Vir - Facebook vir
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
To není ten log... musí být delší...
Re: Vir - Facebook vir
Odhlásí mi to uživatele a hodí mi to do poznámkového bloku
Files\Folders moved on Reboot...
C:\Users\oem\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
Registry entries deleted on Reboot...
Files\Folders moved on Reboot...
C:\Users\oem\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
Registry entries deleted on Reboot...
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
Re: Vir - Facebook vir
Ano, jsou tu dva logy, které jsem ti posílala 
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
OK... zkus aplikovat ten opravný script v Nouzovém režimu.
Re: Vir - Facebook vir
OTL logfile created on: 28.12.2011 22:24:03 - Run 4
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\oem\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,87 Gb Total Physical Memory | 3,11 Gb Available Physical Memory | 80,42% Memory free
7,73 Gb Paging File | 6,99 Gb Available in Paging File | 90,42% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 584,07 Gb Total Space | 476,86 Gb Free Space | 81,64% Space Free | Partition Type: NTFS
Computer Name: OEM-PC | User Name: oem | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011.12.22 22:05:48 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
========== Modules (No Company Name) ==========
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2011.09.06 22:45:28 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2010.03.17 10:56:12 | 000,866,336 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe -- (ePowerSvc)
SRV:64bit: - [2010.01.22 02:01:12 | 000,202,752 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2011.03.18 16:50:58 | 002,271,608 | ---- | M] (TeamViewer GmbH) [Auto | Stopped] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2010.03.18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.03 14:21:16 | 000,325,200 | ---- | M] (Dritek System Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2010.01.30 00:52:58 | 000,260,640 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe -- (RS_Service)
SRV - [2009.12.24 01:39:04 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) Intel(R)
SRV - [2009.09.30 13:01:32 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) Intel(R)
SRV - [2009.09.30 13:01:30 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) Intel(R)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011.09.06 22:38:18 | 000,601,944 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2011.09.06 22:38:16 | 000,301,912 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2011.09.06 22:36:41 | 000,058,200 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2011.09.06 22:36:41 | 000,042,328 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswRdr.sys -- (aswRdr)
DRV:64bit: - [2011.09.06 22:36:30 | 000,065,368 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2011.09.06 22:36:14 | 000,024,408 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2011.08.02 16:38:56 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.12.21 15:04:06 | 000,141,264 | ---- | M] (ESET) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\ehdrv.sys -- (ehdrv)
DRV:64bit: - [2010.12.21 13:47:38 | 000,170,640 | ---- | M] (ESET) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\epfw.sys -- (epfw)
DRV:64bit: - [2010.11.20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.04.01 09:18:30 | 003,060,800 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2010.03.21 10:59:08 | 000,321,064 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a) Broadcom NetLink (TM)
DRV:64bit: - [2010.03.01 08:20:56 | 000,239,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010.01.28 02:33:38 | 000,116,736 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.01.27 04:05:00 | 000,231,328 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)
DRV:64bit: - [2010.01.22 02:13:24 | 006,233,088 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atipmdag.sys -- (amdkmdag)
DRV:64bit: - [2010.01.22 01:07:56 | 000,161,280 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010.01.06 14:33:16 | 000,158,848 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2009.12.17 18:42:08 | 000,538,136 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009.12.10 12:25:10 | 000,301,104 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009.09.17 05:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64) Intel(R)
DRV:64bit: - [2009.09.15 05:40:42 | 006,952,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64) Intel(R)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009.03.18 16:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009.02.28 19:40:18 | 000,146,928 | ---- | M] (CyberLink Corp.) [2011/03/13 18:29:14] [Kernel | Auto | Stopped] -- C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD})
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4592m618
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4592m618
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\oem\Downloads
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKCU\..\URLSearchHook: - No CLSID value found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\gcswf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Chrome NaCl (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: avast! WebRep = C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1289_0\
O1 HOSTS File: ([2011.12.19 22:56:38 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.111.0.10 193.179.148.42
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A67D43D2-4260-4B01-BD7E-1290BE362508}: DhcpNameServer = 212.111.0.10 193.179.148.42
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CB792E01-2EC1-43E1-BA1B-5FD6CA9F7CF7}: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[CLEARALLRESTOREPOINTS]
Error creating restore point.
========== Files/Folders - Created Within 30 Days ==========
[2011.12.28 12:57:09 | 000,000,000 | ---D | C] -- C:\World of Warcraft
[2011.12.26 11:05:59 | 000,000,000 | ---D | C] -- C:\_OTL
[2011.12.22 22:21:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo II
[2011.12.22 22:05:47 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
[2011.12.19 23:03:03 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011.12.18 20:44:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\World of Warcraft
[2011.12.17 20:48:38 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011.12.17 20:48:38 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011.12.17 20:48:38 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011.12.17 20:42:24 | 000,000,000 | ---D | C] -- C:\## aswSnx private storage
[3 C:\Users\oem\AppData\Local\*.tmp files -> C:\Users\oem\AppData\Local\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.12.28 22:22:36 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.12.28 22:22:30 | 3113,254,912 | -HS- | M] () -- C:\hiberfil.sys
[2011.12.28 22:21:46 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.12.28 22:21:46 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.12.28 16:37:43 | 027,805,135 | ---- | M] () -- C:\Users\oem\Desktop\AddOns.rar
[2011.12.28 15:13:14 | 000,000,749 | ---- | M] () -- C:\Users\Public\Desktop\World of Warcraft.lnk
[2011.12.25 20:03:28 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.12.25 15:31:36 | 000,049,248 | ---- | M] () -- C:\Users\oem\Desktop\387255_289893597715070_227840210587076_720657_858158758_n.jpg
[2011.12.22 22:24:59 | 000,001,199 | ---- | M] () -- C:\Users\Public\Desktop\Diablo II - Lord of Destruction.lnk
[2011.12.22 22:05:48 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
[2011.12.19 23:01:26 | 001,469,888 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.12.19 23:01:26 | 000,631,292 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2011.12.19 23:01:26 | 000,616,008 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.12.19 23:01:26 | 000,121,914 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2011.12.19 23:01:26 | 000,106,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.12.19 22:56:38 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011.12.17 20:59:04 | 000,013,272 | ---- | M] () -- C:\Users\oem\Desktop\ComboFix – zástupce.lnk
[3 C:\Users\oem\AppData\Local\*.tmp files -> C:\Users\oem\AppData\Local\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.12.28 16:27:47 | 027,805,135 | ---- | C] () -- C:\Users\oem\Desktop\AddOns.rar
[2011.12.28 14:04:14 | 000,000,749 | ---- | C] () -- C:\Users\Public\Desktop\World of Warcraft.lnk
[2011.12.25 15:31:34 | 000,049,248 | ---- | C] () -- C:\Users\oem\Desktop\387255_289893597715070_227840210587076_720657_858158758_n.jpg
[2011.12.22 22:32:13 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.12.22 22:21:31 | 000,001,199 | ---- | C] () -- C:\Users\Public\Desktop\Diablo II - Lord of Destruction.lnk
[2011.12.17 20:59:04 | 000,013,272 | ---- | C] () -- C:\Users\oem\Desktop\ComboFix – zástupce.lnk
[2011.12.17 20:48:38 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011.12.17 20:48:38 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011.12.17 20:48:38 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011.12.17 20:48:38 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011.12.17 20:48:38 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011.10.24 19:22:06 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{D37D13B6-27C0-4287-9D4D-DDCE9572467D}
[2011.08.29 23:34:51 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{E81F0030-7C92-4CBE-B229-9C74961D5028}
[2011.08.03 03:39:55 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{621D4880-EA39-451F-925E-41D7A6C87CEB}
[2011.07.30 01:14:33 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{F303A536-A429-445C-ADDF-0D5196A58E99}
[2011.07.29 20:26:36 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{A33E3D76-F5D8-4777-8B68-9DBE0FFA8B7D}
[2011.07.03 21:13:25 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\CmdLineExt03.dll
[2011.06.29 20:31:43 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{CA0C00E5-0428-4128-BAA5-F617A116D747}
[2011.06.22 21:41:05 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{3E638734-8735-4EFD-9CD9-609D212E6E35}
[2011.05.17 05:49:49 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{A0709926-D57C-439E-884F-1FF67A0FFED8}
[2011.05.16 12:38:41 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{6CE531AE-2EF1-4E9E-A292-2D8087F3BA0E}
[2011.05.12 15:54:13 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{5BABCE94-8799-408A-B93E-D1E3398F10A2}
[2011.05.12 15:43:21 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{C4244C8B-533B-4282-A18A-99AC407FDB8D}
[2011.05.10 18:58:40 | 000,017,212 | ---- | C] () -- C:\Users\oem\AppData\Roaming\UserTile.png
[2011.02.04 20:49:17 | 000,032,752 | ---- | C] () -- C:\Windows\SysWow64\NTAgent.exe
[2011.02.04 20:18:54 | 001,471,654 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.02.04 19:48:27 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011.02.04 19:45:48 | 000,001,035 | ---- | C] () -- C:\Windows\SysWow64\atipblup.dat
[2011.02.04 19:43:17 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\rpcnetp.dll
[2011.02.04 19:41:50 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\rpcnetp.exe
[2010.04.12 04:11:27 | 000,001,035 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2003.05.05 10:59:38 | 000,000,795 | ---- | C] () -- C:\Windows\VPlayer.INI
========== Custom Scans ==========
< :Commands >
< [emptytemp] >
< [emptyflash] >
< [resethosts] >
< [purity] >
< >
< :Services >
< gupdate >
< gupdatem >
< gusvc >
< ICQ Service >
< >
< :OTL >
< IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >
< IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >
< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >
< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\URLSearchHook: - No CLSID value found >
< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ) >
< FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found >
Invalid Switch: GENUINE: disabled File not found
< FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found >
Invalid Switch: iTunes,version=: File not found
< FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found >
Invalid Switch: GENUINE: disabled File not found
< FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird >
< O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. >
< O3:64bit: - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >
< O3:64bit: - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () >
< O3 - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () >
< O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >
< O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >
< O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () >
< O8:64bit: - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found >
Invalid Switch: cmsidewiki.html File not found
< O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found >
Invalid Switch: cmsidewiki.html File not found
< O18:64bit: - Protocol\Handler\livecall - No CLSID value found >
< O18:64bit: - Protocol\Handler\ms-help - No CLSID value found >
< O18:64bit: - Protocol\Handler\msnim - No CLSID value found >
< O18:64bit: - Protocol\Handler\skype4com - No CLSID value found >
< O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found >
< O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found >
Invalid Switch: pagefile) - File not found
< O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found >
Invalid Switch: pagefile) - File not found
< [4 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ] >
< [5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ] >
< [1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp files -> C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp files -> C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp files -> C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp files -> C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp files -> C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp files -> C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp files -> C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp files -> C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp files -> C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp files -> C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp files -> C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp files -> C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp files -> C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp -> ] >
< >
< :Files >
< C:\Users\oem\AppData\Roaming\ESET >
< C:\Program Files (x86)\ICQ6Toolbar >
< C:\Program Files (x86)\DAEMON Tools Toolbar >
< C:\Program Files (x86)\Google\Google Toolbar >
< C:\Windows\tasks\GoogleUpdateTaskMachineCore.job >
< C:\Windows\tasks\GoogleUpdateTaskMachineUA.job >
< C:\Users\oem\Downloads\Diablo.2.LOD.Patch.1.11b.crack.rar /d >
Invalid Switch: d
< C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction /d >
Invalid Switch: d
< %windir%\system32\*.tmp.dll /s >
< %windir%\system32\SET*.tmp /s >
< %windir%\*.tmp /s >
[4 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp files -> C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp files -> C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp files -> C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp files -> C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp files -> C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp files -> C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp files -> C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp files -> C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp files -> C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp files -> C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp files -> C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp files -> C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp files -> C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp -> ]
< >
< :Reg >
< [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] >
< [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] >
< "{855F3B16-6D32-4FE6-8A56-BBB695989046}"=- >
< "{32099AAC-C132-4136-9E9A-4E364A424E17}"=- >
< "{2318C2B1-4965-11d4-9B18-009027A5CD4F}"=- >
< "{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}"=- >
< [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] >
< "swg"=- >
< End of report >
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\oem\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,87 Gb Total Physical Memory | 3,11 Gb Available Physical Memory | 80,42% Memory free
7,73 Gb Paging File | 6,99 Gb Available in Paging File | 90,42% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 584,07 Gb Total Space | 476,86 Gb Free Space | 81,64% Space Free | Partition Type: NTFS
Computer Name: OEM-PC | User Name: oem | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011.12.22 22:05:48 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
========== Modules (No Company Name) ==========
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2011.09.06 22:45:28 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2010.03.17 10:56:12 | 000,866,336 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe -- (ePowerSvc)
SRV:64bit: - [2010.01.22 02:01:12 | 000,202,752 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2011.03.18 16:50:58 | 002,271,608 | ---- | M] (TeamViewer GmbH) [Auto | Stopped] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2010.03.18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.03 14:21:16 | 000,325,200 | ---- | M] (Dritek System Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2010.01.30 00:52:58 | 000,260,640 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe -- (RS_Service)
SRV - [2009.12.24 01:39:04 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) Intel(R)
SRV - [2009.09.30 13:01:32 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) Intel(R)
SRV - [2009.09.30 13:01:30 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) Intel(R)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011.09.06 22:38:18 | 000,601,944 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2011.09.06 22:38:16 | 000,301,912 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2011.09.06 22:36:41 | 000,058,200 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2011.09.06 22:36:41 | 000,042,328 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswRdr.sys -- (aswRdr)
DRV:64bit: - [2011.09.06 22:36:30 | 000,065,368 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2011.09.06 22:36:14 | 000,024,408 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2011.08.02 16:38:56 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.12.21 15:04:06 | 000,141,264 | ---- | M] (ESET) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\ehdrv.sys -- (ehdrv)
DRV:64bit: - [2010.12.21 13:47:38 | 000,170,640 | ---- | M] (ESET) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\epfw.sys -- (epfw)
DRV:64bit: - [2010.11.20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.04.01 09:18:30 | 003,060,800 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2010.03.21 10:59:08 | 000,321,064 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a) Broadcom NetLink (TM)
DRV:64bit: - [2010.03.01 08:20:56 | 000,239,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010.01.28 02:33:38 | 000,116,736 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.01.27 04:05:00 | 000,231,328 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)
DRV:64bit: - [2010.01.22 02:13:24 | 006,233,088 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atipmdag.sys -- (amdkmdag)
DRV:64bit: - [2010.01.22 01:07:56 | 000,161,280 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010.01.06 14:33:16 | 000,158,848 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2009.12.17 18:42:08 | 000,538,136 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009.12.10 12:25:10 | 000,301,104 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009.09.17 05:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64) Intel(R)
DRV:64bit: - [2009.09.15 05:40:42 | 006,952,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64) Intel(R)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009.03.18 16:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009.02.28 19:40:18 | 000,146,928 | ---- | M] (CyberLink Corp.) [2011/03/13 18:29:14] [Kernel | Auto | Stopped] -- C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD})
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4592m618
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4592m618
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\oem\Downloads
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKCU\..\URLSearchHook: - No CLSID value found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\gcswf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Chrome NaCl (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: avast! WebRep = C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1289_0\
O1 HOSTS File: ([2011.12.19 22:56:38 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.111.0.10 193.179.148.42
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A67D43D2-4260-4B01-BD7E-1290BE362508}: DhcpNameServer = 212.111.0.10 193.179.148.42
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CB792E01-2EC1-43E1-BA1B-5FD6CA9F7CF7}: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[CLEARALLRESTOREPOINTS]
Error creating restore point.
========== Files/Folders - Created Within 30 Days ==========
[2011.12.28 12:57:09 | 000,000,000 | ---D | C] -- C:\World of Warcraft
[2011.12.26 11:05:59 | 000,000,000 | ---D | C] -- C:\_OTL
[2011.12.22 22:21:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo II
[2011.12.22 22:05:47 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
[2011.12.19 23:03:03 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011.12.18 20:44:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\World of Warcraft
[2011.12.17 20:48:38 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011.12.17 20:48:38 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011.12.17 20:48:38 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011.12.17 20:42:24 | 000,000,000 | ---D | C] -- C:\## aswSnx private storage
[3 C:\Users\oem\AppData\Local\*.tmp files -> C:\Users\oem\AppData\Local\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.12.28 22:22:36 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.12.28 22:22:30 | 3113,254,912 | -HS- | M] () -- C:\hiberfil.sys
[2011.12.28 22:21:46 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.12.28 22:21:46 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.12.28 16:37:43 | 027,805,135 | ---- | M] () -- C:\Users\oem\Desktop\AddOns.rar
[2011.12.28 15:13:14 | 000,000,749 | ---- | M] () -- C:\Users\Public\Desktop\World of Warcraft.lnk
[2011.12.25 20:03:28 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.12.25 15:31:36 | 000,049,248 | ---- | M] () -- C:\Users\oem\Desktop\387255_289893597715070_227840210587076_720657_858158758_n.jpg
[2011.12.22 22:24:59 | 000,001,199 | ---- | M] () -- C:\Users\Public\Desktop\Diablo II - Lord of Destruction.lnk
[2011.12.22 22:05:48 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
[2011.12.19 23:01:26 | 001,469,888 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.12.19 23:01:26 | 000,631,292 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2011.12.19 23:01:26 | 000,616,008 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.12.19 23:01:26 | 000,121,914 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2011.12.19 23:01:26 | 000,106,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.12.19 22:56:38 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011.12.17 20:59:04 | 000,013,272 | ---- | M] () -- C:\Users\oem\Desktop\ComboFix – zástupce.lnk
[3 C:\Users\oem\AppData\Local\*.tmp files -> C:\Users\oem\AppData\Local\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.12.28 16:27:47 | 027,805,135 | ---- | C] () -- C:\Users\oem\Desktop\AddOns.rar
[2011.12.28 14:04:14 | 000,000,749 | ---- | C] () -- C:\Users\Public\Desktop\World of Warcraft.lnk
[2011.12.25 15:31:34 | 000,049,248 | ---- | C] () -- C:\Users\oem\Desktop\387255_289893597715070_227840210587076_720657_858158758_n.jpg
[2011.12.22 22:32:13 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.12.22 22:21:31 | 000,001,199 | ---- | C] () -- C:\Users\Public\Desktop\Diablo II - Lord of Destruction.lnk
[2011.12.17 20:59:04 | 000,013,272 | ---- | C] () -- C:\Users\oem\Desktop\ComboFix – zástupce.lnk
[2011.12.17 20:48:38 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011.12.17 20:48:38 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011.12.17 20:48:38 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011.12.17 20:48:38 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011.12.17 20:48:38 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011.10.24 19:22:06 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{D37D13B6-27C0-4287-9D4D-DDCE9572467D}
[2011.08.29 23:34:51 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{E81F0030-7C92-4CBE-B229-9C74961D5028}
[2011.08.03 03:39:55 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{621D4880-EA39-451F-925E-41D7A6C87CEB}
[2011.07.30 01:14:33 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{F303A536-A429-445C-ADDF-0D5196A58E99}
[2011.07.29 20:26:36 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{A33E3D76-F5D8-4777-8B68-9DBE0FFA8B7D}
[2011.07.03 21:13:25 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\CmdLineExt03.dll
[2011.06.29 20:31:43 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{CA0C00E5-0428-4128-BAA5-F617A116D747}
[2011.06.22 21:41:05 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{3E638734-8735-4EFD-9CD9-609D212E6E35}
[2011.05.17 05:49:49 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{A0709926-D57C-439E-884F-1FF67A0FFED8}
[2011.05.16 12:38:41 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{6CE531AE-2EF1-4E9E-A292-2D8087F3BA0E}
[2011.05.12 15:54:13 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{5BABCE94-8799-408A-B93E-D1E3398F10A2}
[2011.05.12 15:43:21 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{C4244C8B-533B-4282-A18A-99AC407FDB8D}
[2011.05.10 18:58:40 | 000,017,212 | ---- | C] () -- C:\Users\oem\AppData\Roaming\UserTile.png
[2011.02.04 20:49:17 | 000,032,752 | ---- | C] () -- C:\Windows\SysWow64\NTAgent.exe
[2011.02.04 20:18:54 | 001,471,654 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.02.04 19:48:27 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011.02.04 19:45:48 | 000,001,035 | ---- | C] () -- C:\Windows\SysWow64\atipblup.dat
[2011.02.04 19:43:17 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\rpcnetp.dll
[2011.02.04 19:41:50 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\rpcnetp.exe
[2010.04.12 04:11:27 | 000,001,035 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2003.05.05 10:59:38 | 000,000,795 | ---- | C] () -- C:\Windows\VPlayer.INI
========== Custom Scans ==========
< :Commands >
< [emptytemp] >
< [emptyflash] >
< [resethosts] >
< [purity] >
< >
< :Services >
< gupdate >
< gupdatem >
< gusvc >
< ICQ Service >
< >
< :OTL >
< IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >
< IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >
< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >
< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\URLSearchHook: - No CLSID value found >
< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ) >
< FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found >
Invalid Switch: GENUINE: disabled File not found
< FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found >
Invalid Switch: iTunes,version=: File not found
< FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found >
Invalid Switch: GENUINE: disabled File not found
< FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird >
< O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. >
< O3:64bit: - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >
< O3:64bit: - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () >
< O3 - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () >
< O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >
< O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >
< O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () >
< O8:64bit: - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found >
Invalid Switch: cmsidewiki.html File not found
< O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found >
Invalid Switch: cmsidewiki.html File not found
< O18:64bit: - Protocol\Handler\livecall - No CLSID value found >
< O18:64bit: - Protocol\Handler\ms-help - No CLSID value found >
< O18:64bit: - Protocol\Handler\msnim - No CLSID value found >
< O18:64bit: - Protocol\Handler\skype4com - No CLSID value found >
< O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found >
< O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found >
Invalid Switch: pagefile) - File not found
< O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found >
Invalid Switch: pagefile) - File not found
< [4 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ] >
< [5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ] >
< [1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp files -> C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp files -> C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp files -> C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp files -> C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp files -> C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp files -> C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp files -> C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp files -> C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp files -> C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp files -> C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp files -> C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp files -> C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp files -> C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp -> ] >
< [1 C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp -> ] >
< >
< :Files >
< C:\Users\oem\AppData\Roaming\ESET >
< C:\Program Files (x86)\ICQ6Toolbar >
< C:\Program Files (x86)\DAEMON Tools Toolbar >
< C:\Program Files (x86)\Google\Google Toolbar >
< C:\Windows\tasks\GoogleUpdateTaskMachineCore.job >
< C:\Windows\tasks\GoogleUpdateTaskMachineUA.job >
< C:\Users\oem\Downloads\Diablo.2.LOD.Patch.1.11b.crack.rar /d >
Invalid Switch: d
< C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction /d >
Invalid Switch: d
< %windir%\system32\*.tmp.dll /s >
< %windir%\system32\SET*.tmp /s >
< %windir%\*.tmp /s >
[4 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp files -> C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp files -> C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp files -> C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp files -> C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp files -> C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp files -> C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp files -> C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp files -> C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp files -> C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp files -> C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp files -> C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp files -> C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp files -> C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp -> ]
< >
< :Reg >
< [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] >
< [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] >
< "{855F3B16-6D32-4FE6-8A56-BBB695989046}"=- >
< "{32099AAC-C132-4136-9E9A-4E364A424E17}"=- >
< "{2318C2B1-4965-11d4-9B18-009027A5CD4F}"=- >
< "{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}"=- >
< [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] >
< "swg"=- >
< End of report >
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
Re: Vir - Facebook vir
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
Mno hezké, tak to ale konečně udělej správně, prosím. Čekám na ten log...
Re: Vir - Facebook vir
All processes killed
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: oem
->Temp folder emptied: 20775345 bytes
->Temporary Internet Files folder emptied: 49863920 bytes
->Java cache emptied: 2208763 bytes
->Google Chrome cache emptied: 40389087 bytes
->Flash cache emptied: 498 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 276455 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67978 bytes
RecycleBin emptied: 4062864834 bytes
Total Files Cleaned = 3 983,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: oem
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Error creating restore point.
========== SERVICES/DRIVERS ==========
Error: No service named gupdate was found to stop!
Service\Driver key gupdate not found.
Error: No service named gupdatem was found to stop!
Service\Driver key gupdatem not found.
Service gusvc stopped successfully!
Service gusvc deleted successfully!
Error: No service named ICQ Service was found to stop!
Service\Driver key ICQ Service not found.
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ deleted successfully.
C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
File HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
64bit-Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ deleted successfully.
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll moved successfully.
64bit-Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
File C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ not found.
File C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
File C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll not found.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\livecall\ deleted successfully.
File Protocol\Handler\livecall - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msnim\ deleted successfully.
File Protocol\Handler\msnim - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully.
File Protocol\Handler\skype4com - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlmailhtml\ deleted successfully.
File Protocol\Handler\wlmailhtml - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP92EC.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP973F.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPAFBF.tmp\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPAFBF.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP20C9.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2CAE.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7D78.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\Windows\Installer\MSI3E62.tmp deleted successfully.
C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\wlt62AB.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\BIT5305.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\BIT5EBF.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\BIT60B7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\BIT705D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\BIT881F.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\BIT6DD8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\BIT5BC6.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\BIT72C3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\BIT694D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\BIT5BF7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\BIT5BD7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\BIT659C.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\BIT8C6A.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\BIT708D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\BIT5481.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\BIT57F4.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\BIT5D24.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\BIT6EF3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\BIT7198.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\BIT5D64.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\BIT74C9.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\BIT6E17.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\BIT5708.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\BIT5E70.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\BIT5236.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\BIT5A9A.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\BIT5ABA.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\BIT5452.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\BIT7D37.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\BIT5C36.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\BIT5BA6.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\BIT7216.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\BIT58D1.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\BIT7C7B.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\BIT5412.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\BIT5CB5.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\BIT65BC.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\BIT5DA3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\BIT6AB8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\BIT54F0.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\BIT5882.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\BIT5C57.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\BIT5D04.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\BIT66E8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\BIT8067.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\BIT6CAD.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\BIT5AF9.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\BIT8723.tmp deleted successfully.
========== FILES ==========
C:\Users\oem\AppData\Roaming\ESET\ESET Smart Security folder moved successfully.
C:\Users\oem\AppData\Roaming\ESET folder moved successfully.
C:\Program Files (x86)\ICQ6Toolbar folder moved successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\Resources folder moved successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar folder moved successfully.
C:\Program Files (x86)\Google\Google Toolbar\Component folder moved successfully.
C:\Program Files (x86)\Google\Google Toolbar folder moved successfully.
File\Folder C:\Windows\tasks\GoogleUpdateTaskMachineCore.job not found.
File\Folder C:\Windows\tasks\GoogleUpdateTaskMachineUA.job not found.
C:\Users\oem\Downloads\Diablo.2.LOD.Patch.1.11b.crack.rar deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\Diablo2LODKeyGen.exe deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\Diablo_2_Lord_of_Destruction_Keygen.zip deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\ReadMe.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\rzr-d2ld.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\rzr-d2ld.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\V2TK-26RZ-2TD4-N292.doc deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc\diablo2cd3.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc\diablo2cd3.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc\diablo2cd2.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc\diablo2cd2.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc\diablo2cd1.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc\diablo2cd1.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Diablo 2 Cd Keys.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Diablo 2 CD-Key Battlenet Kompatibel.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Čeština.exe deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction folder deleted successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4FE6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
OTL by OldTimer - Version 3.2.31.0 log created on 12292011_215047
Files\Folders moved on Reboot...
C:\Users\oem\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
Registry entries deleted on Reboot...
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: oem
->Temp folder emptied: 20775345 bytes
->Temporary Internet Files folder emptied: 49863920 bytes
->Java cache emptied: 2208763 bytes
->Google Chrome cache emptied: 40389087 bytes
->Flash cache emptied: 498 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 276455 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67978 bytes
RecycleBin emptied: 4062864834 bytes
Total Files Cleaned = 3 983,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: oem
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Error creating restore point.
========== SERVICES/DRIVERS ==========
Error: No service named gupdate was found to stop!
Service\Driver key gupdate not found.
Error: No service named gupdatem was found to stop!
Service\Driver key gupdatem not found.
Service gusvc stopped successfully!
Service gusvc deleted successfully!
Error: No service named ICQ Service was found to stop!
Service\Driver key ICQ Service not found.
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ deleted successfully.
C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
File HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
64bit-Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ deleted successfully.
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll moved successfully.
64bit-Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
File C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ not found.
File C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
File C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll not found.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\livecall\ deleted successfully.
File Protocol\Handler\livecall - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msnim\ deleted successfully.
File Protocol\Handler\msnim - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully.
File Protocol\Handler\skype4com - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlmailhtml\ deleted successfully.
File Protocol\Handler\wlmailhtml - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP92EC.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP973F.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPAFBF.tmp\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPAFBF.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP20C9.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2CAE.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7D78.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\Windows\Installer\MSI3E62.tmp deleted successfully.
C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\wlt62AB.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\BIT5305.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\BIT5EBF.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\BIT60B7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\BIT705D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\BIT881F.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\BIT6DD8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\BIT5BC6.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\BIT72C3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\BIT694D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\BIT5BF7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\BIT5BD7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\BIT659C.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\BIT8C6A.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\BIT708D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\BIT5481.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\BIT57F4.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\BIT5D24.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\BIT6EF3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\BIT7198.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\BIT5D64.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\BIT74C9.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\BIT6E17.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\BIT5708.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\BIT5E70.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\BIT5236.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\BIT5A9A.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\BIT5ABA.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\BIT5452.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\BIT7D37.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\BIT5C36.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\BIT5BA6.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\BIT7216.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\BIT58D1.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\BIT7C7B.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\BIT5412.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\BIT5CB5.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\BIT65BC.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\BIT5DA3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\BIT6AB8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\BIT54F0.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\BIT5882.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\BIT5C57.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\BIT5D04.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\BIT66E8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\BIT8067.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\BIT6CAD.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\BIT5AF9.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\BIT8723.tmp deleted successfully.
========== FILES ==========
C:\Users\oem\AppData\Roaming\ESET\ESET Smart Security folder moved successfully.
C:\Users\oem\AppData\Roaming\ESET folder moved successfully.
C:\Program Files (x86)\ICQ6Toolbar folder moved successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\Resources folder moved successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar folder moved successfully.
C:\Program Files (x86)\Google\Google Toolbar\Component folder moved successfully.
C:\Program Files (x86)\Google\Google Toolbar folder moved successfully.
File\Folder C:\Windows\tasks\GoogleUpdateTaskMachineCore.job not found.
File\Folder C:\Windows\tasks\GoogleUpdateTaskMachineUA.job not found.
C:\Users\oem\Downloads\Diablo.2.LOD.Patch.1.11b.crack.rar deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\Diablo2LODKeyGen.exe deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\Diablo_2_Lord_of_Destruction_Keygen.zip deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\ReadMe.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\rzr-d2ld.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\rzr-d2ld.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\V2TK-26RZ-2TD4-N292.doc deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc\diablo2cd3.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc\diablo2cd3.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc\diablo2cd2.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc\diablo2cd2.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc\diablo2cd1.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc\diablo2cd1.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Diablo 2 Cd Keys.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Diablo 2 CD-Key Battlenet Kompatibel.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Čeština.exe deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction folder deleted successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4FE6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
OTL by OldTimer - Version 3.2.31.0 log created on 12292011_215047
Files\Folders moved on Reboot...
C:\Users\oem\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
Registry entries deleted on Reboot...
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
No vidíš, že když chceš, že to jde. 
OTL provedlo, co mělo... jak je na tom počítač?
Re: Vir - Facebook vir
Zdá se že dobře : )
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
Super, to rád slyším. Avast funguje normálně?
Jinak můžeme dočistit a máme hotovo.
Odinstaluj ComboFix.
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
Spusť znovu OTL a klikni na tlačítko [CleanUp!], čímž po sobě program uklidí.
TFC http://oldtimer.geekstogo.com/TFC.exe
Pokud nemáš, stáhni CCleaner z tohoto odkazu.
CCleaner doporučuji používat cca jednou za týden.
... a pokud nejsou žádné dotazy, bylo by to z mé strany vše.
Jinak můžeme dočistit a máme hotovo.
- Přejmenuj ComboFix na Uninstall.
- Spusť jej.
- Tohle smaže ComboFix a jeho složky.
- Stáhni a spusť.
- Pro potvrzení volby mačkej A, Enter.
- Po použití utilitu smaž.
- Antiviry mohou tuto utilitu chybně označit jako vir - jedná se o falešný poplach - takže v pohodě stáhni (případně vypni při stahování antivir).
- Stáhni a spusť.
- Klikni na Start a potvrď OK.
- Program uklidí a může (nemusí) restartovat PC.
- Po použití utilitu smaž.
- Panel čistič
- Vše nech jak je, jen dej Analyzovat a poté Spustit CCleaner.
- Panel registry
- Klikni na Hledej problémy.
- Následně na Opravit problémy - zálohu registrů doporučuji udělat, oprav všechny problémy.
- Postup opakuj, dokud nebude bez problémů - většinou cca 3x.
- Panel nástroje
- Zde můžeš odinstalovat nepotřebné programy.
CCleaner doporučuji používat cca jednou za týden.... a pokud nejsou žádné dotazy, bylo by to z mé strany vše.
Re: Vir - Facebook vir
Děkuji
hotovo vše 
- Mc_Murphy
- VIP in memoriam

- Příspěvky: 6706
- Registrován: 03 Lis 2008 15:55
- Místo/Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir - Facebook vir
Není vůbec zač a rádo se stalo.
Přeji pěkný den
a klidný vstup do Nového roku 2012. Ať je lepší, než ten poslední. 





Přispějete na provoz fóra?