potíže s notebookem a antivirem Vyřešeno

Sekce věnovaná virům a jiným škodlivým kódům, rovněž ale nástrojům, kterým se lze proti nim bránit…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: potíže s notebookem a antivirem

Příspěvekod Damned » 04 bře 2010 16:46

Atáhni si aswclear z http://www.avast.com/uninstall-utility . Postupuj podle návodu a odstraň zbytky avastu:

http://www.avast.com/uninstall-utility píše:1. Download aswClear5.exe(or aswClear.exe for older avast! 4.8. ) on to your desktop
2. Start Windows in Safe Mode
3. Open (execute) the uninstall utility
4. If you installed avast! in a different folder than the default, browse for it. (Note: Be careful! The content of any folder you choose will be deleted!)
5. Click REMOVE
6. Restart your computer

*****************************************************************************************************************************************
Až odstraníš, tak odinstaluj ComboFix.( nutné ) .
ComboFix se odinstaluje takto:
Start-Spustit a zadej Combofix[mezera]/uninstall

Stáhni si T-Cleaner ( nutné - smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš->spustíš)
*****************************************************************************************************************************************
Stáhni si OTL na Plochu.
Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Output klikni na minimal Output.Pod Standard Registry změň na All. Zatrhni LOP Check a Purity Check. File age změň na 14 days. Všechny ostatní nastavení ponech jak jsou. Klikni na Run Scan. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Reklama
Gilan
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: potíže s notebookem a antivirem

Příspěvekod Gilan » 04 bře 2010 18:07

ktomu je potreba spustit windows v safe mode?potiž je, že nevim jak se to dela... :D

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: potíže s notebookem a antivirem

Příspěvekod Damned » 04 bře 2010 18:39

Při spouštění PC mačkej F8, a vyber možnost "Spustit v nouzovém režimu". Nezapomeň zkontrolovat, zda tam máš správnou cestu instalace avastu.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Gilan
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: potíže s notebookem a antivirem

Příspěvekod Gilan » 04 bře 2010 21:39

potreboval bych pls jeste poradit s tim tcleanrem. kdyz ho spustim, najde prvni slozku, kde se pta, smazat ci nesmazat. pokud dam nesmazat, nic se nedeje, dal se pta smazat ci nesmazat, pokud dam smazat restartne se compl

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: potíže s notebookem a antivirem

Příspěvekod Damned » 04 bře 2010 21:43

Pokud restartoval, mělo by být vše odstraněno.

Teď tedy ten OTL.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Gilan
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: potíže s notebookem a antivirem

Příspěvekod Gilan » 04 bře 2010 21:58

tady je otl: (a protože má moc znaků, tak to budu muset rozkouskovat)
OTL logfile created on: 4.3.2010 21:44:38 - Run 1
OTL by OldTimer - Version 3.1.33.0 Folder = C:\Documents and Settings\Ivo Kalvoda\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

238,00 Mb Total Physical Memory | 107,00 Mb Available Physical Memory | 45,00% Memory free
585,00 Mb Paging File | 383,00 Mb Available in Paging File | 65,00% Paging File free
Paging file location(s): C:\pagefile.sys 360 720 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 27,47 Gb Total Space | 11,43 Gb Free Space | 41,60% Space Free | Partition Type: FAT32
Drive D: | 9,76 Gb Total Space | 4,02 Gb Free Space | 41,19% Space Free | Partition Type: FAT32
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: ACER-XWESFYYWU2
Current User Name: Ivo Kalvoda
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe (Gemfor s.r.o.)
PRC - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe (Gemfor s.r.o.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Common Files\RTE\RTEGPRS.exe (M-SmartCom)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_explorer.exe ()


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe (OldTimer Tools)


========== Win32 Services (SafeList) ==========

SRV - (GoogleDesktopManager-110309-193829) -- File not found
SRV - (ameisvc) -- C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe (Gemfor s.r.o.)


========== Driver Services (SafeList) ==========

DRV - (NSCIRDA) -- C:\WINDOWS\system32\drivers\nscirda.sys (National Semiconductor Corporation)
DRV - (Ethpdrv) -- C:\WINDOWS\system32\drivers\ethpdrv.sys (Gemfor s.r.o.)
DRV - (IpwP) -- C:\WINDOWS\system32\drivers\ipw3gnet.sys (IPWireless Inc.)
DRV - (hamachi) -- C:\WINDOWS\system32\drivers\hamachi.sys (Applied Networking Inc.)
DRV - (Nokia USB Phone Parent) -- C:\WINDOWS\system32\drivers\nmwcd.sys (Nokia)
DRV - (Nokia USB Modem) -- C:\WINDOWS\system32\drivers\nmwcdcm.sys (Nokia)
DRV - (Nokia USB Generic) -- C:\WINDOWS\system32\drivers\nmwcdc.sys (Nokia)
DRV - (NTIDrvr) -- C:\WINDOWS\system32\drivers\NTIDrvr.sys (NewTech Infosystems, Inc.)
DRV - (PLFF) -- C:\WINDOWS\system32\drivers\plff.sys (Prolific Technology Inc.)
DRV - (MLPTDR_P) -- C:\WINDOWS\system32\MLPTDR_P.SYS (KONICA MINOLTA BUSINESS TECHNOLOGIES, INC.)
DRV - (Hotkey) -- C:\WINDOWS\system32\drivers\HOTKEY.sys ()
DRV - (cs429x) -- C:\WINDOWS\system32\drivers\cwawdm.sys (Applied Drivers Corporation)
DRV - (SynTP) -- C:\WINDOWS\system32\drivers\SynTP.sys (Synaptics, Inc.)
DRV - (WCMVmdXP) -- C:\WINDOWS\system32\drivers\WCMVmdXP.sys (WCM)
DRV - (WCMBusXP) -- C:\WINDOWS\System32\DRIVERS\WCMBusXP.sys (WCM)
DRV - (BTDriver) -- C:\WINDOWS\system32\drivers\btport.sys ()
DRV - (acernbm) -- C:\WINDOWS\system32\drivers\acernbm.sys ()
DRV - (BTWDNDIS) -- C:\WINDOWS\system32\drivers\btwdndis.sys ()
DRV - (BTSERIAL) -- C:\WINDOWS\system32\drivers\btserial.sys ()
DRV - (BTSLBCSP) -- C:\WINDOWS\system32\drivers\btslbcsp.sys ()
DRV - (BTKRNL) -- C:\WINDOWS\system32\drivers\btkrnl.sys ()
DRV - (AgereSoftModem) -- C:\WINDOWS\system32\drivers\AGRSM.sys (Agere Systems)
DRV - (GTwinUSB) -- C:\WINDOWS\system32\drivers\GTwinUSB.sys (Gemplus)
DRV - (rtl8139) -- C:\WINDOWS\system32\drivers\R8139n51.sys (Realtek Semiconductor Corporation )
DRV - (pfc) -- C:\WINDOWS\system32\drivers\pfc.sys (Padus, Inc.)
DRV - (GEMPC430) -- C:\WINDOWS\system32\drivers\grclass.sys (Gemplus)
DRV - (POWERKEY) -- C:\Program Files\Launch Manager\POWERKEY.SYS ()


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" =
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6

FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.03.04 11:38:28 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.03.04 11:38:28 | 000,000,000 | ---D | M]

[2010.03.04 11:39:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Mozilla\Extensions
[2010.03.04 11:39:38 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010.03.04 11:39:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Mozilla\Firefox\Profiles\gj6ugfgz.default\extensions
[2010.03.04 11:38:28 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.03.04 11:38:30 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.01.16 04:11:42 | 000,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.01.16 04:11:42 | 000,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2010.01.16 04:11:42 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2010.01.16 01:50:40 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.01.16 01:50:40 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.01.16 01:50:40 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.01.16 01:50:40 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.01.16 01:50:40 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.01.16 01:50:40 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: ([2010.03.04 15:57:32 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {7c1ce531-09e9-4fc5-9803-1c2956615786} - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O4 - HKLM..\Run: [AGRSMMSG] C:\WINDOWS\AGRSMMSG.exe (Agere Systems)
O4 - HKLM..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe (Nokia Mobile Phones Ltd.)
O4 - HKLM..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\Launch Application 2.exe (Nokia)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Computer, Inc.)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - HKCU..\Run: [RTEGPRS] C:\Program Files\Common Files\RTE\RTEGPRS.exe (M-SmartCom)
O4 - HKCU..\Run: [T-Mobile Communication Centre] C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe (Gemfor s.r.o.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe (ICQ, Inc.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe (ICQ, Inc.)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (Intertrust Technologies, Inc.)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {19E28AFC-EAE3-4CE5-AC83-2407B42F57C9} http://download.microsoft.com/download/ ... 5069726788 (MSSecurityAdvisor Class)
O16 - DPF: {4ADC518E-B607-11D4-B395-0001020F4519} https://ib24.csob.cz/Comp/signer.cab (SigVer Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/f ... wflash.cab (Shockwave Flash Object)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Zoner\ZPS 7\ZMEWallPaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Zoner\ZPS 7\ZMEWallPaper.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004.11.26 18:20:00 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.CSW -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

========== Files/Folders - Created Within 14 Days ==========

[2010.03.04 21:37:50 | 000,552,960 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe
[2010.03.04 21:31:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2010.03.04 21:30:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Plocha\WNW - Instalační soubory
[2010.03.04 21:16:50 | 000,000,000 | -HSD | C] -- C:\Recycled
[2010.03.04 16:04:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010.03.04 14:22:57 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010.03.04 14:18:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010.03.04 13:51:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Dokumenty\Stažené soubory
[2010.03.04 12:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Ivo Kalvoda\Recent
[2010.03.04 11:38:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Local Settings\Data aplikací\Mozilla
[2010.03.04 11:38:27 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010.03.04 11:37:45 | 008,158,488 | ---- | C] (Mozilla) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\FirefoxSetup3.6.exe
[2010.03.04 11:29:47 | 000,000,000 | ---D | C] -- C:\Program Files\T-Mobile
[2010.03.03 21:11:11 | 000,101,616 | ---- | C] (Gemfor s.r.o.) -- C:\WINDOWS\System32\4GCleanup.exe
[2010.03.03 17:50:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Malwarebytes
[2010.03.03 17:50:45 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010.03.03 17:50:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2010.03.03 17:50:40 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010.03.03 17:50:39 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.03.03 17:49:35 | 005,115,832 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\mbam-setup.exe
[2010.03.03 16:45:41 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2010.03.03 11:05:46 | 000,000,000 | ---D | C] -- C:\Program Files\TrendMicro
[2010.03.01 21:15:49 | 000,000,000 | ---D | C] -- C:\Program Files\RegCleaner
[2010.03.01 19:34:35 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010.03.01 19:32:42 | 003,396,856 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\ccsetup229.exe
[2004.06.24 17:25:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\AVG7
[2003.06.13 23:37:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Microsoft
[2003.06.13 23:37:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Microsoft
[2003.06.13 23:24:12 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Microsoft
[2003.06.13 23:24:12 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Data aplikací\Microsoft
[4 C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 14 Days ==========

[2010.03.04 21:38:00 | 000,552,960 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe
[2010.03.04 21:31:48 | 000,000,728 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Web'n'walk Manager.lnk
[2010.03.04 21:30:04 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.03.04 21:30:00 | 000,000,424 | ---- | M] () -- C:\WINDOWS\tasks\Symantec NetDetect.job
[2010.03.04 21:29:40 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.03.04 21:29:34 | 250,073,088 | -HS- | M] () -- C:\hiberfil.sys
[2010.03.04 21:29:34 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.03.04 21:27:16 | 000,002,505 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010.03.04 21:19:42 | 008,912,896 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\NTUSER.DAT
[2010.03.04 21:19:42 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Ivo Kalvoda\ntuser.ini
[2010.03.04 16:04:58 | 000,029,160 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
[2010.03.04 15:59:10 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.03.04 15:42:52 | 000,000,755 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\Zástupce - ComboFix.lnk
[2010.03.04 14:23:02 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010.03.04 12:10:34 | 000,339,726 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Dokumenty\cc_20100304_121018.reg
[2010.03.04 11:39:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010.03.04 11:38:38 | 000,001,510 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2010.03.04 11:37:46 | 008,158,488 | ---- | M] (Mozilla) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\FirefoxSetup3.6.exe
[2010.03.03 23:02:52 | 005,051,280 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\WNW_4G_cs.exe
[2010.03.03 17:50:50 | 000,000,604 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2010.03.03 17:49:36 | 005,115,832 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\mbam-setup.exe
[2010.03.03 16:28:52 | 000,002,447 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HiJackThis.lnk
[2010.03.03 15:32:22 | 030,909,992 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\avira_antivir_personal_en.exe
[2010.03.01 21:15:52 | 000,000,553 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\RegCleaner.lnk
[2010.03.01 20:25:44 | 000,141,240 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.03.01 19:43:42 | 000,001,456 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\CCleaner.lnk
[2010.03.01 14:42:02 | 001,401,344 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HijackThis.msi
[2010.02.27 23:20:14 | 000,553,687 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\regcleaner.exe
[2010.02.27 20:33:06 | 003,396,856 | ---- | M] (Piriform Ltd) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\ccsetup229.exe
[4 C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010.03.04 21:29:32 | 250,073,088 | -HS- | C] () -- C:\hiberfil.sys
[2010.03.04 15:42:50 | 000,000,755 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\Zástupce - ComboFix.lnk
[2010.03.04 14:23:00 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010.03.04 14:22:58 | 000,261,312 | ---- | C] () -- C:\cmldr
[2010.03.04 13:48:56 | 000,000,728 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Web'n'walk Manager.lnk
[2010.03.04 12:10:22 | 000,339,726 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Dokumenty\cc_20100304_121018.reg
[2010.03.04 11:39:01 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010.03.04 11:38:36 | 000,001,510 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2010.03.04 10:31:10 | 005,051,280 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\WNW_4G_cs.exe
[2010.03.03 17:50:48 | 000,000,604 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2010.03.03 14:56:12 | 030,909,992 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\avira_antivir_personal_en.exe
[2010.03.03 11:05:48 | 000,002,447 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HiJackThis.lnk
[2010.03.03 10:37:07 | 001,401,344 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HijackThis.msi
[2010.03.01 21:15:50 | 000,000,553 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\RegCleaner.lnk
[2010.03.01 21:15:17 | 000,553,687 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\regcleaner.exe
[2010.03.01 19:42:31 | 000,001,456 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\CCleaner.lnk
[2010.02.02 00:20:19 | 000,000,118 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008.08.07 11:21:11 | 000,000,400 | ---- | C] () -- C:\WINDOWS\T602.INI
[2006.05.28 11:18:33 | 000,009,867 | ---- | C] () -- C:\WINDOWS\System32\drivers\HOTKEY.sys
[2006.02.10 22:12:21 | 000,000,733 | ---- | C] () -- C:\WINDOWS\aolpr.ini
[2005.08.06 18:22:21 | 000,000,019 | ---- | C] () -- C:\WINDOWS\SoundConverter.INI
[2005.06.29 09:58:02 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.04.28 16:08:09 | 000,000,021 | ---- | C] () -- C:\WINDOWS\VI2_SETUP.ini
[2005.04.28 16:05:28 | 000,150,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\MLTCAP.sys
[2005.04.11 19:23:21 | 000,078,336 | ---- | C] () -- C:\WINDOWS\System32\Ltimg62n.dll
[2005.04.11 19:23:21 | 000,029,184 | ---- | C] () -- C:\WINDOWS\System32\Ltwnd62n.dll
[2005.04.11 19:23:21 | 000,024,064 | ---- | C] () -- C:\WINDOWS\System32\Lttwn62n.dll
[2005.04.11 19:23:21 | 000,003,200 | ---- | C] () -- C:\WINDOWS\System32\Ltthk62w.dll
[2005.04.11 19:23:20 | 000,185,344 | ---- | C] () -- C:\WINDOWS\System32\Ltann62n.dll
[2005.04.11 19:23:20 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\Lffax62n.dll
[2005.04.11 19:23:20 | 000,158,720 | ---- | C] () -- C:\WINDOWS\System32\Lfcmp62n.dll
[2005.04.11 19:23:20 | 000,110,080 | ---- | C] () -- C:\WINDOWS\System32\Lfpng62n.dll
[2005.04.11 19:23:20 | 000,047,616 | ---- | C] () -- C:\WINDOWS\System32\Lftif62n.dll
[2005.04.11 19:23:20 | 000,043,008 | ---- | C] () -- C:\WINDOWS\System32\Ltfil62n.dll
[2005.04.11 19:23:20 | 000,027,136 | ---- | C] () -- C:\WINDOWS\System32\Lflma62n.dll
[2005.04.11 19:23:20 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\Lfica62n.dll
[2005.04.11 19:23:20 | 000,023,552 | ---- | C] () -- C:\WINDOWS\System32\Lfpcx62n.dll
[2005.04.11 19:23:20 | 000,023,552 | ---- | C] () -- C:\WINDOWS\System32\Lflmb62n.dll
[2005.04.11 19:23:20 | 000,022,528 | ---- | C] () -- C:\WINDOWS\System32\Lfeps62n.dll
[2005.04.11 19:23:20 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\Lfpct62n.dll
[2005.04.11 19:23:20 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\Lfgif62n.dll
[2005.04.11 19:23:20 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\Lfbmp62n.dll
[2005.04.11 19:23:20 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\Lfpsd62n.dll
[2005.04.11 19:23:20 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\Lfwmf62n.dll
[2005.04.11 19:23:20 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\Lftga62n.dll
[2005.04.11 19:23:20 | 000,019,456 | ---- | C] () -- C:\WINDOWS\System32\Lfwpg62n.dll
[2005.04.11 19:23:20 | 000,018,944 | ---- | C] () -- C:\WINDOWS\System32\Lfimg62n.dll
[2005.04.11 19:23:20 | 000,018,432 | ---- | C] () -- C:\WINDOWS\System32\Lfras62n.dll
[2005.04.11 19:23:20 | 000,018,432 | ---- | C] () -- C:\WINDOWS\System32\Lfmsp62n.dll
[2005.04.11 19:23:20 | 000,017,920 | ---- | C] () -- C:\WINDOWS\System32\Lfmac62n.dll
[2005.04.11 19:23:20 | 000,017,920 | ---- | C] () -- C:\WINDOWS\System32\Lfcal62n.dll
[2005.04.11 19:23:20 | 000,017,408 | ---- | C] () -- C:\WINDOWS\System32\Lfwfx62n.dll
[2005.04.11 19:23:20 | 000,017,408 | ---- | C] () -- C:\WINDOWS\System32\Lfpcd62n.dll
[2005.02.17 12:31:58 | 000,679,936 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.02.17 12:31:58 | 000,202,752 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.02.17 12:31:58 | 000,105,472 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.02.17 12:31:58 | 000,092,672 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.02.17 12:31:58 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2005.02.17 12:31:58 | 000,021,504 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.02.11 16:05:03 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2005.01.25 20:30:35 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
[2005.01.25 20:30:35 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
[2005.01.25 20:30:35 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
[2004.11.29 13:36:54 | 000,001,766 | ---- | C] () -- C:\WINDOWS\PRMANPCF.INI
[2004.11.29 13:34:46 | 000,000,036 | ---- | C] () -- C:\WINDOWS\PRMAN32.INI
[2004.11.26 18:27:19 | 000,000,285 | ---- | C] () -- C:\WINDOWS\FE.INI
[2004.10.24 18:11:40 | 000,000,086 | ---- | C] () -- C:\WINDOWS\mariomoto.ini
[2004.07.26 08:24:25 | 000,000,030 | ---- | C] () -- C:\WINDOWS\TextSpy.ini
[2004.06.19 13:19:47 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004.02.10 18:46:11 | 000,000,833 | ---- | C] () -- C:\WINDOWS\SIERRA.INI
[2004.01.30 19:12:21 | 000,000,000 | ---- | C] () -- C:\WINDOWS\pcfriend.INI
[2004.01.21 15:33:24 | 000,000,245 | ---- | C] () -- C:\WINDOWS\LEXICON.INI
[2004.01.16 18:36:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Jcmkr32.INI
[2004.01.16 10:15:10 | 000,405,588 | ---- | C] () -- C:\WINDOWS\System32\vc6-stlport-re300l.dll
[2004.01.16 10:15:10 | 000,081,920 | ---- | C] () -- C:\WINDOWS\dlib.dll
[2004.01.16 10:15:03 | 000,001,140 | ---- | C] () -- C:\Program Files\GPRSpeed Plus Client setup.log
[2004.01.16 10:09:24 | 000,000,035 | ---- | C] () -- C:\WINDOWS\System32\RTELM.dll
[2004.01.12 15:06:00 | 000,000,134 | ---- | C] () -- C:\WINDOWS\DMEDB.INI
[2004.01.12 15:06:00 | 000,000,057 | ---- | C] () -- C:\WINDOWS\IEDB299.ini
[2004.01.11 14:45:26 | 000,000,013 | ---- | C] () -- C:\WINDOWS\TEXTware.ini
[2004.01.10 19:28:34 | 000,135,168 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2004.01.10 17:21:13 | 000,001,125 | ---- | C] () -- C:\WINDOWS\Winamp.ini
[2004.01.10 17:21:12 | 000,000,041 | ---- | C] () -- C:\WINDOWS\winampa.ini
[2004.01.10 17:13:55 | 000,002,961 | ---- | C] () -- C:\WINDOWS\VPlayer.INI
[2004.01.10 17:06:12 | 000,006,688 | ---- | C] () -- C:\WINDOWS\System32\Digita.sys
[2004.01.10 17:06:11 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\TransportUSB.dll
[2004.01.10 17:06:11 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\TransportSerial.dll
[2004.01.10 17:06:09 | 000,335,872 | ---- | C] () -- C:\WINDOWS\System32\ldf252.dll
[2004.01.10 17:04:55 | 000,000,855 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2004.01.10 16:56:57 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003.10.30 04:47:50 | 000,027,102 | ---- | C] () -- C:\WINDOWS\MSTMON_P.INI
[2003.08.22 11:51:24 | 000,018,130 | ---- | C] () -- C:\WINDOWS\MSUMLT_P.INI
[2003.07.22 05:41:06 | 000,001,150 | ---- | C] () -- C:\WINDOWS\System32\Oeminfo.ini
[2003.06.14 01:10:00 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2003.06.14 00:03:12 | 000,006,570 | ---- | C] () -- C:\WINDOWS\System32\drivers\acernbm.sys
[2003.06.14 00:02:10 | 000,000,044 | ---- | C] () -- C:\WINDOWS\acer.ini
[2003.06.13 23:59:20 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK32.dll
[2003.06.13 23:45:47 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\SynTPCoI.dll
[2003.06.13 23:38:03 | 000,000,240 | ---- | C] () -- C:\WINDOWS\PQDISK.INI
[2003.06.13 23:38:03 | 000,000,085 | ---- | C] () -- C:\WINDOWS\LaunApp.ini
[2003.06.13 23:29:06 | 000,003,568 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2003.03.12 09:34:00 | 000,030,171 | ---- | C] () -- C:\WINDOWS\System32\drivers\btport.sys
[2003.03.11 15:51:02 | 000,217,088 | ---- | C] () -- C:\WINDOWS\System32\btins.dll
[2003.02.21 14:27:36 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\bt2k_ins.dll
[2003.02.21 11:34:40 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\btsec.dll
[2003.02.21 11:26:54 | 000,144,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\btwdndis.sys
[2003.02.21 11:25:16 | 000,022,119 | ---- | C] () -- C:\WINDOWS\System32\drivers\btserial.sys
[2003.02.21 11:24:56 | 000,222,164 | ---- | C] () -- C:\WINDOWS\System32\drivers\btslbcsp.sys
[2003.02.21 11:23:14 | 001,149,978 | ---- | C] () -- C:\WINDOWS\System32\drivers\btkrnl.sys
[2003.02.21 11:21:28 | 000,021,701 | ---- | C] () -- C:\WINDOWS\System32\drivers\btaudio.sys
[2003.02.21 10:10:42 | 000,757,837 | ---- | C] () -- C:\WINDOWS\System32\BTNeighborhood.dll
[2003.02.21 10:07:22 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\btwpimif.dll
[2003.02.21 10:06:38 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\BtXpShell.dll
[2003.02.21 10:01:30 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\btosif_ol.dll
[2003.02.21 10:01:06 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\btosif_notes.dll
[2003.02.21 10:00:38 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\btosif.dll
[2003.02.21 09:57:22 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\BtAudioHelper.dll
[2003.02.21 09:46:46 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\BTNCopy.dll
[2003.02.21 09:04:12 | 000,720,896 | ---- | C] () -- C:\WINDOWS\System32\BtWizard.dll
[2003.02.21 09:02:52 | 000,184,320 | ---- | C] () -- C:\WINDOWS\System32\btcss.dll
[2003.02.21 09:01:00 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\btsendto_wab.dll
[2003.02.21 09:00:40 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\btsendto_office.dll
[2003.02.21 08:59:04 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\btsendto_notes.dll
[2003.02.21 08:58:02 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\btosif_olx.dll
[2003.02.21 08:57:30 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll
[2003.02.21 08:56:58 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\bthcrpui.dll
[2003.02.21 08:56:32 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\bthcrp.dll
[2003.02.21 08:56:06 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\btsendto.dll
[2003.02.21 08:54:10 | 000,462,848 | ---- | C] () -- C:\WINDOWS\System32\WidcommSdk.dll
[2003.02.21 08:52:32 | 000,368,701 | ---- | C] () -- C:\WINDOWS\System32\wbtapi.dll
[2003.02.21 08:50:32 | 000,102,400 | ---- | C] () -- C:\WINDOWS\System32\BTXPPanel.dll
[2003.02.21 08:50:12 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\btbigbmp.dll
[2003.02.21 08:46:20 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\btdev.dll
[2003.02.21 08:45:50 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\btrezxp.dll
[2003.02.21 08:45:42 | 002,166,784 | ---- | C] () -- C:\WINDOWS\System32\btrez.dll
[2002.05.17 22:18:30 | 000,039,936 | ---- | C] () -- C:\WINDOWS\System32\mp4fil32.dll
[2002.05.15 22:29:04 | 000,000,607 | ---- | C] () -- C:\WINDOWS\System32\BTNeighborhood.dll.manifest
[2001.12.26 16:12:30 | 000,065,536 | R--- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll
[2001.11.23 17:18:00 | 000,000,597 | ---- | C] () -- C:\WINDOWS\System32\btcss.dll.manifest
[2001.11.14 12:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll
[2001.09.03 23:46:38 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Hmpg12.dll
[2001.07.30 16:33:56 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll
[2001.07.23 22:04:36 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll
[1999.01.22 22:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
[1998.10.11 01:07:38 | 000,088,576 | ---- | C] () -- C:\WINDOWS\System32\Iticheck.dll

========== LOP Check ==========

[2004.01.16 10:29:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\WCM
[2004.06.24 17:25:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVG7
[2005.02.18 20:04:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Autodesk
[2003.06.13 23:57:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\InterTrust
[2005.12.28 14:04:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Happy Foto
[2004.01.10 17:06:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ACDInTouch
[2004.01.10 17:06:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ACD Systems
[2004.01.16 10:10:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\RTE
[2004.01.16 10:29:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\WCM
[2004.06.24 17:25:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\AVG7
[2006.01.05 16:25:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\SteelBytes
[2004.11.26 20:39:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Renault
[2005.02.27 13:28:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ICQLite
[2005.07.18 13:27:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Zoner
[2005.08.06 16:31:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Nokia
[2005.08.07 11:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\PC Suite
[2005.08.09 20:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Nokia Multimedia Player
[2008.02.11 07:56:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ICQ Toolbar
[2005.08.11 09:14:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\DataLayer
[2008.02.11 07:21:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ICQ

========== Purity Check ==========


< End of report >

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe (Gemfor s.r.o.)
PRC - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe (Gemfor s.r.o.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Common Files\RTE\RTEGPRS.exe (M-SmartCom)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_explorer.exe ()


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe (OldTimer Tools)


========== Win32 Services (SafeList) ==========

SRV - (GoogleDesktopManager-110309-193829) -- File not found
SRV - (ameisvc) -- C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe (Gemfor s.r.o.)


========== Driver Services (SafeList) ==========

DRV - (NSCIRDA) -- C:\WINDOWS\system32\drivers\nscirda.sys (National Semiconductor Corporation)
DRV - (Ethpdrv) -- C:\WINDOWS\system32\drivers\ethpdrv.sys (Gemfor s.r.o.)
DRV - (IpwP) -- C:\WINDOWS\system32\drivers\ipw3gnet.sys (IPWireless Inc.)
DRV - (hamachi) -- C:\WINDOWS\system32\drivers\hamachi.sys (Applied Networking Inc.)
DRV - (Nokia USB Phone Parent) -- C:\WINDOWS\system32\drivers\nmwcd.sys (Nokia)
DRV - (Nokia USB Modem) -- C:\WINDOWS\system32\drivers\nmwcdcm.sys (Nokia)
DRV - (Nokia USB Generic) -- C:\WINDOWS\system32\drivers\nmwcdc.sys (Nokia)
DRV - (NTIDrvr) -- C:\WINDOWS\system32\drivers\NTIDrvr.sys (NewTech Infosystems, Inc.)
DRV - (PLFF) -- C:\WINDOWS\system32\drivers\plff.sys (Prolific Technology Inc.)
DRV - (MLPTDR_P) -- C:\WINDOWS\system32\MLPTDR_P.SYS (KONICA MINOLTA BUSINESS TECHNOLOGIES, INC.)
DRV - (Hotkey) -- C:\WINDOWS\system32\drivers\HOTKEY.sys ()
DRV - (cs429x) -- C:\WINDOWS\system32\drivers\cwawdm.sys (Applied Drivers Corporation)
DRV - (SynTP) -- C:\WINDOWS\system32\drivers\SynTP.sys (Synaptics, Inc.)
DRV - (WCMVmdXP) -- C:\WINDOWS\system32\drivers\WCMVmdXP.sys (WCM)
DRV - (WCMBusXP) -- C:\WINDOWS\System32\DRIVERS\WCMBusXP.sys (WCM)
DRV - (BTDriver) -- C:\WINDOWS\system32\drivers\btport.sys ()
DRV - (acernbm) -- C:\WINDOWS\system32\drivers\acernbm.sys ()
DRV - (BTWDNDIS) -- C:\WINDOWS\system32\drivers\btwdndis.sys ()
DRV - (BTSERIAL) -- C:\WINDOWS\system32\drivers\btserial.sys ()
DRV - (BTSLBCSP) -- C:\WINDOWS\system32\drivers\btslbcsp.sys ()
DRV - (BTKRNL) -- C:\WINDOWS\system32\drivers\btkrnl.sys ()
DRV - (AgereSoftModem) -- C:\WINDOWS\system32\drivers\AGRSM.sys (Agere Systems)
DRV - (GTwinUSB) -- C:\WINDOWS\system32\drivers\GTwinUSB.sys (Gemplus)
DRV - (rtl8139) -- C:\WINDOWS\system32\drivers\R8139n51.sys (Realtek Semiconductor Corporation )
DRV - (pfc) -- C:\WINDOWS\system32\drivers\pfc.sys (Padus, Inc.)
DRV - (GEMPC430) -- C:\WINDOWS\system32\drivers\grclass.sys (Gemplus)
DRV - (POWERKEY) -- C:\Program Files\Launch Manager\POWERKEY.SYS ()


========== Standard Registry (All) ==========


========== Internet Explorer ==========

Gilan
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: potíže s notebookem a antivirem

Příspěvekod Gilan » 04 bře 2010 21:59

...tady je zbytek OTL

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" =
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" =

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6

FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.03.04 11:38:28 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.03.04 11:38:28 | 000,000,000 | ---D | M]

[2010.03.04 11:39:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Mozilla\Extensions
[2010.03.04 11:39:38 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010.03.04 11:39:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Mozilla\Firefox\Profiles\gj6ugfgz.default\extensions
[2010.03.04 11:38:28 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.03.04 11:38:30 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.01.16 04:11:42 | 000,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.01.16 04:11:42 | 000,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2010.01.16 04:11:42 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2010.01.16 01:50:40 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.01.16 01:50:40 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.01.16 01:50:40 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.01.16 01:50:40 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.01.16 01:50:40 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.01.16 01:50:40 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: ([2010.03.04 15:57:32 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {7c1ce531-09e9-4fc5-9803-1c2956615786} - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O4 - HKLM..\Run: [AGRSMMSG] C:\WINDOWS\AGRSMMSG.exe (Agere Systems)
O4 - HKLM..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe (Nokia Mobile Phones Ltd.)
O4 - HKLM..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\Launch Application 2.exe (Nokia)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Computer, Inc.)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - HKCU..\Run: [RTEGPRS] C:\Program Files\Common Files\RTE\RTEGPRS.exe (M-SmartCom)
O4 - HKCU..\Run: [T-Mobile Communication Centre] C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe (Gemfor s.r.o.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe (ICQ, Inc.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe (ICQ, Inc.)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (Intertrust Technologies, Inc.)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {19E28AFC-EAE3-4CE5-AC83-2407B42F57C9} http://download.microsoft.com/download/ ... 5069726788 (MSSecurityAdvisor Class)
O16 - DPF: {4ADC518E-B607-11D4-B395-0001020F4519} https://ib24.csob.cz/Comp/signer.cab (SigVer Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/f ... wflash.cab (Shockwave Flash Object)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Zoner\ZPS 7\ZMEWallPaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Zoner\ZPS 7\ZMEWallPaper.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004.11.26 18:20:00 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.CSW -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

========== Files/Folders - Created Within 14 Days ==========

[2010.03.04 21:37:50 | 000,552,960 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe
[2010.03.04 21:31:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2010.03.04 21:30:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Plocha\WNW - Instalační soubory
[2010.03.04 21:16:50 | 000,000,000 | -HSD | C] -- C:\Recycled
[2010.03.04 16:04:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010.03.04 14:22:57 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010.03.04 14:18:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010.03.04 13:51:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Dokumenty\Stažené soubory
[2010.03.04 12:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Ivo Kalvoda\Recent
[2010.03.04 11:38:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Local Settings\Data aplikací\Mozilla
[2010.03.04 11:38:27 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010.03.04 11:37:45 | 008,158,488 | ---- | C] (Mozilla) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\FirefoxSetup3.6.exe
[2010.03.04 11:29:47 | 000,000,000 | ---D | C] -- C:\Program Files\T-Mobile
[2010.03.03 21:11:11 | 000,101,616 | ---- | C] (Gemfor s.r.o.) -- C:\WINDOWS\System32\4GCleanup.exe
[2010.03.03 17:50:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Malwarebytes
[2010.03.03 17:50:45 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010.03.03 17:50:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2010.03.03 17:50:40 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010.03.03 17:50:39 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.03.03 17:49:35 | 005,115,832 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\mbam-setup.exe
[2010.03.03 16:45:41 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2010.03.03 11:05:46 | 000,000,000 | ---D | C] -- C:\Program Files\TrendMicro
[2010.03.01 21:15:49 | 000,000,000 | ---D | C] -- C:\Program Files\RegCleaner
[2010.03.01 19:34:35 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010.03.01 19:32:42 | 003,396,856 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\ccsetup229.exe
[2004.06.24 17:25:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\AVG7
[2003.06.13 23:37:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Microsoft
[2003.06.13 23:37:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Microsoft
[2003.06.13 23:24:12 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Microsoft
[2003.06.13 23:24:12 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Data aplikací\Microsoft
[4 C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 14 Days ==========

[2010.03.04 21:38:00 | 000,552,960 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\OTL.exe
[2010.03.04 21:31:48 | 000,000,728 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Web'n'walk Manager.lnk
[2010.03.04 21:30:04 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.03.04 21:30:00 | 000,000,424 | ---- | M] () -- C:\WINDOWS\tasks\Symantec NetDetect.job
[2010.03.04 21:29:40 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.03.04 21:29:34 | 250,073,088 | -HS- | M] () -- C:\hiberfil.sys
[2010.03.04 21:29:34 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.03.04 21:27:16 | 000,002,505 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010.03.04 21:19:42 | 008,912,896 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\NTUSER.DAT
[2010.03.04 21:19:42 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Ivo Kalvoda\ntuser.ini
[2010.03.04 16:04:58 | 000,029,160 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
[2010.03.04 15:59:10 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.03.04 15:42:52 | 000,000,755 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\Zástupce - ComboFix.lnk
[2010.03.04 14:23:02 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010.03.04 12:10:34 | 000,339,726 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Dokumenty\cc_20100304_121018.reg
[2010.03.04 11:39:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010.03.04 11:38:38 | 000,001,510 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2010.03.04 11:37:46 | 008,158,488 | ---- | M] (Mozilla) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\FirefoxSetup3.6.exe
[2010.03.03 23:02:52 | 005,051,280 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\WNW_4G_cs.exe
[2010.03.03 17:50:50 | 000,000,604 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2010.03.03 17:49:36 | 005,115,832 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\mbam-setup.exe
[2010.03.03 16:28:52 | 000,002,447 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HiJackThis.lnk
[2010.03.03 15:32:22 | 030,909,992 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\avira_antivir_personal_en.exe
[2010.03.01 21:15:52 | 000,000,553 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\RegCleaner.lnk
[2010.03.01 20:25:44 | 000,141,240 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.03.01 19:43:42 | 000,001,456 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\CCleaner.lnk
[2010.03.01 14:42:02 | 001,401,344 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HijackThis.msi
[2010.02.27 23:20:14 | 000,553,687 | ---- | M] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\regcleaner.exe
[2010.02.27 20:33:06 | 003,396,856 | ---- | M] (Piriform Ltd) -- C:\Documents and Settings\Ivo Kalvoda\Plocha\ccsetup229.exe
[4 C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp files -> C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010.03.04 21:29:32 | 250,073,088 | -HS- | C] () -- C:\hiberfil.sys
[2010.03.04 15:42:50 | 000,000,755 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\Zástupce - ComboFix.lnk
[2010.03.04 14:23:00 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010.03.04 14:22:58 | 000,261,312 | ---- | C] () -- C:\cmldr
[2010.03.04 13:48:56 | 000,000,728 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Web'n'walk Manager.lnk
[2010.03.04 12:10:22 | 000,339,726 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Dokumenty\cc_20100304_121018.reg
[2010.03.04 11:39:01 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010.03.04 11:38:36 | 000,001,510 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2010.03.04 10:31:10 | 005,051,280 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\WNW_4G_cs.exe
[2010.03.03 17:50:48 | 000,000,604 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2010.03.03 14:56:12 | 030,909,992 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\avira_antivir_personal_en.exe
[2010.03.03 11:05:48 | 000,002,447 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HiJackThis.lnk
[2010.03.03 10:37:07 | 001,401,344 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\HijackThis.msi
[2010.03.01 21:15:50 | 000,000,553 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\RegCleaner.lnk
[2010.03.01 21:15:17 | 000,553,687 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\regcleaner.exe
[2010.03.01 19:42:31 | 000,001,456 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Plocha\CCleaner.lnk
[2010.02.02 00:20:19 | 000,000,118 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008.08.07 11:21:11 | 000,000,400 | ---- | C] () -- C:\WINDOWS\T602.INI
[2006.05.28 11:18:33 | 000,009,867 | ---- | C] () -- C:\WINDOWS\System32\drivers\HOTKEY.sys
[2006.02.10 22:12:21 | 000,000,733 | ---- | C] () -- C:\WINDOWS\aolpr.ini
[2005.08.06 18:22:21 | 000,000,019 | ---- | C] () -- C:\WINDOWS\SoundConverter.INI
[2005.06.29 09:58:02 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.04.28 16:08:09 | 000,000,021 | ---- | C] () -- C:\WINDOWS\VI2_SETUP.ini
[2005.04.28 16:05:28 | 000,150,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\MLTCAP.sys
[2005.04.11 19:23:21 | 000,078,336 | ---- | C] () -- C:\WINDOWS\System32\Ltimg62n.dll
[2005.04.11 19:23:21 | 000,029,184 | ---- | C] () -- C:\WINDOWS\System32\Ltwnd62n.dll
[2005.04.11 19:23:21 | 000,024,064 | ---- | C] () -- C:\WINDOWS\System32\Lttwn62n.dll
[2005.04.11 19:23:21 | 000,003,200 | ---- | C] () -- C:\WINDOWS\System32\Ltthk62w.dll
[2005.04.11 19:23:20 | 000,185,344 | ---- | C] () -- C:\WINDOWS\System32\Ltann62n.dll
[2005.04.11 19:23:20 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\Lffax62n.dll
[2005.04.11 19:23:20 | 000,158,720 | ---- | C] () -- C:\WINDOWS\System32\Lfcmp62n.dll
[2005.04.11 19:23:20 | 000,110,080 | ---- | C] () -- C:\WINDOWS\System32\Lfpng62n.dll
[2005.04.11 19:23:20 | 000,047,616 | ---- | C] () -- C:\WINDOWS\System32\Lftif62n.dll
[2005.04.11 19:23:20 | 000,043,008 | ---- | C] () -- C:\WINDOWS\System32\Ltfil62n.dll
[2005.04.11 19:23:20 | 000,027,136 | ---- | C] () -- C:\WINDOWS\System32\Lflma62n.dll
[2005.04.11 19:23:20 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\Lfica62n.dll
[2005.04.11 19:23:20 | 000,023,552 | ---- | C] () -- C:\WINDOWS\System32\Lfpcx62n.dll
[2005.04.11 19:23:20 | 000,023,552 | ---- | C] () -- C:\WINDOWS\System32\Lflmb62n.dll
[2005.04.11 19:23:20 | 000,022,528 | ---- | C] () -- C:\WINDOWS\System32\Lfeps62n.dll
[2005.04.11 19:23:20 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\Lfpct62n.dll
[2005.04.11 19:23:20 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\Lfgif62n.dll
[2005.04.11 19:23:20 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\Lfbmp62n.dll
[2005.04.11 19:23:20 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\Lfpsd62n.dll
[2005.04.11 19:23:20 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\Lfwmf62n.dll
[2005.04.11 19:23:20 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\Lftga62n.dll
[2005.04.11 19:23:20 | 000,019,456 | ---- | C] () -- C:\WINDOWS\System32\Lfwpg62n.dll
[2005.04.11 19:23:20 | 000,018,944 | ---- | C] () -- C:\WINDOWS\System32\Lfimg62n.dll
[2005.04.11 19:23:20 | 000,018,432 | ---- | C] () -- C:\WINDOWS\System32\Lfras62n.dll
[2005.04.11 19:23:20 | 000,018,432 | ---- | C] () -- C:\WINDOWS\System32\Lfmsp62n.dll
[2005.04.11 19:23:20 | 000,017,920 | ---- | C] () -- C:\WINDOWS\System32\Lfmac62n.dll
[2005.04.11 19:23:20 | 000,017,920 | ---- | C] () -- C:\WINDOWS\System32\Lfcal62n.dll
[2005.04.11 19:23:20 | 000,017,408 | ---- | C] () -- C:\WINDOWS\System32\Lfwfx62n.dll
[2005.04.11 19:23:20 | 000,017,408 | ---- | C] () -- C:\WINDOWS\System32\Lfpcd62n.dll
[2005.02.17 12:31:58 | 000,679,936 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.02.17 12:31:58 | 000,202,752 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.02.17 12:31:58 | 000,105,472 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.02.17 12:31:58 | 000,092,672 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.02.17 12:31:58 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2005.02.17 12:31:58 | 000,021,504 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.02.11 16:05:03 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2005.01.25 20:30:35 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
[2005.01.25 20:30:35 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
[2005.01.25 20:30:35 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
[2004.11.29 13:36:54 | 000,001,766 | ---- | C] () -- C:\WINDOWS\PRMANPCF.INI
[2004.11.29 13:34:46 | 000,000,036 | ---- | C] () -- C:\WINDOWS\PRMAN32.INI
[2004.11.26 18:27:19 | 000,000,285 | ---- | C] () -- C:\WINDOWS\FE.INI
[2004.10.24 18:11:40 | 000,000,086 | ---- | C] () -- C:\WINDOWS\mariomoto.ini
[2004.07.26 08:24:25 | 000,000,030 | ---- | C] () -- C:\WINDOWS\TextSpy.ini
[2004.06.19 13:19:47 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004.02.10 18:46:11 | 000,000,833 | ---- | C] () -- C:\WINDOWS\SIERRA.INI
[2004.01.30 19:12:21 | 000,000,000 | ---- | C] () -- C:\WINDOWS\pcfriend.INI
[2004.01.21 15:33:24 | 000,000,245 | ---- | C] () -- C:\WINDOWS\LEXICON.INI
[2004.01.16 18:36:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Jcmkr32.INI
[2004.01.16 10:15:10 | 000,405,588 | ---- | C] () -- C:\WINDOWS\System32\vc6-stlport-re300l.dll
[2004.01.16 10:15:10 | 000,081,920 | ---- | C] () -- C:\WINDOWS\dlib.dll
[2004.01.16 10:15:03 | 000,001,140 | ---- | C] () -- C:\Program Files\GPRSpeed Plus Client setup.log
[2004.01.16 10:09:24 | 000,000,035 | ---- | C] () -- C:\WINDOWS\System32\RTELM.dll
[2004.01.12 15:06:00 | 000,000,134 | ---- | C] () -- C:\WINDOWS\DMEDB.INI
[2004.01.12 15:06:00 | 000,000,057 | ---- | C] () -- C:\WINDOWS\IEDB299.ini
[2004.01.11 14:45:26 | 000,000,013 | ---- | C] () -- C:\WINDOWS\TEXTware.ini
[2004.01.10 19:28:34 | 000,135,168 | ---- | C] () -- C:\Documents and Settings\Ivo Kalvoda\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2004.01.10 17:21:13 | 000,001,125 | ---- | C] () -- C:\WINDOWS\Winamp.ini
[2004.01.10 17:21:12 | 000,000,041 | ---- | C] () -- C:\WINDOWS\winampa.ini
[2004.01.10 17:13:55 | 000,002,961 | ---- | C] () -- C:\WINDOWS\VPlayer.INI
[2004.01.10 17:06:12 | 000,006,688 | ---- | C] () -- C:\WINDOWS\System32\Digita.sys
[2004.01.10 17:06:11 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\TransportUSB.dll
[2004.01.10 17:06:11 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\TransportSerial.dll
[2004.01.10 17:06:09 | 000,335,872 | ---- | C] () -- C:\WINDOWS\System32\ldf252.dll
[2004.01.10 17:04:55 | 000,000,855 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2004.01.10 16:56:57 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003.10.30 04:47:50 | 000,027,102 | ---- | C] () -- C:\WINDOWS\MSTMON_P.INI
[2003.08.22 11:51:24 | 000,018,130 | ---- | C] () -- C:\WINDOWS\MSUMLT_P.INI
[2003.07.22 05:41:06 | 000,001,150 | ---- | C] () -- C:\WINDOWS\System32\Oeminfo.ini
[2003.06.14 01:10:00 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2003.06.14 00:03:12 | 000,006,570 | ---- | C] () -- C:\WINDOWS\System32\drivers\acernbm.sys
[2003.06.14 00:02:10 | 000,000,044 | ---- | C] () -- C:\WINDOWS\acer.ini
[2003.06.13 23:59:20 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK32.dll
[2003.06.13 23:45:47 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\SynTPCoI.dll
[2003.06.13 23:38:03 | 000,000,240 | ---- | C] () -- C:\WINDOWS\PQDISK.INI
[2003.06.13 23:38:03 | 000,000,085 | ---- | C] () -- C:\WINDOWS\LaunApp.ini
[2003.06.13 23:29:06 | 000,003,568 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2003.03.12 09:34:00 | 000,030,171 | ---- | C] () -- C:\WINDOWS\System32\drivers\btport.sys
[2003.03.11 15:51:02 | 000,217,088 | ---- | C] () -- C:\WINDOWS\System32\btins.dll
[2003.02.21 14:27:36 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\bt2k_ins.dll
[2003.02.21 11:34:40 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\btsec.dll
[2003.02.21 11:26:54 | 000,144,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\btwdndis.sys
[2003.02.21 11:25:16 | 000,022,119 | ---- | C] () -- C:\WINDOWS\System32\drivers\btserial.sys
[2003.02.21 11:24:56 | 000,222,164 | ---- | C] () -- C:\WINDOWS\System32\drivers\btslbcsp.sys
[2003.02.21 11:23:14 | 001,149,978 | ---- | C] () -- C:\WINDOWS\System32\drivers\btkrnl.sys
[2003.02.21 11:21:28 | 000,021,701 | ---- | C] () -- C:\WINDOWS\System32\drivers\btaudio.sys
[2003.02.21 10:10:42 | 000,757,837 | ---- | C] () -- C:\WINDOWS\System32\BTNeighborhood.dll
[2003.02.21 10:07:22 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\btwpimif.dll
[2003.02.21 10:06:38 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\BtXpShell.dll
[2003.02.21 10:01:30 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\btosif_ol.dll
[2003.02.21 10:01:06 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\btosif_notes.dll
[2003.02.21 10:00:38 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\btosif.dll
[2003.02.21 09:57:22 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\BtAudioHelper.dll
[2003.02.21 09:46:46 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\BTNCopy.dll
[2003.02.21 09:04:12 | 000,720,896 | ---- | C] () -- C:\WINDOWS\System32\BtWizard.dll
[2003.02.21 09:02:52 | 000,184,320 | ---- | C] () -- C:\WINDOWS\System32\btcss.dll
[2003.02.21 09:01:00 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\btsendto_wab.dll
[2003.02.21 09:00:40 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\btsendto_office.dll
[2003.02.21 08:59:04 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\btsendto_notes.dll
[2003.02.21 08:58:02 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\btosif_olx.dll
[2003.02.21 08:57:30 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll
[2003.02.21 08:56:58 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\bthcrpui.dll
[2003.02.21 08:56:32 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\bthcrp.dll
[2003.02.21 08:56:06 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\btsendto.dll
[2003.02.21 08:54:10 | 000,462,848 | ---- | C] () -- C:\WINDOWS\System32\WidcommSdk.dll
[2003.02.21 08:52:32 | 000,368,701 | ---- | C] () -- C:\WINDOWS\System32\wbtapi.dll
[2003.02.21 08:50:32 | 000,102,400 | ---- | C] () -- C:\WINDOWS\System32\BTXPPanel.dll
[2003.02.21 08:50:12 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\btbigbmp.dll
[2003.02.21 08:46:20 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\btdev.dll
[2003.02.21 08:45:50 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\btrezxp.dll
[2003.02.21 08:45:42 | 002,166,784 | ---- | C] () -- C:\WINDOWS\System32\btrez.dll
[2002.05.17 22:18:30 | 000,039,936 | ---- | C] () -- C:\WINDOWS\System32\mp4fil32.dll
[2002.05.15 22:29:04 | 000,000,607 | ---- | C] () -- C:\WINDOWS\System32\BTNeighborhood.dll.manifest
[2001.12.26 16:12:30 | 000,065,536 | R--- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll
[2001.11.23 17:18:00 | 000,000,597 | ---- | C] () -- C:\WINDOWS\System32\btcss.dll.manifest
[2001.11.14 12:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll
[2001.09.03 23:46:38 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Hmpg12.dll
[2001.07.30 16:33:56 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll
[2001.07.23 22:04:36 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll
[1999.01.22 22:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
[1998.10.11 01:07:38 | 000,088,576 | ---- | C] () -- C:\WINDOWS\System32\Iticheck.dll

========== LOP Check ==========

[2004.01.16 10:29:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\WCM
[2004.06.24 17:25:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVG7
[2005.02.18 20:04:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Autodesk
[2003.06.13 23:57:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\InterTrust
[2005.12.28 14:04:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Happy Foto
[2004.01.10 17:06:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ACDInTouch
[2004.01.10 17:06:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ACD Systems
[2004.01.16 10:10:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\RTE
[2004.01.16 10:29:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\WCM
[2004.06.24 17:25:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\AVG7
[2006.01.05 16:25:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\SteelBytes
[2004.11.26 20:39:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Renault
[2005.02.27 13:28:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ICQLite
[2005.07.18 13:27:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Zoner
[2005.08.06 16:31:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Nokia
[2005.08.07 11:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\PC Suite
[2005.08.09 20:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Nokia Multimedia Player
[2008.02.11 07:56:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ICQ Toolbar
[2005.08.11 09:14:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\DataLayer
[2008.02.11 07:21:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ivo Kalvoda\Data aplikací\ICQ

========== Purity Check ==========



< End of report >

Gilan
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: potíže s notebookem a antivirem

Příspěvekod Gilan » 04 bře 2010 22:00

a tedka ten extras:

OTL Extras logfile created on: 4.3.2010 21:44:38 - Run 1
OTL by OldTimer - Version 3.1.33.0 Folder = C:\Documents and Settings\Ivo Kalvoda\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

238,00 Mb Total Physical Memory | 107,00 Mb Available Physical Memory | 45,00% Memory free
585,00 Mb Paging File | 383,00 Mb Available in Paging File | 65,00% Paging File free
Paging file location(s): C:\pagefile.sys 360 720 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 27,47 Gb Total Space | 11,43 Gb Free Space | 41,60% Space Free | Partition Type: FAT32
Drive D: | 9,76 Gb Total Space | 4,02 Gb Free Space | 41,19% Space Free | Partition Type: FAT32
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: ACER-XWESFYYWU2
Current User Name: Ivo Kalvoda
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDBrowse] -- "C:\Program Files\ACD Systems\ACDSee\ACDSee.exe" "%1" (ACD Systems, Ltd.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\Winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\Winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusOverride" = 0
"FirewallOverride" = 0
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Program Files\GPRSpeed Plus\GPRSpeed Plus Client\GPRSpeed_c.exe" = C:\Program Files\GPRSpeed Plus\GPRSpeed Plus Client\GPRSpeed_c.exe:*:Disabled:NettGain1100_C -- (Flash Networks)
"C:\Program Files\ICQ6\ICQ.exe" = C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6 -- (ICQ, Inc.)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00000405-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{0F51A262-1ADF-4914-B448-78AC58C4178A}" = WIDCOMM Bluetooth Software
"{17528AC4-E6C2-43CD-8D8D-A62BA476ADC7}" = Zoner Photo Studio 7 Classic
"{21BBAD12-C75F-4F06-A9B0-6F8BEEAF3846}" = Moorhuhn X - XS
"{2BEE2164-8BF1-4853-9193-36FDA9E4E46A}" = NTI CD-Maker
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3CB41017-F5CA-4C56-934C-ED02156251E6}" = iTunes
"{3ECED7D1-E469-4BC6-8A93-5CB0FFE5EBF5}" = Nokia Connectivity Cable Driver
"{43DCF766-6838-4F9A-8C91-D92DA586DFA7}" = Microsoft Windows Journal Viewer
"{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6
"{6762AB61-2BE9-45D8-B9F2-24014324CD35}" = ArcSoft VideoImpression 2
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6C28B15F-B09D-407E-BE92-AC928E1CE4E2}_is1" = Kodek 0.16 CZ
"{7D9B8EE1-7E8E-411C-8F36-2A26D2D20D5F}" = HotFix Q0306270
"{8060DD69-5D1A-4367-B17B-D130C3ED22E4}" = GPRSpeed Plus Client
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Extreme Graphics Driver
"{8C2FA1ED-8248-42DF-A78A-48D40133129E}" = Acer Notebook Manager
"{90120000-0020-0405-0000-0000000FF1CE}" = Sada Compatibility Pack pro systém Office 2007
"{9012E9AD-0183-4FAD-A379-BCC5B6C62098}" = Nokia PC Suite
"{976EA7B1-7562-483D-88DA-4323D263B7CD}" = DiMAGE Viewer
"{97AA0C55-AFAD-4126-B21C-F1318FB6DADA}" = Realtek RTL8139/810x Fast Ethernet NIC Driver Setup
"{99E67091-D392-4031-AD2A-E9547F3615F8}" = KONICA_MINOLTA DiMAGE remote camera driver
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9F67AC89-5FA6-4F3F-95DB-92F322C8C2EB}" = USB Flash Disk Utility
"{AC76BA86-7AD7-1029-7646-CE0000000001}" = Adobe Reader 6.0 CE
"{BE38545B-08F7-4f80-95AE-752B99BF159C}" = Web'n'walk 4G software
"{D0846526-66DD-4DC9-A02C-98F9A2806812}" = Launch Manager V1.0.5.0
"{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}" = Rozšíření HighMAT průvodce zápisem na disk CD systému Microsoft Windows XP
"ACDSee" = ACDSee
"Ad-Aware SE Personal" = Ad-Aware SE Personal
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Agere Systems Soft Modem" = Agere Systems AC'97 Modem
"CCleaner" = CCleaner
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.2.7
"Gemplus Smart Card Reader Tools" = Gemplus Smart Card Reader Tools
"GlobeTrotter Drivers" = GlobeTrotter Driver Suite
"Google Desktop" = Google Desktop
"HF_ASISTENT" = Happy Foto HF Asistent (Jen odstranit)
"I.CA CryptoPlus v1.0" = I.CA CryptoPlus v1.0
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{2BEE2164-8BF1-4853-9193-36FDA9E4E46A}" = NTI CD & DVD-Maker 6.5 Gold
"InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6}" = iTunes
"InstallShield_{3ECED7D1-E469-4BC6-8A93-5CB0FFE5EBF5}" = Nokia Connectivity Cable Driver
"InstallShield_{9012E9AD-0183-4FAD-A379-BCC5B6C62098}" = Nokia PC Suite
"KONICA MINOLTA magicolor2300W" = KONICA MINOLTA magicolor2300W
"Lingea Lexicon" = Lingea Lexicon
"LiveReg" = LiveReg (Symantec Corporation)
"LiveUpdate" = LiveUpdate 1.80 (Symantec Corporation)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.6)" = Mozilla Firefox (3.6)
"MSCSR" = Microsoft Speech Recognition Engine 4.0 (English)
"MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English)
"Network Play System (Patching)" = Network Play System (Patching)
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"PCFriendly" = PCFriendly
"QuickTime" = QuickTime
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"T-Mobile Communication Centre" = Web'n'walk Manager
"VorbisCodec" = Ogg Vorbis ACM Codec
"WellPhone" = GlobeTrotter WCM
"Winamp" = Winamp (remove only)
"Wincmd" = Windows Commander (Remove or Repair)
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Prohlížeč FRP-souborů 2.5" = Prohlížeč FRP-souborů 2.5
"Tiskový manažer pro PC FAND 2.5" = Tiskový manažer pro PC FAND 2.5

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 3.3.2010 4:47:49 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 5:31:52 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 6:09:10 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 8:21:00 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

Error - 3.3.2010 8:26:02 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 8:53:36 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 9:21:35 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 4.3.2010 5:58:02 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

Error - 4.3.2010 6:28:10 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

Error - 4.3.2010 12:14:01 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

[ System Events ]
Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = Service Control Manager | ID = 7001
Description = Služba Podpora rozhraní NetBIOS nad protokolem TCP/IP závisí na službě
Prostředí pro podporu sítě AFD, která neuspěla při spuštění v důsledku následující
chyby: %%31

Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = Service Control Manager | ID = 7001
Description = Služba Služby IPSEC závisí na službě Ovladač IPSEC, která neuspěla
při spuštění v důsledku následující chyby: %%31

Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: AFD Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip WS2IFSL

Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:23:30 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:24:26 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:25:53 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby wuauserv
s argumenty za účelem spuštění serveru: {E60687F7-01A1-40AA-86AC-DB1CBF673334}

Error - 4.3.2010 16:26:44 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:28:43 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 4.3.2010 16:31:56 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10010
Description = Server {51FA2736-5DEE-11D4-98E8-006008BF430C} se v daném časovém limitu
neregistroval u služby DCOM.


< End of report >

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDBrowse] -- "C:\Program Files\ACD Systems\ACDSee\ACDSee.exe" "%1" (ACD Systems, Ltd.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\Winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\Winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusOverride" = 0
"FirewallOverride" = 0
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Program Files\GPRSpeed Plus\GPRSpeed Plus Client\GPRSpeed_c.exe" = C:\Program Files\GPRSpeed Plus\GPRSpeed Plus Client\GPRSpeed_c.exe:*:Disabled:NettGain1100_C -- (Flash Networks)
"C:\Program Files\ICQ6\ICQ.exe" = C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6 -- (ICQ, Inc.)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00000405-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{0F51A262-1ADF-4914-B448-78AC58C4178A}" = WIDCOMM Bluetooth Software
"{17528AC4-E6C2-43CD-8D8D-A62BA476ADC7}" = Zoner Photo Studio 7 Classic
"{21BBAD12-C75F-4F06-A9B0-6F8BEEAF3846}" = Moorhuhn X - XS
"{2BEE2164-8BF1-4853-9193-36FDA9E4E46A}" = NTI CD-Maker
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3CB41017-F5CA-4C56-934C-ED02156251E6}" = iTunes
"{3ECED7D1-E469-4BC6-8A93-5CB0FFE5EBF5}" = Nokia Connectivity Cable Driver
"{43DCF766-6838-4F9A-8C91-D92DA586DFA7}" = Microsoft Windows Journal Viewer
"{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6
"{6762AB61-2BE9-45D8-B9F2-24014324CD35}" = ArcSoft VideoImpression 2
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6C28B15F-B09D-407E-BE92-AC928E1CE4E2}_is1" = Kodek 0.16 CZ
"{7D9B8EE1-7E8E-411C-8F36-2A26D2D20D5F}" = HotFix Q0306270
"{8060DD69-5D1A-4367-B17B-D130C3ED22E4}" = GPRSpeed Plus Client
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Extreme Graphics Driver
"{8C2FA1ED-8248-42DF-A78A-48D40133129E}" = Acer Notebook Manager
"{90120000-0020-0405-0000-0000000FF1CE}" = Sada Compatibility Pack pro systém Office 2007
"{9012E9AD-0183-4FAD-A379-BCC5B6C62098}" = Nokia PC Suite
"{976EA7B1-7562-483D-88DA-4323D263B7CD}" = DiMAGE Viewer
"{97AA0C55-AFAD-4126-B21C-F1318FB6DADA}" = Realtek RTL8139/810x Fast Ethernet NIC Driver Setup
"{99E67091-D392-4031-AD2A-E9547F3615F8}" = KONICA_MINOLTA DiMAGE remote camera driver
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9F67AC89-5FA6-4F3F-95DB-92F322C8C2EB}" = USB Flash Disk Utility
"{AC76BA86-7AD7-1029-7646-CE0000000001}" = Adobe Reader 6.0 CE
"{BE38545B-08F7-4f80-95AE-752B99BF159C}" = Web'n'walk 4G software
"{D0846526-66DD-4DC9-A02C-98F9A2806812}" = Launch Manager V1.0.5.0
"{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}" = Rozšíření HighMAT průvodce zápisem na disk CD systému Microsoft Windows XP
"ACDSee" = ACDSee
"Ad-Aware SE Personal" = Ad-Aware SE Personal
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Agere Systems Soft Modem" = Agere Systems AC'97 Modem
"CCleaner" = CCleaner
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.2.7
"Gemplus Smart Card Reader Tools" = Gemplus Smart Card Reader Tools
"GlobeTrotter Drivers" = GlobeTrotter Driver Suite
"Google Desktop" = Google Desktop
"HF_ASISTENT" = Happy Foto HF Asistent (Jen odstranit)
"I.CA CryptoPlus v1.0" = I.CA CryptoPlus v1.0
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{2BEE2164-8BF1-4853-9193-36FDA9E4E46A}" = NTI CD & DVD-Maker 6.5 Gold
"InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6}" = iTunes
"InstallShield_{3ECED7D1-E469-4BC6-8A93-5CB0FFE5EBF5}" = Nokia Connectivity Cable Driver
"InstallShield_{9012E9AD-0183-4FAD-A379-BCC5B6C62098}" = Nokia PC Suite
"KONICA MINOLTA magicolor2300W" = KONICA MINOLTA magicolor2300W
"Lingea Lexicon" = Lingea Lexicon
"LiveReg" = LiveReg (Symantec Corporation)
"LiveUpdate" = LiveUpdate 1.80 (Symantec Corporation)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.6)" = Mozilla Firefox (3.6)
"MSCSR" = Microsoft Speech Recognition Engine 4.0 (English)
"MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English)
"Network Play System (Patching)" = Network Play System (Patching)
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"PCFriendly" = PCFriendly
"QuickTime" = QuickTime
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"T-Mobile Communication Centre" = Web'n'walk Manager
"VorbisCodec" = Ogg Vorbis ACM Codec
"WellPhone" = GlobeTrotter WCM
"Winamp" = Winamp (remove only)
"Wincmd" = Windows Commander (Remove or Repair)
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Prohlížeč FRP-souborů 2.5" = Prohlížeč FRP-souborů 2.5
"Tiskový manažer pro PC FAND 2.5" = Tiskový manažer pro PC FAND 2.5

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 3.3.2010 4:47:49 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 5:31:52 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 6:09:10 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 8:21:00 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

Error - 3.3.2010 8:26:02 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 8:53:36 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 3.3.2010 9:21:35 | Computer Name = ACER-XWESFYYWU2 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80080005 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb

Error - 4.3.2010 5:58:02 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

Error - 4.3.2010 6:28:10 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

Error - 4.3.2010 12:14:01 | Computer Name = ACER-XWESFYYWU2 | Source = Application Error | ID = 1000
Description = Chybující aplikace launch application 2.exe, verze 6.41.22.3, chybující
modul launch application 2.exe, verze 6.41.22.3, adresa chyby 0x00011202.

[ System Events ]
Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = Service Control Manager | ID = 7001
Description = Služba Podpora rozhraní NetBIOS nad protokolem TCP/IP závisí na službě
Prostředí pro podporu sítě AFD, která neuspěla při spuštění v důsledku následující
chyby: %%31

Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = Service Control Manager | ID = 7001
Description = Služba Služby IPSEC závisí na službě Ovladač IPSEC, která neuspěla
při spuštění v důsledku následující chyby: %%31

Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: AFD Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip WS2IFSL

Error - 4.3.2010 16:22:54 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:23:30 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:24:26 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:25:53 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby wuauserv
s argumenty za účelem spuštění serveru: {E60687F7-01A1-40AA-86AC-DB1CBF673334}

Error - 4.3.2010 16:26:44 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 4.3.2010 16:28:43 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 4.3.2010 16:31:56 | Computer Name = ACER-XWESFYYWU2 | Source = DCOM | ID = 10010
Description = Server {51FA2736-5DEE-11D4-98E8-006008BF430C} se v daném časovém limitu
neregistroval u služby DCOM.


< End of report >

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: potíže s notebookem a antivirem

Příspěvekod Damned » 04 bře 2010 22:39

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Custom Scans/Fixes do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
SRV - (GoogleDesktopManager-110309-193829) -- File not found
O2 - BHO: (no name) - {7c1ce531-09e9-4fc5-9803-1c2956615786} - No CLSID value found.
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)

:Files
C:\Windows\*.tmp
C:\Windows\System32\*.tmp
C:\Documents and Settings\Ivo Kalvoda\Dokumenty\*.tmp
C:\Documents and Settings\Ivo Kalvoda\Plocha\*.tmp
C:\Recycled
C:\WINDOWS\tasks\Symantec NetDetect.job
c:\program files\Symantec
C:\WINDOWS\tasks\SA.DAT
C:\Documents and Settings\Ivo Kalvoda\Plocha\Zástupce - ComboFix.lnk
C:\WINDOWS\TextSpy.ini

:Reg

:Commands
[purity]
[emptytemp]
[EMPTYFLASH]
[start explorer]
[Reboot]



Poté klikni nahoře na Run Fix. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Gilan
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: potíže s notebookem a antivirem

Příspěvekod Gilan » 04 bře 2010 22:52

tady to mas:
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
Service GoogleDesktopManager-110309-193829 stopped successfully!
Service GoogleDesktopManager-110309-193829 deleted successfully!
File File not found not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7c1ce531-09e9-4fc5-9803-1c2956615786}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c1ce531-09e9-4fc5-9803-1c2956615786}\ not found.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\\ deleted successfully.
========== FILES ==========
C:\Windows\msdownld.tmp folder moved successfully.
C:\Windows\002551_.tmp moved successfully.
C:\Windows\005908_.tmp moved successfully.
C:\Windows\System32\CONFIG.TMP moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Dokumenty\~WRL0032.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Dokumenty\~WRL0329.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Dokumenty\~WRL0860.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Dokumenty\~WRL3938.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL3803.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL1674.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL1251.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL2766.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL3601.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL0103.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL1845.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL3118.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL0362.tmp moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\~WRL3410.tmp moved successfully.
C:\Recycled folder moved successfully.
C:\WINDOWS\tasks\Symantec NetDetect.job moved successfully.
c:\program files\Symantec\LiveUpdate folder moved successfully.
c:\program files\Symantec folder moved successfully.
C:\WINDOWS\tasks\SA.DAT moved successfully.
C:\Documents and Settings\Ivo Kalvoda\Plocha\Zástupce - ComboFix.lnk moved successfully.
C:\WINDOWS\TextSpy.ini moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users
->Temporary Internet Files folder emptied: 67 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 65748 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Ivo Kalvoda
->Temp folder emptied: 6210 bytes
->Temporary Internet Files folder emptied: 150718883 bytes
->FireFox cache emptied: 40184317 bytes
->Flash cache emptied: 1206 bytes

User: Ivo Kalvoda.ACER-XWESFYYWU2
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 43864 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 182,00 mb


[EMPTYFLASH]

User: Default User

User: All Users

User: NetworkService

User: LocalService

User: Administrator

User: Ivo Kalvoda
->Flash cache emptied: 0 bytes

User: Ivo Kalvoda.ACER-XWESFYYWU2

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.1.33.0 log created on 03042010_224349

Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\s not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\i not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\P not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\a not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\H not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\O not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\n not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\G not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\b not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\T not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\m not found!
Folder move failed. C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\\ scheduled to be moved on reboot.
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\E not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\U not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\C not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\3JDVVX4W\2 not found!
File\Folder C:\Documents and Settings\Ivo Kalvoda\Local Settings\Temporary Internet Files\Content.IE5\UKLPLETZ\A not found!

Registry entries deleted on Reboot...

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: potíže s notebookem a antivirem

Příspěvekod Damned » 04 bře 2010 23:10

Smaž složku C:\_OTL

Stáhni si ToolsCleaner2 (by de A.Rothstein & Dj Quiou) na Plochu a spusť ho.

Klikni na Pt. Restauration (obnova) a poté na OK.
Klikni na Corbeille (koš) a poté na OK.
Klikni na Fichiers temp (temp složky) a poté na OK.
Klikni na Recherche (hledání) a nech Cleaner pracovat. Může se během čištění zastavit , ale nech ho pokračovat.
Když program skončí , klikni na Suppression (odstranění) a odstraň nalezené.
Zavři a smaž program.

Vlož mi sem ještě nový log z HJT.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Gilan
Level 1.5
Level 1.5
Příspěvky: 144
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: potíže s notebookem a antivirem

Příspěvekod Gilan » 05 bře 2010 12:59

tady je log z hjt:
Logfile of Trend Micro HijackThis v2.0.3 (BETA)
Scan saved at 12:57:26, on 5.3.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16981)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Nokia\Nokia PC Suite 6\Launch Application 2.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Common Files\RTE\RTEGPRS.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_explorer.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\msiexec.exe
C:\Documents and Settings\Ivo Kalvoda\Data aplikací\Microsoft\Installer\{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\Launch Application 2.exe -onlytray
O4 - HKLM\..\Run: [DataLayer] C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKCU\..\Run: [RTEGPRS] "C:\Program Files\Common Files\RTE\RTEGPRS.exe" tray
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ADC518E-B607-11D4-B395-0001020F4519} (SigVer Class) - https://ib24.csob.cz/Comp/signer.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/f ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{202E08F1-C15E-44C3-A965-13DD4AF5949A}: NameServer = 62.141.0.1 213.162.65.1
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe

--
End of file - 4770 bytes


Zpět na “Viry, antiviry, firewally…”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 4 hosti