prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 15 úno 2010 21:09

stále na mě vyskakují okna z internet exploreru

ale na druhou stranu se chování pc celkově se začátkem nedá vubec srovnat , je to o hodně lepší

Reklama
Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu

Příspěvekod Damned » 15 úno 2010 21:21

Máš tam OTM.

Spusť ho.
- Do levého sloupce (Paste Instructions for Items to be Moved) zkopíruj tyto cesty:
Poznámka: Nepoužij k označení funkci VYBRAT VŠE
[code]:Processes
explorer.exe

:Services
jqs

:Reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableRegedit"=-

:Files
C:\WINDOWS\System32\*.tmp /s
C:\WINDOWS\*.tmp /s
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
c:\windows\Tasks\*.job /s

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]

- Po zkopírování klikni na tlačítko MoveIt! a vlož sem následně celý obsah z pravého sloupce, jinak uložený ve složce C:\_OTMoveIt\MovedFiles\, který bude informovat o výsledcích
- Je možné, že pokud nebudou moci být soubory odstraněny, budeš dotázán na restart počítače, v tom případě restart potvrď.

Až sem vložíš výsledný log, tak:
Stáhni si OTL na Plochu.
Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Output klikni na minimal Output.Pod Standard Registry změň na All. Zatrhni LOP Check a Purity Check. File age změň na 14 days. Všechny ostatní nastavení ponech jak jsou. Klikni na Run Scan. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 15 úno 2010 21:35

po restartu

Error: Unable to interpret <[code]:Processes> in the current context!
Error: Unable to interpret <explorer.exe> in the current context!
========== SERVICES/DRIVERS ==========
Service\Driver jqs not found.
Service\Driver jqs not found.
========== REGISTRY ==========
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\\DisableRegedit not found.
========== FILES ==========
C:\WINDOWS\System32\CONFIG.TMP moved successfully.
C:\WINDOWS\002504_.tmp moved successfully.
C:\WINDOWS\DED53B0BB67C4244AE6AD6FD3C28D1EF.TMP moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP51A.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP58B.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP663.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP68C.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6B0.tmp moved successfully.
C:\WINDOWS\Installer\MSI1FE.tmp moved successfully.
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
c:\windows\Tasks\At1.job moved successfully.
c:\windows\Tasks\At10.job moved successfully.
c:\windows\Tasks\At11.job moved successfully.
c:\windows\Tasks\At12.job moved successfully.
c:\windows\Tasks\At13.job moved successfully.
c:\windows\Tasks\At14.job moved successfully.
c:\windows\Tasks\At15.job moved successfully.
c:\windows\Tasks\At16.job moved successfully.
c:\windows\Tasks\At17.job moved successfully.
c:\windows\Tasks\At18.job moved successfully.
c:\windows\Tasks\At19.job moved successfully.
c:\windows\Tasks\At2.job moved successfully.
c:\windows\Tasks\At20.job moved successfully.
c:\windows\Tasks\At21.job moved successfully.
c:\windows\Tasks\At22.job moved successfully.
c:\windows\Tasks\At23.job moved successfully.
c:\windows\Tasks\At24.job moved successfully.
c:\windows\Tasks\At3.job moved successfully.
c:\windows\Tasks\At4.job moved successfully.
c:\windows\Tasks\At49.job moved successfully.
c:\windows\Tasks\At5.job moved successfully.
c:\windows\Tasks\At50.job moved successfully.
c:\windows\Tasks\At51.job moved successfully.
c:\windows\Tasks\At52.job moved successfully.
c:\windows\Tasks\At53.job moved successfully.
c:\windows\Tasks\At54.job moved successfully.
c:\windows\Tasks\At55.job moved successfully.
c:\windows\Tasks\At56.job moved successfully.
c:\windows\Tasks\At57.job moved successfully.
c:\windows\Tasks\At58.job moved successfully.
c:\windows\Tasks\At59.job moved successfully.
c:\windows\Tasks\At6.job moved successfully.
c:\windows\Tasks\At60.job moved successfully.
c:\windows\Tasks\At61.job moved successfully.
c:\windows\Tasks\At62.job moved successfully.
c:\windows\Tasks\At63.job moved successfully.
c:\windows\Tasks\At64.job moved successfully.
c:\windows\Tasks\At65.job moved successfully.
c:\windows\Tasks\At66.job moved successfully.
c:\windows\Tasks\At67.job moved successfully.
c:\windows\Tasks\At68.job moved successfully.
c:\windows\Tasks\At69.job moved successfully.
c:\windows\Tasks\At7.job moved successfully.
c:\windows\Tasks\At70.job moved successfully.
c:\windows\Tasks\At71.job moved successfully.
c:\windows\Tasks\At72.job moved successfully.
c:\windows\Tasks\At8.job moved successfully.
c:\windows\Tasks\At9.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B58.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B63.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BA3.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BAE.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BE0.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BEB.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF4964.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[1] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[2] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[3] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[4] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\DERRTRF4\adserv[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_260.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_001_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_002_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_003_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_MAP_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\urlclassifier3.sqlite scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\XUL.mfl scheduled to be deleted on reboot.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully

OTM by OldTimer - Version 2.1.0.1 log created on 02152010_212744

Files moved on Reboot...
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B58.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B63.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BA3.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BAE.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BE0.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BEB.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF4964.tmp not found!
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[1] moved successfully.
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[2] moved successfully.
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[3] moved successfully.
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[4] moved successfully.
File C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\DERRTRF4\adserv[1].htm not found!
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_260.dat not found!
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\urlclassifier3.sqlite moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\XUL.mfl moved successfully.

Registry entries deleted on Reboot...

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu

Příspěvekod Damned » 15 úno 2010 21:39

Výborně, teď ty logy z OTL.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 15 úno 2010 21:50

trvalo to asi 5 minut nevím jestli dobrá nebo špatná zpráva :D

Error: Unable to interpret <[code]:Processes> in the current context!
Error: Unable to interpret <explorer.exe> in the current context!
========== SERVICES/DRIVERS ==========
Service\Driver jqs not found.
Service\Driver jqs not found.
========== REGISTRY ==========
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\\DisableRegedit not found.
========== FILES ==========
C:\WINDOWS\System32\CONFIG.TMP moved successfully.
C:\WINDOWS\002504_.tmp moved successfully.
C:\WINDOWS\DED53B0BB67C4244AE6AD6FD3C28D1EF.TMP moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP51A.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP58B.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP663.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP68C.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6B0.tmp moved successfully.
C:\WINDOWS\Installer\MSI1FE.tmp moved successfully.
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
c:\windows\Tasks\At1.job moved successfully.
c:\windows\Tasks\At10.job moved successfully.
c:\windows\Tasks\At11.job moved successfully.
c:\windows\Tasks\At12.job moved successfully.
c:\windows\Tasks\At13.job moved successfully.
c:\windows\Tasks\At14.job moved successfully.
c:\windows\Tasks\At15.job moved successfully.
c:\windows\Tasks\At16.job moved successfully.
c:\windows\Tasks\At17.job moved successfully.
c:\windows\Tasks\At18.job moved successfully.
c:\windows\Tasks\At19.job moved successfully.
c:\windows\Tasks\At2.job moved successfully.
c:\windows\Tasks\At20.job moved successfully.
c:\windows\Tasks\At21.job moved successfully.
c:\windows\Tasks\At22.job moved successfully.
c:\windows\Tasks\At23.job moved successfully.
c:\windows\Tasks\At24.job moved successfully.
c:\windows\Tasks\At3.job moved successfully.
c:\windows\Tasks\At4.job moved successfully.
c:\windows\Tasks\At49.job moved successfully.
c:\windows\Tasks\At5.job moved successfully.
c:\windows\Tasks\At50.job moved successfully.
c:\windows\Tasks\At51.job moved successfully.
c:\windows\Tasks\At52.job moved successfully.
c:\windows\Tasks\At53.job moved successfully.
c:\windows\Tasks\At54.job moved successfully.
c:\windows\Tasks\At55.job moved successfully.
c:\windows\Tasks\At56.job moved successfully.
c:\windows\Tasks\At57.job moved successfully.
c:\windows\Tasks\At58.job moved successfully.
c:\windows\Tasks\At59.job moved successfully.
c:\windows\Tasks\At6.job moved successfully.
c:\windows\Tasks\At60.job moved successfully.
c:\windows\Tasks\At61.job moved successfully.
c:\windows\Tasks\At62.job moved successfully.
c:\windows\Tasks\At63.job moved successfully.
c:\windows\Tasks\At64.job moved successfully.
c:\windows\Tasks\At65.job moved successfully.
c:\windows\Tasks\At66.job moved successfully.
c:\windows\Tasks\At67.job moved successfully.
c:\windows\Tasks\At68.job moved successfully.
c:\windows\Tasks\At69.job moved successfully.
c:\windows\Tasks\At7.job moved successfully.
c:\windows\Tasks\At70.job moved successfully.
c:\windows\Tasks\At71.job moved successfully.
c:\windows\Tasks\At72.job moved successfully.
c:\windows\Tasks\At8.job moved successfully.
c:\windows\Tasks\At9.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B58.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B63.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BA3.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BAE.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BE0.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BEB.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\user\LOCALS~1\Temp\~DF4964.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[1] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[2] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[3] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[4] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\DERRTRF4\adserv[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_260.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_001_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_002_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_003_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_MAP_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\urlclassifier3.sqlite scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\XUL.mfl scheduled to be deleted on reboot.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully

OTM by OldTimer - Version 2.1.0.1 log created on 02152010_212744

Files moved on Reboot...
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B58.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3B63.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BA3.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BAE.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BE0.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF3BEB.tmp not found!
File C:\DOCUME~1\user\LOCALS~1\Temp\~DF4964.tmp not found!
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[1] moved successfully.
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[2] moved successfully.
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[3] moved successfully.
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD\st[4] moved successfully.
File C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\DERRTRF4\adserv[1].htm not found!
C:\Documents and Settings\user\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_260.dat not found!
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\urlclassifier3.sqlite moved successfully.
C:\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\XUL.mfl moved successfully.

Registry entries deleted on Reboot...

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 15 úno 2010 21:50

OTL Extras logfile created on: 15.2.2010 21:42:59 - Run 1
OTL by OldTimer - Version 3.1.28.0 Folder = C:\Documents and Settings\user\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 75,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 91,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 39,06 Gb Total Space | 10,76 Gb Free Space | 27,54% Space Free | Partition Type: NTFS
Drive D: | 29,28 Gb Total Space | 5,64 Gb Free Space | 19,26% Space Free | Partition Type: FAT32
Drive E: | 43,43 Gb Total Space | 28,09 Gb Free Space | 64,68% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 111,79 Gb Total Space | 29,24 Gb Free Space | 26,16% Space Free | Partition Type: NTFS
Drive I: | 298,09 Gb Total Space | 9,03 Gb Free Space | 3,03% Space Free | Partition Type: NTFS
Drive J: | 1,33 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF

Computer Name: P4
Current User Name: user
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDSee Pro 2.0.Browse] -- "C:\Program Files\ACD Systems\ACDSee Pro\2.0\ACDSeeQVPro2.exe" "%1" (ACD Systems)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "%programfiles%\internet explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"26224:TCP" = 26224:TCP:*:Enabled:BitComet 26224 TCP
"26224:UDP" = 26224:UDP:*:Enabled:BitComet 26224 UDP
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"5353:TCP" = 5353:TCP:*:Enabled:Adobe CSI CS4

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\ICQ6.5\ICQ.exe" = C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6 -- (ICQ, LLC.)
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"H:\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe" = H:\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()
"C:\Program Files\Skype\Plugin Manager\skypePM.exe" = C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager -- (Skype Technologies)
"C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" = C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4 -- ()
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01501EBA-EC35-4F9F-8889-3BE346E5DA13}" = MSXML4 Parser
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{0611BD4E-4FE4-4a62-B0C0-18A4CC463428}" = CP_Package_Variety1
"{06F80017-8F98-4C94-B868-52358569FC32}" = Command & Conquer Generals
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{098A2A49-7CF3-4F08-A38D-FB879117152A}" = Adobe Color NA Extra Settings CS4
"{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel
"{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup
"{0DC0E85F-36E4-463B-B3EA-4CD8ED2222A1}" = Adobe Color EU Recommended Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{129DDEC1-A6A3-3D60-AABE-76E6E5334922}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - CSY
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{1B2DBF55-05D4-4072-87D8-689141E262BD}" = Creative ZEN
"{1C139D7D-9FEA-468d-A9C8-2A6E3BDE564A}" = CP_Package_Variety3
"{1C27BA8F-0E90-4316-9F71-C0B55362A294}" = Samsung PC Studio II 2.0 Sample
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 17
"{2EAF7E61-068E-11DF-953C-005056806466}" = Google Earth
"{2F6DA398-707F-4D52-AE6A-7E812D1662D6}" = MioTransfer
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4AAC95F4-A30E-4EE5-A086-6F79581D0D70}" = ACDSee Pro 2
"{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6.5
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{6FE8B722-4D7E-3CD7-BB3A-3AD1684B1295}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - CSY
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74DCC43B-33C9-3389-BD0D-33EB37973657}" = Microsoft .NET Framework 3.5 Language Pack - csy
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{8148F35A-B15C-465B-80C2-DC0E1234EC20}" = Samsung PC Studio II 2.0 Image Editor
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{847CAE64-4CD2-4B2D-AF00-978FF5431029}" = Nero 7 Ultra Edition
"{8DBEF2C4-B152-45D8-8CF1-6447E8D1031A}" = ESET Smart Security
"{90120000-0010-0405-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Czech) 12
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{294B4278-CF7B-40B9-86A1-2D3FF0C2C524}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{10EC59E5-9BCE-4884-BB1A-E28627220232}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{E12F9D31-4025-4BC6-B1B2-AB262C5580B0}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{98613C99-1399-416C-A07C-1EE1C585D872}" = SeaTools for Windows
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1029-7B44-A93000000001}" = Adobe Reader 9.3 - Czech
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{B0C30E93-D3D9-4F04-A2AC-54749B573275}" = Command & Conquer 3
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B824B5C9-849F-4b9e-9EA7-6FD8CD8116DA}" = CP_Package_Variety2
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{CB84F0F2-927B-458D-9DC5-87832E3DC653}" = GearDrvs
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{D4E01931-9B3F-49BD-B19B-511000A1E039}" = Samsung PC Studio II 2.0 PIMS & File Manager
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4
"{EFB21DE7-8C19-4A88-BB28-A766E16493BC}" = Adobe Photoshop CS
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1}" = Command and ConquerTM Generals Zero Hour
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FE64AE29-0883-4C70-8388-DC026019C900}" = HP Image Zone Express
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4
"ATI Display Driver" = ATI Display Driver
"AudibleManager" = AudibleManager
"AUTOPLAN START verze_is1" = AUTOPLAN 2009 START verze
"CCleaner" = CCleaner
"C-Media Audio Driver" = C-Media High Definition Audio Driver
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Home Edition_is1" = EVEREST Home Edition v1.51
"FS6_is1" = FORM studio 2009
"HijackThis" = HijackThis 2.0.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie8" = Windows Internet Explorer 8
"InstallShield_{06F80017-8F98-4C94-B868-52358569FC32}" = Command & Conquer Generals
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"InstallShield_{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1}" = Command and ConquerTM Generals Zero Hour
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 Language Pack - csy" = Microsoft .NET Framework 3.5 Language Pack - CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.5.7)" = Mozilla Firefox (3.5.7)
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"SysInfo" = Creative System Information
"Totalcmd" = Total Commander (Remove or Repair)
"UltraISO_is1" = UltraISO Premium V8.65
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR archiver
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
"ZEN (MTP) Media Explorer" = ZEN Media Explorer
"ZENcast Organizer" = ZENcast Organizer

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 10.1.2010 16:18:54 | Computer Name = P4 | Source = ESENT | ID = 485
Description = wuauclt (2212) Pokus o odstranění složky C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
se nezdařil. Došlo k systémové chybě 1392 (0x00000570): Soubor nebo adresář je
porušen a není čitelný. . Operace odstranění složky se nezdaří a dojde k chybě -1022
(0xfffffc02).

Error - 10.1.2010 16:18:54 | Computer Name = P4 | Source = ESENT | ID = 490
Description = wuauclt (2212) Pokus o otevření souboru C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
pro čtení nebo zápis se nezdařil. Došlo k systémové chybě 1392 (0x00000570): Soubor
nebo adresář je porušen a není čitelný. . Operace otevření souboru se nezdaří a
dojde k chybě -1022 (0xfffffc02).

Error - 10.1.2010 16:18:54 | Computer Name = P4 | Source = ESENT | ID = 439
Description = wuauclt (2212) Pro soubor C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
nelze zapsat stínové záhlaví. Chyba -1022

Error - 10.1.2010 16:18:55 | Computer Name = P4 | Source = ESENT | ID = 485
Description = wuauclt (3480) Pokus o odstranění složky C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
se nezdařil. Došlo k systémové chybě 1392 (0x00000570): Soubor nebo adresář je
porušen a není čitelný. . Operace odstranění složky se nezdaří a dojde k chybě -1022
(0xfffffc02).

Error - 10.1.2010 16:18:55 | Computer Name = P4 | Source = ESENT | ID = 490
Description = wuauclt (3480) Pokus o otevření souboru C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
pro čtení nebo zápis se nezdařil. Došlo k systémové chybě 1392 (0x00000570): Soubor
nebo adresář je porušen a není čitelný. . Operace otevření souboru se nezdaří a
dojde k chybě -1022 (0xfffffc02).

Error - 10.1.2010 16:18:55 | Computer Name = P4 | Source = ESENT | ID = 439
Description = wuauclt (3480) Pro soubor C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
nelze zapsat stínové záhlaví. Chyba -1022

Error - 10.1.2010 16:18:55 | Computer Name = P4 | Source = ESENT | ID = 485
Description = wuauclt (3012) Pokus o odstranění složky C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
se nezdařil. Došlo k systémové chybě 1392 (0x00000570): Soubor nebo adresář je
porušen a není čitelný. . Operace odstranění složky se nezdaří a dojde k chybě -1022
(0xfffffc02).

Error - 10.1.2010 16:18:55 | Computer Name = P4 | Source = ESENT | ID = 490
Description = wuauclt (3012) Pokus o otevření souboru C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
pro čtení nebo zápis se nezdařil. Došlo k systémové chybě 1392 (0x00000570): Soubor
nebo adresář je porušen a není čitelný. . Operace otevření souboru se nezdaří a
dojde k chybě -1022 (0xfffffc02).

Error - 10.1.2010 16:18:55 | Computer Name = P4 | Source = ESENT | ID = 439
Description = wuauclt (3012) Pro soubor C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
nelze zapsat stínové záhlaví. Chyba -1022

Error - 14.2.2010 5:12:22 | Computer Name = P4 | Source = Google Update | ID = 20
Description =

[ System Events ]
Error - 15.2.2010 14:36:33 | Computer Name = P4 | Source = DCOM | ID = 10010
Description = Server {0002DF01-0000-0000-C000-000000000046} se v daném časovém limitu
neregistroval u služby DCOM.

Error - 15.2.2010 15:12:37 | Computer Name = P4 | Source = DCOM | ID = 10010
Description = Server {0002DF01-0000-0000-C000-000000000046} se v daném časovém limitu
neregistroval u služby DCOM.

Error - 15.2.2010 15:14:37 | Computer Name = P4 | Source = DCOM | ID = 10010
Description = Server {0002DF01-0000-0000-C000-000000000046} se v daném časovém limitu
neregistroval u služby DCOM.

Error - 15.2.2010 15:46:08 | Computer Name = P4 | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek E: spustit nástroj chkdsk.

Error - 15.2.2010 15:46:08 | Computer Name = P4 | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek E: spustit nástroj chkdsk.

Error - 15.2.2010 15:46:08 | Computer Name = P4 | Source = ati2mtag | ID = 45062
Description = CRT invalid display type

Error - 15.2.2010 15:46:41 | Computer Name = P4 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: iastor70

Error - 15.2.2010 16:32:42 | Computer Name = P4 | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek E: spustit nástroj chkdsk.

Error - 15.2.2010 16:32:42 | Computer Name = P4 | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek E: spustit nástroj chkdsk.

Error - 15.2.2010 16:32:42 | Computer Name = P4 | Source = ati2mtag | ID = 45062
Description = CRT invalid display type


< End of report >

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu

Příspěvekod Damned » 15 úno 2010 22:05

Čas záleží na počtu souborů.
Dal si mi Extras, chybí mi OTL.txt (ne OTM).
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 15 úno 2010 22:30

OTL logfile created on: 15.2.2010 21:42:59 - Run 1
OTL by OldTimer - Version 3.1.28.0 Folder = C:\Documents and Settings\user\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 75,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 91,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 39,06 Gb Total Space | 10,76 Gb Free Space | 27,54% Space Free | Partition Type: NTFS
Drive D: | 29,28 Gb Total Space | 5,64 Gb Free Space | 19,26% Space Free | Partition Type: FAT32
Drive E: | 43,43 Gb Total Space | 28,09 Gb Free Space | 64,68% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 111,79 Gb Total Space | 29,24 Gb Free Space | 26,16% Space Free | Partition Type: NTFS
Drive I: | 298,09 Gb Total Space | 9,03 Gb Free Space | 3,03% Space Free | Partition Type: NTFS
Drive J: | 1,33 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF

Computer Name: P4
Current User Name: user
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\user\Plocha\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\ctcheck.exe ()
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
PRC - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe (Lavasoft)
PRC - C:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)
PRC - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (Nero AG)
PRC - C:\WINDOWS\system32\HPZipm12.exe (HP)
PRC - C:\WINDOWS\system32\CTSVCCDA.EXE (Creative Technology Ltd)


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\user\Plocha\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\system32\app_dll.dll ()


========== Win32 Services (SafeList) ==========

SRV - (NetDDEdsdm) -- File not found
SRV - (NetDDE) -- File not found
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (JavaQuickStarterService) -- C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (gupdate1c98882f7af9498) Google Update Service (gupdate1c98882f7af9498) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (aawservice) -- C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe (Lavasoft)
SRV - (odserv) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (Microsoft Office Groove Audit Service) -- C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation)
SRV - (EhttpSrv) -- C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe (ESET)
SRV - (ekrn) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
SRV - (NetTcpPortSharing) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (Ati HotKey Poller) -- C:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)
SRV - (NBService) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (Nero AG)
SRV - (NMIndexingService) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (Nero AG)
SRV - (ose) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (Pml Driver HPZ12) -- C:\WINDOWS\system32\HPZipm12.exe (HP)
SRV - (Creative Service for CDROM Access) -- C:\WINDOWS\system32\CTSVCCDA.EXE (Creative Technology Ltd)


========== Driver Services (SafeList) ==========

DRV - (pcouffin) -- C:\WINDOWS\system32\drivers\pcouffin.sys (VSO Software)
DRV - (epfwtdi) -- C:\WINDOWS\system32\drivers\epfwtdi.sys (ESET)
DRV - (Epfwndis) -- C:\WINDOWS\system32\drivers\epfwndis.sys (ESET)
DRV - (epfw) -- C:\WINDOWS\system32\drivers\epfw.sys (ESET)
DRV - (easdrv) -- C:\WINDOWS\system32\drivers\easdrv.sys (ESET)
DRV - (eamon) -- C:\WINDOWS\system32\drivers\eamon.sys (ESET)
DRV - (adfs) -- C:\WINDOWS\system32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (Ad-Watch Connect Filter) -- C:\WINDOWS\system32\drivers\nsdriver.sys (Lavasoft AB)
DRV - (Secdrv) -- C:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (si3114) -- C:\WINDOWS\system32\drivers\si3114.sys (Silicon Image, Inc.)
DRV - (yukonwxp) -- C:\WINDOWS\system32\drivers\yk51x86.sys (Marvell)
DRV - (ISODrive) -- C:\Program Files\UltraISO\drivers\ISODrive.sys (EZB Systems, Inc.)
DRV - (ati2mtag) -- C:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (PxHelp20) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (iastor70) -- C:\WINDOWS\system32\drivers\iaStor70.sys (Intel Corporation)
DRV - (iteraid) -- C:\WINDOWS\system32\DRIVERS\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (MTsensor) -- C:\WINDOWS\system32\drivers\ASACPI.sys ()
DRV - (HdAudAddService) -- C:\WINDOWS\system32\drivers\hdaudio.sys (Windows (R) Server 2003 DDK provider)
DRV - (HPZid412) -- C:\WINDOWS\system32\drivers\HPZid412.sys (HP)
DRV - (HPZius12) -- C:\WINDOWS\system32\drivers\HPZius12.sys (HP)
DRV - (HPZipr12) -- C:\WINDOWS\system32\drivers\HPZipr12.sys (HP)
DRV - (Si3114r5) -- C:\WINDOWS\system32\DRIVERS\Si3114r5.sys (Silicon Image, Inc)
DRV - (ssm_mdm) -- C:\WINDOWS\system32\drivers\ssm_mdm.sys (MCCI)
DRV - (ssm_mdfl) -- C:\WINDOWS\system32\drivers\ssm_mdfl.sys (MCCI)
DRV - (ssm_bus) Samsung Mobile USB Device II 1.0 driver (WDM) -- C:\WINDOWS\system32\drivers\ssm_bus.sys (MCCI)
DRV - (W8100PCI) -- C:\WINDOWS\system32\drivers\mrv8k51.sys (Marvell Semiconductor, Inc)
DRV - (SiFilter) -- C:\WINDOWS\system32\DRIVERS\SiWinAcc.sys (Silicon Image, Inc.)
DRV - (cmudax) -- C:\WINDOWS\system32\drivers\cmudax.sys (C-Media Inc.)
DRV - (iaStor) -- C:\WINDOWS\system32\DRIVERS\iaStor.sys (Intel Corporation)
DRV - (Ptilink) -- C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Search"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.1
FF - prefs.js..extensions.enabledItems: {88714d9a-9b19-2607-a4f6-297d561afe88}:4.6.6.3
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7


FF - HKLM\software\mozilla\Firefox\extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.08.16 20:09:38 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2008.12.28 13:47:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.01.06 18:40:13 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.01.14 22:09:07 | 000,000,000 | ---D | M]

[2008.11.20 19:30:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Mozilla\Extensions
[2008.11.20 19:30:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\user\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010.02.15 09:23:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions
[2009.08.19 16:46:11 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.02.13 17:24:15 | 000,000,261 | ---- | M] () -- C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\searchplugins\Search.xml
[2010.02.15 09:23:19 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.02.14 09:29:58 | 000,000,000 | ---D | M] (LoudMo Contextual Ad Assistant) -- C:\Program Files\Mozilla Firefox\extensions\{88714d9a-9b19-2607-a4f6-297d561afe88}
[2010.01.06 18:40:07 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2008.12.28 13:48:02 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
[2009.04.01 15:27:47 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009.08.05 06:28:37 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
[2009.11.04 20:11:36 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
[2010.01.06 18:40:06 | 000,023,512 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.01.06 18:40:06 | 000,137,176 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2009.10.11 04:17:27 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
[2010.01.06 18:40:08 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006.10.26 20:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2009.12.21 18:34:06 | 000,103,864 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2009.08.24 21:09:37 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2009.08.24 21:09:37 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2009.08.24 21:09:37 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2009.08.24 21:09:37 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2009.08.24 21:09:37 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2009.08.24 21:09:37 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: ([2010.02.14 21:20:49 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Adobe_Reader] c:\Program Files\Internet Explorer\wmpscfgs.exe ()
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe ()
O4 - HKLM..\Run: [Cmaudio] File not found
O4 - HKLM..\Run: [CTCheck] C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\ctcheck.exe ()
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe ()
O4 - HKLM..\Run: [GrooveMonitor] C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe ()
O4 - HKLM..\Run: [Zástupce stránky vlastností sběrnice High Definition Audio] C:\WINDOWS\System32\hdashcut.exe (Windows (R) Server 2003 DDK provider)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe ()
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - HKCU..\Run: [CTSyncU.exe] C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - c:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Stáhnout všechna videa s použitím BitCometu - c:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - c:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} http://www.creative.com/softwareupdate/ ... TSUEng.cab (Creative Software AutoUpdate)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shoc ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://www.creative.com/softwareupdate/ ... /CTPID.cab (Creative Software AutoUpdate Support Package)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.11.224.1 217.11.224.2
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (app_dll.dll) - C:\WINDOWS\System32\app_dll.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Nebe.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Nebe.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.11.19 16:06:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2008.08.07 13:24:02 | 000,000,083 | R--- | M] () - J:\AUTORUN.INF -- [ UDF ]
O32 - AutoRun File - [2008.08.21 18:02:58 | 000,000,000 | R--D | M] - J:\Autoplay -- [ UDF ]
O32 - AutoRun File - [2008.08.05 22:23:05 | 000,189,808 | R--- | M] (Adobe Systems Incorporated) - J:\Autoplay.exe -- [ UDF ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

========== Files/Folders - Created Within 14 Days ==========

[2010.02.15 21:41:03 | 000,549,376 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\user\Plocha\OTL.exe
[2010.02.15 21:17:43 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy
[2010.02.15 20:44:51 | 000,000,000 | ---D | C] -- C:\Avenger
[2010.02.15 18:56:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\F-Secure
[2010.02.15 17:21:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\Macromedia
[2010.02.15 17:21:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\Adobe
[2010.02.15 17:21:05 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Data aplikací\Microsoft
[2010.02.15 09:41:08 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010.02.15 09:40:41 | 000,000,000 | ---D | C] -- C:\_OTM
[2010.02.15 09:34:24 | 000,000,000 | ---D | C] -- C:\OTMoveIt
[2010.02.14 21:17:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010.02.14 18:41:57 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010.02.14 18:40:00 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010.02.14 18:40:00 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010.02.14 18:40:00 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010.02.14 18:40:00 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010.02.14 18:39:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010.02.14 18:39:37 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010.02.14 14:14:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\rundll16.exe
[2010.02.14 14:14:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\logo1_.exe
[2010.02.13 23:44:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\VDLL.DLL
[2010.02.13 23:44:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\RUNDL132.EXE
[2010.02.13 23:44:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\logo_1.exe
[2010.02.13 23:34:07 | 000,626,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcr80.dll
[2010.02.13 23:34:07 | 000,548,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcp80.dll
[2010.02.13 23:34:06 | 000,034,048 | ---- | C] (MicroWorld Technologies Inc.) -- C:\WINDOWS\System32\eEmpty.exe
[2010.02.13 23:33:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MicroWorld
[2010.02.13 23:33:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
[2010.02.13 23:25:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Data aplikací\Download Manager
[2010.02.13 18:38:13 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\user\Recent
[2009.02.11 18:02:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Microsoft
[2009.02.11 12:49:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Google
[2009.02.09 16:59:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
[2009.02.06 18:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Microsoft
[2009.02.06 18:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Google
[2008.11.28 17:44:42 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\user\Data aplikací\pcouffin.sys
[2008.11.20 19:30:26 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Microsoft

========== Files - Modified Within 14 Days ==========

[2010.02.15 21:41:53 | 000,003,557 | ---- | M] () -- C:\WINDOWS\wincmd.ini
[2010.02.15 21:40:53 | 004,194,304 | ---- | M] () -- C:\Documents and Settings\user\NTUSER.DAT
[2010.02.15 21:39:24 | 000,549,376 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\user\Plocha\OTL.exe
[2010.02.15 21:37:05 | 001,028,820 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.02.15 21:37:05 | 000,435,260 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.02.15 21:37:05 | 000,431,998 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2010.02.15 21:37:05 | 000,079,040 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2010.02.15 21:37:05 | 000,068,156 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.02.15 21:34:43 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At24.job
[2010.02.15 21:34:43 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At23.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At48.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At47.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At46.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At45.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At44.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At43.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At42.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At41.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At40.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At37.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At34.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At33.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At32.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At31.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At30.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At29.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At28.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At27.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At26.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At25.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At9.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At8.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At7.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At6.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At5.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At22.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At21.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At20.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At19.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At18.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At17.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At16.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At13.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2010.02.15 21:34:27 | 000,055,808 | ---- | M] () -- C:\Documents and Settings\user\hdashcut.exe
[2010.02.15 21:33:28 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.02.15 21:32:40 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.02.15 21:32:31 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.02.15 21:30:37 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\user\ntuser.ini
[2010.02.15 20:42:28 | 000,021,690 | ---- | M] () -- C:\avexport.bat
[2010.02.15 17:47:23 | 000,002,579 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\ACDSee Pro 2.lnk
[2010.02.15 15:47:36 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010.02.15 15:43:41 | 000,069,120 | ---- | M] () -- C:\WINDOWS\System32\app_dll.dll
[2010.02.14 21:53:43 | 000,069,120 | ---- | M] () -- C:\WINDOWS\System32\app_dll.dll.194031.old
[2010.02.14 21:21:36 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.02.14 21:20:49 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010.02.14 20:24:11 | 000,055,808 | ---- | M] () -- C:\Documents and Settings\user\hdashcut .exe
[2010.02.14 18:42:02 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010.02.14 17:47:31 | 000,494,209 | ---- | M] () -- C:\Documents and Settings\user\Dokumenty\pinfect.zip
[2010.02.14 14:49:18 | 003,857,112 | R--- | M] () -- C:\Documents and Settings\user\Plocha\ComboFix.exe
[2010.02.14 14:08:15 | 000,000,054 | ---- | M] () -- C:\WINDOWS\Lic.xxx
[2010.02.14 13:49:42 | 000,004,515 | ---- | M] () -- C:\WINDOWS\WTRAN32.INI
[2010.02.14 13:49:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\XXLGSC
[2010.02.14 10:13:57 | 000,000,702 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2010.02.13 23:34:03 | 000,034,048 | ---- | M] (MicroWorld Technologies Inc.) -- C:\WINDOWS\System32\eEmpty.exe
[2010.02.13 18:02:12 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\user\Data aplikací\inst.exe
[2010.02.13 18:02:12 | 000,007,887 | ---- | M] () -- C:\Documents and Settings\user\Data aplikací\pcouffin.cat
[2010.02.13 18:02:11 | 000,047,360 | ---- | M] (VSO Software) -- C:\Documents and Settings\user\Data aplikací\pcouffin.sys
[2010.02.13 18:02:11 | 000,001,144 | ---- | M] () -- C:\Documents and Settings\user\Data aplikací\pcouffin.inf
[2010.02.13 17:34:05 | 000,000,111 | ---- | M] () -- C:\Documents and Settings\user\default.pls
[2010.02.13 16:40:59 | 000,047,360 | ---- | M] (VSO Software) -- C:\WINDOWS\System32\drivers\pcouffin.sys
[2010.02.12 19:04:59 | 000,094,532 | ---- | M] () -- C:\Documents and Settings\user\Dokumenty\kurýr 2.xlsx
[2010.02.12 09:18:25 | 000,002,283 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Skype.lnk
[2010.02.08 16:15:14 | 000,001,921 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Google Earth.lnk
[2010.02.07 20:06:26 | 000,051,200 | ---- | M] () -- C:\Documents and Settings\user\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

========== Files Created - No Company Name ==========

[2010.02.15 21:34:43 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At48.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At47.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At46.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At45.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At44.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At43.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At42.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At41.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At40.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At39.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At38.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At37.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At36.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At35.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At34.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At33.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At32.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At31.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At30.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At29.job
[2010.02.15 21:34:42 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At28.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At24.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At23.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At22.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At21.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At20.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At19.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At18.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At17.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At16.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At15.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At14.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At13.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At12.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At11.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At10.job
[2010.02.15 21:34:41 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At27.job
[2010.02.15 21:34:41 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At26.job
[2010.02.15 21:34:41 | 000,000,354 | ---- | C] () -- C:\WINDOWS\tasks\At25.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At9.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At8.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At7.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At6.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At5.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At4.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At3.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At2.job
[2010.02.15 21:34:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
[2010.02.15 20:42:28 | 000,021,690 | ---- | C] () -- C:\avexport.bat
[2010.02.14 21:53:42 | 000,069,120 | ---- | C] () -- C:\WINDOWS\System32\app_dll.dll.194031.old
[2010.02.14 21:53:42 | 000,069,120 | ---- | C] () -- C:\WINDOWS\System32\app_dll.dll
[2010.02.14 18:42:02 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010.02.14 18:41:57 | 000,261,312 | ---- | C] () -- C:\cmldr
[2010.02.14 18:40:00 | 000,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010.02.14 18:40:00 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010.02.14 18:40:00 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010.02.14 18:40:00 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010.02.14 18:40:00 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010.02.14 18:37:43 | 003,857,112 | R--- | C] () -- C:\Documents and Settings\user\Plocha\ComboFix.exe
[2010.02.14 18:26:57 | 000,055,808 | ---- | C] () -- C:\Documents and Settings\user\hdashcut.exe
[2010.02.14 18:26:57 | 000,055,808 | ---- | C] () -- C:\Documents and Settings\user\hdashcut .exe
[2010.02.13 23:54:41 | 000,494,209 | ---- | C] () -- C:\Documents and Settings\user\Dokumenty\pinfect.zip
[2010.02.13 23:34:07 | 000,000,522 | ---- | C] () -- C:\WINDOWS\System32\Microsoft.VC80.CRT.manifest
[2010.02.08 16:15:14 | 000,001,921 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Google Earth.lnk
[2009.11.27 21:19:23 | 000,000,305 | ---- | C] () -- C:\WINDOWS\game.ini
[2009.01.23 11:13:05 | 000,006,109 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\hpzinstall.log
[2008.12.23 15:35:13 | 000,008,296 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2008.11.30 18:20:40 | 000,135,834 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2008.11.28 17:44:51 | 000,000,033 | ---- | C] () -- C:\Documents and Settings\user\Data aplikací\pcouffin.log
[2008.11.28 17:44:42 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\user\Data aplikací\inst.exe
[2008.11.28 17:44:42 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\user\Data aplikací\pcouffin.cat
[2008.11.28 17:44:42 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\user\Data aplikací\pcouffin.inf
[2008.11.27 11:47:23 | 000,002,135 | ---- | C] () -- C:\WINDOWS\WDICT32.INI
[2008.11.27 09:47:28 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\user\Data aplikací\downloads.m3u
[2008.11.26 17:52:45 | 000,000,165 | ---- | C] () -- C:\Documents and Settings\user\Data aplikací\default.rss
[2008.11.26 17:51:06 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008.11.24 15:16:33 | 000,000,039 | ---- | C] () -- C:\WINDOWS\Irremote.ini
[2008.11.23 14:22:57 | 000,004,515 | ---- | C] () -- C:\WINDOWS\WTRAN32.INI
[2008.11.22 11:44:36 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[2008.11.22 11:43:17 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2008.11.21 18:34:32 | 000,000,068 | ---- | C] () -- C:\Documents and Settings\user\Local Settings\Data aplikací\FASTWiz.log
[2008.11.19 16:53:39 | 000,051,200 | ---- | C] () -- C:\Documents and Settings\user\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.11.19 16:41:25 | 000,005,810 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2008.11.19 16:39:43 | 000,003,557 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2005.10.14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.10.14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.10.14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 11:56:50 | 000,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005.10.14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 11:56:48 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
[2004.12.10 19:32:55 | 000,000,157 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2001.07.06 15:30:00 | 000,003,399 | ---- | C] () -- C:\WINDOWS\System32\hptcpmon.ini

========== LOP Check ==========

[2008.11.20 19:46:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ACD Systems
[2008.12.28 14:30:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ESET
[2010.02.15 18:56:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\F-Secure
[2008.12.28 16:23:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2010.02.13 23:33:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
[2009.02.21 13:53:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MumboJumbo
[2009.05.18 20:28:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Phenomedia
[2008.11.21 16:08:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Temp
[2008.11.28 18:15:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\vsosdk
[2008.12.05 11:48:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2008.11.20 20:53:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\ACD Systems
[2009.05.29 09:39:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Command & Conquer 3 Tiberium Wars
[2008.12.28 14:31:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\ESET
[2009.06.07 09:16:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Happy Foto
[2009.01.18 16:04:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\ICQ
[2009.01.26 10:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Image Zone Express
[2009.03.30 12:51:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Marine Aquarium 3
[2008.11.19 16:46:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\OpenOffice.org
[2008.11.28 17:54:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Thinstall
[2010.02.13 18:02:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Data aplikací\Vso
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At10.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At11.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At12.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At13.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At14.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At15.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At16.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At17.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At18.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At19.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At20.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At21.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At22.job
[2010.02.15 21:34:43 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At23.job
[2010.02.15 21:34:43 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At24.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At25.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At26.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At27.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At28.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At29.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At30.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At31.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At32.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At33.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At34.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At35.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At36.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At37.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At38.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At39.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At40.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At41.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At42.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At43.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At44.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At45.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At46.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At47.job
[2010.02.15 21:34:43 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At48.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At5.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At6.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At7.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At8.job
[2010.02.15 21:34:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\Tasks\At9.job

========== Purity Check ==========


< End of report >

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 15 úno 2010 22:33

stále vyskakuje internet exlorer , ted mě začla padat mozilla firefox , u kurzoru problikávají přesipací hodiny jako by se něco spouštělo

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 15 úno 2010 22:45

musím končit tak zase zítra , díky

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu

Příspěvekod Damned » 15 úno 2010 22:46

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Custom Scans/Fixes do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
SRV - (NetDDEdsdm) -- File not found
SRV - (NetDDE) -- File not found
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O20 - AppInit_DLLs: (app_dll.dll) - C:\WINDOWS\System32\app_dll.dll ()
O32 - AutoRun File - [2008.11.19 16:06:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2008.08.07 13:24:02 | 000,000,083 | R--- | M] () - J:\AUTORUN.INF -- [ UDF ]
O32 - AutoRun File - [2008.08.21 18:02:58 | 000,000,000 | R--D | M] - J:\Autoplay -- [ UDF ]
O32 - AutoRun File - [2008.08.05 22:23:05 | 000,189,808 | R--- | M] (Adobe Systems Incorporated) - J:\Autoplay.exe -- [ UDF ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()

:Files
C:\Windows\*.tmp
C:\Windows\System32\*.tmp
C:\WINDOWS\tasks\*.job
C:\WINDOWS\system32\app_dll.dll
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\searchplugins\Search.xml
C:\WINDOWS\System32\GroupPolicy
C:\Avenger
C:\Documents and Settings\All Users\Data aplikací\F-Secure
C:\_OTM
C:\OTMoveIt
C:\avexport.bat
C:\WINDOWS\System32\app_dll.dll.194031.old
C:\Documents and Settings\user\hdashcut .exe
C:\Documents and Settings\user\Data aplikací\inst.exe
C:\Documents and Settings\All Users\Data aplikací\F-Secure
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions
C:\Windows\tasks\SA.DAT

:Reg

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]



Poté klikni nahoře na Run Fix. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

makojed
Level 2.5
Level 2.5
Příspěvky: 363
Registrován: květen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod makojed » 16 úno 2010 08:48

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
Service NetDDEdsdm stopped successfully!
Service NetDDEdsdm deleted successfully!
File File not found not found.
Service NetDDE stopped successfully!
Service NetDDE deleted successfully!
File File not found not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:app_dll.dll deleted successfully.
C:\WINDOWS\system32\app_dll.dll moved successfully.
C:\AUTOEXEC.BAT moved successfully.
File J:\AUTORUN.INF not found.
File not found.
File J:\Autoplay.exe not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session manager\\BootExecute:autocheck autochk * deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session manager\\BootExecute:lsdelete deleted successfully.
C:\WINDOWS\system32\lsdelete.exe moved successfully.
========== FILES ==========
File\Folder C:\Windows\*.tmp not found.
File\Folder C:\Windows\System32\*.tmp not found.
C:\WINDOWS\tasks\At1.job moved successfully.
C:\WINDOWS\tasks\At10.job moved successfully.
C:\WINDOWS\tasks\At11.job moved successfully.
C:\WINDOWS\tasks\At12.job moved successfully.
C:\WINDOWS\tasks\At13.job moved successfully.
C:\WINDOWS\tasks\At14.job moved successfully.
C:\WINDOWS\tasks\At15.job moved successfully.
C:\WINDOWS\tasks\At16.job moved successfully.
C:\WINDOWS\tasks\At17.job moved successfully.
C:\WINDOWS\tasks\At18.job moved successfully.
C:\WINDOWS\tasks\At19.job moved successfully.
C:\WINDOWS\tasks\At2.job moved successfully.
C:\WINDOWS\tasks\At20.job moved successfully.
C:\WINDOWS\tasks\At21.job moved successfully.
C:\WINDOWS\tasks\At22.job moved successfully.
C:\WINDOWS\tasks\At23.job moved successfully.
C:\WINDOWS\tasks\At24.job moved successfully.
C:\WINDOWS\tasks\At25.job moved successfully.
C:\WINDOWS\tasks\At26.job moved successfully.
C:\WINDOWS\tasks\At27.job moved successfully.
C:\WINDOWS\tasks\At28.job moved successfully.
C:\WINDOWS\tasks\At29.job moved successfully.
C:\WINDOWS\tasks\At3.job moved successfully.
C:\WINDOWS\tasks\At30.job moved successfully.
C:\WINDOWS\tasks\At31.job moved successfully.
C:\WINDOWS\tasks\At32.job moved successfully.
C:\WINDOWS\tasks\At33.job moved successfully.
C:\WINDOWS\tasks\At34.job moved successfully.
C:\WINDOWS\tasks\At35.job moved successfully.
C:\WINDOWS\tasks\At36.job moved successfully.
C:\WINDOWS\tasks\At37.job moved successfully.
C:\WINDOWS\tasks\At38.job moved successfully.
C:\WINDOWS\tasks\At39.job moved successfully.
C:\WINDOWS\tasks\At4.job moved successfully.
C:\WINDOWS\tasks\At40.job moved successfully.
C:\WINDOWS\tasks\At41.job moved successfully.
C:\WINDOWS\tasks\At42.job moved successfully.
C:\WINDOWS\tasks\At43.job moved successfully.
C:\WINDOWS\tasks\At44.job moved successfully.
C:\WINDOWS\tasks\At45.job moved successfully.
C:\WINDOWS\tasks\At46.job moved successfully.
C:\WINDOWS\tasks\At47.job moved successfully.
C:\WINDOWS\tasks\At48.job moved successfully.
C:\WINDOWS\tasks\At5.job moved successfully.
C:\WINDOWS\tasks\At6.job moved successfully.
C:\WINDOWS\tasks\At7.job moved successfully.
C:\WINDOWS\tasks\At8.job moved successfully.
C:\WINDOWS\tasks\At9.job moved successfully.
File\Folder C:\WINDOWS\system32\app_dll.dll not found.
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\searchplugins\Search.xml moved successfully.
C:\WINDOWS\System32\GroupPolicy\User folder moved successfully.
C:\WINDOWS\System32\GroupPolicy\Machine folder moved successfully.
C:\WINDOWS\System32\GroupPolicy\Adm folder moved successfully.
C:\WINDOWS\System32\GroupPolicy folder moved successfully.
C:\Avenger folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\F-Secure\Daas2\cert folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\F-Secure\Daas2 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\F-Secure folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\Tasks folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\System32 folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\Installer folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\DED53B0BB67C4244AE6AD6FD3C28D1EF.TMP folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6B0.tmp folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP68C.tmp folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP663.tmp folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP58B.tmp folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP51A.tmp folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly\NativeImages_v2.0.50727_32 folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS\assembly folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\WINDOWS folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\ZS2PR4JD folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5 folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Temporary Internet Files\AntiPhishing folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Temporary Internet Files folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\Cache folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox\Profiles folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Data aplikací\Mozilla\Firefox folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Data aplikací\Mozilla folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings\Data aplikací folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user\Local Settings folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings\user folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744\Documents and Settings folder moved successfully.
C:\_OTM\MovedFiles\02152010_212744 folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\windows\Tasks folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\windows\system32 folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\windows folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\program files\internet explorer folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\program files folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\R0W7LLLT folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5 folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\Documents and Settings\user\Local Settings\Temporary Internet Files\AntiPhishing folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\Documents and Settings\user\Local Settings\Temporary Internet Files folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\Documents and Settings\user\Local Settings folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\Documents and Settings\user folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041\Documents and Settings folder moved successfully.
C:\_OTM\MovedFiles\02152010_094041 folder moved successfully.
C:\_OTM\MovedFiles folder moved successfully.
C:\_OTM folder moved successfully.
C:\OTMoveIt folder moved successfully.
C:\avexport.bat moved successfully.
C:\WINDOWS\System32\app_dll.dll.194031.old moved successfully.
C:\Documents and Settings\user\hdashcut .exe moved successfully.
C:\Documents and Settings\user\Data aplikací\inst.exe moved successfully.
File\Folder C:\Documents and Settings\All Users\Data aplikací\F-Secure not found.
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults\preferences folder moved successfully.
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults folder moved successfully.
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\chrome folder moved successfully.
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} folder moved successfully.
C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\c5178bkx.default\extensions folder moved successfully.
C:\Windows\tasks\SA.DAT moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: user
->Temp folder emptied: 753396 bytes
->Temporary Internet Files folder emptied: 19266217 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 30260507 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 46014 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 23559113 bytes
RecycleBin emptied: 549376 bytes

Total Files Cleaned = 71,00 mb


OTL by OldTimer - Version 3.1.28.0 log created on 02162010_080735

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 119 hostů