Rudy píše:Stáhněte OTL:
http://oldtimer.geekstogo.com/OTL.exe a uložte na plochu. Spusťte, zaškrtněte "kontrola na havěť LOP", kontrola na havěť PURITY" a "Pro všechny uživatele. Klikněte na "prohledat". Dejte logy OTL a Extras.
Skvěle, už to funguje

OTL logfile created on: 26.1.2012 19:12:14 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\kiwi\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
4,00 Gb Total Physical Memory | 2,23 Gb Available Physical Memory | 55,78% Memory free
8,21 Gb Paging File | 6,31 Gb Available in Paging File | 76,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,09 Gb Total Space | 219,66 Gb Free Space | 73,69% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 487,17 Gb Free Space | 26,15% Space Free | Partition Type: NTFS
Computer Name: KIWI-PC | User Name: kiwi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012.01.26 19:10:49 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\kiwi\Desktop\OTL.exe
PRC - [2012.01.24 14:19:14 | 003,478,336 | ---- | M] (DT Soft Ltd) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
PRC - [2012.01.19 20:24:56 | 005,420,408 | ---- | M] () -- C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe
PRC - [2012.01.11 17:32:50 | 000,496,128 | ---- | M] (Crawler.com) -- D:\files\Spyware Terminator\sp_rsser.exe
PRC - [2012.01.03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011.12.10 12:49:01 | 003,246,040 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
PRC - [2011.11.24 05:59:00 | 002,348,864 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2011.11.23 19:29:22 | 000,381,248 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2011.10.13 07:01:20 | 000,394,744 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
PRC - [2011.10.13 07:00:22 | 005,574,456 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
PRC - [2011.09.22 16:00:56 | 002,537,096 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe
PRC - [2011.09.22 12:03:30 | 000,974,944 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
PRC - [2011.08.24 14:57:48 | 000,021,880 | ---- | M] (Schneider Electric) -- C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe
PRC - [2011.08.24 14:48:02 | 000,705,912 | ---- | M] (Schneider Electric) -- C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe
PRC - [2011.08.24 14:42:48 | 000,673,144 | ---- | M] (Schneider Electric) -- C:\Program Files (x86)\APC\PowerChute Personal Edition\apcsystray.exe
PRC - [2010.09.02 08:57:48 | 001,774,992 | ---- | M] (ALTAP) -- D:\files\Altap Salamander 2.5\salamand.exe
PRC - [2009.02.10 17:01:49 | 000,116,104 | ---- | M] () -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
PRC - [2008.11.18 13:15:30 | 000,307,200 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
PRC - [2007.10.15 15:59:14 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razertra.exe
PRC - [2007.09.12 11:52:18 | 000,172,032 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razerhid.exe
PRC - [2007.08.16 17:05:16 | 000,274,432 | ---- | M] (razercfg MFC Application) -- C:\Program Files (x86)\Razer\Lachesis\OSD.exe
PRC - [2007.07.25 16:06:30 | 002,027,792 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\Quickcam.exe
PRC - [2007.07.25 16:02:54 | 000,563,984 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
PRC - [2007.07.25 16:02:32 | 000,403,728 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
PRC - [2007.07.20 00:40:02 | 000,113,176 | ---- | M] (Logitech Inc.) -- c:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
PRC - [2007.06.05 10:37:12 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files (x86)\Razer\Lachesis\razerofa.exe
========== Modules (No Company Name) ==========
MOD - [2012.01.19 20:24:56 | 005,420,408 | ---- | M] () -- C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe
MOD - [2012.01.05 10:48:44 | 000,411,120 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\ppgooglenaclpluginchrome.dll
MOD - [2012.01.05 10:48:43 | 003,767,792 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\pdf.dll
MOD - [2012.01.05 10:47:19 | 000,122,880 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\avutil-51.dll
MOD - [2012.01.05 10:47:18 | 000,222,208 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\avformat-53.dll
MOD - [2012.01.05 10:47:17 | 001,746,432 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\avcodec-53.dll
MOD - [2012.01.05 08:06:01 | 008,593,056 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\gcswf32.dll
MOD - [2011.10.13 06:59:42 | 011,227,192 | ---- | M] () -- C:\Program Files (x86)\Acronis\TrueImageHome\Common\ti_managers.dll
MOD - [2010.09.02 12:06:18 | 000,242,176 | ---- | M] () -- D:\files\Altap Salamander 2.5\lang\czech.slg
MOD - [2009.07.10 09:07:18 | 000,166,912 | ---- | M] () -- C:\Windows\SysWOW64\APOMngr.DLL
MOD - [2009.02.06 18:52:24 | 000,073,728 | ---- | M] () -- C:\Windows\SysWOW64\CmdRtr.DLL
MOD - [2007.10.15 15:59:14 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razertra.exe
MOD - [2007.09.12 11:52:18 | 000,172,032 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razerhid.exe
MOD - [2007.07.25 16:13:20 | 000,094,480 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\LAppRes.DLL
MOD - [2007.07.25 16:06:30 | 002,027,792 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\Quickcam.exe
MOD - [2007.07.25 16:04:38 | 000,149,264 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\LogiVOIPDevicePlugin.dll
MOD - [2007.07.25 16:04:14 | 000,165,136 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\LogiCordless4001.dll
MOD - [2007.07.25 16:04:02 | 000,138,000 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\LogiCordless.dll
MOD - [2007.07.25 16:03:18 | 000,167,184 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\EFVal.dll
MOD - [2007.07.25 16:02:54 | 000,563,984 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
MOD - [2007.07.25 16:02:54 | 000,343,312 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\DevMngr.dll
MOD - [2007.07.20 00:39:16 | 000,068,120 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LVCOMSER\LVCSPS.dll
========== Win32 Services (SafeList) ==========
SRV:
64bit: - [2011.09.22 12:03:30 | 000,974,944 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe -- (ekrn)
SRV:
64bit: - [2011.07.12 20:51:20 | 000,027,760 | ---- | M] (VIA Technologies, Inc.) [Auto | Running] -- C:\Windows\SysNative\viakaraokesrv.exe -- (VIAKaraokeService)
SRV:
64bit: - [2008.01.19 00:06:52 | 000,383,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:
64bit: - [2007.07.20 00:41:56 | 000,171,032 | ---- | M] (Logitech Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe -- (LVSrvLauncher)
SRV:
64bit: - [2007.07.20 00:40:02 | 000,174,104 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:
64bit: - [2007.07.20 00:38:20 | 000,255,000 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVCSer64.exe -- (LVCOMSer)
SRV - [2012.01.25 16:17:20 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
SRV - [2012.01.11 17:32:50 | 000,496,128 | ---- | M] (Crawler.com) [Auto | Running] -- D:\files\Spyware Terminator\sp_rsser.exe -- (sp_rssrv)
SRV - [2012.01.03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011.12.10 12:49:01 | 003,246,040 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe -- (afcdpsrv)
SRV - [2011.11.24 05:59:00 | 002,348,864 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2011.11.23 19:29:22 | 000,381,248 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2011.10.13 07:03:02 | 001,113,696 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2011.08.24 14:57:48 | 000,021,880 | ---- | M] (Schneider Electric) [Auto | Running] -- C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe -- (APC Data Service)
SRV - [2011.08.24 14:48:02 | 000,705,912 | ---- | M] (Schneider Electric) [Auto | Running] -- C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe -- (APC UPS Service)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.03.29 21:42:16 | 000,066,368 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.02.10 17:01:49 | 000,116,104 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2008.11.18 13:15:30 | 000,307,200 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService)
========== Driver Services (SafeList) ==========
DRV:
64bit: - [2012.01.25 16:12:55 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\dtsoftbus01.sys -- (dtsoftbus01)
DRV:
64bit: - [2011.12.10 12:49:03 | 000,285,280 | ---- | M] (Acronis) [File_System | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\afcdp.sys -- (afcdp)
DRV:
64bit: - [2011.12.10 12:48:57 | 001,263,200 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\tdrpm273.sys -- (tdrpman273) Acronis Try&Decide and Restore Points filter (build 273)
DRV:
64bit: - [2011.12.10 12:48:53 | 000,970,336 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\timntr.sys -- (timounter)
DRV:
64bit: - [2011.12.10 12:48:50 | 000,277,088 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\snapman.sys -- (snapman)
DRV:
64bit: - [2011.12.10 09:46:13 | 000,142,944 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\vsflt58.sys -- (vidsflt58) Acronis Disk Storage Filter (58)
DRV:
64bit: - [2011.12.10 09:46:09 | 000,132,704 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\fltsrv.sys -- (fltsrv)
DRV:
64bit: - [2011.09.08 16:40:24 | 000,508,520 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys -- (RTL8169)
DRV:
64bit: - [2011.08.09 14:24:52 | 000,202,576 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\Windows\SysNative\DRIVERS\eamonm.sys -- (eamonm)
DRV:
64bit: - [2011.08.04 09:20:38 | 000,187,632 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\epfw.sys -- (epfw)
DRV:
64bit: - [2011.08.04 09:20:38 | 000,146,432 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\ehdrv.sys -- (ehdrv)
DRV:
64bit: - [2011.08.04 09:20:38 | 000,062,496 | ---- | M] (ESET) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\epfwwfp.sys -- (epfwwfp)
DRV:
64bit: - [2011.08.04 09:20:38 | 000,038,288 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\EpfwLWF.sys -- (EpfwLWF)
DRV:
64bit: - [2011.07.12 20:51:16 | 002,165,360 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)
DRV:
64bit: - [2010.04.27 16:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmVirHid.sys -- (WmVirHid)
DRV:
64bit: - [2010.04.27 16:57:14 | 000,036,936 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmHidLo.sys -- (WmHidLo)
DRV:
64bit: - [2010.04.27 16:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmBEnum.sys -- (WmBEnum)
DRV:
64bit: - [2010.04.27 14:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmXlCore.sys -- (WmXlCore)
DRV:
64bit: - [2010.04.27 14:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmFilter.sys -- (WmFilter)
DRV:
64bit: - [2010.02.24 11:20:40 | 000,191,616 | ---- | M] (Protect Software GmbH) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\acedrv11.sys -- (acedrv11)
DRV:
64bit: - [2009.10.16 06:44:56 | 001,309,696 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\P17.sys -- (P17)
DRV:
64bit: - [2009.10.01 01:51:42 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wpdusb.sys -- (WpdUsb)
DRV:
64bit: - [2009.07.07 20:48:16 | 000,011,832 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\amdide64.sys -- (amdide64)
DRV:
64bit: - [2009.01.17 06:27:16 | 000,047,656 | ---- | M] (Cypress Semiconductor) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\CYUSB.sys -- (CYUSB)
DRV:
64bit: - [2007.08.17 15:48:46 | 000,030,336 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Lachesis.sys -- (VaneFltr)
DRV:
64bit: - [2007.07.20 00:38:54 | 002,055,320 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\LVMVDrv.sys -- (LVMVDrv)
DRV:
64bit: - [2007.07.20 00:37:34 | 001,599,384 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\LVcKap64.sys -- (LVcKap64)
DRV:
64bit: - [2007.07.19 01:43:24 | 000,050,072 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVUSBS64.sys -- (LVUSBS64)
DRV:
64bit: - [2007.07.19 01:39:04 | 001,213,592 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\LV302V64.SYS -- (PID_PEPI) Logitech QuickCam IM(PID_PEPI)
DRV:
64bit: - [2007.07.19 01:39:04 | 000,015,768 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\lv302a64.sys -- (lvpepf64)
DRV:
64bit: - [2007.07.18 17:41:44 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\LVPr2M64.sys -- (LVPr2M64)
DRV:
64bit: - [2006.10.31 16:23:42 | 000,015,680 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\ASACPI.sys -- (MTsensor)
DRV - [2009.10.01 23:00:00 | 000,026,240 | ---- | M] () [Kernel | On_Demand | Stopped] -- D:\files\EVEREST Ultimate Edition\kerneld.amd64 -- (EverestDriver)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\
eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2012.01.10 18:24:25 | 000,000,000 | ---D | M]
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\gcswf32.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\
CHR - Extension: Gmail = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012.01.23 19:06:07 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O4:
64bit: - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4:
64bit: - HKLM..\Run: [CanonSolutionMenu] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4:
64bit: - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4:
64bit: - HKLM..\Run: [Služba Acronis Scheduler2] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4:
64bit: - HKLM..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Logitech Inc.)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [Lachesis] C:\Program Files (x86)\Razer\Lachesis\razerhid.exe ()
O4 - HKLM..\Run: [LogitechCommunicationsManager] C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe ()
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files (x86)\Logitech\QuickCam\Quickcam.exe ()
O4 - HKLM..\Run: [P17RunE] C:\Windows\SysWow64\P17RunE.dll (Creative Technology Ltd.)
O4 - HKLM..\Run: [SAOB Monitor] C:\Program Files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [TrueImageMonitor.exe] C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [UpdReg] C:\Windows\Updreg.EXE (Creative Technology Ltd.)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000..\Run: [DriverMax_RESTART] D:\files\DriverMax\drivermax.exe (Innovative Solutions)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000..\Run: [Mikogo] C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe ()
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [DriverMax] D:\files\DriverMax\drivermax.exe (Innovative Solutions)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [DriverMax_RESTART] D:\files\DriverMax\drivermax.exe (Innovative Solutions)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [Mikogo] C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe ()
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\RunOnce: [CTAutoUpdate] C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe (Creative Technology Ltd)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:
64bit: - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8:
64bit: - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} file:///D:/Games/Righteous%20Kill/Images/stg_drm.ocx (SpinTop DRM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} file:///D:/Games/Righteous%20Kill/Images/armhelper.ocx (ArmHelper Control)
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E}
http://ccfiles.creative.com/Web/softwar ... PIDPDE.cab (Creative Software AutoUpdate Support Package 2)
O16 - DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF}
http://ccfiles.creative.com/Web/softwar ... TSUEng.cab (Creative Software AutoUpdate 2)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29}
http://ccfiles.creative.com/Web/softwar ... /CTPID.cab (Creative Software AutoUpdate Support Package)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{00803080-07F1-4C5E-94CB-F456F8AEB0CF}: DhcpNameServer = 213.46.172.36 213.46.172.37
O18:
64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:
64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:
64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\kiwi\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\kiwi\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (auto_reactivate \\?\Volume{A0D06768-22A7-11E1-B1F5-806E6F6E6963}\bootwiz\asrm.bin)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012.01.26 19:10:44 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\kiwi\Desktop\OTL.exe
[2012.01.26 18:42:18 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Desktop\Log
[2012.01.26 18:13:51 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012.01.25 16:19:35 | 002,909,808 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\VIAPropPageExt.dll
[2012.01.25 16:19:34 | 000,202,864 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViaMicArrayAPO.dll
[2012.01.25 16:19:34 | 000,116,848 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\SysNative\ViaKaraokePropPageExt.dll
[2012.01.25 16:19:34 | 000,087,152 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\SysNative\ViaMicArrayPropPageExt.dll
[2012.01.25 16:19:34 | 000,027,760 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViakaraokeSrv.exe
[2012.01.25 16:19:33 | 002,165,360 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\drivers\viahduaa.sys
[2012.01.25 16:19:33 | 001,161,328 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViaKaraokeApo.dll
[2012.01.25 16:19:32 | 000,248,944 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\Dts2APO.dll
[2012.01.25 16:19:32 | 000,091,760 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\Dts2PropPageExt.dll
[2012.01.25 16:19:32 | 000,085,504 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\SysNative\nQPropPageExt.dll
[2012.01.25 16:19:32 | 000,083,968 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\SysNative\nQAPO.dll
[2012.01.25 16:17:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Creative
[2012.01.25 16:17:48 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Creative Installation Information
[2012.01.25 16:17:46 | 000,419,840 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2012.01.25 16:17:46 | 000,413,696 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2012.01.25 16:17:46 | 000,133,632 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2012.01.25 16:17:46 | 000,110,592 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2012.01.25 16:17:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Creative Labs Shared
[2012.01.25 16:17:01 | 000,000,000 | ---D | C] -- C:\Program Files\Creative
[2012.01.25 16:13:59 | 000,506,368 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\P17APO32.dll
[2012.01.25 16:13:59 | 000,057,856 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\P17pld64.dll
[2012.01.25 16:13:58 | 001,309,696 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\drivers\P17.sys
[2012.01.25 16:13:58 | 000,613,503 | ---- | C] (Creative Technology Ltd) -- C:\Windows\SysWow64\APOIM64.exe
[2012.01.25 16:13:58 | 000,581,120 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\P17APO64.dll
[2012.01.25 16:13:58 | 000,217,600 | ---- | C] (Creative Technology Limited) -- C:\Windows\SysNative\ctdvins1.dll
[2012.01.25 16:13:58 | 000,073,728 | ---- | C] (Creative Technology Limited) -- C:\Windows\SysNative\ctcoins1.dll
[2012.01.25 16:13:57 | 000,140,800 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\P17res.dll
[2012.01.25 16:13:57 | 000,008,704 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\ResDefE.exe
[2012.01.25 16:13:53 | 032,177,128 | ---- | C] (Creative Technology Ltd) -- C:\Windows\SysWow64\AppSetup.exe
[2012.01.25 16:13:50 | 000,042,496 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\AddCat.exe
[2012.01.25 16:12:55 | 000,283,200 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.01.25 16:12:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2012.01.24 10:12:16 | 000,047,656 | ---- | C] (Cypress Semiconductor) -- C:\Windows\SysNative\drivers\CYUSB.sys
[2012.01.24 10:06:49 | 000,011,832 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\drivers\amdide64.sys
[2012.01.24 09:59:41 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Innovative Solutions
[2012.01.24 09:59:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverMax
[2012.01.23 20:23:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xara
[2012.01.23 20:22:43 | 000,876,544 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\XaraDocG.dll
[2012.01.23 20:22:43 | 000,253,952 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\TemplOp.dll
[2012.01.23 20:22:43 | 000,131,072 | ---- | C] (Xara Ltd) -- C:\Windows\SysWow64\BmpImporter.dll
[2012.01.23 20:22:43 | 000,126,976 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\TemplMan.dll
[2012.01.23 20:22:43 | 000,118,784 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\XMUpload.dll
[2012.01.23 20:22:43 | 000,023,552 | ---- | C] (Xara Group Ltd.) -- C:\Windows\SysWow64\XFontMan.dll
[2012.01.23 19:25:36 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012.01.23 19:13:03 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012.01.23 19:13:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\temp
[2012.01.23 18:22:20 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Application Data
[2012.01.23 18:18:33 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Jurecek Radek
[2012.01.22 10:09:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\KeepersOfDryandra
[2012.01.22 09:43:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Totem Quest
[2012.01.21 22:00:12 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Righteous Kill
[2012.01.21 20:41:59 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Futuremark
[2012.01.20 22:31:19 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012.01.20 22:31:19 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012.01.20 22:31:19 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012.01.20 22:31:14 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2012.01.20 22:30:56 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012.01.19 20:24:35 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\Mikogo
[2012.01.19 20:24:31 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Mikogo
[2012.01.19 20:24:31 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mikogo
[2012.01.10 19:13:40 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2012.01.10 19:13:39 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2012.01.10 19:13:38 | 001,570,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2012.01.10 19:13:37 | 001,314,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2012.01.10 19:13:37 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2012.01.10 19:13:37 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2012.01.10 19:13:36 | 000,211,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winmm.dll
[2012.01.10 19:13:36 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcicda.dll
[2012.01.10 19:13:36 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciwave.dll
[2012.01.10 19:13:36 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciseq.dll
[2012.01.10 19:13:36 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciseq.dll
[2012.01.10 19:13:35 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2012.01.10 19:13:33 | 001,585,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2012.01.10 19:12:59 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2012.01.10 19:12:59 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2012.01.10 18:24:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
[2012.01.10 18:24:00 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
[2012.01.07 22:55:01 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\mojosoft
[2012.01.07 22:55:01 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\BusinessCardsMX templates
[2012.01.07 22:34:42 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\ICQ
[2012.01.07 22:33:10 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\ICQ
[2012.01.03 01:17:20 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\HateML
[2012.01.02 01:10:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Xara
[2012.01.02 00:50:32 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\My Web Pages
[2012.01.02 00:13:24 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\My Web Graphics
[2012.01.01 23:22:33 | 000,000,000 | ---D | C] -- C:\WSTemplates
[2012.01.01 23:10:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\MSSoap
[2012.01.01 23:08:13 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Xara
[2012.01.01 23:07:03 | 000,115,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSINET.OCX
[2012.01.01 23:03:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Xara
[2012.01.01 23:03:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\MAGIX
[2012.01.01 23:03:03 | 000,000,000 | ---D | C] -- C:\ProgramData\MAGIX
[2012.01.01 23:02:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Xara
[2012.01.01 23:01:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2012.01.01 22:54:49 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Xara
[2012.01.01 22:53:28 | 000,110,592 | ---- | C] (TechSmith Corporation) -- C:\Windows\SysWow64\tsccvid.dll
[2012.01.01 21:36:42 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\FileZilla
[2012.01.01 21:34:24 | 000,000,000 | --SD | C] -- C:\Users\kiwi\Documents\Weby
[2012.01.01 21:24:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio
[2011.12.29 22:40:24 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Trapped Dead
[2011.12.29 22:40:24 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\CrashRpt
[2011.12.29 22:39:51 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\Trapped Dead
[2011.12.29 22:32:48 | 000,000,000 | --SD | C] -- C:\Users\kiwi\Documents\Zdroje dat
[2011.12.29 13:39:32 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\SKIDROW
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012.01.26 19:10:49 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\kiwi\Desktop\OTL.exe
[2012.01.26 18:46:12 | 001,418,258 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.01.26 18:46:12 | 000,607,232 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2012.01.26 18:46:12 | 000,595,798 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.01.26 18:46:12 | 000,117,912 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2012.01.26 18:46:12 | 000,103,872 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.01.26 18:40:08 | 000,004,176 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012.01.26 18:40:06 | 000,004,176 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012.01.26 18:39:28 | 000,412,456 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012.01.26 18:39:19 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.01.26 18:39:10 | 4292,988,928 | -HS- | M] () -- C:\hiberfil.sys
[2012.01.26 08:25:45 | 422,843,633 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012.01.25 20:15:12 | 000,001,905 | ---- | M] () -- C:\Windows\diagwrn.xml
[2012.01.25 20:15:12 | 000,001,905 | ---- | M] () -- C:\Windows\diagerr.xml
[2012.01.25 20:06:52 | 000,056,320 | ---- | M] () -- C:\Users\kiwi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.01.25 16:17:46 | 000,419,840 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2012.01.25 16:17:46 | 000,413,696 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2012.01.25 16:17:46 | 000,133,632 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2012.01.25 16:17:46 | 000,110,592 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2012.01.25 16:15:03 | 000,000,159 | RH-- | M] () -- C:\Windows\ctfile.rfc
[2012.01.25 16:12:55 | 000,283,200 | ---- | M] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.01.24 09:59:41 | 000,000,560 | ---- | M] () -- C:\Users\kiwi\Desktop\DriverMax.lnk
[2012.01.23 20:23:01 | 000,000,666 | ---- | M] () -- C:\Users\Public\Desktop\Webstyle 4.lnk
[2012.01.23 20:19:09 | 000,002,675 | ---- | M] () -- C:\Users\kiwi\Desktop\Microsoft Office FrontPage 2003.lnk
[2012.01.23 20:18:20 | 000,000,384 | ---- | M] () -- C:\Windows\ODBC.INI
[2012.01.23 19:06:07 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012.01.22 15:43:33 | 000,000,725 | ---- | M] () -- C:\Users\kiwi\Desktop\Keepers – zástupce.lnk
[2012.01.22 09:37:05 | 000,000,952 | ---- | M] () -- C:\Users\kiwi\AppData\Local\SRDownloader.nast
[2012.01.19 20:24:32 | 000,001,746 | ---- | M] () -- C:\Users\kiwi\Desktop\Mikogo.lnk
[2012.01.11 17:29:20 | 000,000,600 | ---- | M] () -- C:\Users\kiwi\AppData\Local\PUTTY.RND
[2012.01.11 17:10:33 | 000,000,741 | ---- | M] () -- C:\Users\kiwi\Desktop\FileZilla Client.lnk
[2012.01.10 18:36:50 | 000,000,680 | ---- | M] () -- C:\Users\kiwi\AppData\Local\d3d9caps.dat
[2012.01.08 18:51:35 | 000,001,020 | ---- | M] () -- C:\Users\kiwi\AppData\Local\SRDownloader.err
[2012.01.07 22:55:32 | 000,000,646 | ---- | M] () -- C:\Users\kiwi\Desktop\BusinessCardsMX.lnk
[2012.01.01 23:26:22 | 000,034,308 | ---- | M] () -- C:\Windows\SysWow64\BASSMOD.dll
[2012.01.01 23:11:00 | 000,000,000 | RH-- | M] () -- C:\28645308.Dat
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.01.25 20:13:52 | 000,001,905 | ---- | C] () -- C:\Windows\diagwrn.xml
[2012.01.25 20:13:52 | 000,001,905 | ---- | C] () -- C:\Windows\diagerr.xml
[2012.01.25 16:15:03 | 000,000,159 | RH-- | C] () -- C:\Windows\ctfile.rfc
[2012.01.25 16:13:59 | 000,008,491 | ---- | C] () -- C:\Windows\SysWow64\P17APO64.p17
[2012.01.25 16:13:57 | 000,001,489 | ---- | C] () -- C:\Windows\P17EP51.ini
[2012.01.25 16:13:56 | 000,002,177 | ---- | C] () -- C:\Windows\P17EP.ini
[2012.01.25 16:13:49 | 000,003,930 | ---- | C] () -- C:\Windows\SysNative\ludap17.ini
[2012.01.25 16:13:49 | 000,000,054 | ---- | C] () -- C:\Windows\SysNative\ctzapxx.ini
[2012.01.24 09:59:41 | 000,000,560 | ---- | C] () -- C:\Users\kiwi\Desktop\DriverMax.lnk
[2012.01.23 20:23:01 | 000,000,666 | ---- | C] () -- C:\Users\Public\Desktop\Webstyle 4.lnk
[2012.01.23 20:22:43 | 000,086,016 | ---- | C] () -- C:\Windows\SysWow64\BinCoder.dll
[2012.01.23 20:18:45 | 000,002,675 | ---- | C] () -- C:\Users\kiwi\Desktop\Microsoft Office FrontPage 2003.lnk
[2012.01.22 15:43:33 | 000,000,725 | ---- | C] () -- C:\Users\kiwi\Desktop\Keepers – zástupce.lnk
[2012.01.20 22:31:19 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012.01.20 22:31:19 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012.01.20 22:31:19 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012.01.20 22:31:19 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012.01.20 22:31:19 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012.01.19 20:24:32 | 000,001,746 | ---- | C] () -- C:\Users\kiwi\Desktop\Mikogo.lnk
[2012.01.07 22:55:32 | 000,000,646 | ---- | C] () -- C:\Users\kiwi\Desktop\BusinessCardsMX.lnk
[2012.01.03 01:44:37 | 000,000,600 | ---- | C] () -- C:\Users\kiwi\AppData\Local\PUTTY.RND
[2012.01.01 23:13:47 | 000,034,308 | ---- | C] () -- C:\Windows\SysWow64\BASSMOD.dll
[2012.01.01 23:11:00 | 000,000,000 | RH-- | C] () -- C:\28645308.Dat
[2012.01.01 23:08:13 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xwsindex.exe
[2012.01.01 21:35:44 | 000,000,741 | ---- | C] () -- C:\Users\kiwi\Desktop\FileZilla Client.lnk
[2012.01.01 21:26:42 | 000,000,384 | ---- | C] () -- C:\Windows\ODBC.INI
[2011.12.14 18:52:29 | 000,001,020 | ---- | C] () -- C:\Users\kiwi\AppData\Local\SRDownloader.err
[2011.12.10 09:05:11 | 000,000,952 | ---- | C] () -- C:\Users\kiwi\AppData\Local\SRDownloader.nast
[2011.12.10 00:40:29 | 000,056,320 | ---- | C] () -- C:\Users\kiwi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.12.10 00:37:55 | 000,003,348 | ---- | C] () -- C:\Windows\SysWow64\ludap17.ini
[2011.12.10 00:37:55 | 000,000,078 | ---- | C] () -- C:\Windows\SysWow64\ctzapxx.ini
[2011.12.10 00:37:12 | 000,166,912 | ---- | C] () -- C:\Windows\SysWow64\APOMngr.DLL
[2011.12.10 00:37:12 | 000,073,728 | ---- | C] () -- C:\Windows\SysWow64\CmdRtr.DLL
[2011.12.09 23:51:41 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2011.12.09 23:51:31 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll
[2011.12.09 23:51:05 | 000,107,612 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchema.bin
[2011.12.09 23:51:05 | 000,018,904 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
[2011.12.09 22:41:21 | 000,142,592 | ---- | C] () -- C:\Windows\SysWow64\drivers\sp_rsdrv2.sys
[2011.12.09 22:22:38 | 000,049,152 | R--- | C] () -- C:\Windows\DAOD.exe
[2011.12.09 22:22:38 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2011.12.09 22:22:36 | 000,030,552 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2011.12.09 22:22:35 | 000,010,296 | ---- | C] () -- C:\Windows\SysWow64\drivers\ASUSHWIO.SYS
[2011.12.09 22:15:56 | 000,000,680 | ---- | C] () -- C:\Users\kiwi\AppData\Local\d3d9caps.dat
[2011.12.09 22:06:56 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2011.12.09 22:03:40 | 000,000,600 | ---- | C] () -- C:\Users\kiwi\AppData\Roaming\winscp.rnd
[2011.12.09 22:01:38 | 000,000,732 | ---- | C] () -- C:\Users\kiwi\AppData\Local\d3d9caps64.dat
[2011.11.23 19:29:36 | 000,406,336 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2007.06.07 13:25:42 | 000,001,578 | ---- | C] () -- C:\Windows\P17EPLS.ini
[2007.04.27 09:43:58 | 000,120,200 | ---- | C] () -- C:\Windows\SysWow64\DLLDEV32i.dll
[2006.11.02 16:37:05 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 13:37:14 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2006.11.02 13:24:17 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2006.11.02 13:18:17 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2006.11.02 10:47:54 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
========== LOP Check ==========
[2011.12.10 09:57:20 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Acronis
[2011.12.09 22:05:00 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\AnvSoft
[2011.12.09 22:06:00 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Ashampoo
[2011.12.22 19:27:57 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Canon
[2012.01.26 18:40:45 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\DAEMON Tools Lite
[2011.12.17 14:42:15 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Enlightenus2_BFG
[2011.12.09 23:38:45 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\ESET
[2011.12.10 12:49:02 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\FF218159-F359-4CF3-9D38-87BCE47C0BF5
[2012.01.19 19:25:47 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\FileZilla
[2012.01.03 01:17:26 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\HateML
[2012.01.08 00:33:27 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\ICQ
[2011.12.15 18:18:42 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\JaiboGames
[2012.01.23 18:18:33 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Jurecek Radek
[2012.01.22 10:09:03 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\KeepersOfDryandra
[2012.01.01 23:03:03 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\MAGIX
[2012.01.19 20:25:05 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Mikogo
[2012.01.07 22:55:01 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\mojosoft
[2011.12.26 10:19:26 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Photodex
[2011.12.22 10:27:02 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\ProtectDISC
[2012.01.21 22:48:13 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Righteous Kill
[2012.01.18 20:17:15 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Spyware Terminator
[2012.01.23 20:23:01 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Xara
[2011.12.27 13:44:16 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\XnView
[2012.01.26 18:37:56 | 000,019,590 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:F5096B56
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C03F5109
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:3595B780
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:5C321E34
< End of report >
****************************************************************************************************
OTL Extras logfile created on: 26.1.2012 19:12:14 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\kiwi\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
4,00 Gb Total Physical Memory | 2,23 Gb Available Physical Memory | 55,78% Memory free
8,21 Gb Paging File | 6,31 Gb Available in Paging File | 76,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,09 Gb Total Space | 219,66 Gb Free Space | 73,69% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 487,17 Gb Free Space | 26,15% Space Free | Partition Type: NTFS
Computer Name: KIWI-PC | User Name: kiwi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = 12 04 40 6B C2 B6 CC 01 [binary data]
"VistaSp2" = 11 08 13 F5 C9 B6 CC 01 [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"oobe_av" = 1
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"TCP Query User{14965544-942A-4D6B-BDEC-8870CF0053E1}D:\files\skype\phone\skype.exe" = protocol=6 | dir=in | app=d:\files\skype\phone\skype.exe |
"TCP Query User{B536CA31-0C22-4E59-950B-B4F668EDA5B1}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{153C6D2B-D2E7-468A-9A3D-3E8D75732676}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{BBEB472C-8B92-412D-ABBD-27AAD4608EAE}D:\files\skype\phone\skype.exe" = protocol=17 | dir=in | app=d:\files\skype\phone\skype.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series" = Canon MP250 series MP Drivers
"{1444D2EE-C7AD-44A8-844F-2634B49353D1}" = Logitech Gaming Software 5.10
"{4A33DA4E-EDE5-4B2D-819C-83E3BF4472E7}" = Logitech QuickCam
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 290.36
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 290.36
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 290.36
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Ovladač řídící jednotky 3D Vision 290.25
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.11.1107
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.6.24
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{BA0C98EF-FDD6-423D-BFFD-57580DE283F0}" = ESET Smart Security
"{C7311329-C491-427B-8880-133E84869B3A}" = Vista Shortcut Manager x64
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{04A3A6B0-8E19-49BB-82FF-65C5A55F917D}" = Acronis True Image Home 2011
"{0D5B5ED2-3E38-4585-B1F3-64B2A9EA95D6}_is1" = BusinessCards MX
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}" = Sound Blaster Audigy
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{26A24AE4-039D-4CA4-87B4-2F83216029FF}" = Java(TM) 6 Update 29
"{427DDB05-8AAC-431E-A47A-F42C00493332}_is1" = Postal.3 version 1.0
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4F949C30-F3C8-459C-8126-0D174746EF9B}" = Xara FrontPage Add-in 1.01
"{675F65BF-F58A-44DD-9555-6F439759C4E4}" = SOAP3 and XML4
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{9530AE42-DAE1-4619-9594-B23487285D17}" = NVIDIA PhysX
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{AC76BA86-7AD7-1029-7B44-AA1000000001}" = Adobe Reader X (10.1.2) - Czech
"{B1656A3E-2744-48B2-95EA-52C4A316551B}" = Xara Webstyle 4
"{BE0AC13A-77D2-11E0-B15B-81BA4824019B}" = PowerChute Personal Edition 3.0.0.1
"{CB4532F7-A1BD-46D2-9938-3E7D4656FB18}" = Razer Lachesis
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"AudioCS" = Creative Audio Control Panel
"CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program
"CanonMyPrinter" = Canon Utilities My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"Creative Sound Blaster Properties x64 Edition" = Creative Sound Blaster Properties x64 Edition
"CrystalDiskInfo_is1" = CrystalDiskInfo 4.1.3b
"DAEMON Tools Lite" = DAEMON Tools Lite
"dips64" = Desktop Icon Position Saver (64-bit)
"DMX5_is1" = DriverMax 6
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"Heroes of Hellas 3: Athens" = Heroes of Hellas 3: Athens
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platforma Ovladače zařízení
"Kubik SMS DreamCom_is1" = Kubik SMS DreamCom 5.89
"Mikogo" = Mikogo
"MP Navigator EX 3.0" = Canon MP Navigator EX 3.0
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"ProtectDisc Driver 11" = ProtectDisc Driver, Version 11
"QcDrv" = Logitech® Camera Driver
"Registrace uživatele zařízení Canon MP250 series" = Registrace uživatele zařízení Canon MP250 series
"RJ Tools E2010_is1" = RJ Tools E2010
"WinRAR archiver" = WinRAR
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-2745662368-3488981636-2238734526-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"FileZilla Client" = FileZilla Client 3.5.3
"Google Chrome" = Google Chrome
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-2745662368-3488981636-2238734526-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"FileZilla Client" = FileZilla Client 3.5.3
"Google Chrome" = Google Chrome
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 20.1.2012 17:34:59 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x44c, čas spuštění
aplikace 0x01ccd7b9b28d24ec.
Error - 20.1.2012 17:46:26 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x408, čas spuštění
aplikace 0x01ccd7bc67368e32.
Error - 23.1.2012 12:38:23 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x414, čas spuštění
aplikace 0x01ccd9e9bfceec67.
Error - 23.1.2012 12:49:25 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x44c, čas spuštění
aplikace 0x01ccd9ee4e133ed1.
Error - 23.1.2012 13:05:37 | Computer Name = kiwi-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files\Common Files\Microsoft
Shared\OFFICE14\MSOXMLMF.DLL se nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error - 23.1.2012 13:06:09 | Computer Name = kiwi-PC | Source = Windows Search Service | ID = 3024
Description =
Error - 23.1.2012 13:53:20 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x444, čas spuštění
aplikace 0x01ccd9f6cc338c77.
Error - 23.1.2012 14:09:48 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x418, čas spuštění
aplikace 0x01ccd9f98d12cddb.
Error - 23.1.2012 15:05:58 | Computer Name = kiwi-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files\Common Files\Microsoft
Shared\OFFICE14\MSOXMLMF.DLL se nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error - 25.1.2012 3:13:48 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace drivermax.exe, verze 6.14.0.251, časové razítko
0x2a425e19, chybující modul unknown, verze 0.0.0.0, časové razítko 0x00000000,
kód výjimky 0xc0000005, posun chyby 0x30300066, ID procesu 0xe44, čas spuštění aplikace
0x01ccdb2f517f71b1.
[ System Events ]
Error - 19.12.2011 8:49:18 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.
Error - 20.12.2011 12:50:08 | Computer Name = kiwi-PC | Source = DCOM | ID = 10010
Description =
Error - 22.12.2011 8:28:15 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.
Error - 26.12.2011 5:49:11 | Computer Name = kiwi-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (10:36:55, 26.12.2011) bylo neočekávané.
Error - 27.12.2011 13:36:30 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.
Error - 29.12.2011 14:23:57 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.
Error - 29.12.2011 14:24:01 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.
Error - 29.12.2011 19:37:19 | Computer Name = kiwi-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (0:35:20, 30.12.2011) bylo neočekávané.
Error - 30.12.2011 11:00:52 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.
Error - 30.12.2011 11:01:21 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.
< End of report >