Prosím o kontrolu logu - "chroupe" Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 23 srp 2016 21:34

Uvolnil, ale stále chroupe :evil:

Reklama
Uživatelský avatar
NuM3Ro
Level 3.5
Level 3.5
Příspěvky: 664
Registrován: srpen 08
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod NuM3Ro » 23 srp 2016 23:23

Už jsem to psal a ať se vám to líbí nebo ne je to HW závada a náznak toho aby sis zálohoval co potřebuješ, jelikož se HDD blíží do křemíkovýho nebe... Tyhle všelijaký logy a fixy co tu provádíte to nezachrání, ztráta času...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 24 srp 2016 09:28

NuM3Ro: Já Tě varuju!! V této sekci nemáš co radit , koleduješ si o žlutou kartu.

qviik: (2) ST1000LM025 HN-M101ABB tento disk se mi nelíbí , máš na něm jen data? Zkus ho odpojit , systém máš na tom prvním.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 24 srp 2016 16:00

A jak to mám odpojit?

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod Orcus » 24 srp 2016 16:03

Odpojíš kabely z disku.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 24 srp 2016 22:12

Tomuto nerozumím:
"qviik: (2) ST1000LM025 HN-M101ABB tento disk se mi nelíbí , máš na něm jen data? Zkus ho odpojit , systém máš na tom prvním"

Co je to za disk?
PC má dva místní disky C a E.
Orcus píše: Odpojíš kabely z disku - tím myslíš z externího disku F? To bych zvládnul.
Jestli myslíš kabely z disku E, tak to nevím, jak udělat a jak ho vůbec mám poznat.

Snad rozumíte tomu, co jsem napsal. :dontgetit:

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 25 srp 2016 09:48

V PC máš tyto dva disky:

(1) ST3320620AS : 320,0 GB [0/2/0, pd1] - st
(2) ST1000LM025 HN-M101ABB : 1000,2 GB [1/X/X, sa1] (V=04E8, P=61B6) - st

Chceme , aby si odpojil tento disk:
(2) ST1000LM025 HN-M101ABB Disk Size : 1000,2 GB
stačí se podívat na štítek disku , má kapacitu 1000GB.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 26 srp 2016 15:03

Externí disk odpojen. Co dál?

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod Orcus » 26 srp 2016 15:35

Chroupe to dál?
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 26 srp 2016 19:07

Chroupe :?

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 27 srp 2016 09:57

Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 29 srp 2016 21:57

OTL logfile created on: 29.8.2016 21:39:40 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Uživatel\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 0,79 Gb Available Physical Memory | 39,72% Memory free
3,85 Gb Paging File | 2,95 Gb Available in Paging File | 76,69% Paging File free
Paging file location(s): c:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 127,99 Gb Total Space | 42,16 Gb Free Space | 32,94% Space Free | Partition Type: NTFS
Drive E: | 170,10 Gb Total Space | 52,63 Gb Free Space | 30,94% Space Free | Partition Type: NTFS

Computer Name: NONAME-ZIQKCX9Z | User Name: Uživatel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Uživatel\Plocha\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
PRC - C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
PRC - C:\Program Files\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.)
PRC - C:\Program Files\BlueStacks\HD-Service.exe (BlueStack Systems, Inc.)
PRC - C:\Program Files\BlueStacks\HD-SharedFolder.exe (BlueStack Systems)
PRC - C:\Program Files\BlueStacks\HD-BlockDevice.exe (BlueStack Systems)
PRC - C:\Program Files\BlueStacks\HD-Network.exe (BlueStack Systems)
PRC - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
PRC - C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
PRC - C:\Program Files\Ovislink\Common\RaRegistry.exe (Ralink Technology, Corp.)
PRC - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe ()
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\VMSnap23.exe ()
PRC - C:\WINDOWS\Domino.exe (Vimicro)
PRC - C:\WINDOWS\UMStor\Res.exe (ali)


========== Modules (No Company Name) ==========

MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\HD-Service\b98370bf44db31ccc02ab9fca90efe4a\HD-Service.ni.exe ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\HD-LogRotatorService\81dcb7822a4fbf242d30fa924911e8fe\HD-LogRotatorService.ni.exe ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\5c157466d360a10b2c97e94b41ddc588\System.Management.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\8cd995f00848816e3ec49dc326e3d49b\System.ServiceProcess.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\4b0455ae94e3cecca4bb3ba8c96828c9\System.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\dae02331a443fb52216ca83292cb2f21\mscorlib.ni.dll ()
MOD - C:\Program Files\NVIDIA Corporation\nview\nvShell.dll ()
MOD - C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll ()
MOD - C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\EnumDevLib.dll ()
MOD - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe ()
MOD - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll ()
MOD - C:\WINDOWS\system32\msdmo.dll ()
MOD - C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\acAuth.dll ()
MOD - C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\rarlng.dll ()
MOD - C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\RarExt.dll ()
MOD - C:\WINDOWS\VMSnap23.exe ()


========== Services (SafeList) ==========

SRV - (AdobeFlashPlayerUpdateSvc) -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (SkypeUpdate) -- C:\Program Files\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (ekrn) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
SRV - (BstHdLogRotatorSvc) -- C:\Program Files\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.)
SRV - (BstHdAndroidSvc) -- C:\Program Files\BlueStacks\HD-Service.exe (BlueStack Systems, Inc.)
SRV - (nvUpdatusService) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
SRV - (RalinkRegistryWriter) -- C:\Program Files\Ovislink\Common\RaRegistry.exe (Ralink Technology, Corp.)
SRV - (ForceWare Intelligent Application Manager (IAM) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe ()
SRV - (nSvcIp) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe ()


========== Driver Services (SafeList) ==========

DRV - (WDICA) -- File not found
DRV - (USBModem) -- system32\DRIVERS\lgusbmodem.sys File not found
DRV - (UsbDiag) -- system32\DRIVERS\lgusbdiag.sys File not found
DRV - (usbbus) -- system32\DRIVERS\lgusbbus.sys File not found
DRV - (PDRFRAME) -- File not found
DRV - (PDRELI) -- File not found
DRV - (PDFRAME) -- File not found
DRV - (PDCOMP) -- File not found
DRV - (PCIDump) -- File not found
DRV - (BTWUSB) -- System32\Drivers\btwusb.sys File not found
DRV - (btaudio) -- system32\drivers\btaudio.sys File not found
DRV - (AmdLLD) -- system32\DRIVERS\AmdLLD.sys File not found
DRV - (TrueSight) -- C:\WINDOWS\system32\drivers\TrueSight.sys ()
DRV - (eamonm) -- C:\WINDOWS\system32\drivers\eamonm.sys (ESET)
DRV - (epfw) -- C:\WINDOWS\system32\drivers\epfw.sys (ESET)
DRV - (ehdrv) -- C:\WINDOWS\system32\drivers\ehdrv.sys (ESET)
DRV - (ekbdflt) -- C:\WINDOWS\system32\drivers\ekbdflt.sys (ESET)
DRV - (epfwtdi) -- C:\WINDOWS\system32\drivers\epfwtdi.sys (ESET)
DRV - (Epfwndis) -- C:\WINDOWS\system32\drivers\epfwndis.sys (ESET)
DRV - (BstHdDrv) -- C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys (BlueStack Systems)
DRV - (dtsoftbus01) -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys (DT Soft Ltd)
DRV - (IntcAzAudAddService) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (atksgt) -- C:\WINDOWS\system32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\WINDOWS\system32\drivers\lirsgt.sys ()
DRV - (sptd) -- C:\WINDOWS\system32\drivers\sptd.sys (Duplex Secure Ltd.)
DRV - (Monfilt) -- C:\WINDOWS\system32\drivers\Monfilt.sys (Creative Technology Ltd.)
DRV - (Ambfilt) -- C:\WINDOWS\system32\drivers\Ambfilt.sys (Creative)
DRV - (Scutum50) -- C:\WINDOWS\system32\drivers\Scutum50.sys (Printing Communications Assoc., Inc. (PCAUSA))
DRV - (RT80x86) -- C:\WINDOWS\system32\drivers\rt2860.sys (Ralink Technology, Corp.)
DRV - (hamachi) -- C:\WINDOWS\system32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (nvgts) -- C:\WINDOWS\system32\drivers\nvgts.sys (NVIDIA Corporation)
DRV - (NVENETFD) -- C:\WINDOWS\system32\drivers\NVENETFD.sys (NVIDIA Corporation)
DRV - (nvnetbus) -- C:\WINDOWS\system32\drivers\nvnetbus.sys (NVIDIA Corporation)
DRV - (Changer) -- C:\WINDOWS\System32\drivers\changer.sys (Microsoft Corporation)
DRV - (nm) -- C:\WINDOWS\system32\drivers\nmnt.sys (Microsoft Corporation)
DRV - (lbrtfdc) -- C:\WINDOWS\System32\drivers\lbrtfdc.sys (Toshiba Corp.)
DRV - (rtl8139) -- C:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (MREMP50) -- C:\Program Files\Common Files\Motive\mremp50.sys (Printing Communications Assoc., Inc. (PCAUSA))
DRV - (MRESP50) -- C:\Program Files\Common Files\Motive\mresp50.sys (Printing Communications Assoc., Inc. (PCAUSA))
DRV - (HPFXBULK) -- C:\WINDOWS\system32\drivers\hpfxbulk.sys (Hewlett Packard)
DRV - (nmwcd) -- C:\WINDOWS\system32\drivers\nmwcd.sys (Nokia)
DRV - (nmwcdc) -- C:\WINDOWS\system32\drivers\nmwcdc.sys (Nokia)
DRV - (sfvfs02) -- C:\WINDOWS\system32\drivers\sfvfs02.sys (Protection Technology (StarForce))
DRV - (ZSMC326) -- C:\WINDOWS\system32\drivers\usbvm323.sys (Vimicro Corporation)
DRV - (sfdrv02) -- C:\WINDOWS\system32\drivers\sfdrv02.sys (Protection Technology (StarForce))
DRV - (sfsync05) -- C:\WINDOWS\system32\drivers\sfsync05.sys (Protection Technology (StarForce))
DRV - (vmfilter323) -- C:\WINDOWS\system32\drivers\vmfilter323.sys (Vimicro Corporation)
DRV - (sfsync02) -- C:\WINDOWS\system32\drivers\sfsync02.sys (Protection Technology)
DRV - (sfdrv01a) -- C:\WINDOWS\system32\drivers\sfdrv01a.sys (Protection Technology (StarForce))
DRV - (sfhlp02) -- C:\WINDOWS\system32\drivers\sfhlp02.sys (Protection Technology (StarForce))
DRV - (MarvinBus) -- C:\WINDOWS\system32\drivers\MarvinBus.sys (Pinnacle Systems GmbH)
DRV - (imagesrv) -- C:\WINDOWS\system32\drivers\imagesrv.sys (Ahead Software AG)
DRV - (imagedrv) -- C:\WINDOWS\system32\drivers\imagedrv.sys (Ahead Software AG)
DRV - (sfdrv01) -- C:\WINDOWS\system32\drivers\sfdrv01.sys (Protection Technology)
DRV - (PCLEPCI) -- C:\WINDOWS\system32\drivers\Pclepci.sys (Pinnacle Systems GmbH)
DRV - (prohlp02) -- C:\WINDOWS\system32\drivers\prohlp02.sys (Protection Technology)
DRV - (prodrv06) -- C:\WINDOWS\system32\drivers\prodrv06.sys (Protection Technology)
DRV - (prosync1) -- C:\WINDOWS\system32\drivers\prosync1.sys (Protection Technology)
DRV - (sfhlp01) -- C:\WINDOWS\system32\drivers\sfhlp01.sys (Protection Technology)
DRV - (s3legacy) -- C:\WINDOWS\system32\drivers\s3legacy.sys (Microsoft Corporation)
DRV - (irsir) -- C:\WINDOWS\system32\drivers\irsir.sys (Microsoft Corporation)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\..\SearchScopes,DefaultScope = {E343A24B-2251-4C86-B5F1-ED100FF9A062}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{E343A24B-2251-4C86-B5F1-ED100FF9A062}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Prev Search Bar = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Prev Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{E343A24B-2251-4C86-B5F1-ED100FF9A062}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "about:home"
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.4: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll File not found
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Documents and Settings\Uživatel\Data aplikací\Facebook\npfbplugin_1_0_3.dll ( )

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.09.02 03:00:21 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 48.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2016.08.27 09:13:20 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 48.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2016.08.27 09:13:24 | 000,000,000 | ---D | M]

[2012.09.12 14:35:56 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Extensions
[2013.02.26 17:40:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\fpsniba6.default\extensions
[2016.08.17 18:23:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\fpsniba6.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack
[2016.03.10 17:44:54 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\osde3ijm.default-1361893236593\extensions
[2016.08.27 09:13:49 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2009.06.25 14:20:28 | 001,446,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll
[2007.03.22 19:23:30 | 000,017,248 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL
[2014.08.05 19:20:22 | 000,227,728 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll

O1 HOSTS File: ([2016.08.17 18:04:47 | 000,000,753 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Uživatel\Data aplikací\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O4 - HKLM..\Run: [BigDogPath323Domino] C:\WINDOWS\Domino.exe (Vimicro)
O4 - HKLM..\Run: [BigDogPath323VMSnap] C:\WINDOWS\VMSnap23.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [Nvtmru] C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe ()
O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [USB Storage Toolbox] C:\WINDOWS\UMStor\Res.exe (ali)
O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKCU..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187B Wireless LAN Utility.lnk = C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\Uživatel\Data aplikací\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\Uživatel\Data aplikací\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra 'Tools' menuitem : Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra Button: Vytvořit mobilní oblíbenou položku - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Vytvořit mobilní oblíbenou položku… - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll (Microsoft Corporation)
O9 - Extra Button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra 'Tools' menuitem : Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: eset.com ([help] http in Trusted sites)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O15 - HKCU\..Trusted Domains: localhost ([]http in Internet)
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/ ... ontrol.cab (Office Genuine Advantage Validation Tool)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab (Reg Error: Key error.)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/wind ... 2444724093 (WUWebControl Class)
O16 - DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} http://office.microsoft.com/officeupdat ... /opuc4.cab (Office Update Installation Engine)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0100E881-AA8D-4A4C-B6F7-6D93DF16FF0E}: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\lid {5C135180-9973-46D9-ABF4-148267CBB8BF} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mctp {d7b95390-b1c5-11d0-b111-0080c712fe82} - C:\Program Files\Microsoft ActiveSync\aatp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - (crypt32.dll) - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - (cryptnet.dll) - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - (cscdll.dll) - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - (%SystemRoot%\System32\dimsntfy.dll) - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - (wlnotify.dll) - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - (sclgntfy.dll) - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - (WlNotify.dll) - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - (wlnotify.dll) - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - (wlnotify.dll) - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - (wlnotify.dll) - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2016.08.29 21:36:31 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Uživatel\Plocha\OTL.exe
[2016.08.27 09:13:19 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2016.08.23 16:45:08 | 000,000,000 | ---D | C] -- C:\UpdateChromeLinksLogs
[2016.08.20 18:50:07 | 000,000,000 | ---D | C] -- C:\FRST
[2016.08.20 18:48:48 | 001,745,920 | ---- | C] (Farbar) -- C:\Documents and Settings\Uživatel\Plocha\FRST.exe
[2016.08.19 20:33:05 | 005,200,384 | ---- | C] (AVAST Software) -- C:\Documents and Settings\Uživatel\Plocha\aswmbr.exe
[2016.08.19 20:24:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\CrystalDiskInfo
[2016.08.19 20:24:31 | 000,000,000 | ---D | C] -- C:\Program Files\CrystalDiskInfo
[2016.08.19 15:29:55 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Uživatel\Recent
[2016.08.19 15:29:21 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2016.08.19 15:21:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
[2016.08.19 15:20:58 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2016.08.17 22:21:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2016.08.17 21:18:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt
[2016.08.17 18:18:53 | 000,000,000 | ---D | C] -- C:\zoek
[2016.08.17 17:58:52 | 000,000,000 | ---D | C] -- C:\zoek_backup
[2016.08.16 15:56:51 | 001,610,560 | ---- | C] (Malwarebytes) -- C:\Documents and Settings\Uživatel\Plocha\JRT.exe
[2016.08.15 21:01:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes Anti-Malware
[2016.08.15 20:43:56 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2016.08.29 21:36:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Uživatel\Plocha\OTL.exe
[2016.08.29 21:35:58 | 000,029,174 | ---- | M] () -- C:\WINDOWS\System32\nvAppTimestamps
[2016.08.29 19:47:00 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2016.08.29 09:47:29 | 000,002,228 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2016.08.23 16:36:43 | 000,021,840 | ---- | M] () -- C:\WINDOWS\System32\SIntfNT.dll
[2016.08.23 16:36:42 | 000,017,212 | ---- | M] () -- C:\WINDOWS\System32\SIntf32.dll
[2016.08.23 16:36:42 | 000,012,067 | ---- | M] () -- C:\WINDOWS\System32\SIntf16.dll
[2016.08.23 16:20:11 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2016.08.23 16:20:09 | 000,010,752 | ---- | M] () -- C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2016.08.20 18:49:01 | 001,745,920 | ---- | M] (Farbar) -- C:\Documents and Settings\Uživatel\Plocha\FRST.exe
[2016.08.19 20:33:05 | 005,200,384 | ---- | M] (AVAST Software) -- C:\Documents and Settings\Uživatel\Plocha\aswmbr.exe
[2016.08.19 20:24:43 | 000,001,657 | ---- | M] () -- C:\Documents and Settings\Uživatel\Plocha\CrystalDiskInfo.lnk
[2016.08.19 15:53:09 | 000,002,283 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Skype.lnk
[2016.08.19 15:33:20 | 000,365,712 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2016.08.17 18:04:47 | 000,000,753 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2016.08.17 17:55:27 | 001,309,184 | ---- | M] () -- C:\Documents and Settings\Uživatel\Plocha\zoek.exe
[2016.08.17 15:53:38 | 000,024,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2016.08.16 15:56:53 | 001,610,560 | ---- | M] (Malwarebytes) -- C:\Documents and Settings\Uživatel\Plocha\JRT.exe
[2016.08.15 21:01:41 | 000,000,601 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
[2016.08.15 20:42:22 | 003,784,256 | ---- | M] () -- C:\Documents and Settings\Uživatel\Plocha\adwcleaner_6.000.exe
[2016.08.15 19:13:43 | 000,796,352 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2016.08.15 19:13:42 | 000,142,528 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2016.08.07 13:34:52 | 000,001,797 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Bontia Studio.lnk
[2016.08.02 19:28:04 | 000,137,176 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2016.08.02 19:27:59 | 000,268,952 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2016.08.02 19:27:17 | 000,268,952 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.ex0
[2016.08.02 09:36:59 | 000,000,349 | ---- | M] () -- C:\Documents and Settings\All Users\Dokumenty\PCLECHAL.INI
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2016.08.19 20:24:43 | 000,001,657 | ---- | C] () -- C:\Documents and Settings\Uživatel\Plocha\CrystalDiskInfo.lnk
[2016.08.19 15:51:46 | 000,032,768 | ---- | C] () -- C:\Documents and Settings\Uživatel\Plocha\memtest.exe
[2016.08.17 17:55:21 | 001,309,184 | ---- | C] () -- C:\Documents and Settings\Uživatel\Plocha\zoek.exe
[2016.08.15 21:01:41 | 000,000,601 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
[2016.08.15 20:42:13 | 003,784,256 | ---- | C] () -- C:\Documents and Settings\Uživatel\Plocha\adwcleaner_6.000.exe
[2016.03.07 17:58:46 | 000,010,752 | ---- | C] () -- C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2015.10.05 17:43:32 | 000,235,008 | ---- | C] () -- C:\WINDOWS\System32\Winlie.exe
[2014.09.23 13:20:03 | 000,000,697 | ---- | C] () -- C:\WINDOWS\COD.INI
[2014.09.19 09:08:28 | 000,024,688 | ---- | C] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2014.09.16 14:55:58 | 000,100,864 | --S- | C] () -- C:\WINDOWS\System32\zlib1.dll
[2014.09.16 14:55:57 | 000,538,126 | --S- | C] () -- C:\WINDOWS\System32\libcurl-4.dll
[2014.09.16 14:55:57 | 000,192,512 | --S- | C] () -- C:\WINDOWS\System32\libidn-11.dll
[2014.09.16 14:55:57 | 000,133,632 | --S- | C] () -- C:\WINDOWS\System32\librtmp.dll
[2014.09.16 14:21:59 | 000,000,270 | ---- | C] () -- C:\WINDOWS\game.ini
[2014.02.03 00:46:02 | 000,485,944 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
[2012.11.04 02:52:40 | 007,421,376 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1292428093-1965331169-725345543-1003-0.dat
[2012.11.04 02:52:40 | 000,313,846 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
[2011.07.18 19:32:58 | 000,000,012 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\ReminderNextRun
[2011.01.18 12:17:47 | 000,001,200 | ---- | C] () -- C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\SRDownloader.nast
[2010.11.06 09:11:04 | 000,000,001 | ---- | C] () -- C:\Documents and Settings\Uživatel\SI.bin
[2010.04.22 08:14:25 | 000,000,001 | ---- | C] () -- C:\Documents and Settings\Uživatel\count
[2010.02.03 18:35:14 | 000,000,892 | ---- | C] () -- C:\Documents and Settings\Uživatel\.recently-used.xbel
[2010.01.26 18:27:09 | 000,175,104 | ---- | C] () -- C:\Documents and Settings\Uživatel\Data aplikací\SQLite3.dll
[2008.07.17 11:16:06 | 000,000,376 | ---- | C] () -- C:\Documents and Settings\Uživatel\.jalbum-recent-projects.properties
[2008.07.17 11:16:02 | 000,000,408 | ---- | C] () -- C:\Documents and Settings\Uživatel\.jalbum-ftp-accounts.xml
[2007.11.28 16:49:57 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Uživatel\Data aplikací\PnkBstrK.sys
[2007.04.11 07:28:43 | 000,000,128 | ---- | C] () -- C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\fusioncache.dat

========== ZeroAccess Check ==========

[2007.04.10 15:26:57 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2014.02.25 05:30:37 | 001,510,912 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008.04.14 05:22:05 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2008.10.21 08:16:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Activision
[2014.02.03 20:07:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\BlueStacks
[2014.09.27 11:03:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\BlueStacksSetup
[2009.06.24 13:57:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Boss Media
[2011.12.21 15:21:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Codemasters
[2008.07.30 14:33:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\cw4_log
[2013.08.16 11:32:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2010.03.26 13:45:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Pro
[2010.10.25 18:20:08 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\DSS
[2010.04.10 09:28:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Electronic Arts
[2016.06.20 17:43:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ESET
[2009.10.07 19:08:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Fenrir & Co
[2016.07.15 10:11:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\firebird
[2009.01.18 09:48:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\FitLinie
[2016.05.03 19:18:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\fltk.org
[2013.01.31 19:46:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\GFI Software
[2007.06.01 17:19:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2009.10.06 08:47:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MGS
[2010.05.14 19:40:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MSScanAppDataDir
[2012.12.01 13:00:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MTA San Andreas All
[2009.10.06 19:37:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NCH Swift Sound
[2009.12.07 14:20:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NexonEU
[2015.11.24 15:07:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Oracle
[2011.06.14 13:31:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ovislink Driver
[2007.06.01 16:55:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2012.02.27 16:12:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Pinnacle
[2009.04.25 13:01:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Pinnacle Studio
[2012.02.27 16:13:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Pinnacle Studio Ultimate Collection
[2013.01.08 22:05:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\RELOADED
[2015.03.18 09:11:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Riot Games
[2015.11.03 23:50:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\RogueKiller
[2010.06.06 10:05:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SEGA Corporation
[2015.11.26 11:49:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Solidshield
[2007.04.11 22:48:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
[2010.05.14 19:41:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SSScanAppDataDir
[2012.02.27 16:07:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Studio 15
[2009.12.31 09:38:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Synetic
[2013.01.31 21:14:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2007.05.07 19:08:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Test Drive Unlimited
[2008.10.28 17:03:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
[2010.11.28 19:27:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ubisoft
[2014.02.17 17:26:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\WarThunder
[2014.02.12 17:13:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\.minecraft
[2008.11.05 12:39:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Ace
[2013.03.12 20:46:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Ad-Aware Antivirus
[2007.05.24 07:38:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Allstar
[2013.08.27 13:21:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Ancestry
[2007.11.28 15:51:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Ankh
[2008.02.18 15:26:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Ashampoo
[2014.04.27 10:39:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Bioshock
[2013.09.20 17:57:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\BITS
[2012.12.23 16:05:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\bwincom
[2013.02.17 12:38:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\cef-cache
[2016.04.25 16:40:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\DAEMON Tools Lite
[2012.01.20 17:29:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\DAEMON Tools Pro
[2011.12.11 16:27:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\ESET
[2012.11.03 15:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Exec
[2010.04.17 11:29:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Facebook
[2009.04.05 20:14:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\FarmingSimulator2008
[2008.07.21 23:06:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\FarmingSimulator2008Demo
[2009.12.31 14:32:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\FlashGet
[2010.02.22 20:26:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\FlashGetBHO
[2016.05.03 19:18:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\fltk.org
[2009.10.11 08:24:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\FSAutoStart
[2009.04.30 07:40:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\gtk-2.0
[2012.09.23 22:44:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Hardcore
[2010.11.16 12:46:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\HyperLobby
[2014.08.13 15:06:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\ICQ
[2007.04.11 23:13:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\ICQLite
[2009.03.26 22:45:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\id Software
[2016.03.07 21:11:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\java
[2009.04.14 15:51:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Jpeg Resampler
[2012.09.23 22:44:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Juce VST Host
[2008.10.16 17:46:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Leadertech
[2010.12.24 20:07:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\LG Electronics
[2015.03.18 12:13:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\LolClient
[2013.05.31 08:51:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Microgaming
[2009.11.17 10:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Miranda
[2010.04.01 09:05:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Mount&Blade Warband
[2009.04.15 15:36:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Moyea
[2007.06.03 12:47:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Nokia
[2007.06.01 17:36:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Nokia Multimedia Player
[2009.11.09 17:08:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Nordic Games
[2007.04.11 08:51:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\OfficeUpdate12
[2007.12.17 23:08:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Opera
[2014.06.03 10:40:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Oracle
[2013.05.28 21:23:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Party
[2007.06.01 16:55:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\PC Suite
[2016.03.29 17:49:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Polda 6
[2013.05.19 14:49:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\PowerISO
[2010.03.26 16:54:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Prison Break
[2011.04.09 11:49:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\PunkBuster
[2011.02.21 11:26:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\qbnut
[2007.07.14 12:41:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\QIP
[2012.09.23 22:46:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Sakura
[2012.09.23 22:47:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Sawer
[2010.06.06 10:05:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\SEGA Corporation
[2016.08.20 07:48:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Seznam.cz
[2008.10.08 15:09:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Sierra
[2009.05.10 18:36:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Soldat
[2014.11.17 15:41:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Steam
[2011.02.20 17:31:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Sytexis Software
[2012.06.09 13:59:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\TeamViewer
[2009.12.19 22:52:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\TS3Client
[2011.02.20 17:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\TSNotifier
[2007.04.11 21:15:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\TuneUp Software
[2011.04.09 11:49:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Ubisoft
[2014.02.07 11:43:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Unity
[2009.05.29 20:27:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\uTorrent
[2010.09.25 15:09:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\W
[2013.01.04 13:52:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\wargaming.net
[2010.01.22 22:15:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Warsow
[2008.05.25 11:56:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Web Page Maker
[2015.04.17 15:12:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\X-Chat 2
[2013.10.07 17:18:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\XRay Engine
[2007.04.11 09:59:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Uživatel\Data aplikací\Zoner

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 85 bytes -> C:\Documents and Settings\All Users\Plocha:$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM

< End of report >


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 7 hostů