.12 15:39:40 | 00,389,120 | ---- | M] () -- C:\WINDOWS\System32\ACTSKN43.OCX
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]

========== Files Created - No Company Name ==========

[2009.11.08 13:53:11 | 10,205,00000 | ---- | C] () -- C:\cokdyz.part2.rar
[2009.11.08 13:45:53 | 10,205,00000 | ---- | C] () -- C:\cokdyz.part1.rar
[2009.11.08 11:56:34 | 10,205,00000 | ---- | C] () -- C:\cokdyz.part3.rar
[2009.11.08 11:09:04 | 00,843,167 | ---- | C] () -- C:\Documents and Settings\Milan\Plocha\SecurityCheck.exe
[2009.11.08 10:32:03 | 00,455,680 | ---- | C] () -- C:\Documents and Settings\Milan\Plocha\ToolsCleaner2.exe
[2009.11.08 10:13:03 | 36,484,776 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\Mature Japan.mp4
[2009.11.08 10:08:18 | 36,822,925 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\Pink - Please Don t Leave Me.mp4
[2009.11.08 09:56:34 | 08,111,950 | ---- | C] () -- C:\Documents and Settings\Milan\Plocha\Please Don_t Leave Me - Pink.flv
[2009.11.07 23:27:24 | 16,515,072 | ---- | C] () -- C:\Documents and Settings\Milan\ntuser.dat
[2009.11.07 21:46:49 | 00,003,865 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\LDR.jpg
[2009.11.07 21:45:59 | 00,095,274 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\žřřžžžž.jpg
[2009.11.07 18:31:59 | 00,067,227 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\error.jpg
[2009.11.07 18:24:58 | 00,055,580 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\rrrrrrrrrr.jpg
[2009.11.07 16:38:32 | 00,000,006 | -H-- | C] () -- C:\WINDOWS\tasks\SA.DAT
[2009.11.07 11:59:46 | 00,124,685 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\kklklluu.jpg
[2009.11.07 11:59:07 | 00,051,828 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\kprincip.jpg
[2009.11.07 11:58:28 | 00,074,670 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\princip 2.jpg
[2009.11.07 11:57:44 | 00,065,200 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\princip.jpg
[2009.11.07 11:51:17 | 00,146,198 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\kklkll.jpg
[2009.11.07 11:41:17 | 01,028,280 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\transformatory.pdf
[2009.11.07 11:25:23 | 00,126,938 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\iiii.jpg
[2009.11.07 11:24:56 | 00,094,974 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\kk.jpg
[2009.11.07 11:22:56 | 00,106,638 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\dd.jpg
[2009.11.06 23:17:56 | 25,477,994 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\Tsuyako Kano.mp4
[2009.11.06 22:02:50 | 00,062,185 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\složka ve složce.jpg
[2009.11.06 22:02:01 | 00,130,907 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\složka.jpg
[2009.11.06 21:54:17 | 00,149,996 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\log 1.jpg
[2009.11.06 21:53:12 | 00,150,979 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\log.jpg
[2009.11.06 16:19:41 | 00,000,274 | RHS- | C] () -- C:\BOOT.BAK
[2009.11.06 16:18:50 | 00,475,856 | R--- | C] () -- C:\txtsetup.sif
[2009.11.06 16:18:50 | 00,261,328 | R--- | C] () -- C:\$LDR$
[2009.11.03 20:46:26 | 00,000,467 | ---- | C] () -- C:\WINDOWS\System32\Datei9
[2009.11.03 20:46:23 | 00,000,467 | ---- | C] () -- C:\WINDOWS\System32\Datei8
[2009.11.03 20:46:21 | 00,000,469 | ---- | C] () -- C:\WINDOWS\System32\Datei7
[2009.11.03 20:46:19 | 00,000,465 | ---- | C] () -- C:\WINDOWS\System32\Datei6
[2009.11.03 20:46:16 | 00,000,469 | ---- | C] () -- C:\WINDOWS\System32\Datei5
[2009.11.03 20:46:10 | 00,000,471 | ---- | C] () -- C:\WINDOWS\System32\Datei4
[2009.11.03 20:46:08 | 00,000,470 | ---- | C] () -- C:\WINDOWS\System32\Datei3
[2009.11.03 20:46:05 | 00,000,470 | ---- | C] () -- C:\WINDOWS\System32\Datei2
[2009.11.03 20:46:03 | 00,000,470 | ---- | C] () -- C:\WINDOWS\System32\Datei1
[2009.11.03 20:46:00 | 00,000,468 | ---- | C] () -- C:\WINDOWS\System32\Datei0
[2009.11.03 20:33:16 | 00,147,425 | ---- | C] () -- C:\WINDOWS\System32\SYNSOACC-Aide.chm
[2009.11.03 20:33:16 | 00,120,468 | ---- | C] () -- C:\WINDOWS\System32\SYNSOACC-Hilfe.chm
[2009.11.03 20:33:16 | 00,114,279 | ---- | C] () -- C:\WINDOWS\System32\SYNSOACC-Help.chm
[2009.11.03 20:10:44 | 06,232,087 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\my dog fuck my cat.mp4
[2009.11.03 19:18:20 | 06,981,696 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\Trapas v počasí telerána~1.mp4
[2009.11.03 17:35:28 | 28,680,141 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\HotDicksforHornyChicks_scene2_Vidz.com_gal3min.wmv
[2009.11.02 17:35:14 | 10,274,6103 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\SC3036.wmv
[2009.11.02 17:35:04 | 10,026,651 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\My big Nipples (1_06).wmv
[2009.11.02 17:34:01 | 76,732,581 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\movies_154478_hairy_hippie.html.wmv
[2009.11.02 17:33:11 | 18,968,315 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\German Mature Milking Tits On Beach.wmv
[2009.11.02 17:32:47 | 28,881,255 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\7459.wmv
[2009.11.02 17:32:44 | 03,712,895 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\32c51f321527fb189aae05dd88352d75.wmv
[2009.11.02 17:32:27 | 23,163,923 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\4a36ca0c3bd42_saggy_bbw_boobs_flv.wmv
[2009.11.02 17:31:38 | 53,646,065 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\vintage 70s german - Zum Knutschkeller - cc79.wmv
[2009.11.02 15:07:51 | 05,074,474 | ---- | C] () -- C:\Documents and Settings\Milan\Dokumenty\Trapas v počasí telerána.mp4
[2009.11.01 13:56:50 | 00,000,507 | ---- | C] () -- C:\WINDOWS\System32\trlantsvrp32.ime
[2009.10.28 19:29:09 | 00,000,010 | ---- | C] () -- C:\WINDOWS\Sierra.ini
[2009.10.15 05:32:11 | 00,088,113 | ---- | C] () -- C:\WINDOWS\System32\oodbs.lor
[2009.10.13 22:02:10 | 00,087,608 | ---- | C] () -- C:\Documents and Settings\Milan\Data aplikací\inst.exe
[2009.10.13 21:15:38 | 00,002,516 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys
[2009.10.13 21:15:38 | 00,000,008 | RHS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\14CDC500DA.sys
[2009.10.13 21:13:34 | 00,000,040 | -H-- | C] () -- C:\WINDOWS\System32\ivireg.ivr
[2009.09.07 22:50:29 | 00,000,253 | ---- | C] () -- C:\WINDOWS\cfplogvw.INI
[2009.08.07 19:51:34 | 00,172,173 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2009.07.23 16:10:49 | 00,005,120 | ---- | C] () -- C:\WINDOWS\System32\BReWErS.dll
[2009.07.18 16:00:59 | 00,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009.07.18 16:00:52 | 00,022,328 | ---- | C] () -- C:\Documents and Settings\Milan\Data aplikací\PnkBstrK.sys
[2009.05.06 18:41:25 | 00,000,065 | ---- | C] () -- C:\WINDOWS\WaterIllusion.ini
[2009.03.23 10:41:31 | 00,000,307 | ---- | C] () -- C:\WINDOWS\cavscan.INI
[2009.02.16 17:53:37 | 00,000,020 | ---- | C] () -- C:\WINDOWS\level.ini
[2009.02.10 21:31:58 | 00,000,066 | ---- | C] () -- C:\WINDOWS\Power Video Converter.INI
[2008.12.23 14:54:32 | 00,000,120 | ---- | C] () -- C:\WINDOWS\CIS_Setup_3.5.57173.439_XP_Vista_x32.INI
[2008.12.17 20:18:58 | 00,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
[2008.12.17 20:18:58 | 00,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll
[2008.12.17 20:18:58 | 00,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
[2008.12.17 20:18:58 | 00,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
[2008.12.17 09:56:32 | 00,000,031 | ---- | C] () -- C:\WINDOWS\System32\Days5.ini
[2008.12.16 21:28:34 | 00,000,000 | ---- | C] () -- C:\WINDOWS\mngui.INI
[2008.12.15 08:40:56 | 00,000,246 | ---- | C] () -- C:\WINDOWS\System32\drivers\atmapi.sys
[2008.12.10 21:43:14 | 00,000,014 | ---- | C] () -- C:\WINDOWS\System32\System32.sys
[2008.12.07 14:23:41 | 00,323,584 | ---- | C] () -- C:\WINDOWS\System32\FoxImager.dll
[2008.12.01 22:01:58 | 00,000,740 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2008.10.29 15:10:41 | 00,000,075 | ---- | C] () -- C:\WINDOWS\pslabeler3.ini
[2008.10.19 13:29:23 | 00,721,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2008.10.17 18:03:28 | 00,034,308 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2008.10.16 18:08:28 | 00,000,810 | ---- | C] () -- C:\WINDOWS\Rtcw.INI
[2008.10.06 19:33:49 | 00,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2008.10.06 18:59:32 | 00,165,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2008.10.06 18:59:31 | 00,018,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2008.10.06 16:51:47 | 00,003,143 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\QTSBandwidthCache
[2008.10.06 14:50:08 | 00,000,125 | ---- | C] () -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\fusioncache.dat
[2008.10.06 14:41:52 | 00,000,774 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\hpzinstall.log
[2008.10.03 16:20:09 | 00,000,766 | ---- | C] () -- C:\WINDOWS\CoD.INI
[2008.10.03 13:52:56 | 00,200,704 | ---- | C] () -- C:\WINDOWS\TRNOET.DLL
[2008.10.03 13:52:56 | 00,045,056 | ---- | C] () -- C:\WINDOWS\TRNOEH.DLL
[2008.10.03 13:52:31 | 00,000,058 | ---- | C] () -- C:\WINDOWS\WTRDCTM.INI
[2008.10.03 13:50:55 | 00,001,680 | ---- | C] () -- C:\WINDOWS\MAILTRAN.INI
[2008.10.03 13:50:53 | 00,003,140 | ---- | C] () -- C:\WINDOWS\TRNCOM.INI
[2008.10.03 13:50:45 | 00,004,878 | ---- | C] () -- C:\WINDOWS\WTRAN32.INI
[2008.10.03 13:50:45 | 00,001,581 | ---- | C] () -- C:\WINDOWS\WDICT32.INI
[2008.10.03 13:41:46 | 00,005,716 | ---- | C] () -- C:\WINDOWS\ENGLMENU.INI
[2008.10.03 13:00:51 | 00,000,488 | ---- | C] () -- C:\WINDOWS\Poolemup.ini
[2008.10.03 12:31:52 | 00,000,163 | ---- | C] () -- C:\WINDOWS\fre.INI
[2008.10.03 10:09:19 | 00,001,385 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2008.10.02 22:41:00 | 00,209,040 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2008.10.02 22:41:00 | 00,204,944 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2008.10.02 22:41:00 | 00,196,752 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2008.10.02 22:41:00 | 00,196,752 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2008.10.02 22:41:00 | 00,192,656 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2008.10.02 22:41:00 | 00,024,720 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2008.10.02 21:36:20 | 00,081,920 | ---- | C] () -- C:\Documents and Settings\Milan\Data aplikací\ezpinst.exe
[2008.10.02 21:36:20 | 00,007,887 | ---- | C] () -- C:\Documents and Settings\Milan\Data aplikací\pcouffin.cat
[2008.10.02 21:36:20 | 00,001,144 | ---- | C] () -- C:\Documents and Settings\Milan\Data aplikací\pcouffin.inf
[2008.10.02 21:36:20 | 00,000,034 | ---- | C] () -- C:\Documents and Settings\Milan\Data aplikací\pcouffin.log
[2008.10.02 21:04:58 | 00,000,014 | ---- | C] () -- C:\WINDOWS\System32\SystemInfo32.sys
[2008.10.02 20:44:31 | 00,000,127 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\.zreglib
[2008.10.02 20:03:40 | 00,000,000 | ---- | C] () -- C:\WINDOWS\oodcnt.INI
[2008.10.02 17:28:46 | 00,000,182 | ---- | C] () -- C:\WINDOWS\System32\FOLESVR.DLL
[2008.10.02 17:25:10 | 00,003,185 | ---- | C] () -- C:\WINDOWS\FantasyDVD.ini
[2008.10.02 17:25:10 | 00,002,417 | ---- | C] () -- C:\WINDOWS\ShortCutInf.ini
[2008.10.02 16:58:33 | 00,000,014 | ---- | C] () -- C:\WINDOWS\System32\SysEngineDrive1.sys
[2008.10.02 16:58:15 | 00,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2008.10.02 15:25:47 | 03,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2008.10.02 15:25:47 | 00,593,920 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2008.10.02 15:25:47 | 00,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2008.10.02 15:25:46 | 00,010,752 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008.10.02 15:25:46 | 00,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2008.10.01 19:02:10 | 00,004,916 | ---- | C] () -- C:\WINDOWS\UN32P.INI
[2008.10.01 17:15:23 | 00,456,272 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\pswi_preloaded.exe
[2008.10.01 16:21:04 | 00,088,576 | ---- | C] () -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.10.01 15:38:15 | 00,141,312 | ---- | C] () -- C:\WINDOWS\System32\drivers\sp_rsdrv2.sys
[2008.09.30 13:57:37 | 00,000,155 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008.09.30 10:24:16 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
[2008.09.30 09:17:47 | 05,844,742 | -H-- | C] () -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\IconCache.db
[2008.09.30 09:01:56 | 00,088,200 | ---- | C] () -- C:\Documents and Settings\Milan\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
[2008.09.30 08:47:22 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\Milan\Data aplikací\desktop.ini
[2008.03.24 12:52:00 | 01,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2008.03.24 12:52:00 | 01,482,752 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2008.03.24 12:52:00 | 01,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2008.03.24 12:52:00 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2008.03.24 12:52:00 | 00,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2007.11.06 21:19:28 | 00,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2007.10.29 13:00:00 | 00,001,368 | ---- | C] () -- C:\WINDOWS\win.ini
[2007.10.29 13:00:00 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini
[2006.06.29 14:58:52 | 00,030,808 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
[2006.06.29 14:53:56 | 00,026,489 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006.04.18 15:39:28 | 00,029,779 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006.04.18 15:39:28 | 00,026,040 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2005.10.14 10:56:50 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 10:56:50 | 00,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005.10.14 10:56:50 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.08.05 18:47:18 | 00,000,367 | ---- | C] () -- C:\WINDOWS\powervideotoaudio.ini
[2004.01.05 13:04:58 | 00,565,248 | ---- | C] () -- C:\WINDOWS\System32\hpotscl.dll
[2003.08.07 13:01:52 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll
[2002.03.19 16:30:00 | 00,141,824 | ---- | C] () -- C:\WINDOWS\System32\msvdm.dll
[2002.03.17 01:00:00 | 00,007,420 | ---- | C] () -- C:\WINDOWS\UA000106.DLL
[2001.07.20 06:09:58 | 00,196,608 | ---- | C] () -- C:\WINDOWS\System32\swfobjs.dll
[1996.04.03 20:33:26 | 00,005,248 | ---- | C] () -- C:\WINDOWS\System32\giveio.sys

========== LOP Check ==========

[2008.10.02 21:09:42 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ACD Systems
[2009.10.06 17:45:45 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Anvsoft
[2008.11.07 21:10:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ashampoo
[2008.10.02 21:48:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\BlazeVideo
[2008.12.01 22:48:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Blueberry
[2009.10.13 21:57:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Corel
[2009.06.16 20:56:17 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2008.12.10 21:40:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DVD X Studios
[2008.10.30 15:29:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Elaborate Bytes
[2009.01.17 06:09:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\FitLinie
[2008.12.28 16:09:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\GeoVid
[2009.03.15 09:24:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2009.09.04 10:02:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2009.08.11 20:11:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Intermedia Software
[2009.01.20 23:22:33 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InterVideo
[2008.12.15 08:42:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\LangSoft
[2008.12.12 08:21:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\LifePhotoMaker
[2008.10.01 14:22:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\LightScribe
[2008.12.01 22:47:16 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\LogSys
[2009.05.03 16:35:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Nokia
[2009.03.20 22:22:45 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2008.12.17 20:18:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Simply Super Software
[2009.10.30 13:03:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SlySoft
[2009.10.19 23:07:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
[2009.07.27 17:45:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Synetic
[2009.11.08 13:29:41 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2008.10.17 19:11:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
[2009.01.20 23:24:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
[2008.10.13 11:33:13 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\WhiteCap (Holiday Edition)
[2008.10.01 16:51:08 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\WinZip
[2008.12.01 22:47:13 | 00,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\{925D0C31-5256-42ED-B53A-2E541689BD38}
[2008.11.28 17:38:01 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Acoustica
[2008.12.24 20:14:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Alchemy Mindworks
[2008.10.02 20:40:47 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\AltrixSoft
[2008.10.02 16:56:03 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Ambient Design
[2008.10.17 18:08:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Anthropics
[2009.07.14 15:23:01 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Archivarius 3000
[2009.02.18 23:00:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Ashampoo
[2008.10.01 17:20:45 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Beauty
[2008.10.02 17:31:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\BinarySense
[2009.07.29 15:58:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\BlackBean
[2008.12.03 20:18:23 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Blueberry
[2009.01.26 13:38:02 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\CadSoft
[2008.10.02 21:01:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Carnival Software
[2009.03.09 15:46:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Corel
[2009.06.16 20:57:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\DAEMON Tools
[2009.06.16 20:57:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\DAEMON Tools Lite
[2009.07.28 15:57:27 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\FUEL
[2008.12.28 16:10:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\GeoVid
[2009.10.31 18:12:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\gnupg
[2008.10.02 18:48:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\gtopala
[2009.01.19 20:00:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\ICQ
[2009.08.11 20:15:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Intermedia Software
[2008.10.19 11:00:02 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\JGoodies
[2008.10.03 14:01:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\LangSoft
[2008.12.01 22:47:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\LogSys
[2009.02.09 21:16:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Longfine Software
[2008.10.01 15:44:34 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\MechCAD
[2008.12.27 10:05:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\MMToolz
[2008.10.02 22:32:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\mojosoft
[2008.10.02 15:14:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Morpheus Software
[2008.10.06 15:22:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Motorola
[2008.10.11 18:13:09 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Netscape
[2009.09.04 10:13:12 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Nokia
[2009.03.20 22:22:55 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\PC Suite
[2009.10.06 17:46:41 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Photo DVD Slideshow
[2008.10.11 18:12:12 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Photodex
[2008.10.02 22:07:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\PhotoFrameShow
[2009.01.26 13:37:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\ProfiCAD
[2009.10.31 18:20:53 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Milan\Data aplikací\SecuROM
[2008.12.17 20:18:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Simply Super Software
[2008.10.13 11:47:00 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\SoundSpectrum
[2009.11.08 10:51:45 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Spyware Terminator
[2009.04.15 14:37:27 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\streamripper
[2008.12.23 19:11:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Teleca
[2009.04.28 16:38:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Thinstall
[2008.10.01 16:59:32 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Thunderbird
[2008.10.01 19:28:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\TuneUp Software
[2009.01.24 17:07:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Ulead Systems
[2009.11.07 23:00:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\URSoft
[2009.10.13 22:02:18 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Vso
[2008.12.25 14:39:15 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\XnView
[2009.10.04 13:58:00 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Milan\Data aplikací\Zoner
[2009.11.06 17:17:41 | 00,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\1-Click Maintenance.job
[2007.10.29 13:00:00 | 00,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini
[2009.11.08 11:17:38 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT
[2009.11.06 21:50:30 | 00,000,374 | ---- | M] () -- C:\WINDOWS\Tasks\Úklid 1 kliknutím.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 98 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:70F32378
@Alternate Data Stream - 176 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:CB0AACC9
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:B3D74A13
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:041A53E5
< End of report >
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 14:55

Tu složku OTM/MovedFiles 58.6 Mb můžu smazat?
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 08 lis 2009 16:27

OTM/MovedFiles --můžeš vymazat obsah té složky.

Raději si zazálohuj důležité složky..

Stáhni si Symantec FixVirut (spustit v nouz. režimu!)

Stáhni si :Dr. Web CureIt
dej update , po aktualizaci dej start.
Tlacitky dole muzeš soubor léčit, smazat, přesunout nebo přejmenovat


Poté:
Spusť F-Secure Online Scanner z odkazu.
http://support.f-secure.com/enu/home/ols.shtml

Tento skener je možno použít jen v prohlížeči Internet Explorer! Postupuj podle instrukcí na stránce F-Secure pro správnou instalaci. Akceptuj licenci. Po instalaci ActiveX, klikni na Full System Scan. Když stahování skončeno, automaticky začne sken . Vyčkej konce skenu, po jeho dobu neprováděj jiné operace ani neklikej myší. Když skončí sken klikni na tlačítko Automatic clearing (recommended). Poté klikni na tlačítko Show Report a zkopíruj a vlož sem .


Spusť OTM
- Do levého sloupce (Paste Instructions for Items to be Moved) zkopíruj tyto cesty:
Poznámka: Nepoužij k označení funkci VYBRAT VŠE

Kód: Vybrat vše

:Processes
explorer.exe

:Services

:Reg

:Files
C:\32788R22FWJFW
C:\32788R22FWJFW.0.tmp
C:\WINDOWS\tasks\SA.DAT
C:\WINDOWS\System32\trlantsvrp32.ime
C:\WINDOWS\cfplogvw.INI
C:\Documents and Settings\Milan\Data aplikací\inst.exe
C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys
C:\WINDOWS\System32\BReWErS.dll
C:\WINDOWS\mngui.INI
C:\WINDOWS\System32\drivers\atmapi.sys
C:\Documents and Settings\Milan\Data aplikací\ezpinst.exe

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]

- Po zkopírování klikni na tlačítko MoveIt! a vlož sem následně celý obsah z pravého sloupce, jinak uložený ve složce C:\_OTMoveIt\MovedFiles\, který bude informovat o výsledcích
- Je možné, že pokud nebudou moci být soubory odstraněny, budeš dotázán na restart počítače, v tom případě restart potvrď.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 18:11

FixVirut
Symantec W32.Virut Removal Tool 1.1.2

W32.Virut has not been found on your computer.
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 09 lis 2009 08:52

Fajn , tak pokračuj dalšími kroky.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 50 hostů