Při startu se automaticky spouští cmd* Vyřešeno

Sekce věnovaná virům a jiným škodlivým kódům, rovněž ale nástrojům, kterým se lze proti nim bránit…

Moderátoři: Mods_senior, Security team

OndrK
nováček
Příspěvky: 35
Registrován: červenec 11
Bydliště: Plzeň
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod OndrK » 26 črc 2011 01:14

a to musim vypalit na CD ? nebo muzu DVD...?

Reklama
Uziv00
Pohlaví: Nespecifikováno

Re: Při startu se automaticky spouští cmd*

Příspěvekod Uziv00 » 26 črc 2011 08:41

Milý Orcusi, nevím proč bych ti měl psát na sz, zvlášť když se dopouštíš chyb a taky je dobré aby je ostatní neopakovali.
Takže
Unlocker je totiž především mazač souborů, jež jsou navázány na nějaký proces
je jinak řečeno tohle:
"odemykač" souborů, které drží nějaký proces
Připouštím, že jsi použil lepší definici, nicméně obě považuji za významově stejné.

Pro klid duše jsem udělal následující pokusy:
Na PC1 stáhl a rozbalil na flashku unlocker portable. V obou případech je OS Win7 Ultimate 32bit.
1. Na PC2 vytvořen soubor pokus.bat s právy skupiny Adinistrators - Full Control, skupiny Users - Read, eXecute.
Přehlášení na účet skupiny users. Při spuštění unlockeru portable chce tento okamžitě vyšší práva (obrazovka podobná jako při dialogu Spustit jako...)
2. Na PC2 v účtu s právy admin spuštěn poznámkový blok a v něm otevřen soubor pokus.bat. Přehlášeno na účet ze skupiny users. Při spuštění unlockeru stejná situace jako v předchozím případě.
Tímto považuji má předchozí tvrzení za jednoznačně prokázána, a tvé doporučení unlockeru v případě. kdy uživatel nemá vyšší práva, je nejen chybné, ale ani nelze aplikovat.
Snad bys mohl radit na některém fóru autoservisům, doufám jen, že s tím máš větší zkušenosti.

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod Orcus » 26 črc 2011 08:52

OndrK: Můžeš použít CD DVD nebo i flashku:)

Edit: né nebudu na to reagovat, i když mám dost velkou chuť ;)
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uziv00
Pohlaví: Nespecifikováno

Re: Při startu se automaticky spouští cmd*

Příspěvekod Uziv00 » 26 črc 2011 08:57

To OndrK: Je úplně jedno, jestli CD nebo DVD. Po vypálení z media nabootoješ. Mluví anglicky a nemá grafické rozhraní!. Udělal bych to tak, že bych vybral nějakou položku pro odstranění admin hesla. Postup je třeba zde:
http://www.hirensbootcd.org/resetting-windows-password/
Potom restartuj rovnou do nouze a přihlaš se jako administrator (heslo bude prázdné). Pak vymaž vše potřebné. Zkus antivir, projdi registry (zvláště klíč run). Zkontroluj nabídku po spuštění. Pak restart do plna a ComboFix, nebo co ti doporučují zdejší virobijci.

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod Orcus » 26 črc 2011 09:14

Doporučený reg. klíče k projití:

HKCU/Software/Microsoft/Windows/CurrentVersion/Policies/Explorer - položka DisallowRun
HKCU/Software/Microsoft/Windows/CurrentVersion/Run
HKCU/Software/Microsoft/Windows/CurrentVersion/RunOnce
HKLM/Software/Microsoft/Windows/CurrentVersion/Run
HKLM/Software/Microsoft/Windows/CurrentVersion/RunOnce
HKLM/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/Userinit

Pardon za obracený lomítka. Případně má-li někdo další návrhy, doplňte reg. klíče
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

OndrK
nováček
Příspěvky: 35
Registrován: červenec 11
Bydliště: Plzeň
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod OndrK » 26 črc 2011 19:43

Neche se mi to z toho CD nacist... a zkousel sem to otvirat i ruce ale nic proste se spusti windows...

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod Orcus » 26 črc 2011 19:44

Bootovaní z CD si v BIOSu nastavil?
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

OndrK
nováček
Příspěvky: 35
Registrován: červenec 11
Bydliště: Plzeň
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod OndrK » 26 črc 2011 19:51

no koukal sem se tam ale moc se v biosu newiznam tak se to radsi nechal bejt....

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod jaro3 » 26 črc 2011 22:44

Stáhni si OTH
na svojí plochu( pokud používáš Firefox , pravým klikni na OTH link a vyber uložit jako (Save as..).

Stáhni si OTL
na svojí plochu (pokud používáš Firefox , pravým klikni na OTL link a vyber uložit jako (Save as..).

Stáhni si soubor Scan.txt
na svojí plochu (pokud používáš Firefox , pravým klikni na OTL link a vyber uložit jako (Save as..).

Poklepej na soubor OTH na ploše , po spuštění programu klikni na Kill All Processes.Poté klikni na Start OTL .Poklepej Do prázdného okna pod Vlastní skenování /opravy ( Custom Scans box). Objeví se zpráva: Kliknutím na OK vyberete cestu k souboru, kliknutím na Zrušit zrušíte výběr.
Klikni na OK. Objeví se okno průzkumníku , zde klikneš na plochu a najdeš na ní soubor Scan.txt .Klikni na Otevřít.
Poté klikni na Rychle prohledat (Quick Scan). Neměň žádná jiná nastavení . Sken může trvat dlouho.
Kdy sken skončí , objeví se na ploše dva logy:
OTL.Txt a Extras.Txt , jsou uloženy ve stejném místě jako OTL.
Zkopíruj sem prosím celý obsah obou logů.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

OndrK
nováček
Příspěvky: 35
Registrován: červenec 11
Bydliště: Plzeň
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod OndrK » 26 črc 2011 23:23

Tak tady sou ty logy: ..... a co se tim vlastne vyresi ?? system_32.bat? nebo to heslo?

OTL logfile created on: 26.7.2011 23:17:42 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Počítač\Desktop
An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,12 Gb Total Physical Memory | 2,34 Gb Available Physical Memory | 74,83% Memory free
6,25 Gb Paging File | 5,39 Gb Available in Paging File | 86,27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,43 Gb Total Space | 28,10 Gb Free Space | 37,75% Space Free | Partition Type: NTFS
Drive E: | 189,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: ADMIN | User Name: Počítač | NOT logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\otl.exe
PRC - [2011.07.26 23:06:04 | 000,258,560 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
PRC - [2011.07.04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe


========== Modules (SafeList) ==========

MOD - [2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\otl.exe
MOD - [2011.07.04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2011.07.04 13:43:46 | 000,122,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\ashShell.dll
MOD - [2010.08.21 07:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll


========== Win32 Services (SafeList) ==========


========== Driver Services (SafeList) ==========


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=14542
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.448: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Počítač\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

[2010.01.29 14:06:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Počítač\AppData\Roaming\Mozilla\Extensions
[2010.01.29 14:06:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Počítač\AppData\Roaming\Mozilla\Firefox\Profiles\p0190x5h.default\extensions
[2010.10.15 20:08:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.06.22 19:12:00 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.06.22 19:11:38 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2010.04.22 17:28:09 | 000,075,208 | ---- | M] (Foxit Software Company) -- C:\Program Files\mozilla firefox\plugins\npFoxitReaderPlugin.dll
[2010.09.01 12:48:00 | 000,002,226 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml

O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CE18769B-C7FA-42D2-860D-17C4662C70AD} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [C6501Sound] File not found
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [ImagePath] C:\Windows\system_32.bat ()
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [WheelMouse] C:\Program Files\A4Tech\Mouse\Amoumain.exe (A4Tech Co.,Ltd.)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [PlayNC Launcher] File not found
O4 - HKCU..\Run: [Sony Ericsson PC Companion] File not found
O4 - HKCU..\Run: [Steam] b:\hry\steam\steam.exe (Valve Corporation)
O4 - HKLM..\RunOnce: [*WerKernelReporting] C:\Windows\System32\WerFault.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [aswAhAScr.dll] C:\Program Files\AVAST Software\Avast\aswRegSvr.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 178.77.254.254 77.48.100.254
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{0009e6e9-8042-11df-a84f-001966465696}\Shell - "" = AutoRun
O33 - MountPoints2\{0009e6e9-8042-11df-a84f-001966465696}\Shell\AutoRun\command - "" = H:\Startme.exe
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell - "" = AutoRun
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell\AutoRun\command - "" = G:\setup\rsrc\Autorun.exe
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell\dinstall\command - "" = G:\Directx\dxsetup.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

CREATERESTOREPOINT
Error creating restore point.

========== Files/Folders - Created Within 30 Days ==========

[2011.07.26 23:06:06 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTL.exe
[2011.07.26 23:06:02 | 000,258,560 | ---- | C] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
[2011.07.26 18:32:12 | 000,000,000 | ---D | C] -- C:\Nová složka
[2011.07.26 18:01:15 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{1E031061-D059-42CA-8DF2-ABB0A699D717}
[2011.07.25 16:11:39 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{FEBA0068-C3EE-46B6-8A52-3C0435F1BD23}
[2011.07.25 16:06:52 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{614BDA22-74E1-4E05-9051-608F8A4BFA96}
[2011.07.24 20:53:42 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Desktop\Viry
[2011.07.24 15:25:23 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{F1E829AA-6A9B-4CFA-82B3-A6E8F26DC931}
[2011.07.23 19:55:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{27F1B91F-AEE7-4ABB-A569-9CD3D9B78E04}
[2011.07.23 00:53:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Desktop\Metro 2033
[2011.07.22 20:49:44 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{DCF7263A-146A-44EA-966C-560022941476}
[2011.07.22 19:14:15 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Roaming\InstallShield
[2011.07.22 16:12:40 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{14571E99-5115-4DF7-8AD4-7BAC028D43D1}
[2011.07.21 19:41:06 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{90AC51F8-8DEB-4439-86EB-7C8A5BDBDBED}
[2011.07.20 18:33:30 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{07F463EB-FF25-4FBD-97AF-8F3BF881F092}
[2011.07.19 19:57:06 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{B65AD762-6F48-4EDC-99D6-3D732F697D04}
[2011.07.19 18:56:51 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{E43385C9-D835-4CBB-9822-BBD65ADE1F2D}
[2011.07.18 18:54:12 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{19302B0D-4CAF-4207-BDFC-5C890646AA84}
[2011.07.17 22:34:10 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{30347F70-1CF4-46BC-A8C3-8B4615F4C76B}
[2011.07.15 21:18:57 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{2B40B848-B641-4F06-B5A6-C2FD64202FDF}
[2011.07.15 15:19:23 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{ABAE0F0E-4FDE-47AD-9CD8-BF49126B283C}
[2011.07.14 18:27:27 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{BA012542-FB69-45CA-842C-F401F88B01A4}
[2011.07.14 18:27:01 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3230ED8A-D791-4CFA-BACC-14CCB1ECA39D}
[2011.07.14 11:26:56 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{65955DF0-7B0F-4E6F-A92E-A639ADE2A201}
[2011.07.13 20:13:55 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{24CB9554-F980-449A-B697-F83017100CA8}
[2011.07.12 11:34:32 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{038D2F4C-056F-490C-AF40-872F5CC1BEE8}
[2011.07.12 10:25:47 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{411D4883-3CF5-459E-A573-31DF08D31783}
[2011.07.11 23:44:05 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Roaming\gtk-2.0
[2011.07.11 23:43:12 | 000,000,000 | ---D | C] -- C:\Users\Počítač\.thumbnails
[2011.07.11 23:41:45 | 000,000,000 | ---D | C] -- C:\Users\Počítač\.gimp-2.6
[2011.07.11 23:41:44 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\gegl-0.0
[2011.07.11 16:16:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{42502E6E-8344-4733-9085-E5A2500C98AE}
[2011.07.10 21:29:52 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3C86D898-CF08-4228-A677-644E882DDFC5}
[2011.07.10 08:23:03 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3263C42D-6B34-4D49-BB1B-5D543D034415}
[2011.07.09 17:42:36 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{B38D2FCD-69B2-40BD-8875-91B982B21357}
[2011.07.09 01:37:49 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{51B1CD6E-75BF-4BB7-A1B9-D1EEEA04E2CE}
[2011.07.08 06:21:50 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{7B828190-585D-4D42-9141-476AE69B8A09}
[2011.07.07 17:52:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{A1612441-3638-4CBC-A6D4-55B0FA54D00A}
[2011.07.06 22:02:29 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{AB7D7C15-D382-4E71-BFFC-D63FE89631A8}
[2011.07.05 23:05:54 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{16DFE10F-06B1-40DA-B5C9-2B12CEE4C11C}
[2011.07.05 19:05:25 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\BitLord
[2011.07.05 19:05:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\BitLord
[2011.07.05 11:05:18 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{959621CA-2FF7-4975-B37E-ABC71167E864}
[2011.07.05 04:17:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2011.07.04 17:27:43 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{9D8927B7-0B23-42EA-B618-18C6DDC35352}
[2011.07.04 05:08:57 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{779A29B6-1E31-4A0A-807D-34EFFAD64E6A}
[2011.07.03 12:14:13 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{FED487F7-F4E9-417B-9C59-C4387C8D24EA}
[2011.07.02 20:55:27 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\4A Games
[2011.07.02 20:54:07 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\4A Games
[2011.07.02 12:02:50 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{14298804-273F-4A53-A89B-7C6C7BE0BA8B}
[2011.07.01 14:30:11 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{50C0A4C6-BEA4-41B4-BCCF-960857887D67}
[2011.06.30 10:20:01 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{0C2E9236-5BD0-4819-A941-742A637680D4}
[2011.06.29 16:01:04 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{47D818F8-0684-4488-AE34-6EEFF54F0593}
[2011.06.28 20:57:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\Skype
[2010.10.22 23:52:47 | 001,111,158 | ---- | C] (PC Drivers HeadQuarters ) -- C:\Program Files\DriverDetective-6.4.1.5-TrialVersion.exe
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Počítač\AppData\Local\*.tmp files -> C:\Users\Počítač\AppData\Local\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.07.26 23:16:30 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.07.26 23:16:30 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.07.26 23:15:14 | 000,000,934 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.07.26 23:09:27 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () -- C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.07.26 23:08:56 | 2516,033,536 | -HS- | M] () -- C:\hiberfil.sys
[2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTL.exe
[2011.07.26 23:06:04 | 000,258,560 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
[2011.07.25 16:08:48 | 269,872,436 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011.07.24 16:45:03 | 000,000,470 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for xxx.job
[2011.07.23 23:17:41 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2011.07.14 03:19:56 | 000,411,696 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011.07.05 04:17:39 | 000,002,203 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011.07.04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011.07.04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011.07.04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Počítač\AppData\Local\*.tmp files -> C:\Users\Počítač\AppData\Local\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.07.05 04:17:39 | 000,002,203 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011.05.18 17:37:38 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll
[2011.05.18 17:37:38 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asrussian.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\askorean.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asjapan.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\ASCHT.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\aschs.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asgerman.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asfrench.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\aseng.dll
[2011.01.28 22:26:29 | 000,761,856 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2011.01.28 22:26:29 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.10.19 21:40:30 | 000,000,082 | ---- | C] () -- C:\Windows\TweakOblivion.ini
[2010.09.14 21:39:26 | 000,000,507 | ---- | C] () -- C:\Windows\eReg.dat
[2010.09.11 21:53:43 | 000,045,311 | ---- | C] () -- C:\Windows\War3Unin.dat
[2010.09.08 19:40:21 | 000,144,808 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2010.07.05 03:02:30 | 000,450,560 | R--- | C] () -- C:\Windows\System32\Cmeau6501.exe
[2010.07.05 03:02:30 | 000,053,248 | R--- | C] () -- C:\Windows\System32\C6501rm.dll
[2010.07.05 03:02:30 | 000,000,378 | ---- | C] () -- C:\Windows\C6501.ini.cfl
[2010.07.05 02:54:33 | 000,001,882 | R--- | C] () -- C:\Windows\C6501.ini.cfg
[2010.07.05 02:54:33 | 000,000,110 | ---- | C] () -- C:\Windows\C6501.ini.imi
[2010.07.05 02:54:32 | 000,000,293 | R--- | C] () -- C:\Windows\c6501.ini
[2010.07.05 02:38:03 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\SamSfPa.dat
[2010.07.05 02:25:09 | 000,065,536 | R--- | C] () -- C:\Windows\System32\CmiInstallResAll.dll
[2010.07.05 02:25:06 | 000,000,555 | ---- | C] () -- C:\Windows\cmhdav.ini
[2010.07.03 02:07:24 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2010.06.29 18:03:19 | 000,278,728 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2010.06.29 18:03:18 | 000,025,416 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2010.05.29 00:23:24 | 000,020,480 | ---- | C] () -- C:\Windows\System32\H@tKeysH@@k.DLL
[2010.04.05 20:17:28 | 000,000,035 | ---- | C] () -- C:\Windows\dice.ini
[2010.03.26 12:31:00 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2010.03.14 05:07:31 | 000,000,525 | ---- | C] () -- C:\Windows\QIII.INI
[2010.03.07 01:53:28 | 001,589,248 | ---- | C] () -- C:\Windows\System32\libmysql_d.dll
[2010.01.31 20:17:21 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2010.01.23 20:48:39 | 000,000,039 | ---- | C] () -- C:\Windows\WININIT.INI
[2010.01.22 22:38:03 | 000,000,025 | ---- | C] () -- C:\Windows\cdplayer.ini
[2010.01.18 22:38:20 | 000,118,784 | ---- | C] () -- C:\Windows\bwUnin-7.2.0.157-8876480SL.exe
[2010.01.15 22:37:46 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2009.07.27 12:13:28 | 000,061,440 | ---- | C] () -- C:\Windows\System32\ASDR.exe
[2009.07.14 10:44:22 | 000,634,308 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2009.07.14 10:44:22 | 000,292,004 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2009.07.14 10:44:22 | 000,122,898 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2009.07.14 10:44:22 | 000,036,232 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2009.07.14 06:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 06:33:53 | 000,411,696 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009.07.14 04:05:48 | 000,618,714 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009.07.14 04:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009.07.14 04:05:48 | 000,107,034 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009.07.14 04:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009.07.14 04:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009.07.14 04:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009.07.14 02:19:49 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2009.07.14 01:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009.06.10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2007.10.25 17:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys
[2007.01.16 09:49:22 | 000,065,536 | R--- | C] () -- C:\Windows\VMix.dll
[2006.10.11 05:33:58 | 000,010,288 | ---- | C] () -- C:\Windows\System32\drivers\ASUSHWIO.SYS
[2004.10.11 12:19:00 | 000,092,672 | ---- | C] () -- C:\Windows\System32\ASUSASV2.DLL

========== LOP Check ==========

[2011.07.26 23:07:33 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\AIMP
[2011.05.21 16:12:43 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\Babylon
[2011.07.09 20:44:32 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\DAEMON Tools Lite
[2011.07.09 20:44:32 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\GetRightToGo
[2011.07.12 10:26:27 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\gtk-2.0
[2011.06.10 21:35:13 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\Unity
[2011.05.30 20:07:50 | 000,032,632 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2009.06.10 23:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009.06.10 23:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
[2011.07.26 23:08:56 | 2516,033,536 | -HS- | M] () -- C:\hiberfil.sys
[2010.03.14 05:07:27 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010.03.14 05:07:27 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011.07.26 23:08:59 | 3354,714,112 | -HS- | M] () -- C:\pagefile.sys

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >
[2011.07.26 23:09:27 | 000,000,930 | ---- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2011.07.26 23:15:14 | 000,000,934 | ---- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2011.07.24 16:45:03 | 000,000,470 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\Norton Security Scan for xxx.job
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\drivers\*.sys /90 >
[2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswFsBlk.sys
[2011.07.04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswMonFlt.sys
[2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswRdr.sys
[2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswSnx.sys
[2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswSP.sys
[2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswTdi.sys
[2011.05.04 04:43:41 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb.sys
[2011.05.04 04:43:59 | 000,222,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb10.sys
[2011.05.04 04:43:48 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb20.sys
[2011.04.29 04:57:34 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srv.sys
[2011.04.29 04:57:21 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srv2.sys
[2011.04.29 04:57:13 | 000,114,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srvnet.sys

< End of report >










OTL Extras logfile created on: 26.7.2011 23:17:42 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Počítač\Desktop
An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,12 Gb Total Physical Memory | 2,34 Gb Available Physical Memory | 74,83% Memory free
6,25 Gb Paging File | 5,39 Gb Available in Paging File | 86,27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,43 Gb Total Space | 28,10 Gb Free Space | 37,75% Space Free | Partition Type: NTFS
Drive E: | 189,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: ADMIN | User Name: Počítač | NOT logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{068B46A0-8858-4CEB-80BC-A4AE787A05FC}" = Windows Live Sync
"{0891B708-EF3F-4D7E-9724-265245F46276}" = Windows Live Remote Service Resources
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21040472-F8DF-48A9-A093-2986C1495670}" = Lineage II
"{21DAA4FB-084A-4CBF-A234-FE719EEEC999}_is1" = Shadowgrounds
"{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service
"{23D683DD-93C6-48E6-B84E-78B57778F126}" = Oblivion - Construction Set
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{35CB6715-41F8-4F99-8881-6FC75BF054B0}" = Oblivion
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F50AF3B-8997-4916-0095-99D63DDB785A}" = Harry Potter
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{454F5782-A4C3-480E-A629-D435795DEFD8}" = Windows Live Remote Client Resources
"{463F67F4-58D0-4C0D-BBC9-D0CC4E56D1B8}" = Windows Live UX Platform Language Pack
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}" = NCsoft Launcher
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{765443B7-555F-4E8C-9C96-A52409AE4E4A}" = Utility
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo
"{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver
"{7F88C9E5-12BD-404F-AC6A-108BAAC9B708}" = ASUS Gamer OSD
"{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A30D5C0-BD4A-4E65-AADF-20A457DE6D38}" = Windows Live Family Safety
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_PROPLUS_{294B4278-CF7B-40B9-86A1-2D3FF0C2C524}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_PROPLUS_{10EC59E5-9BCE-4884-BB1A-E28627220232}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_PROPLUS_{E12F9D31-4025-4BC6-B1B2-AB262C5580B0}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{904CCF62-818D-4675-BC76-D37EB399F917}" = Centrum zařízení Windows Mobile
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-007A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9D82AFA7-936F-4033-AFAB-E657D685829C}" = L2Informer
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution
"{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 270.61
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.1.34
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.2.22.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B3FED300-806C-11E0-A0D0-B8AC6F97B88E}" = Google Earth
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{C325F588-D6B1-4A7F-B6A2-914C75DDA348}" = Morrowind
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D98C0C51-F9BB-4EE4-B791-22BF6EE31029}" = Nero 7 Premium
"{DAEAFD68-BB4A-4507-A241-C8804D2EA66D}" = Apple Application Support
"{DB3C800B-081B-4146-B4E3-EFB5B77AA913}" = TES Construction Set
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E7044E25-3038-4A76-9064-344AC038043E}" = Aktualizace ovladače pro aplikaci Centrum zařízení Windows Mobile
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EB900AF8-CC61-4E15-871B-98D1EA3E8025}" = QuickTime
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F" = Balíček ovladače systému Windows - Nokia pccsmcfd (10/12/2007 6.85.4.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AIMP2" = AIMP2
"AIMP2at" = AIMP2: Audio Tools
"ArcaniA" = ArcaniA - Gothic 4
"avast" = avast! Free Antivirus
"BitLord_is1" = BitLord v2.0
"C-Media C6501 Like Sound Driver" = C-Media C6501 Like Sound Device
"DivX Setup.divx.com" = DivX Setup
"Foxit Reader" = Foxit Reader
"Fraps" = Fraps (remove only)
"Google Chrome" = Google Chrome
"Guild Wars" = Guild Wars
"HLSW_is1" = HLSW v1.3.2.1
"InstallShield_{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"InstallShield_{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"lgomorrowindczechaio_is1" = lightning morrowind czech all-in-one beta (score)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"NSS" = Norton Security Scan
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"PremiumSoft Navicat 8.2 for MySQL_is1" = PremiumSoft Navicat 8.2 for MySQL
"PROPLUS" = Microsoft Office Professional Plus 2007
"Quake 3 Arena Demo" = Quake 3 Arena Demo
"RealPlayer 12.0" = RealPlayer
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software
"Samsung Mobile phone USB driver Drive" = Samsung Mobile phone USB driver Drive Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
"Totalcmd" = Total Commander (Remove or Repair)
"UltraISO_is1" = UltraISO Premium V9.36
"VertrigoServ" = VertrigoServ (remove only)
"Virtual DJ - Atomix Productions" = Virtual DJ - Atomix Productions
"Warcraft III" = Warcraft III
"WheelMouse" = Smart-X7 7.80
"WinGimp-2.0_is1" = GIMP 2.6.8
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"World of Warcraft" = World of Warcraft
"xvid" = XviD MPEG-4 Video Codec

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"UnityWebPlayer" = Unity Web Player
"Vietcong 2" = Vietcong 2
"Warcraft III" = Warcraft III: All Products

========== Last 10 Event Log Errors ==========

Error: Unable to start EventLog service!

< End of report >

OndrK
nováček
Příspěvky: 35
Registrován: červenec 11
Bydliště: Plzeň
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod OndrK » 26 črc 2011 23:23

Tak tady sou ty logy: ..... a co se tim vlastne vyresi ?? system_32.bat? nebo to heslo?

OTL logfile created on: 26.7.2011 23:17:42 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Počítač\Desktop
An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,12 Gb Total Physical Memory | 2,34 Gb Available Physical Memory | 74,83% Memory free
6,25 Gb Paging File | 5,39 Gb Available in Paging File | 86,27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,43 Gb Total Space | 28,10 Gb Free Space | 37,75% Space Free | Partition Type: NTFS
Drive E: | 189,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: ADMIN | User Name: Počítač | NOT logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\otl.exe
PRC - [2011.07.26 23:06:04 | 000,258,560 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
PRC - [2011.07.04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe


========== Modules (SafeList) ==========

MOD - [2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\otl.exe
MOD - [2011.07.04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2011.07.04 13:43:46 | 000,122,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\ashShell.dll
MOD - [2010.08.21 07:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll


========== Win32 Services (SafeList) ==========


========== Driver Services (SafeList) ==========


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=14542
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.448: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Počítač\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

[2010.01.29 14:06:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Počítač\AppData\Roaming\Mozilla\Extensions
[2010.01.29 14:06:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Počítač\AppData\Roaming\Mozilla\Firefox\Profiles\p0190x5h.default\extensions
[2010.10.15 20:08:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.06.22 19:12:00 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.06.22 19:11:38 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2010.04.22 17:28:09 | 000,075,208 | ---- | M] (Foxit Software Company) -- C:\Program Files\mozilla firefox\plugins\npFoxitReaderPlugin.dll
[2010.09.01 12:48:00 | 000,002,226 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml

O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CE18769B-C7FA-42D2-860D-17C4662C70AD} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [C6501Sound] File not found
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [ImagePath] C:\Windows\system_32.bat ()
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [WheelMouse] C:\Program Files\A4Tech\Mouse\Amoumain.exe (A4Tech Co.,Ltd.)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [PlayNC Launcher] File not found
O4 - HKCU..\Run: [Sony Ericsson PC Companion] File not found
O4 - HKCU..\Run: [Steam] b:\hry\steam\steam.exe (Valve Corporation)
O4 - HKLM..\RunOnce: [*WerKernelReporting] C:\Windows\System32\WerFault.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [aswAhAScr.dll] C:\Program Files\AVAST Software\Avast\aswRegSvr.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 178.77.254.254 77.48.100.254
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{0009e6e9-8042-11df-a84f-001966465696}\Shell - "" = AutoRun
O33 - MountPoints2\{0009e6e9-8042-11df-a84f-001966465696}\Shell\AutoRun\command - "" = H:\Startme.exe
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell - "" = AutoRun
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell\AutoRun\command - "" = G:\setup\rsrc\Autorun.exe
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell\dinstall\command - "" = G:\Directx\dxsetup.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

CREATERESTOREPOINT
Error creating restore point.

========== Files/Folders - Created Within 30 Days ==========

[2011.07.26 23:06:06 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTL.exe
[2011.07.26 23:06:02 | 000,258,560 | ---- | C] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
[2011.07.26 18:32:12 | 000,000,000 | ---D | C] -- C:\Nová složka
[2011.07.26 18:01:15 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{1E031061-D059-42CA-8DF2-ABB0A699D717}
[2011.07.25 16:11:39 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{FEBA0068-C3EE-46B6-8A52-3C0435F1BD23}
[2011.07.25 16:06:52 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{614BDA22-74E1-4E05-9051-608F8A4BFA96}
[2011.07.24 20:53:42 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Desktop\Viry
[2011.07.24 15:25:23 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{F1E829AA-6A9B-4CFA-82B3-A6E8F26DC931}
[2011.07.23 19:55:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{27F1B91F-AEE7-4ABB-A569-9CD3D9B78E04}
[2011.07.23 00:53:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Desktop\Metro 2033
[2011.07.22 20:49:44 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{DCF7263A-146A-44EA-966C-560022941476}
[2011.07.22 19:14:15 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Roaming\InstallShield
[2011.07.22 16:12:40 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{14571E99-5115-4DF7-8AD4-7BAC028D43D1}
[2011.07.21 19:41:06 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{90AC51F8-8DEB-4439-86EB-7C8A5BDBDBED}
[2011.07.20 18:33:30 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{07F463EB-FF25-4FBD-97AF-8F3BF881F092}
[2011.07.19 19:57:06 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{B65AD762-6F48-4EDC-99D6-3D732F697D04}
[2011.07.19 18:56:51 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{E43385C9-D835-4CBB-9822-BBD65ADE1F2D}
[2011.07.18 18:54:12 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{19302B0D-4CAF-4207-BDFC-5C890646AA84}
[2011.07.17 22:34:10 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{30347F70-1CF4-46BC-A8C3-8B4615F4C76B}
[2011.07.15 21:18:57 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{2B40B848-B641-4F06-B5A6-C2FD64202FDF}
[2011.07.15 15:19:23 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{ABAE0F0E-4FDE-47AD-9CD8-BF49126B283C}
[2011.07.14 18:27:27 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{BA012542-FB69-45CA-842C-F401F88B01A4}
[2011.07.14 18:27:01 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3230ED8A-D791-4CFA-BACC-14CCB1ECA39D}
[2011.07.14 11:26:56 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{65955DF0-7B0F-4E6F-A92E-A639ADE2A201}
[2011.07.13 20:13:55 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{24CB9554-F980-449A-B697-F83017100CA8}
[2011.07.12 11:34:32 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{038D2F4C-056F-490C-AF40-872F5CC1BEE8}
[2011.07.12 10:25:47 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{411D4883-3CF5-459E-A573-31DF08D31783}
[2011.07.11 23:44:05 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Roaming\gtk-2.0
[2011.07.11 23:43:12 | 000,000,000 | ---D | C] -- C:\Users\Počítač\.thumbnails
[2011.07.11 23:41:45 | 000,000,000 | ---D | C] -- C:\Users\Počítač\.gimp-2.6
[2011.07.11 23:41:44 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\gegl-0.0
[2011.07.11 16:16:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{42502E6E-8344-4733-9085-E5A2500C98AE}
[2011.07.10 21:29:52 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3C86D898-CF08-4228-A677-644E882DDFC5}
[2011.07.10 08:23:03 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3263C42D-6B34-4D49-BB1B-5D543D034415}
[2011.07.09 17:42:36 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{B38D2FCD-69B2-40BD-8875-91B982B21357}
[2011.07.09 01:37:49 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{51B1CD6E-75BF-4BB7-A1B9-D1EEEA04E2CE}
[2011.07.08 06:21:50 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{7B828190-585D-4D42-9141-476AE69B8A09}
[2011.07.07 17:52:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{A1612441-3638-4CBC-A6D4-55B0FA54D00A}
[2011.07.06 22:02:29 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{AB7D7C15-D382-4E71-BFFC-D63FE89631A8}
[2011.07.05 23:05:54 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{16DFE10F-06B1-40DA-B5C9-2B12CEE4C11C}
[2011.07.05 19:05:25 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\BitLord
[2011.07.05 19:05:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\BitLord
[2011.07.05 11:05:18 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{959621CA-2FF7-4975-B37E-ABC71167E864}
[2011.07.05 04:17:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2011.07.04 17:27:43 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{9D8927B7-0B23-42EA-B618-18C6DDC35352}
[2011.07.04 05:08:57 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{779A29B6-1E31-4A0A-807D-34EFFAD64E6A}
[2011.07.03 12:14:13 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{FED487F7-F4E9-417B-9C59-C4387C8D24EA}
[2011.07.02 20:55:27 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\4A Games
[2011.07.02 20:54:07 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\4A Games
[2011.07.02 12:02:50 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{14298804-273F-4A53-A89B-7C6C7BE0BA8B}
[2011.07.01 14:30:11 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{50C0A4C6-BEA4-41B4-BCCF-960857887D67}
[2011.06.30 10:20:01 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{0C2E9236-5BD0-4819-A941-742A637680D4}
[2011.06.29 16:01:04 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{47D818F8-0684-4488-AE34-6EEFF54F0593}
[2011.06.28 20:57:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\Skype
[2010.10.22 23:52:47 | 001,111,158 | ---- | C] (PC Drivers HeadQuarters ) -- C:\Program Files\DriverDetective-6.4.1.5-TrialVersion.exe
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Počítač\AppData\Local\*.tmp files -> C:\Users\Počítač\AppData\Local\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.07.26 23:16:30 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.07.26 23:16:30 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.07.26 23:15:14 | 000,000,934 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.07.26 23:09:27 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () -- C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.07.26 23:08:56 | 2516,033,536 | -HS- | M] () -- C:\hiberfil.sys
[2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTL.exe
[2011.07.26 23:06:04 | 000,258,560 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
[2011.07.25 16:08:48 | 269,872,436 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011.07.24 16:45:03 | 000,000,470 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for xxx.job
[2011.07.23 23:17:41 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2011.07.14 03:19:56 | 000,411,696 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011.07.05 04:17:39 | 000,002,203 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011.07.04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011.07.04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011.07.04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Počítač\AppData\Local\*.tmp files -> C:\Users\Počítač\AppData\Local\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.07.05 04:17:39 | 000,002,203 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011.05.18 17:37:38 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll
[2011.05.18 17:37:38 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asrussian.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\askorean.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asjapan.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\ASCHT.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\aschs.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asgerman.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asfrench.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\aseng.dll
[2011.01.28 22:26:29 | 000,761,856 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2011.01.28 22:26:29 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.10.19 21:40:30 | 000,000,082 | ---- | C] () -- C:\Windows\TweakOblivion.ini
[2010.09.14 21:39:26 | 000,000,507 | ---- | C] () -- C:\Windows\eReg.dat
[2010.09.11 21:53:43 | 000,045,311 | ---- | C] () -- C:\Windows\War3Unin.dat
[2010.09.08 19:40:21 | 000,144,808 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2010.07.05 03:02:30 | 000,450,560 | R--- | C] () -- C:\Windows\System32\Cmeau6501.exe
[2010.07.05 03:02:30 | 000,053,248 | R--- | C] () -- C:\Windows\System32\C6501rm.dll
[2010.07.05 03:02:30 | 000,000,378 | ---- | C] () -- C:\Windows\C6501.ini.cfl
[2010.07.05 02:54:33 | 000,001,882 | R--- | C] () -- C:\Windows\C6501.ini.cfg
[2010.07.05 02:54:33 | 000,000,110 | ---- | C] () -- C:\Windows\C6501.ini.imi
[2010.07.05 02:54:32 | 000,000,293 | R--- | C] () -- C:\Windows\c6501.ini
[2010.07.05 02:38:03 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\SamSfPa.dat
[2010.07.05 02:25:09 | 000,065,536 | R--- | C] () -- C:\Windows\System32\CmiInstallResAll.dll
[2010.07.05 02:25:06 | 000,000,555 | ---- | C] () -- C:\Windows\cmhdav.ini
[2010.07.03 02:07:24 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2010.06.29 18:03:19 | 000,278,728 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2010.06.29 18:03:18 | 000,025,416 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2010.05.29 00:23:24 | 000,020,480 | ---- | C] () -- C:\Windows\System32\H@tKeysH@@k.DLL
[2010.04.05 20:17:28 | 000,000,035 | ---- | C] () -- C:\Windows\dice.ini
[2010.03.26 12:31:00 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2010.03.14 05:07:31 | 000,000,525 | ---- | C] () -- C:\Windows\QIII.INI
[2010.03.07 01:53:28 | 001,589,248 | ---- | C] () -- C:\Windows\System32\libmysql_d.dll
[2010.01.31 20:17:21 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2010.01.23 20:48:39 | 000,000,039 | ---- | C] () -- C:\Windows\WININIT.INI
[2010.01.22 22:38:03 | 000,000,025 | ---- | C] () -- C:\Windows\cdplayer.ini
[2010.01.18 22:38:20 | 000,118,784 | ---- | C] () -- C:\Windows\bwUnin-7.2.0.157-8876480SL.exe
[2010.01.15 22:37:46 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2009.07.27 12:13:28 | 000,061,440 | ---- | C] () -- C:\Windows\System32\ASDR.exe
[2009.07.14 10:44:22 | 000,634,308 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2009.07.14 10:44:22 | 000,292,004 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2009.07.14 10:44:22 | 000,122,898 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2009.07.14 10:44:22 | 000,036,232 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2009.07.14 06:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 06:33:53 | 000,411,696 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009.07.14 04:05:48 | 000,618,714 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009.07.14 04:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009.07.14 04:05:48 | 000,107,034 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009.07.14 04:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009.07.14 04:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009.07.14 04:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009.07.14 02:19:49 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2009.07.14 01:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009.06.10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2007.10.25 17:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys
[2007.01.16 09:49:22 | 000,065,536 | R--- | C] () -- C:\Windows\VMix.dll
[2006.10.11 05:33:58 | 000,010,288 | ---- | C] () -- C:\Windows\System32\drivers\ASUSHWIO.SYS
[2004.10.11 12:19:00 | 000,092,672 | ---- | C] () -- C:\Windows\System32\ASUSASV2.DLL

========== LOP Check ==========

[2011.07.26 23:07:33 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\AIMP
[2011.05.21 16:12:43 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\Babylon
[2011.07.09 20:44:32 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\DAEMON Tools Lite
[2011.07.09 20:44:32 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\GetRightToGo
[2011.07.12 10:26:27 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\gtk-2.0
[2011.06.10 21:35:13 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\Unity
[2011.05.30 20:07:50 | 000,032,632 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2009.06.10 23:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009.06.10 23:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
[2011.07.26 23:08:56 | 2516,033,536 | -HS- | M] () -- C:\hiberfil.sys
[2010.03.14 05:07:27 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010.03.14 05:07:27 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011.07.26 23:08:59 | 3354,714,112 | -HS- | M] () -- C:\pagefile.sys

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >
[2011.07.26 23:09:27 | 000,000,930 | ---- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2011.07.26 23:15:14 | 000,000,934 | ---- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2011.07.24 16:45:03 | 000,000,470 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\Norton Security Scan for xxx.job
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\drivers\*.sys /90 >
[2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswFsBlk.sys
[2011.07.04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswMonFlt.sys
[2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswRdr.sys
[2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswSnx.sys
[2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswSP.sys
[2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswTdi.sys
[2011.05.04 04:43:41 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb.sys
[2011.05.04 04:43:59 | 000,222,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb10.sys
[2011.05.04 04:43:48 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb20.sys
[2011.04.29 04:57:34 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srv.sys
[2011.04.29 04:57:21 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srv2.sys
[2011.04.29 04:57:13 | 000,114,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srvnet.sys

< End of report >










OTL Extras logfile created on: 26.7.2011 23:17:42 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Počítač\Desktop
An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,12 Gb Total Physical Memory | 2,34 Gb Available Physical Memory | 74,83% Memory free
6,25 Gb Paging File | 5,39 Gb Available in Paging File | 86,27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,43 Gb Total Space | 28,10 Gb Free Space | 37,75% Space Free | Partition Type: NTFS
Drive E: | 189,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: ADMIN | User Name: Počítač | NOT logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{068B46A0-8858-4CEB-80BC-A4AE787A05FC}" = Windows Live Sync
"{0891B708-EF3F-4D7E-9724-265245F46276}" = Windows Live Remote Service Resources
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21040472-F8DF-48A9-A093-2986C1495670}" = Lineage II
"{21DAA4FB-084A-4CBF-A234-FE719EEEC999}_is1" = Shadowgrounds
"{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service
"{23D683DD-93C6-48E6-B84E-78B57778F126}" = Oblivion - Construction Set
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{35CB6715-41F8-4F99-8881-6FC75BF054B0}" = Oblivion
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F50AF3B-8997-4916-0095-99D63DDB785A}" = Harry Potter
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{454F5782-A4C3-480E-A629-D435795DEFD8}" = Windows Live Remote Client Resources
"{463F67F4-58D0-4C0D-BBC9-D0CC4E56D1B8}" = Windows Live UX Platform Language Pack
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}" = NCsoft Launcher
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{765443B7-555F-4E8C-9C96-A52409AE4E4A}" = Utility
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo
"{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver
"{7F88C9E5-12BD-404F-AC6A-108BAAC9B708}" = ASUS Gamer OSD
"{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A30D5C0-BD4A-4E65-AADF-20A457DE6D38}" = Windows Live Family Safety
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_PROPLUS_{294B4278-CF7B-40B9-86A1-2D3FF0C2C524}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_PROPLUS_{10EC59E5-9BCE-4884-BB1A-E28627220232}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_PROPLUS_{E12F9D31-4025-4BC6-B1B2-AB262C5580B0}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{904CCF62-818D-4675-BC76-D37EB399F917}" = Centrum zařízení Windows Mobile
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-007A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9D82AFA7-936F-4033-AFAB-E657D685829C}" = L2Informer
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution
"{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 270.61
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.1.34
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.2.22.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B3FED300-806C-11E0-A0D0-B8AC6F97B88E}" = Google Earth
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{C325F588-D6B1-4A7F-B6A2-914C75DDA348}" = Morrowind
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D98C0C51-F9BB-4EE4-B791-22BF6EE31029}" = Nero 7 Premium
"{DAEAFD68-BB4A-4507-A241-C8804D2EA66D}" = Apple Application Support
"{DB3C800B-081B-4146-B4E3-EFB5B77AA913}" = TES Construction Set
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E7044E25-3038-4A76-9064-344AC038043E}" = Aktualizace ovladače pro aplikaci Centrum zařízení Windows Mobile
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EB900AF8-CC61-4E15-871B-98D1EA3E8025}" = QuickTime
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F" = Balíček ovladače systému Windows - Nokia pccsmcfd (10/12/2007 6.85.4.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AIMP2" = AIMP2
"AIMP2at" = AIMP2: Audio Tools
"ArcaniA" = ArcaniA - Gothic 4
"avast" = avast! Free Antivirus
"BitLord_is1" = BitLord v2.0
"C-Media C6501 Like Sound Driver" = C-Media C6501 Like Sound Device
"DivX Setup.divx.com" = DivX Setup
"Foxit Reader" = Foxit Reader
"Fraps" = Fraps (remove only)
"Google Chrome" = Google Chrome
"Guild Wars" = Guild Wars
"HLSW_is1" = HLSW v1.3.2.1
"InstallShield_{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"InstallShield_{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"lgomorrowindczechaio_is1" = lightning morrowind czech all-in-one beta (score)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"NSS" = Norton Security Scan
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"PremiumSoft Navicat 8.2 for MySQL_is1" = PremiumSoft Navicat 8.2 for MySQL
"PROPLUS" = Microsoft Office Professional Plus 2007
"Quake 3 Arena Demo" = Quake 3 Arena Demo
"RealPlayer 12.0" = RealPlayer
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software
"Samsung Mobile phone USB driver Drive" = Samsung Mobile phone USB driver Drive Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
"Totalcmd" = Total Commander (Remove or Repair)
"UltraISO_is1" = UltraISO Premium V9.36
"VertrigoServ" = VertrigoServ (remove only)
"Virtual DJ - Atomix Productions" = Virtual DJ - Atomix Productions
"Warcraft III" = Warcraft III
"WheelMouse" = Smart-X7 7.80
"WinGimp-2.0_is1" = GIMP 2.6.8
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"World of Warcraft" = World of Warcraft
"xvid" = XviD MPEG-4 Video Codec

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"UnityWebPlayer" = Unity Web Player
"Vietcong 2" = Vietcong 2
"Warcraft III" = Warcraft III: All Products

========== Last 10 Event Log Errors ==========

Error: Unable to start EventLog service!

< End of report >

OndrK
nováček
Příspěvky: 35
Registrován: červenec 11
Bydliště: Plzeň
Pohlaví: Muž
Stav:
Offline

Re: Při startu se automaticky spouští cmd*

Příspěvekod OndrK » 26 črc 2011 23:23

Tak tady sou ty logy: ..... a co se tim vlastne vyresi ?? system_32.bat? nebo to heslo?

OTL logfile created on: 26.7.2011 23:17:42 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Počítač\Desktop
An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,12 Gb Total Physical Memory | 2,34 Gb Available Physical Memory | 74,83% Memory free
6,25 Gb Paging File | 5,39 Gb Available in Paging File | 86,27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,43 Gb Total Space | 28,10 Gb Free Space | 37,75% Space Free | Partition Type: NTFS
Drive E: | 189,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: ADMIN | User Name: Počítač | NOT logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\otl.exe
PRC - [2011.07.26 23:06:04 | 000,258,560 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
PRC - [2011.07.04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe


========== Modules (SafeList) ==========

MOD - [2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\otl.exe
MOD - [2011.07.04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2011.07.04 13:43:46 | 000,122,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\ashShell.dll
MOD - [2010.08.21 07:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll


========== Win32 Services (SafeList) ==========


========== Driver Services (SafeList) ==========


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=14542
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.448: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Počítač\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

[2010.01.29 14:06:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Počítač\AppData\Roaming\Mozilla\Extensions
[2010.01.29 14:06:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Počítač\AppData\Roaming\Mozilla\Firefox\Profiles\p0190x5h.default\extensions
[2010.10.15 20:08:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.06.22 19:12:00 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.06.22 19:11:38 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2010.04.22 17:28:09 | 000,075,208 | ---- | M] (Foxit Software Company) -- C:\Program Files\mozilla firefox\plugins\npFoxitReaderPlugin.dll
[2010.09.01 12:48:00 | 000,002,226 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml

O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CE18769B-C7FA-42D2-860D-17C4662C70AD} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [C6501Sound] File not found
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [ImagePath] C:\Windows\system_32.bat ()
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [WheelMouse] C:\Program Files\A4Tech\Mouse\Amoumain.exe (A4Tech Co.,Ltd.)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [PlayNC Launcher] File not found
O4 - HKCU..\Run: [Sony Ericsson PC Companion] File not found
O4 - HKCU..\Run: [Steam] b:\hry\steam\steam.exe (Valve Corporation)
O4 - HKLM..\RunOnce: [*WerKernelReporting] C:\Windows\System32\WerFault.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [aswAhAScr.dll] C:\Program Files\AVAST Software\Avast\aswRegSvr.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 178.77.254.254 77.48.100.254
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{0009e6e9-8042-11df-a84f-001966465696}\Shell - "" = AutoRun
O33 - MountPoints2\{0009e6e9-8042-11df-a84f-001966465696}\Shell\AutoRun\command - "" = H:\Startme.exe
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell - "" = AutoRun
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell\AutoRun\command - "" = G:\setup\rsrc\Autorun.exe
O33 - MountPoints2\{62424d4e-f59e-11de-bc67-001966465696}\Shell\dinstall\command - "" = G:\Directx\dxsetup.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

CREATERESTOREPOINT
Error creating restore point.

========== Files/Folders - Created Within 30 Days ==========

[2011.07.26 23:06:06 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTL.exe
[2011.07.26 23:06:02 | 000,258,560 | ---- | C] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
[2011.07.26 18:32:12 | 000,000,000 | ---D | C] -- C:\Nová složka
[2011.07.26 18:01:15 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{1E031061-D059-42CA-8DF2-ABB0A699D717}
[2011.07.25 16:11:39 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{FEBA0068-C3EE-46B6-8A52-3C0435F1BD23}
[2011.07.25 16:06:52 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{614BDA22-74E1-4E05-9051-608F8A4BFA96}
[2011.07.24 20:53:42 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Desktop\Viry
[2011.07.24 15:25:23 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{F1E829AA-6A9B-4CFA-82B3-A6E8F26DC931}
[2011.07.23 19:55:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{27F1B91F-AEE7-4ABB-A569-9CD3D9B78E04}
[2011.07.23 00:53:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Desktop\Metro 2033
[2011.07.22 20:49:44 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{DCF7263A-146A-44EA-966C-560022941476}
[2011.07.22 19:14:15 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Roaming\InstallShield
[2011.07.22 16:12:40 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{14571E99-5115-4DF7-8AD4-7BAC028D43D1}
[2011.07.21 19:41:06 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{90AC51F8-8DEB-4439-86EB-7C8A5BDBDBED}
[2011.07.20 18:33:30 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{07F463EB-FF25-4FBD-97AF-8F3BF881F092}
[2011.07.19 19:57:06 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{B65AD762-6F48-4EDC-99D6-3D732F697D04}
[2011.07.19 18:56:51 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{E43385C9-D835-4CBB-9822-BBD65ADE1F2D}
[2011.07.18 18:54:12 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{19302B0D-4CAF-4207-BDFC-5C890646AA84}
[2011.07.17 22:34:10 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{30347F70-1CF4-46BC-A8C3-8B4615F4C76B}
[2011.07.15 21:18:57 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{2B40B848-B641-4F06-B5A6-C2FD64202FDF}
[2011.07.15 15:19:23 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{ABAE0F0E-4FDE-47AD-9CD8-BF49126B283C}
[2011.07.14 18:27:27 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{BA012542-FB69-45CA-842C-F401F88B01A4}
[2011.07.14 18:27:01 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3230ED8A-D791-4CFA-BACC-14CCB1ECA39D}
[2011.07.14 11:26:56 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{65955DF0-7B0F-4E6F-A92E-A639ADE2A201}
[2011.07.13 20:13:55 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{24CB9554-F980-449A-B697-F83017100CA8}
[2011.07.12 11:34:32 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{038D2F4C-056F-490C-AF40-872F5CC1BEE8}
[2011.07.12 10:25:47 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{411D4883-3CF5-459E-A573-31DF08D31783}
[2011.07.11 23:44:05 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Roaming\gtk-2.0
[2011.07.11 23:43:12 | 000,000,000 | ---D | C] -- C:\Users\Počítač\.thumbnails
[2011.07.11 23:41:45 | 000,000,000 | ---D | C] -- C:\Users\Počítač\.gimp-2.6
[2011.07.11 23:41:44 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\gegl-0.0
[2011.07.11 16:16:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{42502E6E-8344-4733-9085-E5A2500C98AE}
[2011.07.10 21:29:52 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3C86D898-CF08-4228-A677-644E882DDFC5}
[2011.07.10 08:23:03 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{3263C42D-6B34-4D49-BB1B-5D543D034415}
[2011.07.09 17:42:36 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{B38D2FCD-69B2-40BD-8875-91B982B21357}
[2011.07.09 01:37:49 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{51B1CD6E-75BF-4BB7-A1B9-D1EEEA04E2CE}
[2011.07.08 06:21:50 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{7B828190-585D-4D42-9141-476AE69B8A09}
[2011.07.07 17:52:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{A1612441-3638-4CBC-A6D4-55B0FA54D00A}
[2011.07.06 22:02:29 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{AB7D7C15-D382-4E71-BFFC-D63FE89631A8}
[2011.07.05 23:05:54 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{16DFE10F-06B1-40DA-B5C9-2B12CEE4C11C}
[2011.07.05 19:05:25 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\BitLord
[2011.07.05 19:05:16 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\BitLord
[2011.07.05 11:05:18 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{959621CA-2FF7-4975-B37E-ABC71167E864}
[2011.07.05 04:17:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2011.07.04 17:27:43 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{9D8927B7-0B23-42EA-B618-18C6DDC35352}
[2011.07.04 05:08:57 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{779A29B6-1E31-4A0A-807D-34EFFAD64E6A}
[2011.07.03 12:14:13 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{FED487F7-F4E9-417B-9C59-C4387C8D24EA}
[2011.07.02 20:55:27 | 000,000,000 | ---D | C] -- C:\Users\Počítač\Documents\4A Games
[2011.07.02 20:54:07 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\4A Games
[2011.07.02 12:02:50 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{14298804-273F-4A53-A89B-7C6C7BE0BA8B}
[2011.07.01 14:30:11 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{50C0A4C6-BEA4-41B4-BCCF-960857887D67}
[2011.06.30 10:20:01 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{0C2E9236-5BD0-4819-A941-742A637680D4}
[2011.06.29 16:01:04 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\{47D818F8-0684-4488-AE34-6EEFF54F0593}
[2011.06.28 20:57:21 | 000,000,000 | ---D | C] -- C:\Users\Počítač\AppData\Local\Skype
[2010.10.22 23:52:47 | 001,111,158 | ---- | C] (PC Drivers HeadQuarters ) -- C:\Program Files\DriverDetective-6.4.1.5-TrialVersion.exe
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Počítač\AppData\Local\*.tmp files -> C:\Users\Počítač\AppData\Local\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.07.26 23:16:30 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.07.26 23:16:30 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.07.26 23:15:14 | 000,000,934 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.07.26 23:09:27 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () -- C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.07.26 23:08:56 | 2516,033,536 | -HS- | M] () -- C:\hiberfil.sys
[2011.07.26 23:06:10 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTL.exe
[2011.07.26 23:06:04 | 000,258,560 | ---- | M] (OldTimer Tools) -- C:\Users\Počítač\Desktop\OTH.scr
[2011.07.25 16:08:48 | 269,872,436 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011.07.24 16:45:03 | 000,000,470 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for xxx.job
[2011.07.23 23:17:41 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2011.07.14 03:19:56 | 000,411,696 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011.07.05 04:17:39 | 000,002,203 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011.07.04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011.07.04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011.07.04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Počítač\AppData\Local\*.tmp files -> C:\Users\Počítač\AppData\Local\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.07.05 04:17:39 | 000,002,203 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011.05.18 17:37:38 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll
[2011.05.18 17:37:38 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asrussian.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\askorean.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asjapan.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\ASCHT.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\aschs.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asgerman.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\asfrench.dll
[2011.01.28 22:26:30 | 000,053,248 | ---- | C] () -- C:\Windows\System32\aseng.dll
[2011.01.28 22:26:29 | 000,761,856 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2011.01.28 22:26:29 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.10.19 21:40:30 | 000,000,082 | ---- | C] () -- C:\Windows\TweakOblivion.ini
[2010.09.14 21:39:26 | 000,000,507 | ---- | C] () -- C:\Windows\eReg.dat
[2010.09.11 21:53:43 | 000,045,311 | ---- | C] () -- C:\Windows\War3Unin.dat
[2010.09.08 19:40:21 | 000,144,808 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2010.07.05 03:02:30 | 000,450,560 | R--- | C] () -- C:\Windows\System32\Cmeau6501.exe
[2010.07.05 03:02:30 | 000,053,248 | R--- | C] () -- C:\Windows\System32\C6501rm.dll
[2010.07.05 03:02:30 | 000,000,378 | ---- | C] () -- C:\Windows\C6501.ini.cfl
[2010.07.05 02:54:33 | 000,001,882 | R--- | C] () -- C:\Windows\C6501.ini.cfg
[2010.07.05 02:54:33 | 000,000,110 | ---- | C] () -- C:\Windows\C6501.ini.imi
[2010.07.05 02:54:32 | 000,000,293 | R--- | C] () -- C:\Windows\c6501.ini
[2010.07.05 02:38:03 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\SamSfPa.dat
[2010.07.05 02:25:09 | 000,065,536 | R--- | C] () -- C:\Windows\System32\CmiInstallResAll.dll
[2010.07.05 02:25:06 | 000,000,555 | ---- | C] () -- C:\Windows\cmhdav.ini
[2010.07.03 02:07:24 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2010.06.29 18:03:19 | 000,278,728 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2010.06.29 18:03:18 | 000,025,416 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2010.05.29 00:23:24 | 000,020,480 | ---- | C] () -- C:\Windows\System32\H@tKeysH@@k.DLL
[2010.04.05 20:17:28 | 000,000,035 | ---- | C] () -- C:\Windows\dice.ini
[2010.03.26 12:31:00 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2010.03.14 05:07:31 | 000,000,525 | ---- | C] () -- C:\Windows\QIII.INI
[2010.03.07 01:53:28 | 001,589,248 | ---- | C] () -- C:\Windows\System32\libmysql_d.dll
[2010.01.31 20:17:21 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2010.01.23 20:48:39 | 000,000,039 | ---- | C] () -- C:\Windows\WININIT.INI
[2010.01.22 22:38:03 | 000,000,025 | ---- | C] () -- C:\Windows\cdplayer.ini
[2010.01.18 22:38:20 | 000,118,784 | ---- | C] () -- C:\Windows\bwUnin-7.2.0.157-8876480SL.exe
[2010.01.15 22:37:46 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2009.07.27 12:13:28 | 000,061,440 | ---- | C] () -- C:\Windows\System32\ASDR.exe
[2009.07.14 10:44:22 | 000,634,308 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2009.07.14 10:44:22 | 000,292,004 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2009.07.14 10:44:22 | 000,122,898 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2009.07.14 10:44:22 | 000,036,232 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2009.07.14 06:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 06:33:53 | 000,411,696 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009.07.14 04:05:48 | 000,618,714 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009.07.14 04:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009.07.14 04:05:48 | 000,107,034 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009.07.14 04:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009.07.14 04:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009.07.14 04:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009.07.14 02:19:49 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2009.07.14 01:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009.06.10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2007.10.25 17:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys
[2007.01.16 09:49:22 | 000,065,536 | R--- | C] () -- C:\Windows\VMix.dll
[2006.10.11 05:33:58 | 000,010,288 | ---- | C] () -- C:\Windows\System32\drivers\ASUSHWIO.SYS
[2004.10.11 12:19:00 | 000,092,672 | ---- | C] () -- C:\Windows\System32\ASUSASV2.DLL

========== LOP Check ==========

[2011.07.26 23:07:33 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\AIMP
[2011.05.21 16:12:43 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\Babylon
[2011.07.09 20:44:32 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\DAEMON Tools Lite
[2011.07.09 20:44:32 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\GetRightToGo
[2011.07.12 10:26:27 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\gtk-2.0
[2011.06.10 21:35:13 | 000,000,000 | ---D | M] -- C:\Users\Počítač\AppData\Roaming\Unity
[2011.05.30 20:07:50 | 000,032,632 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2009.06.10 23:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009.06.10 23:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
[2011.07.26 23:08:56 | 2516,033,536 | -HS- | M] () -- C:\hiberfil.sys
[2010.03.14 05:07:27 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010.03.14 05:07:27 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011.07.26 23:08:59 | 3354,714,112 | -HS- | M] () -- C:\pagefile.sys

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >
[2011.07.26 23:09:27 | 000,000,930 | ---- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2011.07.26 23:15:14 | 000,000,934 | ---- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2011.07.24 16:45:03 | 000,000,470 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\Norton Security Scan for xxx.job
[2011.07.26 23:09:25 | 000,000,242 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
[2011.07.26 23:09:27 | 000,000,278 | -H-- | M] () Unable to obtain MD5 -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\drivers\*.sys /90 >
[2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswFsBlk.sys
[2011.07.04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswMonFlt.sys
[2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswRdr.sys
[2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswSnx.sys
[2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswSP.sys
[2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\Windows\system32\drivers\aswTdi.sys
[2011.05.04 04:43:41 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb.sys
[2011.05.04 04:43:59 | 000,222,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb10.sys
[2011.05.04 04:43:48 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\mrxsmb20.sys
[2011.04.29 04:57:34 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srv.sys
[2011.04.29 04:57:21 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srv2.sys
[2011.04.29 04:57:13 | 000,114,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\srvnet.sys

< End of report >










OTL Extras logfile created on: 26.7.2011 23:17:42 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Počítač\Desktop
An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,12 Gb Total Physical Memory | 2,34 Gb Available Physical Memory | 74,83% Memory free
6,25 Gb Paging File | 5,39 Gb Available in Paging File | 86,27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,43 Gb Total Space | 28,10 Gb Free Space | 37,75% Space Free | Partition Type: NTFS
Drive E: | 189,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: ADMIN | User Name: Počítač | NOT logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{068B46A0-8858-4CEB-80BC-A4AE787A05FC}" = Windows Live Sync
"{0891B708-EF3F-4D7E-9724-265245F46276}" = Windows Live Remote Service Resources
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21040472-F8DF-48A9-A093-2986C1495670}" = Lineage II
"{21DAA4FB-084A-4CBF-A234-FE719EEEC999}_is1" = Shadowgrounds
"{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service
"{23D683DD-93C6-48E6-B84E-78B57778F126}" = Oblivion - Construction Set
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{35CB6715-41F8-4F99-8881-6FC75BF054B0}" = Oblivion
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F50AF3B-8997-4916-0095-99D63DDB785A}" = Harry Potter
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{454F5782-A4C3-480E-A629-D435795DEFD8}" = Windows Live Remote Client Resources
"{463F67F4-58D0-4C0D-BBC9-D0CC4E56D1B8}" = Windows Live UX Platform Language Pack
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}" = NCsoft Launcher
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{765443B7-555F-4E8C-9C96-A52409AE4E4A}" = Utility
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo
"{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver
"{7F88C9E5-12BD-404F-AC6A-108BAAC9B708}" = ASUS Gamer OSD
"{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A30D5C0-BD4A-4E65-AADF-20A457DE6D38}" = Windows Live Family Safety
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_PROPLUS_{294B4278-CF7B-40B9-86A1-2D3FF0C2C524}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_PROPLUS_{10EC59E5-9BCE-4884-BB1A-E28627220232}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_PROPLUS_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_PROPLUS_{E12F9D31-4025-4BC6-B1B2-AB262C5580B0}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{904CCF62-818D-4675-BC76-D37EB399F917}" = Centrum zařízení Windows Mobile
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-007A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9D82AFA7-936F-4033-AFAB-E657D685829C}" = L2Informer
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution
"{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 270.61
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.1.34
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.2.22.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B3FED300-806C-11E0-A0D0-B8AC6F97B88E}" = Google Earth
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{C325F588-D6B1-4A7F-B6A2-914C75DDA348}" = Morrowind
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D98C0C51-F9BB-4EE4-B791-22BF6EE31029}" = Nero 7 Premium
"{DAEAFD68-BB4A-4507-A241-C8804D2EA66D}" = Apple Application Support
"{DB3C800B-081B-4146-B4E3-EFB5B77AA913}" = TES Construction Set
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E7044E25-3038-4A76-9064-344AC038043E}" = Aktualizace ovladače pro aplikaci Centrum zařízení Windows Mobile
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EB900AF8-CC61-4E15-871B-98D1EA3E8025}" = QuickTime
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F" = Balíček ovladače systému Windows - Nokia pccsmcfd (10/12/2007 6.85.4.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AIMP2" = AIMP2
"AIMP2at" = AIMP2: Audio Tools
"ArcaniA" = ArcaniA - Gothic 4
"avast" = avast! Free Antivirus
"BitLord_is1" = BitLord v2.0
"C-Media C6501 Like Sound Driver" = C-Media C6501 Like Sound Device
"DivX Setup.divx.com" = DivX Setup
"Foxit Reader" = Foxit Reader
"Fraps" = Fraps (remove only)
"Google Chrome" = Google Chrome
"Guild Wars" = Guild Wars
"HLSW_is1" = HLSW v1.3.2.1
"InstallShield_{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"InstallShield_{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"lgomorrowindczechaio_is1" = lightning morrowind czech all-in-one beta (score)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"NSS" = Norton Security Scan
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"PremiumSoft Navicat 8.2 for MySQL_is1" = PremiumSoft Navicat 8.2 for MySQL
"PROPLUS" = Microsoft Office Professional Plus 2007
"Quake 3 Arena Demo" = Quake 3 Arena Demo
"RealPlayer 12.0" = RealPlayer
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software
"Samsung Mobile phone USB driver Drive" = Samsung Mobile phone USB driver Drive Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
"Totalcmd" = Total Commander (Remove or Repair)
"UltraISO_is1" = UltraISO Premium V9.36
"VertrigoServ" = VertrigoServ (remove only)
"Virtual DJ - Atomix Productions" = Virtual DJ - Atomix Productions
"Warcraft III" = Warcraft III
"WheelMouse" = Smart-X7 7.80
"WinGimp-2.0_is1" = GIMP 2.6.8
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"World of Warcraft" = World of Warcraft
"xvid" = XviD MPEG-4 Video Codec

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"UnityWebPlayer" = Unity Web Player
"Vietcong 2" = Vietcong 2
"Warcraft III" = Warcraft III: All Products

========== Last 10 Event Log Errors ==========

Error: Unable to start EventLog service!

< End of report >


Zpět na “Viry, antiviry, firewally…”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 0 hostů