Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu - pomalý náběh

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
romcolahvac
Návštěvník
Návštěvník
Příspěvky: 186
Registrován: 23 pro 2008 00:30

Prosím o kontrolu logu - pomalý náběh

#1 Příspěvek od romcolahvac »

Dobrý den,

prosím o kontrolu logu, počítač má pomalý náběh a navíc při startu naběhne okno s hláškou "Server je zaneprázdněn" Přepnout či opakovat.

Děkuji.

Logfile of random's system information tool 1.09 (written by random/random)
Run by ROMAN at 2012-05-02 09:06:55
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 12 GB (6%) free of 191 GB
Total RAM: 4094 MB (39% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:07:04, on 2.5.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Users\ROMAN\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe
C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files (x86)\ASUS\TurboV EVO\TurboVHELP.exe
C:\Program Files\ASUS\Six Engine\SixEngine.exe
C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
C:\Program Files (x86)\Mozilla Firefox 3\firefox.exe
C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe
C:\Windows\sysWow64\SearchProtocolHost.exe
C:\Program Files\trend micro\ROMAN.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~2\VMNTOO~1\VMNTOO~1.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: NetXfer - {83B80A9C-D91A-4F22-8DCF-EA7204039F79} - C:\Program Files (x86)\Xi\NetXfer\NXIEHelper.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SnapFlash Class - {A44CBB0B-C77D-4BF5-87CC-B4EE79AD1B7E} - C:\Program Files (x86)\Common Files\justDo\Jd2002.dll
O2 - BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~2\VMNTOO~1\VMNTOO~1.DLL
O3 - Toolbar: NetXfer - {C16CBAAC-A75C-4DB5-A0DD-CDF5CAFCDD3A} - C:\Program Files (x86)\Xi\NetXfer\NXToolBar.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [TurboV EVO] "C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe" -b
O4 - HKLM\..\Run: [iTraffic Monitor] C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [googletalk] C:\Program Files (x86)\Google\Google Talk\googletalk.exe /autostart
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\ROMAN\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\ROMAN\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s
O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [3956FF94043D7A12E2C293FB22726B785385C057._service_run] "C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service
O4 - Startup: Startup.event
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: AVerQuick.lnk = C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
O8 - Extra context menu item: &Stáhnout všechno FlashGetem - C:\Program Files (x86)\FlashGet\jc_all.htm
O8 - Extra context menu item: Download all by FlashGet3 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetAllUrl.htm
O8 - Extra context menu item: Download by FlashGet3 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetUrl.htm
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Save Flash with Flash Catcher - res://C:\Program Files (x86)\Common Files\justDo\IECatcher.DLL/FlashCatcher.htm
O8 - Extra context menu item: Stáhnout Free Download Managerem - file://C:\Program Files (x86)\Free Download Manager\dllink.htm
O8 - Extra context menu item: Stáhnout pomocí NetXferu - C:\Program Files (x86)\Xi\NetXfer\NXAddLink.html
O8 - Extra context menu item: Stáhnout video Free Download Managerem - file://C:\Program Files (x86)\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Stáhnout vybrané Free Download Managerem - file://C:\Program Files (x86)\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Stáhnout vše Free Download Managerem - file://C:\Program Files (x86)\Free Download Manager\dlall.htm
O8 - Extra context menu item: Stáhnout vše pomocí Net&Xferu - C:\Program Files (x86)\Xi\NetXfer\NXAddList.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files (x86)\ICQ7.6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files (x86)\ICQ7.6\ICQ.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Flash Catcher - {90BAE0EF-F4BF-4FAC-B2EC-2C725C34AF12} - C:\Program Files (x86)\Common Files\justDo\IECatcher.DLL
O9 - Extra 'Tools' menuitem: Flash Catcher - {90BAE0EF-F4BF-4FAC-B2EC-2C725C34AF12} - C:\Program Files (x86)\Common Files\justDo\IECatcher.DLL
O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
O9 - Extra button: QIP 2005 - {1EF681F7-A04B-4D6D-9012-A307CCA55610} - C:\Program Files (x86)\QIP\qip.exe (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {0427F569-3D57-4F10-B9FB-8D71A6A7BE24} (FormelEditor Control) - file:///C:/Users/ROMAN/AppData/Local/Temp/KJPL60/frmeditor.ocx
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.5.7.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://juniper.net/dana-cached/sc/Juni ... Client.cab
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: AVerRemote - AVerMedia - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe
O23 - Service: AVerScheduleService - Unknown owner - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Cerberus FTP Server - Cerberus, LLC - C:\Program Files (x86)\Cerberus LLC\Cerberus FTP Server\CerberusGUI.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EWA net DB Core - Transaction Software, D 81829 Munich - C:\Program Files (x86)\EWA net\database\TransBase EWA\tbmux32.exe
O23 - Service: EWA net DB EPC - Transaction Software, D 81829 Munich - C:\Program Files (x86)\EWA net\database\TransBase EPC\tbmux32.exe
O23 - Service: EWA net DB WIS - Transaction Software, D 81829 Munich - C:\Program Files (x86)\EWA net\database\TransBase WIS\tbmux32.exe
O23 - Service: EWA net Server - Alexandria Software Consulting - C:\Program Files (x86)\EWA net\server\bin\tomcat.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
O23 - Service: Process Monitor (LVPrcS64) - Logitech Inc. - C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: OracleMTSRecoveryService - Oracle Corporation - D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\omtsreco.exe
O23 - Service: OracleServiceXE - Oracle Corporation - d:\oraclexe\oraclexe\app\oracle\product\10.2.0\server\bin\ORACLE.EXE
O23 - Service: OracleXEClrAgent - Unknown owner - D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\bin\OraClrAgnt.exe
O23 - Service: OracleXETNSListener - Unknown owner - D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\tnslsnr.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TVEnhance Background Capture Service (TBCS) (TVECapSvc) - Unknown owner - C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
O23 - Service: TVEnhance Task Scheduler (TTS)) (TVESched) - Unknown owner - C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: UpTime Application Server Offline (UpTimeServiceOffline) - UpTime Solutions AB - D:\Program Files (x86)\PROSIS\PROSIS Offline\UpTime Windows Service Offline.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 17854 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x314
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\WinFast\WFDTV\WFWIZ.exe"
"C:\Users\ROMAN\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"
"C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service
"C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe"
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe" -b
"C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe"
"C:\Program Files\WinFast\WFDTV\DTVSchdl.exe"
"C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe"
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
taskeng.exe {A4C9B26A-7C12-4583-B63F-9A9A26C3143D}
"C:\Program Files (x86)\ASUS\TurboV EVO\TurboVHELP.exe"
"C:\Program Files\ASUS\Six Engine\SixEngine.exe" -b
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe"
"C:\Program Files (x86)\Cerberus LLC\Cerberus FTP Server\CerberusGUI.exe" -Service
"C:\Program Files (x86)\Mozilla Firefox 3\firefox.exe"
"C:\ASUS.SYS\config\DVMExportService.exe"
"C:\Program Files (x86)\EWA net\database\TransBase EWA\tbmux32.exe"
"C:\Program Files (x86)\EWA net\database\TransBase EPC\tbmux32.exe"
"C:\Program Files (x86)\EWA net\database\TransBase WIS\tbmux32.exe"
"C:\Program Files (x86)\EWA net\server\bin\tomcat.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe"
"C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe"
"C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe"
"C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe"
"C:\Program Files (x86)\Common Files\Logishrd\LVMVFM\LVPrS64H.exe" -Embedding
"C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sFORDECATDB
d:\oraclexe\oraclexe\app\oracle\product\10.2.0\server\bin\ORACLE.EXE XE
D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\tnslsnr.exe
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\RelevantKnowledge\rlservice.exe" /service
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe"
"C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe"
"D:\Program Files (x86)\PROSIS\PROSIS Offline\UpTime Windows Service Offline.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\EWA net\database\TransBase EWA\tbkern32.exe" -dedi 36076 -inactivity 0
"C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVESched.exe"
WLIDSvcM.exe 4448
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\EWA net\database\TransBase EPC\tbkern32.exe" -dedi 25546 -inactivity 0 -crypt
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe" -boot
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files (x86)\RelevantKnowledge\rlvknlg64.exe" 2212
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
{BD1E55E8-F6C8-4206-93B2-12E019FBD515}
{0C1F5581-E120-4574-8FE8-C5A4B74BD238}
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\msfeedssync.exe sync
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Windows\sysWow64\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-876401281-3636213226-3406816674-10016_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-876401281-3636213226-3406816674-10016 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\FIREFOX STAHOVANI\ROM GALAXY\RSITx64.exe"
taskhost.exe $(Arg0)

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\AutoKMSDaily.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001Core1cc7c62fc3809f1.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "file://///WL-500GPV2/part0/intra/index.html"
prefs.js - "extensions.enabledItems" - "LogMeInClient@logmein.com:1.0.0.608, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.233 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pages.tvunetworks.com/WebPlayer]
"Description"=TVU Web Player Plugin
"Path"=C:\Windows\system32\TVUAx\npTVUAx.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00]
"Description"=Plug-in to check PlayStation(R)Network Downloader.
"Path"=C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nppl3260;version=12.0.1.669]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprjplug;version=12.0.1.669]
"Description"=RealJukebox Netscape Plugin
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.669]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.669]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.669]
"Description"=12.0.1.669
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\Sony\Media Go\npmediago.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.233 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_233.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox 3\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox 3\components\
binary.manifest
browsercomps.dll
FlashGet3.xpi
IICAClient.xpt
nsIQTScriptablePlugin.xpt

C:\Program Files (x86)\Mozilla Firefox 3\plugins\
cgpcfg.dll
CgpCore.dll
confmgr.dll
ctxmui.dll
ICAClObj.class
icafile.dll
icalogon.dll
logging.dll
np-mswmp.dll
npdeployJava1.dll
npicaN.dll
nppdf32.dll
nppl3260.dll
nppl3260.xpt
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprjplug.dll
nprpjplug.dll
npwachk.dll
nsjsrealplayerplugin.xpt
QuickTimePlugin.class
sslsdk_b.dll
TcpPServ.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files (x86)\Mozilla Firefox 3\searchplugins\
Cetrumcz_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\
firefox@tvunetworks.com
LogMeInClient@logmein.com
maps@ovi.com
{e4a8a97b-f2ed-450b-b12d-ee082ba24781}

C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\searchplugins\
askcom.xml
searchplugins.event

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2011-10-26 75656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-03-26 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-10-26 414416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33}]
VMN Toolbar - C:\PROGRA~2\VMNTOO~1\VMNTOO~1.DLL [2006-11-17 2533376]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83B80A9C-D91A-4F22-8DCF-EA7204039F79}]
NXIECatcher Class - C:\Program Files (x86)\Xi\NetXfer\NXIEHelper.dll [2010-11-07 49152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A44CBB0B-C77D-4BF5-87CC-B4EE79AD1B7E}]
SnapFlash Class - C:\Program Files (x86)\Common Files\justDo\Jd2002.dll [2002-12-03 143360]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0}]
FlashGetBHO - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll [2010-12-16 144944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2008-12-30 98304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3}
{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - VMN Toolbar - C:\PROGRA~2\VMNTOO~1\VMNTOO~1.DLL [2006-11-17 2533376]
{C16CBAAC-A75C-4DB5-A0DD-CDF5CAFCDD3A} - NetXfer - C:\Program Files (x86)\Xi\NetXfer\NXToolBar.dll [2010-11-07 57344]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"LogMeIn GUI"=C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [2010-01-27 57928]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"WinFast Schedule"=C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2010-06-09 2920448]
"Google Update"=C:\Users\ROMAN\AppData\Local\Google\Update\GoogleUpdate.exe [2011-01-25 136176]
""= []
"Facebook Update"=C:\Users\ROMAN\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-02-09 137536]
"supertintin_skype"= []
"KiesHelper"=C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe [2012-04-04 954256]
"KiesPDLR"=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2012-04-04 21392]
"3956FF94043D7A12E2C293FB22726B785385C057._service_run"=C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\chrome.exe [2012-02-15 1049072]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-07-24 2245120]
"TurboV EVO"=C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe [2009-09-10 7322624]
"iTraffic Monitor"=C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe [2009-04-22 942080]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2010-06-09 101888]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"AppleSyncNotifier"=C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-09-27 59240]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2011-10-24 421888]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-03-27 37296]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-02 843712]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2012-04-04 3521424]
"googletalk"=C:\Program Files (x86)\Google\Google Talk\googletalk.exe [2007-01-01 3739648]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma Loader.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
AVerQuick.lnk - C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe

C:\Users\ROMAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Startup.event

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-03-21 249344]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe"="C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3"
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\FlashGet.exe"="C:\Program Files (x86)\FlashGet Network\FlashGet universal\FlashGet.exe:*:Enabled:Flashget2"
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdate.exe"="C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdate.exe:*:Enabled:FGLiveUpdate"
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdateEx.exe"="C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdateEx.exe:*:Enabled:FGLiveUpdateEx"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcod64.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2012-04-24 23:14:42 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2012-04-24 23:14:42 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2012-04-24 23:08:42 ----D---- C:\Windows\SYSWOW64\System32
2012-04-14 21:18:19 ----A---- C:\task29.exe
2012-04-14 21:18:19 ----A---- C:\RUUResource.dll
2012-04-14 21:18:19 ----A---- C:\RUUGetInfo.exe
2012-04-14 21:18:19 ----A---- C:\rapitool.exe
2012-04-14 21:18:19 ----A---- C:\EnterBootloader.exe
2012-04-11 23:32:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-04-11 23:32:09 ----A---- C:\Windows\system32\mshtmled.dll
2012-04-11 23:32:09 ----A---- C:\Windows\system32\iertutil.dll
2012-04-11 23:32:08 ----A---- C:\Windows\SYSWOW64\url.dll
2012-04-11 23:32:08 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-04-11 23:32:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-04-11 23:32:08 ----A---- C:\Windows\system32\url.dll
2012-04-11 23:32:08 ----A---- C:\Windows\system32\jscript9.dll
2012-04-11 23:32:08 ----A---- C:\Windows\system32\ieui.dll
2012-04-11 23:32:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-04-11 23:32:07 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-04-11 23:32:07 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-04-11 23:32:07 ----A---- C:\Windows\system32\jscript.dll
2012-04-11 23:32:06 ----A---- C:\Windows\system32\urlmon.dll
2012-04-11 23:32:06 ----A---- C:\Windows\system32\jsproxy.dll
2012-04-11 23:32:05 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-04-11 23:32:05 ----A---- C:\Windows\system32\wininet.dll
2012-04-11 23:32:04 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-04-11 23:32:04 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-04-11 23:32:03 ----A---- C:\Windows\system32\mshtml.dll
2012-04-11 23:32:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-04-11 23:32:01 ----A---- C:\Windows\system32\ieframe.dll
2012-04-11 23:31:50 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-04-11 23:31:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-04-11 23:31:49 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-04-11 23:24:37 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2012-04-11 23:24:37 ----A---- C:\Windows\system32\imagehlp.dll
2012-04-11 23:24:37 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-04-11 23:24:36 ----A---- C:\Windows\SYSWOW64\wmi.dll
2012-04-11 23:24:36 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-04-11 23:24:36 ----A---- C:\Windows\system32\wmi.dll
2012-04-11 23:24:36 ----A---- C:\Windows\system32\wintrust.dll
2012-04-04 19:23:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2012-04-04 19:14:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

======List of files/folders modified in the last 1 month======

2012-05-02 09:07:04 ----D---- C:\Windows\Prefetch
2012-05-02 09:07:00 ----D---- C:\Program Files\trend micro
2012-05-02 08:59:22 ----D---- C:\Program Files (x86)\RelevantKnowledge
2012-05-02 08:59:21 ----D---- C:\Windows\system32\config
2012-05-02 08:58:51 ----D---- C:\Windows\system32\Tasks
2012-05-02 08:58:49 ----D---- C:\Windows\Temp
2012-05-02 08:58:31 ----D---- C:\Windows\Tasks
2012-05-02 08:58:13 ----AD---- C:\Windows
2012-05-02 08:58:13 ----A---- C:\Windows\KMSEmulator.exe
2012-05-02 08:56:19 ----D---- C:\Windows\system32\logishrd
2012-05-02 08:56:18 ----D---- C:\Windows\SYSWOW64\logishrd
2012-05-02 08:56:17 ----D---- C:\ProgramData\LogMeIn
2012-05-02 08:55:32 ----D---- C:\Windows\system32\FxsTmp
2012-05-02 08:53:51 ----A---- C:\Windows\SYSWOW64\DTVWizard_LOG.txt
2012-05-01 17:47:29 ----SHD---- C:\System Volume Information
2012-04-25 22:23:24 ----D---- C:\Windows\system32\catroot
2012-04-25 14:19:07 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2012-04-24 23:25:03 ----D---- C:\Program Files (x86)\Mozilla Firefox 3
2012-04-24 23:17:40 ----D---- C:\Windows\system32\DriverStore
2012-04-24 23:16:54 ----D---- C:\Windows\system32\drivers
2012-04-24 23:15:42 ----D---- C:\Windows\inf
2012-04-24 23:14:32 ----D---- C:\Windows\system32\catroot2
2012-04-24 23:08:42 ----D---- C:\Windows\SysWOW64
2012-04-24 22:37:47 ----D---- C:\FIREFOX STAHOVANI
2012-04-17 23:09:50 ----SHD---- C:\Windows\Installer
2012-04-17 22:33:55 ----D---- C:\Users\ROMAN\AppData\Roaming\Winamp
2012-04-17 22:24:31 ----D---- C:\Windows\System32
2012-04-17 22:24:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-15 21:51:51 ----D---- C:\Users\ROMAN\AppData\Roaming\Adobe
2012-04-15 21:51:51 ----D---- C:\ProgramData\Adobe
2012-04-12 10:06:07 ----RSD---- C:\Windows\assembly
2012-04-12 10:06:07 ----D---- C:\Windows\Microsoft.NET
2012-04-12 09:45:25 ----D---- C:\Windows\winsxs
2012-04-12 09:39:49 ----D---- C:\Program Files\Internet Explorer
2012-04-12 09:39:49 ----D---- C:\Program Files (x86)\Internet Explorer
2012-04-12 09:39:48 ----D---- C:\Windows\SYSWOW64\migration
2012-04-12 09:39:46 ----D---- C:\Windows\system32\migration
2012-04-11 23:33:19 ----D---- C:\ProgramData\Microsoft Help
2012-04-11 23:33:06 ----A---- C:\Windows\win.ini
2012-04-11 23:24:55 ----D---- C:\Windows\debug
2012-04-11 23:24:53 ----A---- C:\Windows\system32\MRT.exe
2012-04-07 22:37:14 ----D---- C:\Program Files (x86)\Opera
2012-04-05 19:50:37 ----D---- C:\Windows\Logs
2012-04-05 19:47:26 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-04-05 19:45:51 ----D---- C:\Users\ROMAN\AppData\Roaming\DAEMON Tools Lite
2012-04-04 22:26:34 ----D---- C:\Users\ROMAN\AppData\Roaming\Skype
2012-04-04 21:37:22 ----D---- C:\Users\ROMAN\AppData\Roaming\Media Player Classic

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 EUBAKUP;EUBAKUP; C:\Windows\sysWow64\drivers\eubakup.sys [2009-12-02 30600]
R0 EUFS;EUFS; C:\Windows\sysWow64\drivers\eufs.sys [2009-12-02 26504]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2009-07-18 109480]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-03-20 564792]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-04-06 13368]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-07-04 31064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-07-04 600920]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-07-04 288088]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-07-04 45400]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2009-02-17 31400]
R1 NEOFLTR_650_16339;Juniper Networks TDI Filter Driver (NEOFLTR_650_16339); \??\C:\Windows\system32\Drivers\NEOFLTR_650_16339.SYS [2010-08-03 100472]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-07-04 22360]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-07-04 64856]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [2010-01-27 15928]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\Windows\system32\drivers\LMIRfsDriver.sys [2010-01-27 72216]
R2 npf;npf; \??\C:\Windows\system32\drivers\npf.sys [2007-11-06 40464]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-08-04 7451648]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-08-04 268288]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2010-07-15 116240]
R3 ElbyCDFL;ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [2007-02-16 40648]
R3 EuDisk;EASEUS Disk Enumerator; C:\Windows\system32\DRIVERS\EuDisk.sys [2009-12-02 137608]
R3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys [2010-01-27 11552]
R3 LVPr2M64;Logitech LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304]
R3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2010-07-27 339040]
R3 LVUVC64;Logitech Webcam C160(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2010-07-27 6465632]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MTSBDA;TechniSat SkyStar HD2; C:\Windows\System32\Drivers\MtsBda.sys [2009-07-13 344592]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-03-21 452200]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-07-10 1222144]
S2 DgiVecp;DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [2005-09-09 47104]
S3 61883;61883 Unit Device; C:\Windows\system32\DRIVERS\61883.sys [2009-07-14 60288]
S3 ATICDSDr;ATICDSDr; \??\C:\Users\ROMAN\AppData\Local\Temp\ATICDSDr.sys []
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-08-31 120336]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-08-04 7451648]
S3 Avc;Zařízení AVC; C:\Windows\system32\DRIVERS\avc.sys [2009-07-14 48768]
S3 AVerAF35;AVerMedia A835 USB DVB-T; C:\Windows\System32\Drivers\AVerAF35.sys [2009-10-19 511232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-02-24 99384]
S3 dgderdrv;dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys []
S3 EUDSKACS;EUDSKACS; \??\C:\Windows\sysWow64\drivers\eudskacs.sys [2009-12-02 17800]
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 lvpopf64;Logitech POP Suppression Filter; C:\Windows\system32\DRIVERS\lvpopf64.sys [2010-07-27 271712]
S3 LVPr2Mon;LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304]
S3 MSDV;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2009-07-14 61440]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-11-01 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-11-01 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-02-24 203320]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 ULCDRHlp;ULCDRHlp; C:\Windows\System32\Drivers\ULCDRHlp.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-11-01 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-07-14 19968]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-11-01 9216]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S4 LMIRfsClientNP;LMIRfsClientNP; C:\Windows\system32\drivers\LMIRfsClientNP.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-08-04 203264]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [2009-08-19 90112]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-07-04 42184]
R2 AVerRemote;AVerRemote; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe [2009-04-08 344064]
R2 AVerScheduleService;AVerScheduleService; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe [2009-10-09 389120]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 Cerberus FTP Server;Cerberus FTP Server; C:\Program Files (x86)\Cerberus LLC\Cerberus FTP Server\CerberusGUI.exe [2011-05-17 5376832]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DvmMDES;DeviceVM Meta Data Export Service; C:\ASUS.SYS\config\DVMExportService.exe [2009-07-17 319488]
R2 EWA net DB Core;EWA net DB Core; C:\Program Files (x86)\EWA net\database\TransBase EWA\tbmux32.exe [2008-04-04 417792]
R2 EWA net DB EPC;EWA net DB EPC; C:\Program Files (x86)\EWA net\database\TransBase EPC\tbmux32.exe [2007-11-27 417792]
R2 EWA net DB WIS;EWA net DB WIS; C:\Program Files (x86)\EWA net\database\TransBase WIS\tbmux32.exe [2008-04-04 417792]
R2 EWA net Server;EWA net Server; C:\Program Files (x86)\EWA net\server\bin\tomcat.exe [2003-07-31 65536]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [2012-02-07 375176]
R2 LMIMaint;LogMeIn Maintenance Service; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [2012-02-07 147336]
R2 LogMeIn;LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [2010-11-08 407424]
R2 LVPrcS64;Process Monitor; C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe [2010-05-07 197976]
R2 MSSQL$FORDECATDB;SQL Server (FORDECATDB); C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-02-18 462632]
R2 OracleServiceXE;OracleServiceXE; d:\oraclexe\oraclexe\app\oracle\product\10.2.0\server\bin\ORACLE.EXE [2006-02-02 59064320]
R2 OracleXETNSListener;OracleXETNSListener; D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\tnslsnr.exe [2006-02-02 204800]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 RelevantKnowledge;RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [2012-02-23 111632]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2008-10-23 241734]
R2 SQLBrowser;SQL Server Browser; C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2010-12-10 238944]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2010-12-10 153440]
R2 TVECapSvc;TVEnhance Background Capture Service (TBCS); C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [2008-10-23 364635]
R2 TVESched;TVEnhance Task Scheduler (TTS)); C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [2008-10-23 172121]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2009-12-17 53408]
R2 UpTimeServiceOffline;UpTime Application Server Offline; D:\Program Files (x86)\PROSIS\PROSIS Offline\UpTime Windows Service Offline.exe [2011-02-02 38400]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-01-04 718888]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-14 253088]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-10-09 1431888]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-04-24 129976]
S3 OracleMTSRecoveryService;OracleMTSRecoveryService; D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\omtsreco.exe [2006-02-02 57616]
S3 OracleXEClrAgent;OracleXEClrAgent; D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\bin\OraClrAgnt.exe [2006-02-02 45056]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-28 136176]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-28 136176]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 OracleJobSchedulerXE;OracleJobSchedulerXE; d:\oraclexe\oraclexe\app\oracle\product\10.2.0\server\Bin\extjob.exe [2006-02-02 102400]
S4 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

-----------------EOF-----------------

Uživatelský avatar
Danstahr
Přítel fóra
Přítel fóra
Příspěvky: 1069
Registrován: 28 říj 2006 20:23
Bydliště: Londýn
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - pomalý náběh

#2 Příspěvek od Danstahr »

Dobrý den!

:arrow: Odinstalujte toolbary, které nepoužíváte

:arrow: Stáhněte OTL z tohoto odkazu a uložte jej na Plochu.
  • Pokud používáte Win Vista či Win7, klikni na OTL pravým myšítkem a dej Run As Administrator či Spustit jako správce.
  • Pokud používáte 64bitový OS, zkontrolujte, zda-li je zaškrtnutý čtvereček Pro 64 bitové OS. Pokud ne, zaškrtněte jej.
  • Zaškrtněte okénko Pro všechny uživatele.
  • Zaškrtněte okénko Kontrola na havěť "LOP".
  • Zaškrtněte okénko Kontrola na havěť "Purity".
  • Stáři souborů změňte z 30 dnů na 7 dnů!!
  • Do spodního okénka Vlastní skenování/opravy vložte tento script :

Kód: Vybrat vše

CREATERESTOREPOINT

netsvc
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe
%userprofile%\Plocha\*.*
%userprofile%\Desktop\*.*
%ALLUSERSPROFILE%\Plocha\*.*
%ALLUSERSPROFILE%\Desktop\*.*
*crack* /s
*keygen* /s
*loader* /s
*RemoveWAT* /s
*minodlogin* /s
*tnod* /s
*TemDono* /s
*AutoKMS* /s
*KMSEmulator* /s
*activator* /s
*serial* /s
*w7lxe* /s
*AutoRearm* /s

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /s
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run /s

%SystemDrive%\PhysicalMBR.bin /md5
  • Klikněte na tlačítko [Prohledat].
  • Po dokončení skenu se objeví logy OTL.txt a Extras.txt, oba mi sem vložte.
  • Pokud se nevejdou do jednoho, rozdělte je prosím do více příspěvků.
šablonka © Mc_Murphy
Koupím trochu času, cenu respektuji.

romcolahvac
Návštěvník
Návštěvník
Příspěvky: 186
Registrován: 23 pro 2008 00:30

Re: Prosím o kontrolu logu - pomalý náběh

#3 Příspěvek od romcolahvac »

Děkuji za odpověď, tady jsou výsledky:

EXTRAS.TXT

OTL Extras logfile created on: 2.5.2012 10:54:21 - Run 1
OTL by OldTimer - Version 3.2.42.2 Folder = C:\Users\ROMAN\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 1,11 Gb Available Physical Memory | 27,67% Memory free
7,99 Gb Paging File | 4,30 Gb Available in Paging File | 53,75% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 186,21 Gb Total Space | 11,39 Gb Free Space | 6,12% Space Free | Partition Type: NTFS
Drive D: | 596,16 Gb Total Space | 54,31 Gb Free Space | 9,11% Space Free | Partition Type: NTFS
Drive I: | 11,07 Gb Total Space | 0,24 Gb Free Space | 2,21% Space Free | Partition Type: FAT32
Drive J: | 30,91 Gb Total Space | 4,69 Gb Free Space | 15,17% Space Free | Partition Type: FAT32

Computer Name: ROMAN-PC | User Name: ROMAN | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [RapidShareManagerEmail] -- C:\Program Files (x86)\RapidShareManager\RapidShareManager.exe -mailto "%1" (RapidShare AG)
Directory [RapidShareManagerUpload] -- C:\Program Files (x86)\RapidShareManager\RapidShareManager.exe -sendto "%1" (RapidShare AG)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [RapidShareManagerEmail] -- C:\Program Files (x86)\RapidShareManager\RapidShareManager.exe -mailto "%1" (RapidShare AG)
Directory [RapidShareManagerUpload] -- C:\Program Files (x86)\RapidShareManager\RapidShareManager.exe -sendto "%1" (RapidShare AG)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited)
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\FlashGet.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet universal\FlashGet.exe:*:Enabled:Flashget2
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdate.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdate.exe:*:Enabled:FGLiveUpdate
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdateEx.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdateEx.exe:*:Enabled:FGLiveUpdateEx
"C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited)
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\FlashGet.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet universal\FlashGet.exe:*:Enabled:Flashget2
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdate.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdate.exe:*:Enabled:FGLiveUpdate
"C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdateEx.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet universal\LiveUpdateEx.exe:*:Enabled:FGLiveUpdateEx


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{000F4B94-E17F-4BCD-A636-E7BFFE45C682}" = lport=26675 | protocol=6 | dir=in | name=@%systemroot%\windowsmobile\wmdcbase.exe,-4006 |
"{05F8CC9A-56A8-4913-8DE6-CEBE3EFC1426}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{065FB76D-A75C-418B-AF3B-3EF190042BBB}" = lport=5678 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe |
"{16DEC96A-26F8-4973-9167-CE9D989D13D3}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1A68F1FA-4131-472F-B339-9910D83D0F7E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{207041FC-74A3-413A-9CE3-28926343D4A4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{227AEC50-436B-4577-B679-46C9B2F9057A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{2FE2EA8E-9869-40CC-9426-8C417DA0E8CD}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{340507A0-ECE1-4C42-AE75-0F39FA3F9281}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{37DB9CB3-1EBB-46B3-B23E-09AEDF153BEE}" = lport=5678 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe |
"{450633AD-8C94-45C2-8FC3-7AC853935557}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{4BDD6E60-7E24-406C-93B6-9CB18FEC4B9E}" = rport=445 | protocol=6 | dir=out | app=system |
"{59A36C34-0CC0-4171-83B8-CC7A430988B2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{5F780809-6D5E-4376-B644-283F024B01AD}" = lport=26675 | protocol=6 | dir=in | name=@%systemroot%\windowsmobile\wmdcbase.exe,-4006 |
"{6416A221-95DE-4E08-BB56-AA37D8AE4009}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{6D4162B0-8132-4ACE-8629-B162F9FB32AA}" = lport=10243 | protocol=6 | dir=in | app=system |
"{70A1860C-7CF8-4570-BC7A-6498872CA397}" = lport=5721 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{841B9DD0-3A0F-439F-AEC5-5AAB668376B2}" = lport=5721 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{87EEAC9A-2D12-4AC4-ADF8-17AAB241A62A}" = lport=26675 | protocol=6 | dir=in | name=@%systemroot%\windowsmobile\wmdcbase.exe,-4006 |
"{8AC55C90-BAB7-49E6-8148-D3FA512CC59A}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{94C19848-48B3-4098-996B-0FE51EED71E9}" = lport=2869 | protocol=6 | dir=in | app=system |
"{A0CB505D-DB41-469E-9354-4A4592554CC1}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{A1319436-448B-4477-B53D-3848C668E7E9}" = rport=139 | protocol=6 | dir=out | app=system |
"{A6ED209E-10F9-43BD-B8EB-DC6D8A8BEDDD}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A71C21B0-919C-43FC-91F3-D1ABD15CDDA5}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{ACA5BB89-FB32-490A-94CD-10549F8D93AD}" = lport=137 | protocol=17 | dir=in | app=system |
"{BFC7D114-DB27-4CF2-8F22-A649AE00417C}" = rport=138 | protocol=17 | dir=out | app=system |
"{C5602EF6-258D-4735-9DE5-61CCFE064578}" = lport=445 | protocol=6 | dir=in | app=system |
"{CB99BADC-C7C0-4695-A61F-DE9E46A420CB}" = rport=137 | protocol=17 | dir=out | app=system |
"{CBB8E838-028F-455A-9B17-63508789249D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D6541AAB-7B71-46A8-84D1-0627625B6E71}" = lport=5678 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe |
"{D94A0788-A7A1-4A34-8606-5295875F3CD6}" = rport=10243 | protocol=6 | dir=out | app=system |
"{DD9253E9-D918-413F-9F82-A75E5C9C2432}" = lport=5721 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{DE6F477A-C2B2-478A-91CE-8A94B8797C00}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E2A2C1B9-AE07-43B7-BB6A-949E4271BC58}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{E3B60445-42E6-446F-AB96-2AB37C980A03}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{E55D1A06-B55C-44AF-B86D-2A1A5AA38087}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{EEDE51E5-00C5-412B-8FEA-F067AC08A9EB}" = lport=139 | protocol=6 | dir=in | app=system |
"{F06E9221-3F39-4116-9039-0F26C9949CC7}" = lport=999 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe |
"{F7C22146-635E-4294-8A61-82EEBBD232C6}" = lport=138 | protocol=17 | dir=in | app=system |
"{F8812CD1-F6B5-4534-B28D-01073D827534}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{FE366ABA-A72A-4BE3-B3D2-6B55D762CF21}" = lport=999 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe |
"{FFA20A68-CE0A-4AD2-B0EB-23C9DD44608C}" = lport=999 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02625F77-F702-4FBD-9685-1964328BFE5B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{027C6367-8620-4BD8-9300-B47DA357ABCA}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{0321468A-60CE-4A48-A85F-B12F4FC59115}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe |
"{03FE3F9F-0F3E-4321-858F-9EA5B27FB0CE}" = dir=in | app=c:\program files (x86)\cyberlink\powercinema\powercinema.exe |
"{04576428-9BD5-409D-979D-4426E53B64BF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{081FBF33-8B11-45F6-B3B7-10A2B86D83AB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{0866E21A-1939-423D-AE1D-19ACDE70E9BE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{0A246B7D-ED45-4C20-9356-0E8EB523C6F3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{0EF71B77-566C-4888-A12C-C0986D255561}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{11CB015D-B8AF-442B-9E08-0DEDA0C2A1AF}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{132BD777-3CB4-498E-A5C9-26C53FD5E24F}" = protocol=6 | dir=in | app=c:\program files (x86)\xi\netxfer\nettransport.exe |
"{15911C3A-1366-4ADD-A529-A6F10B75F653}" = protocol=17 | dir=in | app=d:\program files (x86)\vencouver\vancouver.exe |
"{1762BDA8-F6C5-40F5-A720-0A395B96B6F6}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\rm.exe |
"{182DE968-D8DE-4BC6-9D34-BEF2CCCD68FD}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{1A019C0C-F568-4C1F-B496-ACC93B90026C}" = protocol=17 | dir=in | app=c:\program files (x86)\google\google talk\googletalk.exe |
"{1BAABEBC-2148-424F-9C46-BCCFEF7A19A6}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe |
"{1ED84BED-B1FD-4ABB-8166-75CF58D651D6}" = protocol=17 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tvenhance.exe |
"{21E7DE38-1B9E-4DD0-8AFA-418C96177F93}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{2207B857-F1FA-430F-9666-AC38DF41201A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{22C7DB67-46AF-4C39-A058-C5D7873BF3E8}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{22E7B9BB-AFD2-48D0-94A7-BC08DDA37B9E}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{254D4912-B8C6-4989-B2F0-0C2B83DEABAC}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{25FDDC46-DD1E-44B3-A228-189C0BBAD9FF}" = dir=in | app=c:\program files (x86)\nokia\nokia suite\nokiasuite.exe |
"{28D853EB-24CC-497F-B2DD-2290668E1D95}" = dir=in | app=c:\program files (x86)\cyberlink\playmovie\playmovie.exe |
"{2A24E187-B70F-4EF5-9D09-0BA0149D0494}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{2A2A7F77-9647-4D34-9E7F-652869C5FE5D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{2DC03C62-A748-43F8-B2D4-A2697A07CC3D}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\studio.exe |
"{2E2C1643-C9AD-4C34-B537-0CEA1C809F64}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe |
"{2EAEADDB-C699-4C05-85EF-E53FC32861B1}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{30FA9824-3C9C-4FB8-902E-3F193234065F}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe |
"{3624DE84-2E9F-4153-B97B-62E5CD2CA0D4}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{3823D4D4-39AB-4C5C-8EA1-F6DD353F5837}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{38996A16-C4D4-4F31-8C0E-CC5DB19409EB}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{39C94B93-41DB-4968-AAC3-09515E7AB739}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{3B93878F-E90B-4561-A89C-14596373938D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{3D5A2722-1B00-4D1A-81E1-6831247EC3D2}" = protocol=6 | dir=out | app=system |
"{3F668D4E-3558-436C-AD3E-3793698DAC58}" = dir=in | app=c:\program files (x86)\cyberlink\playmovie\pmvservice.exe |
"{4176C25F-0777-420E-9D98-DC25D360BF53}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{41B13168-3CF9-4956-BA7B-4F5F6B5CF1C8}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{43776913-D83E-46CF-8764-809D59AF9D28}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{45C78FA5-8A0F-4978-8B98-B73609D58DBF}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{4687DF39-030D-413B-969D-D45A4C571264}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{47FE9D76-DC53-4F06-980F-D382E34F4818}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{4D2D5A43-3600-4729-9FEA-8E3BDB81DBB6}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{4E288141-96B4-4970-B324-F456C66358B7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5059A886-B1C2-4F40-B931-09BC928E8923}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{5558E1BD-CADA-432C-9C35-80B6D007519D}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{563F04A6-995C-4F1F-8C7F-8B27D0F2BA5F}" = protocol=6 | dir=in | app=d:\program files (x86)\vencouver\vancouver.exe |
"{580D9482-64A4-4B84-AAA7-75D7F2587E88}" = protocol=17 | dir=in | app=c:\program files (x86)\cerberus llc\cerberus ftp server\cerberusgui.exe |
"{599B83AE-81B8-4258-941B-EB19FC523D34}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{5B74AEE0-4951-417E-A808-5797FDFDDD87}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{5C639854-7A81-4CEA-87BE-009B6AE27B32}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{5E4AB817-F2BE-411B-AC85-8BFA19A70974}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{5FD3BD73-0606-406B-B90C-AB44F5263D28}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{5FE54592-5A97-4D98-89F8-8DCCF6087668}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{63263100-F143-466C-BDD6-D6DE11FECC0F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{641FEFC8-505B-4AF0-B410-1FA8F9C0A033}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{6459D729-394F-48C0-BA67-9F8E5B5E0AC9}" = protocol=17 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tveservice.exe |
"{660C9C15-9AA0-4D36-8401-BCE1C5152554}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{687E96FA-0FB1-4FF0-8118-CE5A164A2DB3}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{69D535CD-7004-42A0-BB22-AF198BC9C2E1}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{6A617E44-EF0A-4EF3-AC99-C1A8EB19CE66}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{6D7639BA-227D-4209-9058-12700708C6C1}" = protocol=6 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tveservice.exe |
"{6DE9A6D3-05E5-4698-A814-D4023E2088C5}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe |
"{6EE05082-C906-4FAD-9B06-53FEE4FCE82E}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\umi.exe |
"{71E79FCD-3F32-49A3-9160-14D81BE485DB}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{72C3AF80-B455-404F-94BF-E7A312DFC3E1}" = dir=in | app=c:\users\roman\appdata\local\facebook\video\skype\facebookvideocalling.exe |
"{759AD710-7020-46EB-B3EA-7D6924D96BD3}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{75D5C0C2-E2F5-4DDE-8FBD-2228113E95FA}" = protocol=17 | dir=in | app=c:\program files (x86)\relevantknowledge\rlvknlg.exe |
"{7625291D-4176-4B8D-ADEB-089E7C21C838}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{7638A9F1-0BC8-4CC0-909F-375622447B12}" = protocol=17 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tveservice.exe |
"{7B353F75-73B6-40D4-A717-7DF34691E546}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe |
"{7C03980E-5977-4AF1-8610-E347B87993AD}" = protocol=17 | dir=in | app=c:\program files (x86)\xi\netxfer\nettransport.exe |
"{7C79B442-3347-42AB-92B2-AB6DA398457F}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{7E906547-D5F0-4892-87B6-AA14C7E695D3}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe |
"{7FBE36AF-61BE-42CD-9428-2E98130DE637}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\umi.exe |
"{80EC9F0F-EE37-4E23-8329-EDDB402D51F4}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{8394685F-168F-466E-93B8-1D7D376C8C9B}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{8405BDB7-4754-462E-98AA-63E12FCA8CE0}" = protocol=17 | dir=in | app=c:\program files (x86)\xi\netxfer\ftptransport.exe |
"{84CEBBD4-4410-4C9F-AE01-1247F7757A47}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{885CB567-D407-44CE-945E-64382797D64B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{88B8D588-53B6-4D47-A551-969C53ED5E4B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8978F670-3800-4CCB-91C8-6CEBE0B2A65D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{8B71EC11-D2A9-43E3-8187-538A8F4B735F}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{8B9DDA38-61C8-4427-A989-0381431B0AF0}" = protocol=6 | dir=in | app=c:\program files (x86)\relevantknowledge\rlvknlg.exe |
"{8C83B8E2-761F-4246-9B79-76C0D89AFC68}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\rm.exe |
"{8D452E9F-6599-40A0-A5E3-CBB3C20F2D49}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{8D93F54F-0A80-40F0-84EA-FC8A62D68BB0}" = protocol=6 | dir=in | app=c:\program files (x86)\xi\netxfer\ftptransport.exe |
"{903B83CA-249C-4BAC-8CB1-B8EBCA62253F}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{90C8554B-0168-4CB0-8F25-F48E1BDF211F}" = protocol=6 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tvenhance.exe |
"{9369BFFA-FE18-4C98-B14F-83F0147B67E8}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{984273E0-4867-4802-9E6E-D0BDE23D6F62}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{9B8FAFE5-2BD3-4617-90EA-33F6BFB65A50}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{9DD5A98A-3FA4-4160-98D4-3B093D641BC2}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\studio.exe |
"{9EB1E7C5-7231-43DD-AED2-79431C88AD13}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{9F8DDEDE-0158-4AD7-984D-4058C1A9D05B}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe |
"{9FB78E4B-3E4A-45A4-914B-EC87C04C5FF3}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{A05E2997-38BB-4B16-AE90-1472F2BA9E99}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{A12F0DF2-D090-4E15-A527-E758BC941684}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A172951A-6288-4AB3-8B62-90E92ABD3D42}" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"{A3C1A791-F0AF-4A79-8EE7-FDC2BD952005}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{A5E35FC0-DDF9-409C-A55E-27694BE3DE1E}" = protocol=6 | dir=in | app=c:\program files (x86)\cerberus llc\cerberus ftp server\cerberusgui.exe |
"{A5F53458-6658-446D-9457-CF9C1BFB3EC9}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{ABA12CC7-C650-4734-96F7-5EB60B8A36DE}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{ABABF6E8-E522-45E3-91AC-34ABF4B640D6}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{AC7B53AB-2C9D-4C77-8F31-68C6C79AD60E}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{AE64F2E2-9796-455C-8C65-129831F0CCE7}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{B26D9196-88AE-4273-85C4-6705C5D55B0F}" = protocol=6 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tveservice.exe |
"{B6D7EB3A-EC39-4295-8634-6B91C62E93E9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{BA7C65DF-D6F6-41E8-87B1-DF084A04BF26}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{BC9DFF04-40AA-4D1F-B211-1DC457CB6915}" = protocol=6 | dir=in | app=c:\program files (x86)\google\google talk\googletalk.exe |
"{BD0304B9-C6FB-43CA-A9AE-8A1C6DE4CBD4}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C065AF0A-F5F4-49E5-82C4-D8BCBDD863A1}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{C1FD5BA1-B1AB-4F32-AD74-0CE4656B2493}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{C5BEDEEB-0A7D-4D80-92E0-CF2AEFAD8C1B}" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"{C843F70D-B6F7-4258-B753-DD2BB536F1D2}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{CB56768E-1B46-434E-8035-45959E4CD820}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{D0DD62C0-FCC8-42C1-8925-17294F09F56D}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{D4428187-A153-44AC-BD97-139179445725}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D4E28632-F0DE-4A97-B042-1F33C56EFC15}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{D900D87C-AB47-4B4E-A313-D9B59E547EAE}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{D94AABE0-5A44-49BD-A474-8BD3EA7AE287}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{D965177D-80F2-4F56-B7C4-ECFD628EB1A9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{D976B1AE-3EE0-4B5F-B9F1-B70DF7C409D1}" = protocol=6 | dir=in | app=c:\program files (x86)\relevantknowledge\rlvknlg.exe |
"{DA9923E3-D6B4-4958-9229-F0A6A7E04746}" = protocol=17 | dir=in | app=c:\program files (x86)\relevantknowledge\rlvknlg.exe |
"{E151885A-A170-4001-BF38-6B58EF33492D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E4B97DF4-AC2A-4FDE-80AE-899A0215C4F6}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E639AD44-8F7D-4786-8219-CC9226A094B1}" = protocol=6 | dir=in | app=c:\program files (x86)\cerberus llc\cerberus ftp server\cerberusgui.exe |
"{E6B256C6-EADB-4707-B5B3-DCD570998224}" = dir=in | app=c:\program files (x86)\nokia\nokia suite\nokiasuite.exe |
"{E970279D-437E-48C5-9570-6B2E0A43A2E8}" = protocol=17 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tvenhance.exe |
"{EA44273A-374B-4ED2-8C35-3AAC325EAAAE}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{EC6049B4-62A3-4B3B-9DEA-AE9FB446D1E8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{F19D7E17-F451-44A5-B06F-F849706FC2BB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{F653F40B-ADF2-4B1C-A492-9269C3D64438}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{F68C7251-66A0-4C1C-801D-006AB8E8FC3A}" = protocol=6 | dir=in | app=c:\program files (x86)\cyberlink\tv enhance\tvenhance.exe |
"{F7A393C7-03BE-49BB-8E63-DF92D7C6DCED}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{F7B25813-634A-450A-8B40-2A3160B58822}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{F7C69DA5-0A14-4C5E-A6C7-22D00EB1EEE6}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{F7F89BA8-AE6D-4353-9465-F48F5C6D0F35}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{F80AF98B-B72F-4EFE-B4B8-32F7A4385E98}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{F815FC9A-D1E2-42D3-8B58-6BBF14443742}" = protocol=17 | dir=in | app=c:\program files (x86)\cerberus llc\cerberus ftp server\cerberusgui.exe |
"{F92633CF-F84D-4985-9397-B36C7E6642BA}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{FAAC5A81-757E-4E0B-9B48-3134A2B28831}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{FBE0B7AA-8B63-4347-937C-BBF3D52E229D}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FC8B1DB5-12D9-4C59-8745-A846F5B44FDD}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{1DE5CFAF-8C97-454A-9513-7C30DEBED36D}C:\program files\winfast\wfdtv\liveupdate\liveupdate.exe" = protocol=6 | dir=in | app=c:\program files\winfast\wfdtv\liveupdate\liveupdate.exe |
"TCP Query User{20225DEA-06DB-4E9F-A17F-C3278DFC9258}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"TCP Query User{2CD2C237-91EE-4DD8-AE57-CBCEFEE0AB86}C:\windows\kmsemulator.exe" = protocol=6 | dir=in | app=c:\windows\kmsemulator.exe |
"TCP Query User{512A4F2B-3550-47D7-8A36-C8C885CB4481}C:\program files (x86)\qip\qip.exe" = protocol=6 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"TCP Query User{5563D962-3AD9-4B31-9CAF-969359A09E33}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe |
"TCP Query User{6A1024B6-D1E6-4E89-A44A-6F70F70DB030}C:\program files (x86)\mozilla firefox 3\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox 3\firefox.exe |
"TCP Query User{715863C4-D566-4B80-B6F8-495ADDF79CDB}C:\program files (x86)\qip\qip.exe" = protocol=6 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"TCP Query User{73EE58D1-1BCC-4762-B4A6-1F874E41CA1A}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe |
"TCP Query User{7AFD4DDE-DB91-4B50-BD37-AC911D4776F3}C:\program files (x86)\pspvc\pspvc (server).exe" = protocol=6 | dir=in | app=c:\program files (x86)\pspvc\pspvc (server).exe |
"TCP Query User{99C1B02F-DEC5-4740-A1ED-7612BFB9DCCB}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe |
"TCP Query User{A44ABE3A-1752-41C4-BE0C-7B33B9C9DBB1}C:\program files (x86)\mozilla firefox 3\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox 3\plugin-container.exe |
"TCP Query User{B83C29D6-4B7F-464C-85D2-3203CD9EE247}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{CE1757F6-E73B-4196-9903-E14AE60485A8}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"TCP Query User{EAD7C436-D3EA-4B63-8D11-5F5AAB30FFBA}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"TCP Query User{EB07C4BE-1C40-448F-A3A8-09A4B22DBA86}D:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe" = protocol=6 | dir=in | app=d:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe |
"TCP Query User{F4090428-772A-4F7F-973F-FF80FDCAD5D1}C:\users\roman\desktop\programy\my mobile\mymobiler\mymobiler.exe" = protocol=6 | dir=in | app=c:\users\roman\desktop\programy\my mobile\mymobiler\mymobiler.exe |
"TCP Query User{F5553C36-0763-442D-891D-5821C55CF1D4}F:\setup\jre\bin\javaw.exe" = protocol=6 | dir=in | app=f:\setup\jre\bin\javaw.exe |
"UDP Query User{35AB7420-E99E-435E-9495-402E6925AFBF}C:\program files (x86)\qip\qip.exe" = protocol=17 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"UDP Query User{3A96E8D5-FA53-4328-A960-E579BC318F10}C:\program files\winfast\wfdtv\liveupdate\liveupdate.exe" = protocol=17 | dir=in | app=c:\program files\winfast\wfdtv\liveupdate\liveupdate.exe |
"UDP Query User{45F5F6BB-4B86-46FC-916A-4EA5177FE26C}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe |
"UDP Query User{4ABD5C88-D06C-4ADC-A7C4-91F640B4BC0F}F:\setup\jre\bin\javaw.exe" = protocol=17 | dir=in | app=f:\setup\jre\bin\javaw.exe |
"UDP Query User{4EFA5346-F968-4271-ACCA-2AE0B27E7154}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe |
"UDP Query User{52C75600-D27C-464D-9704-6BCCA3D64699}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"UDP Query User{5FAF7A46-C051-46D6-8C7E-9AD33DEEB3F2}C:\program files (x86)\pspvc\pspvc (server).exe" = protocol=17 | dir=in | app=c:\program files (x86)\pspvc\pspvc (server).exe |
"UDP Query User{6296F36A-10A5-462B-A7EC-3D94E4D3D071}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe |
"UDP Query User{6700D395-CC94-4F6A-ACFD-DC0CA86645C6}C:\users\roman\desktop\programy\my mobile\mymobiler\mymobiler.exe" = protocol=17 | dir=in | app=c:\users\roman\desktop\programy\my mobile\mymobiler\mymobiler.exe |
"UDP Query User{6CCBCF08-400A-440E-9F00-0A2B9E6902B8}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{84754245-81C4-4787-934E-ED5B611A9007}C:\program files (x86)\mozilla firefox 3\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox 3\plugin-container.exe |
"UDP Query User{A48B9F72-48BB-4083-94C4-6FD74B26AD9F}C:\program files (x86)\mozilla firefox 3\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox 3\firefox.exe |
"UDP Query User{A58FDF46-DE4A-49DB-AEE6-991DC8350510}C:\windows\kmsemulator.exe" = protocol=17 | dir=in | app=c:\windows\kmsemulator.exe |
"UDP Query User{B4233646-BBC0-4EFE-B12C-D0F6D979A2FB}C:\program files (x86)\qip\qip.exe" = protocol=17 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"UDP Query User{D10D8977-600F-4BC8-ABCD-2AC335EC415D}D:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe" = protocol=17 | dir=in | app=d:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe |
"UDP Query User{F5BF111C-03EC-4D14-ACA0-6C063ED3904F}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"UDP Query User{F766E726-917B-43B5-A372-075D1647ACC5}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{08347912-0AA5-C85E-BC02-416568E741B4}" = AMD Drag and Drop Transcoding
"{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Prostředí Windows XP Mode
"{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{26A24AE4-039D-4CA4-87B4-2F86417001FF}" = Java(TM) 7 Update 1 (64-bit)
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{5783F2D7-A001-0405-0102-0060B0CE6BBA}" = AutoCAD 2012 - Czech
"{5783F2D7-A001-0405-1102-0060B0CE6BBA}" = AutoCAD 2012 Language Pack - Czech
"{5B5E6281-BF1A-EA70-E567-C92227254011}" = ATI AVIVO64 Codecs
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum zařízení Windows Mobile
"{680EDA59-9266-44B4-949E-0C24F65DFF82}" = Microsoft_VC100_CRT_SP1_x64
"{6DD01FF3-63CE-436B-96DB-61363EAA4EB8}" = MobileMe Control Panel
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{897BE4A7-682B-7375-BBAF-05A44FC2B524}" = ATI Catalyst Install Manager
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2010
"{914C25C6-603C-16C9-BE33-8A09E5632350}" = ccc-utility64
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}" = Microsoft SQL Server Native Client
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B636C9B9-A3F2-4DCE-ADCC-72E095018385}" = Microsoft SQL Server VSS Writer
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240C9}" = WinZip 16.0
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{E552C39C-C70E-464F-9733-8311331BDD90}" = Jazykový balíček modulu plug-in Autodesk Inventor Fusion pro aplikaci AutoCAD 2012
"{EAB3AC1A-68FF-486B-9C6B-E48EBB4B05CC}" = Modul plug-in Autodesk Inventor Fusion pro aplikaci AutoCAD 2012
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F6246243-CF06-4E40-8A37-C3B537695C36}" = Share64
"{FFF5619F-6669-4EC5-A85E-9994F70A9E5D}" = Autodesk Inventor Fusion 2012
"{FFF7F80F-929E-497F-A112-B070DE816128}" = Jazykový balíček Autodesk Inventor Fusion 2012
"1F83630F1D96893C47BCF19B627F1BBA13E0DAF7" = Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. (OlyFirCam) OlyFirCam (06/21/2007 2.2.0.0)
"2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB" = Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0)
"6DA48AFDE796708D5A4C9121A83E7617A63A9A15" = Balíček ovladače systému Windows - Nokia Modem (10/07/2010 4.6)
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
"AutoCAD 2012 - Czech" = AutoCAD 2012 - Czech
"Autodesk Inventor Fusion 2012" = Autodesk Inventor Fusion 2012
"CCleaner" = CCleaner
"D4D93CD19C3E3B78F95D0606CD187BDE3317187F" = Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. (OlyUsbCam) OlyUsbCam (12/28/2006 1.0.0.0)
"Defraggler" = Defraggler
"E5372C32E8562C76C24DBA6525002B1031495F34" = Balíček ovladače systému Windows - Nokia Modem (06/09/2010 7.01.0.8)
"F2D626F9A8E5C6126BED6EBD3E3504D0B2AB8443" = Balíček ovladače systému Windows - Ross-Tech USB Driver Package (06/16/2010 2.06.02)
"FacebookDiscovery_is1" = FacebookDiscovery 5.0.126
"FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"jEdit_is1" = jEdit 4.4.1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"Modul plug-in Autodesk Inventor Fusion pro aplikaci AutoCAD 2012" = Autodesk Inventor Fusion plug-in for AutoCAD 2012
"ProgDVB" = ProgDVB
"WinPdf Writer" = WinPdf Writer
"WinRAR archiver" = WinRAR 4.00 (64-bit)

romcolahvac
Návštěvník
Návštěvník
Příspěvky: 186
Registrován: 23 pro 2008 00:30

Re: Prosím o kontrolu logu - pomalý náběh

#4 Příspěvek od romcolahvac »

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{F072CA07-A781-45E4-9975-C033A73019CF}" = Corel VideoStudio Pro X3
"{00989200-325C-4910-8D7C-708529685D64}" = EWA_net_WIS_CaseOnline_Importer
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
"{086F9A69-CD39-4893-A9FB-D3A0634CE3F7}" = Autodesk Content Service
"{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}" = Nero BackItUp 10 Help (CHM)
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{12444FB2-997D-7BB2-0CEB-453E31307929}" = ccc-core-static
"{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
"{167A1F6A-9BF2-4B24-83DB-C6D659F680EA}" = Media Go
"{16987E99-C95C-4513-9239-7B44A0A71DB5}" = Nero SoundTrax 10 Help (CHM)
"{16E72583-459E-428C-B4E7-C2CC4538FFED}" = WinPDF Writer
"{18AEB406-A211-415B-8A71-BDE6CBDD734C}" = OLYMPUS Studio 2
"{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YouTube Downloader 2.6.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}" = Nero MediaHub 10
"{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"{237CCB62-8454-43E3-B158-3ACD0134852E}" = High-Definition Video Playback 10
"{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10
"{25011E2E-7539-4297-B240-B3EC25ABDBE8}" = Image Retriever 6
"{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = PowerCinema
"{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 26
"{277C1559-4CF7-44FF-8D07-98AA9C13AABD}" = Nero Multimedia Suite 10
"{278DB2A0-512A-4555-8BA0-C5D65E9DDC79}" = EWA_net_Client_Applications
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{28FB7853-A6ED-4F67-8635-9F0E863FC0AD}" = Codec-TS SDK
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (FORDECATDB)
"{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}" = SmartSound Quicktracks 5
"{329411A0-19F3-4740-874F-17400B126F27}" = Nero Vision 10 Help (CHM)
"{33643918-7957-4839-92C7-EA96CB621A98}" = Nero Express 10 Help (CHM)
"{34490F4E-48D0-492E-8249-B48BECF0537C}" = Nero DiscSpeed 10
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMicron JMB36X Driver
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
"{42ACCB45-3363-47E0-94E9-F0074CC8BC56}" = Citrix Presentation Server Client
"{42C8B7DF-FEB0-4D51-B169-506B6BEC5797}" = Nero 10 Menu TemplatePack 1
"{43FBAB46-5969-4200-9958-1FF81FEE506F}" = Nero 10 Movie ThemePack 1
"{4475560E-9418-4908-A158-472D873AE139}" = LogMeIn
"{4847BBB9-EADD-4C92-90BF-4223B0892FF6}" = Microsoft Flight Simulator X Service Pack 2
"{491D92A9-69CA-4EB4-81D3-0106F9337957}" = TurboV EVO
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AA68A73-DB9C-439D-9481-981C82BD008B}" = Nokia Connectivity Cable Driver
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{51399947-35EF-10B8-FC7F-0D435C701A2D}" = Catalyst Control Center InstallProxy
"{51AA8C3F-B316-44A8-B371-4BB6047E45DF}" = WSC Real 09
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{5454083B-1308-4485-BF17-111000028701}" = Grand Theft Auto: Episodes from Liberty City
"{555868C6-49FB-484F-BB43-8980651A1B00}" = Nero BurnRights 10 Help (CHM)
"{56B83336-FBC1-4C46-8613-90A9E3B440D6}" = EPU-6 Engine
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
"{625386A4-B6B6-4911-A6E8-23189C3F2D15}" = Microsoft .NET Compact Framework 2.0
"{6291FC10-FDF0-4022-A1A5-710C728D49C2}" = Vancouver 2010
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63AA3EAB-23BB-48B2-9AD0-44F878075604}" = Nero 10 Menu TemplatePack Basic
"{64D24CA4-3E42-460A-B4C7-FB7A1CE1C629}" = VAG Info System
"{65420DC9-306E-4371-905F-F4DC3B418E52}" = Autodesk Material Library Base Resolution Image Library 2012
"{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
"{66049135-9659-4AAD-9169-9CCA269EBB3E}" = Nero InfoTool 10 Help (CHM)
"{664137C5-56B0-41D7-976C-9F93D8FF83A0}" = PROSIS Offline
"{68AB6930-5BFF-4FF6-923B-516A91984FE6}" = Nero BackItUp 10
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6AA003BF-73E5-4911-ADB7-71DD5674DDD4}" = Oracle Data Provider for .NET Help
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10
"{6DFC4B13-4489-4A59-AF95-12628A86FA76}" = 602PC SUITE
"{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
"{70550193-1C22-445C-8FA4-564E155DB1A7}" = Nero Express 10
"{707790EF-9E51-1548-F90C-57B38065F38C}" = Catalyst Control Center Graphics Previews Vista
"{70F19404-B96C-4EBB-AD2B-3574F8736197}" = Nero 10 Movie ThemePack 2
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{7644E42D-B096-457F-8B5B-901238FC81AE}" = ICQ7.6
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{78D2B9D0-E680-4295-9830-6B23397B4746}_is1" = NetTransport 2.96c.620
"{7A295D8F-484B-4FFB-89AB-C1FD497591FE}" = Nero WaveEditor 10 Help (CHM)
"{7A5D731D-B4B3-490E-B339-75685712BAAB}" = Nero Burning ROM 10
"{7A997C02-81D4-4FEC-9C1C-F916611F8360}" = EWA_net_EPC
"{7B5999EE-F2DD-4677-675D-51F11C6F6181}" = Catalyst Control Center Graphics Previews Common
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{7CAC6A44-C3DE-4153-ACA6-7524602C789E}" = Facebook Video Calling 1.2.0.159
"{7E4CB404-F1E4-4E81-A1CB-2CBB310481D1}" = MLE
"{82EF29B1-9B60-4142-A155-0599216DD053}" = LightScribe System Software
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83A606F5-BF6F-42ED-9F33-B9F74297CDED}" = Need for Speed(TM) Hot Pursuit
"{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
"{867AE74B-855F-4ABD-BCA1-7B4C0ECF2DD9}" = FlashCatcher
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver
"{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A075C9A-1368-4491-855E-F3D9ABE55740}_is1" = Video Download Studio 3.4.14
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}" = Nero Recode 10
"{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}" = Autodesk Material Library 2012
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0015-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0016-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0018-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-0019-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001A-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001B-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0405-0000-0000000FF1CE}_Office14.PROPLUS_{2304F942-79D2-46F7-A512-269A7F5B7EFC}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{2304F942-79D2-46F7-A512-269A7F5B7EFC}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUSR_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-001F-041B-0000-0000000FF1CE}_Office14.PROPLUSR_{A162C5E6-7778-4D5B-9F0A-38F0122DD859}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{AB90513B-B892-41B5-8F8B-1D356A449652}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-002C-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{8148DB19-71B1-4415-8B26-DF5B9E873FC3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-0044-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-006E-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{EEF3E2C0-135B-44DC-BEDD-7F01CFBEFF46}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00A1-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{90140000-00BA-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{92146419-AE44-4C8B-A48B-0ABB1B5EC026}" = Nero 10 Menu TemplatePack 3
"{92A10E9D-EA00-4A46-8F22-EEA660992D61}" = Nero 10 Sample Videos
"{92C41B26-EBC5-41C5-8B6F-E3EF7E57FF16}" = AVerMedia Applications
"{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}" = Nokia Suite
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92E25238-61A3-4ACD-A407-3C480EEF47A7}" = Nero RescueAgent 10 Help (CHM)
"{93293322-B694-4270-B7FE-DDE1A681ACCA}" = linguatec Voice Reader
"{943CFD7D-5336-47AF-9418-E02473A5A517}" = Nero BurnRights 10
"{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}" = FARO LS 1.1.406.58
"{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X
"{96ED4B78-300E-4033-AE6C-C115CEB4DF07}" = Nero 10 ClipartPack
"{99AD9D6D-A456-49EE-8360-F22EE7AA1272}" = Express Gate
"{9A0E0340-C3D7-42D1-96D4-64179FD456AE}" = De-interlace SDK
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}" = Nero Vision 10
"{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}" = Nero BurningROM 10 Help (CHM)
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
"{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175
"{A2AA4204-C05A-4013-888A-AD153139297F}" = PC Connectivity Solution
"{A68C62E8-B243-4777-89BB-12173DFA1D45}" = OLYMPUS Digital Camera Updater
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
"{AADD1C8F-D59F-4D55-A726-768C71A205A8}" = Pinnacle Studio 14
"{AAF70000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 7.0 Professional Edition
"{AC76BA86-7AD7-1029-7B44-A95000000001}" = Adobe Reader 9.5.1 - Czech
"{AC76BA86-7AD7-5760-0000-900000000003}" = Japanese Fonts Support For Adobe Reader 9
"{ACD15FDF-FC42-4175-B477-576F92FF2256}" = Nero 10 Sample ImagePack
"{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}" = Adobe AIR
"{AE096DBF-8878-6943-3858-7EE9D54D70B7}" = CCC Help English
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{AF9848E2-5F19-4E49-9E6E-044FBDC28404}" = TT-SB SDK
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B4DBAD3D-84EC-4A99-9E73-37CEDF7A0B86}" = Xml Viewer
"{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader
"{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}" = SmartSound Common Data
"{BB224962-A37E-4E24-87E2-BD0F47B6A8F5}" = ePER
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C0F1D697-0C8F-4563-A406-830AE52BCE65}" = EWA_net_WIS
"{C18A0418-442A-4186-AF98-D08F5054A2FC}" = Nero DiscSpeed 10 Help (CHM)
"{C3273C55-E1E4-41FF-8D69-0158090DB8D8}" = Nero CoverDesigner 10 Help (CHM)
"{C3580AC4-C827-4332-B935-9A282ED5BB97}" = Nero Dolby Files 10
"{C79308BC-63CC-4A0F-A585-2E137EA42A1E}_is1" = Power MP4 iPod PSP 3GP AVI MPG WMV Video Converter 5.0
"{C92C584E-C781-475E-A8E2-C67D993A6B95}" = WinFast PVR2
"{CEEFD1AB-501F-4587-B0C9-A27A38FBBD5A}" = Cerberus FTP Server
"{d08d9f98-1c78-4704-87e6-368b0023d831}" = RelevantKnowledge
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D230DE36-1BE7-4FB3-992C-89CD2ABFB056}" = PIKO-Master-Control
"{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}" = Microsoft Primary Interoperability Assemblies 2005
"{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software
"{D78A1468-84FD-4226-BB33-713A7EBE3028}" = Document_Installer
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF}" = Nero Recode 10 Help (CHM)
"{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}" = Nero SoundTrax 10
"{E28B1E6F-E0AA-4228-AB89-DB4A0C89D426}" = AVerTV
"{E337E787-CF61-4B7B-B84F-509202A54023}" = Nero RescueAgent 10
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E68C5783-A1E6-4D4C-83D4-99DD470F3D94}" = EWA_net_Server
"{E712C273-7564-4C8E-AA59-0FA19BC35117}" = Nero 10 Menu TemplatePack 2
"{EDCDFAD5-DF80-4600-A493-E9DAD6810230}" = Nero WaveEditor 10
"{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
"{EFB21DE7-8C19-4A88-BB28-A766E16493BC}" = Adobe Photoshop CS
"{F069C491-69E6-4D9B-9A0C-B7894A1FA97C}" = Setup
"{F072CA07-A781-45E4-9975-C033A73019CF}" = ICA
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0BC0F9E-C4A8-485C-93ED-424DB9EA3F75}" = Oracle Database 10g Express Edition
"{F206FEC3-F5DD-43FD-A8CF-9C46B8A6A92C}" = VSPro
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{F38FD0E4-B991-462B-873D-F2115EADD093}" = Nokia PC Suite
"{F412B4AF-388C-4FF5-9B2F-33DB1C536953}" = Nero InfoTool 10
"{F41852C7-939E-49A3-A5A7-5E3A81C32A8B}" = EWA_net_Core
"{F467862A-D9CA-47ED-8D81-B4B3C9399272}" = Nero MediaHub 10 Help (CHM)
"{F49AFE1E-A8F1-4764-9138-C82C8E617E2B}" = EWA_net_Admin
"{F4E9851F-765E-40B7-9859-237C2724E62C}" = DeviceIO
"{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic
"{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}" = Nero StartSmart 10 Help (CHM)
"{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}" = Nero StartSmart 10
"{F6A76E9C-C299-4CFA-AD2A-57FE9DD68B70}" = Contents
"{F8423392-2296-4748-9B66-344432459632}" = PureHD
"{F909BD3C-8684-4ACF-B7C3-33F4F9F901B7}" = Share
"{F95C8C1F-25BB-44EC-A7E6-5C17ABC6BC71}" = VIO
"{F9835182-794B-4F24-902A-E2CA9D43380F}" = NVIDIA PhysX
"{FB0B6DDD-DF3E-4CD6-927C-724AB854E322}" = VSClassic
"{FCF00A6E-FB58-477A-ABE9-232907105521}" = Nero CoverDesigner 10
"{FD67D9F3-FED6-4A2E-9D6C-8C8C44DEF8FF}" = IPM_VS_Pro
"{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"6103-4188-8184-5707" = RapidShare Manager 2
"7-Zip" = 7-Zip 9.20
"AceHTML 6 Pro" = AceHTML 6 Pro
"Adobe AIR" = Adobe AIR
"Adobe SVG Viewer" = Adobe SVG Viewer 3.0
"Airbus Series Vol.1 (FS X)" = Airbus Series Vol.1 (FS X)
"Alcohol 120%" = Alcohol 120% 2.0.1.2033 XCV Edition
"All ATI Software" = ATI - Software Uninstall Utility
"ALLConverter to PSP_is1" = ALLConverter to PSP
"Alldj DVD To AVI Converter_is1" = Alldj DVD To AVI Converter 2.0
"Alldj PSP Converter_is1" = Alldj PSP Converter 3.0
"Alldj Video Converter_is1" = Alldj Video Converter 4.0
"aTube Catcher" = aTube Catcher
"avast" = avast! Free Antivirus
"AVerMedia A835 USB TV Tuner" = AVerMedia A835 USB TV Tuner 8.0.64.43
"AviSynth" = AviSynth 2.5
"Back4Win_is1" = Back4Win
"BadCopy Pro" = BadCopy Pro
"BSPlayer1" = BSPlayer
"CamStudio" = CamStudio
"CloneCD" = CloneCD
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2011-11-11
"Cool Edit Pro 2.1" = Cool Edit Pro 2.1
"CoreAVC Professional Edition" = CoreAVC Professional Edition (remove only)
"DAEMON Tools Lite" = DAEMON Tools Lite
"DreamCom SE_is1" = DreamCom SE 1.3
"Duke Nukem 3D (engine EDuke32 with HRP Update 4.0)" = Duke Nukem 3D (engine EDuke32 with HRP Update 4.0)
"DVBViewer Pro_is1" = DVBViewer Pro
"DynGate" = DynGate
"EASEUS Todo Backup 1.1_is1" = EASEUS Todo Backup 1.1
"eLearn 1.2.1_is1" = eLearn CDROM 1.0
"E-Mail Converter_is1" = E-Mail Converter
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50
"EWA net" = EWA net
"Extra Video Converter_is1" = Extra Video Converter 6.3
"FileHippo.com" = FileHippo.com Update Checker
"Flash FLV to Video Audio Converter_is1" = Flash FLV to Video Audio Converter v3.0
"FlashGet 3.7" = FlashGet 3.7
"FMCODEC" = FM Screen Capture Codec (Remove Only)
"FormatFactory" = FormatFactory 2.80
"Free Download Manager_is1" = Free Download Manager 3.0
"Free M4a to MP3 Converter_is1" = Free M4a to MP3 Converter 6.2
"Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 1.91
"Free PDF to Word Doc Converter_is1" = Free PDF to Word Doc Converter v1.1
"FS Global 2010" = FS Global 2010
"GeoGet_is1" = GeoGet 2.5.13.628
"HaaliMkx" = Haali Media Splitter
"HD Tune_is1" = HD Tune 2.50
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}" = SmartSound Quicktracks 5
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"InstallShield_{92C41B26-EBC5-41C5-8B6F-E3EF7E57FF16}" = AVerMedia Applications
"InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X
"InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}" = SmartSound Common Data
"InstallShield_{E28B1E6F-E0AA-4228-AB89-DB4A0C89D426}" = AVerTV
"InstallShield_{F0BC0F9E-C4A8-485C-93ED-424DB9EA3F75}" = Oracle Database 10g Express Edition
"itrafficmonitor_is1" = iTraffic Monitor v1.0
"JDiskReport 1.3.2" = JGoodies JDiskReport 1.3.2
"Juniper_Setup_Client Activex Control" = Juniper Networks Setup Client Activex Control
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 6.3.0
"Křížovkářský slovník - Demo_is1" = Křížovkářský slovník 1.5 - Demo
"Lizard Safeguard - PDF Viewer_is1" = Lizard Safeguard - PDF Viewer 2.5.152
"Logitech Vid" = Logitech Vid HD
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware verze 1.51.2.1300
"Memory Max_is1" = Memory Max ver. 1.4
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Mozilla Firefox 12.0 (x86 cs)" = Mozilla Firefox 12.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Neoteris_Secure_Application_Manager" = Juniper Networks Secure Application Manager
"NirSoft VideoCacheView" = NirSoft VideoCacheView
"Nokia PC Suite" = Nokia PC Suite
"Nokia Suite" = Nokia Suite
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"Office14.PROPLUSR" = Microsoft Office Professional Plus 2010
"OJOsoft PSP Video Converter_is1" = OJOsoft PSP Video Converter
"OJOsoft Total Video Converter_is1" = OJOsoft Total Video Converter
"Opera 11.62.1347" = Opera 11.62
"Pamela" = Pamela Basic 4.8
"PaperlessPrinter_is1" = PaperlessPrinter version 4.0
"PapíííClock_is1" = PapíííClock 1.2
"PDF reDirect" = PDF reDirect (remove only)
"PHARAOHEDITOR_is1" = MAX's HTML Beauty++ 2004
"PIKO Master Control V2.0_is1" = PIKO Master Control V2.0 v1.4.0.10
"Plato Video To iPod Converter_is1" = Plato Video To iPod Converter 12.05.01
"Posel smrti_is1" = Posel smrti 1.2
"PSP Video 9" = PSP Video 9 5.04
"PSP_Movie_Creator" = PSP Movie Creator(remove only)
"PSPad editor_is1" = PSPad editor
"PSPVC" = PSPVC :: PSP Video Converter v3.91
"PSPVideoExpress" = PSP Video Express(remove only)
"rajče.net_is1" = rajče verze 58 sestavení 212
"RealPlayer 12.0" = RealPlayer
"Recover My Files_is1" = Recover My Files
"Resco Explorer" = Resco Explorer
"Revo Uninstaller" = Revo Uninstaller 1.93
"ScreenVirtuoso Pro 2.00_is1" = ScreenVirtuoso Pro 2.00
"Shipsim2008" = Ship Simulator 2008
"SP1_9527A496-5DF9-412A-ADC7-168BA5379CA6" = Microsoft Flight Simulator X Service Pack 1
"Streamripper" = Streamripper (Remove only)
"Supertintin Skype Video Call Recorder_is1" = Supertintin 1.2.0.9
"Total Video Converter 3.71_is1" = Total Video Converter 3.71 100812
"Totalcmd" = Total Commander (Remove or Repair)
"UPsani" = Učitel psaní
"uTorrent" = µTorrent
"VB6Files" = VB6Files
"VCDS Beta 11.2" = VCDS Beta 11.2.0
"VLC media player" = VLC media player 1.1.4
"vmntoolbar" = VMN Toolbar
"Winamp" = Winamp
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
"Wondershare Video Converter Ultimate_is1" = Wondershare Video Converter Ultimate(Build 5.7.1.1)
"Xerox Phaser 6110MFP" = Xerox Phaser 6110MFP
"XML Marker_is1" = XML Marker version 1.1

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-876401281-3636213226-3406816674-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"7f4182272b52fd8f" = CZShare Manager
"A380v2 (FSX)" = A380v2 (FSX)
"Airbus Series Vol.2 (FS X)" = Airbus Series Vol.2 (FS X)
"bd4d3a0508d364f5" = Dell Driver Download Manager
"FoxTab AVI Converter" = FoxTab AVI Converter
"Google Chrome" = Google Chrome
"Juniper_Setup_Client" = Juniper Networks Setup Client
"Neoteris_Host_Checker" = Juniper Networks Host Checker
"QIP 2005" = QIP 2005 8095
"Winamp Detect" = Winamp Detector Plug-in

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 23.10.2011 12:02:25 | Computer Name = ROMAN-PC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: firefox.exe, verze: 8.0.0.4309, časové razítko:
0x4e9f3fc5 Název chybujícího modulu: NBShell.dll, verze: 5.4.14.101, časové razítko:
0x4b8265dd Kód výjimky: 0xc0000005 Posun chyby: 0x0005dc01 ID chybujícího procesu:
0x1730 Čas spuštění chybující aplikace: 0x01cc9168c3598123 Cesta k chybující aplikaci:
C:\Program Files (x86)\Mozilla Firefox 3\firefox.exe Cesta k chybujícímu modulu:
C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBShell.dll ID zprávy: 657137f2-fd90-11e0-b4eb-20cf3019fea6

Error - 23.10.2011 12:06:49 | Computer Name = ROMAN-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces
Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu
obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota
DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error - 23.10.2011 12:06:49 | Computer Name = ROMAN-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces
Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu
obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota
DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error - 23.10.2011 12:06:49 | Computer Name = ROMAN-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo.
První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error - 23.10.2011 12:11:02 | Computer Name = ROMAN-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces
Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu
obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota
DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error - 23.10.2011 12:11:02 | Computer Name = ROMAN-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces
Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu
obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota
DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error - 23.10.2011 12:11:02 | Computer Name = ROMAN-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo.
První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error - 23.10.2011 12:16:21 | Computer Name = ROMAN-PC | Source = Application Hang | ID = 1002
Description = Program mpc-hc.exe verze 1.3.2189.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
1584 Čas spuštění: 01cc919edee552b4 Čas ukončení: 25 Cesta k aplikaci: C:\Program
Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe ID hlášení: 41fe3f66-fd92-11e0-b4eb-20cf3019fea6


Error - 24.10.2011 12:40:04 | Computer Name = ROMAN-PC | Source = MSSQL$FORDECATDB | ID = 8313
Description = Error in mapping SQL Server performance object/counter indexes to
object/counter names. SQL Server performance counters are disabled.

Error - 24.10.2011 12:40:04 | Computer Name = ROMAN-PC | Source = MSSQL$FORDECATDB | ID = 3409
Description = Performance counter shared memory setup failed with error -1. Reinstall
sqlctr.ini for this instance, and ensure that the instance login account has correct
registry permissions.

[ Media Center Events ]
Error - 5.9.2010 12:59:08 | Computer Name = ROMAN-PC | Source = MCUpdate | ID = 0
Description = 18:58:37 - Načtení položky EpgListings se nezdařilo. (Chyba: Ke vzdálenému
serveru se nelze připojit.)

Error - 7.9.2010 9:03:30 | Computer Name = ROMAN-PC | Source = MCUpdate | ID = 0
Description = 15:03:25 - Načtení položky Broadband se nezdařilo. (Chyba: Ke vzdálenému
serveru se nelze připojit.)

Error - 4.10.2010 8:53:56 | Computer Name = ROMAN-PC | Source = MCUpdate | ID = 0
Description = 14:53:55 - Chyba při připojování k Internetu 14:53:55 - Nelze kontaktovat
server..

[ System Events ]
Error - 1.5.2012 10:08:12 | Computer Name = ROMAN-PC | Source = Service Control Manager | ID = 7034
Description = Služba TVEnhance Background Capture Service (TBCS) byla neočekávaně
ukončena. Tento stav nastal již 1krát.

Error - 1.5.2012 11:47:28 | Computer Name = ROMAN-PC | Source = volsnap | ID = 393252
Description = Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného
uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error - 2.5.2012 2:51:56 | Computer Name = ROMAN-PC | Source = Application Popup | ID = 1060
Description = Načtení \SystemRoot\SysWow64\Drivers\ULCDRHlp.sys bylo zablokováno
kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru o kompatibilní
verzi ovladače.

Error - 2.5.2012 2:52:11 | Computer Name = ROMAN-PC | Source = Application Popup | ID = 1060
Description = Načtení \SystemRoot\SysWow64\Drivers\ULCDRHlp.sys bylo zablokováno
kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru o kompatibilní
verzi ovladače.

Error - 2.5.2012 2:56:13 | Computer Name = ROMAN-PC | Source = Service Control Manager | ID = 7000
Description = Služba DgiVecp neuspěla při spuštění v důsledku následující chyby:
%%577

Error - 2.5.2012 4:42:24 | Computer Name = ROMAN-PC | Source = Disk | ID = 262151
Description = Zařízení \Device\Harddisk3\DR3 má chybný blok.

Error - 2.5.2012 4:42:24 | Computer Name = ROMAN-PC | Source = Disk | ID = 262151
Description = Zařízení \Device\Harddisk3\DR3 má chybný blok.

Error - 2.5.2012 4:42:24 | Computer Name = ROMAN-PC | Source = Disk | ID = 262151
Description = Zařízení \Device\Harddisk3\DR3 má chybný blok.

Error - 2.5.2012 4:42:24 | Computer Name = ROMAN-PC | Source = Disk | ID = 262151
Description = Zařízení \Device\Harddisk3\DR3 má chybný blok.

Error - 2.5.2012 4:44:50 | Computer Name = ROMAN-PC | Source = Disk | ID = 262151
Description = Zařízení \Device\Harddisk3\DR3 má chybný blok.


< End of report >

romcolahvac
Návštěvník
Návštěvník
Příspěvky: 186
Registrován: 23 pro 2008 00:30

Re: Prosím o kontrolu logu - pomalý náběh

#5 Příspěvek od romcolahvac »

OTL.TXT

Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 1,11 Gb Available Physical Memory | 27,67% Memory free
7,99 Gb Paging File | 4,30 Gb Available in Paging File | 53,75% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 186,21 Gb Total Space | 11,39 Gb Free Space | 6,12% Space Free | Partition Type: NTFS
Drive D: | 596,16 Gb Total Space | 54,31 Gb Free Space | 9,11% Space Free | Partition Type: NTFS
Drive I: | 11,07 Gb Total Space | 0,24 Gb Free Space | 2,21% Space Free | Partition Type: FAT32
Drive J: | 30,91 Gb Total Space | 4,69 Gb Free Space | 15,17% Space Free | Partition Type: FAT32

Computer Name: ROMAN-PC | User Name: ROMAN | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2012.05.02 10:52:23 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\ROMAN\Desktop\OTL.exe
PRC - [2012.04.24 23:24:39 | 000,924,600 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox 3\firefox.exe
PRC - [2012.04.24 23:24:38 | 000,016,824 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox 3\plugin-container.exe
PRC - [2012.04.04 07:05:28 | 000,021,392 | ---- | M] () -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
PRC - [2012.04.04 07:05:16 | 003,521,424 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
PRC - [2012.02.23 01:52:16 | 000,111,632 | ---- | M] (TMRG, Inc.) -- C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
PRC - [2012.02.23 01:52:12 | 002,972,688 | ---- | M] (TMRG, Inc.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe
PRC - [2012.01.04 14:32:36 | 000,718,888 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
PRC - [2012.01.04 14:32:10 | 000,126,504 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2011.07.04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2011.05.17 05:33:01 | 005,376,832 | ---- | M] (Cerberus, LLC) -- C:\Program Files (x86)\Cerberus LLC\Cerberus FTP Server\CerberusGUI.exe
PRC - [2011.02.02 17:24:28 | 000,038,400 | ---- | M] (UpTime Solutions AB) -- D:\Program Files (x86)\PROSIS\PROSIS Offline\UpTime Windows Service Offline.exe
PRC - [2011.02.02 14:08:16 | 000,018,656 | ---- | M] () -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
PRC - [2010.06.09 16:25:32 | 002,920,448 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\WFWIZ.exe
PRC - [2010.06.09 13:53:26 | 000,101,888 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
PRC - [2010.05.07 19:47:32 | 000,114,008 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
PRC - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2010.02.18 14:01:06 | 000,462,632 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2009.12.17 06:44:28 | 000,053,408 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
PRC - [2009.10.09 21:11:19 | 000,389,120 | R--- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe
PRC - [2009.09.10 10:34:12 | 007,322,624 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe
PRC - [2009.09.09 17:02:26 | 006,060,032 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\Six Engine\SixEngine.exe
PRC - [2009.08.19 19:12:08 | 001,043,968 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\TurboV EVO\TurboVHelp.exe
PRC - [2009.08.19 13:56:38 | 000,090,112 | R--- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
PRC - [2009.08.01 05:06:24 | 000,155,648 | R--- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
PRC - [2009.07.17 15:25:02 | 000,319,488 | -H-- | M] (DeviceVM, Inc.) -- C:\ASUS.SYS\config\DVMExportService.exe
PRC - [2009.06.19 19:31:38 | 000,651,264 | R--- | M] (AVerMedia TECHNOLOGIES, Inc.) -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
PRC - [2009.04.22 14:44:12 | 000,942,080 | ---- | M] (Charles DeWeese) -- C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe
PRC - [2009.04.08 21:49:30 | 000,344,064 | R--- | M] (AVerMedia) -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe
PRC - [2008.10.23 01:22:52 | 000,364,635 | ---- | M] () -- C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
PRC - [2008.10.23 01:22:52 | 000,172,121 | ---- | M] () -- C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
PRC - [2008.04.04 14:38:04 | 000,417,792 | ---- | M] (Transaction Software, D 81829 Munich) -- C:\Program Files (x86)\EWA net\database\TransBase WIS\tbmux32.exe
PRC - [2008.04.04 14:38:04 | 000,417,792 | ---- | M] (Transaction Software, D 81829 Munich) -- C:\Program Files (x86)\EWA net\database\TransBase EWA\tbmux32.exe
PRC - [2008.04.04 14:37:50 | 002,387,968 | ---- | M] (Transaction Software, D 81829 Munich) -- C:\Program Files (x86)\EWA net\database\TransBase EWA\tbkern32.exe
PRC - [2007.11.27 13:33:52 | 002,387,968 | ---- | M] (Transaction Software, D 81829 Munich) -- C:\Program Files (x86)\EWA net\database\TransBase EPC\tbkern32.exe
PRC - [2007.11.27 13:33:52 | 000,417,792 | ---- | M] (Transaction Software, D 81829 Munich) -- C:\Program Files (x86)\EWA net\database\TransBase EPC\tbmux32.exe
PRC - [2007.07.24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2006.02.02 01:49:14 | 000,204,800 | ---- | M] () -- D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\TNSLSNR.EXE
PRC - [2006.02.02 01:43:44 | 059,064,320 | ---- | M] (Oracle Corporation) -- d:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\oracle.exe
PRC - [2003.07.31 19:29:04 | 000,065,536 | ---- | M] (Alexandria Software Consulting) -- C:\Program Files (x86)\EWA net\server\bin\tomcat.exe


========== Modules (No Company Name) ==========

MOD - [2012.04.24 23:24:39 | 001,952,696 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox 3\mozjs.dll
MOD - [2012.04.24 23:09:54 | 000,115,137 | ---- | M] () -- C:\Users\ROMAN\AppData\Local\Temp\bd7c47bb-f5c0-417c-a180-ec348d87718a\CliSecureRT.dll
MOD - [2012.04.14 20:23:53 | 008,797,344 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll
MOD - [2012.04.11 23:39:05 | 018,019,328 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\95e261d2660c662aab4306168001f3e7\PresentationFramework.ni.dll
MOD - [2012.04.11 23:38:53 | 011,469,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\2a1d0ebdb3810bb2926aea930567a3ef\PresentationCore.ni.dll
MOD - [2012.04.11 23:38:50 | 013,197,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\bf4d4ad3e86281bc3924d74f4e716322\System.Windows.Forms.ni.dll
MOD - [2012.04.11 23:38:42 | 003,881,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\876000568ee47aa4407f0931161adf59\WindowsBase.ni.dll
MOD - [2012.04.11 23:38:39 | 001,665,536 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\ab9feeb2817859457fc06c4c06f32fe1\System.Drawing.ni.dll
MOD - [2012.04.04 07:05:28 | 000,021,392 | ---- | M] () -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
MOD - [2012.03.29 09:37:58 | 001,218,560 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\45f56e5749f43eeb24b2094fd761a9d3\System.Management.ni.dll
MOD - [2012.03.29 09:35:26 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\87bb94208da627ef82f1baf7565429fb\System.Runtime.Remoting.ni.dll
MOD - [2012.03.29 09:34:06 | 001,782,272 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\a6529c9ffc0303d1eee4282d18c7d7f3\System.Xaml.ni.dll
MOD - [2012.03.28 17:05:41 | 007,070,208 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\9bf91363906fc418ea34b30d7bf825b9\System.Core.ni.dll
MOD - [2012.03.28 17:05:38 | 005,617,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\da0fc8ce9b2fb592b7d8065481ef5d42\System.Xml.ni.dll
MOD - [2012.03.28 17:05:34 | 000,595,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\15e071596162d504ead0394ec971ad3b\PresentationFramework.Aero.ni.dll
MOD - [2012.03.28 17:05:32 | 009,092,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\26430b84dfd15f788b0e39dce71ef5d1\System.ni.dll
MOD - [2012.03.28 17:05:25 | 014,414,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\fe6b346d83857a3f02bda63332e66642\mscorlib.ni.dll
MOD - [2011.03.17 01:11:16 | 004,297,568 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2010.05.03 10:07:14 | 000,073,728 | ---- | M] () -- C:\Program Files\WinFast\WFDTV\RCConfig\RCKeysInfoIO.dll
MOD - [2009.08.27 19:41:46 | 000,565,248 | ---- | M] () -- C:\Program Files\ASUS\Six Engine\pngio.dll
MOD - [2009.08.27 19:41:46 | 000,053,248 | ---- | M] () -- C:\Program Files\ASUS\Six Engine\AsSpindownTimeout.dll
MOD - [2009.08.01 05:06:24 | 000,155,648 | R--- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
MOD - [2009.05.22 14:16:58 | 000,053,248 | ---- | M] () -- C:\Program Files (x86)\ASUS\TurboV EVO\HookKey32.dll
MOD - [2009.04.22 20:20:00 | 000,179,712 | ---- | M] () -- C:\Program Files\ASUS\Six Engine\AsusService.dll
MOD - [2009.04.01 14:07:12 | 000,303,188 | ---- | M] () -- C:\Program Files\WinFast\WFDTV\RTL283XACCESS.dll
MOD - [2008.12.10 20:04:54 | 000,253,952 | ---- | M] () -- C:\Program Files (x86)\ASUS\TurboV EVO\pngio.dll
MOD - [2008.12.02 11:04:26 | 000,007,680 | ---- | M] () -- C:\Program Files\WinFast\WFDTV\WIZLANGCZE.dll
MOD - [2006.01.10 10:50:20 | 000,024,576 | R--- | M] () -- C:\Windows\SysWOW64\AsIO.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011.10.09 21:27:51 | 001,431,888 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:64bit: - [2011.07.04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2010.08.04 03:51:20 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010.05.07 19:45:16 | 000,197,976 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012.04.24 23:24:39 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012.04.14 20:23:53 | 000,253,088 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.02.23 01:52:16 | 000,111,632 | ---- | M] (TMRG, Inc.) [Auto | Running] -- C:\Program Files (x86)\RelevantKnowledge\rlservice.exe -- (RelevantKnowledge)
SRV - [2012.02.07 20:13:16 | 000,147,336 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\ramaint.exe -- (LMIMaint)
SRV - [2012.02.07 20:12:54 | 000,375,176 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe -- (LMIGuardianSvc)
SRV - [2012.01.04 14:32:36 | 000,718,888 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011.05.17 05:33:01 | 005,376,832 | ---- | M] (Cerberus, LLC) [Auto | Running] -- C:\Program Files (x86)\Cerberus LLC\Cerberus FTP Server\CerberusGUI.exe -- (Cerberus FTP Server)
SRV - [2011.02.02 17:24:28 | 000,038,400 | ---- | M] (UpTime Solutions AB) [Auto | Running] -- D:\Program Files (x86)\PROSIS\PROSIS Offline\UpTime Windows Service Offline.exe -- (UpTimeServiceOffline)
SRV - [2011.02.02 14:08:16 | 000,018,656 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe -- (Autodesk Content Service)
SRV - [2010.11.08 13:04:18 | 000,407,424 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe -- (LogMeIn)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2010.02.19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2010.02.18 14:01:06 | 000,462,632 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate) @C:\Program Files (x86)
SRV - [2009.12.17 06:44:28 | 000,053,408 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
SRV - [2009.10.09 21:11:19 | 000,389,120 | R--- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe -- (AVerScheduleService)
SRV - [2009.08.19 13:56:38 | 000,090,112 | R--- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe -- (AsSysCtrlService)
SRV - [2009.07.17 15:25:02 | 000,319,488 | -H-- | M] (DeviceVM, Inc.) [Auto | Running] -- C:\ASUS.SYS\config\DVMExportService.exe -- (DvmMDES)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.04.08 21:49:30 | 000,344,064 | R--- | M] (AVerMedia) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe -- (AVerRemote)
SRV - [2008.10.23 01:22:52 | 000,364,635 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe -- (TVECapSvc) TVEnhance Background Capture Service (TBCS)
SRV - [2008.10.23 01:22:52 | 000,172,121 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\CyberLink\TV Enhance\Kernel\TV\TVESched.exe -- (TVESched) TVEnhance Task Scheduler (TTS))
SRV - [2008.04.04 14:38:04 | 000,417,792 | ---- | M] (Transaction Software, D 81829 Munich) [Auto | Running] -- C:\Program Files (x86)\EWA net\database\TransBase WIS\tbmux32.exe -- (EWA net DB WIS)
SRV - [2008.04.04 14:38:04 | 000,417,792 | ---- | M] (Transaction Software, D 81829 Munich) [Auto | Running] -- C:\Program Files (x86)\EWA net\database\TransBase EWA\tbmux32.exe -- (EWA net DB Core)
SRV - [2007.11.27 13:33:52 | 000,417,792 | ---- | M] (Transaction Software, D 81829 Munich) [Auto | Running] -- C:\Program Files (x86)\EWA net\database\TransBase EPC\tbmux32.exe -- (EWA net DB EPC)
SRV - [2007.07.24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2007.05.31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007.05.31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
SRV - [2006.02.02 01:51:06 | 000,045,056 | ---- | M] () [On_Demand | Stopped] -- D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\bin\OraClrAgnt.exe -- (OracleXEClrAgent)
SRV - [2006.02.02 01:49:14 | 000,204,800 | ---- | M] () [Auto | Running] -- D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\TNSLSNR.EXE -- (OracleXETNSListener)
SRV - [2006.02.02 01:47:28 | 000,057,616 | ---- | M] (Oracle Corporation) [On_Demand | Stopped] -- D:\OracleXE\OracleXE\app\oracle\product\10.2.0\server\BIN\omtsreco.exe -- (OracleMTSRecoveryService)
SRV - [2006.02.02 01:44:06 | 000,102,400 | ---- | M] () [Disabled | Stopped] -- d:\oraclexe\oraclexe\app\oracle\product\10.2.0\server\Bin\extjob.exe -- (OracleJobSchedulerXE)
SRV - [2006.02.02 01:43:44 | 059,064,320 | ---- | M] (Oracle Corporation) [Auto | Running] -- d:\oraclexe\oraclexe\app\oracle\product\10.2.0\server\bin\ORACLE.EXE -- (OracleServiceXE)
SRV - [2003.07.31 19:29:04 | 000,065,536 | ---- | M] (Alexandria Software Consulting) [Auto | Running] -- C:\Program Files (x86)\EWA net\server\bin\tomcat.exe -- (EWA net Server)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012.03.20 08:49:56 | 000,564,792 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.24 11:14:42 | 000,203,320 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.)
DRV:64bit: - [2012.02.24 11:14:42 | 000,099,384 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV:64bit: - [2012.02.07 20:12:54 | 000,087,456 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\LMIRfsClientNP.dll -- (LMIRfsClientNP)
DRV:64bit: - [2011.11.01 11:07:26 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltjx64.sys -- (UsbserFilt)
DRV:64bit: - [2011.11.01 11:07:26 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:64bit: - [2011.11.01 11:07:24 | 000,027,136 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdc)
DRV:64bit: - [2011.11.01 11:07:24 | 000,019,968 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcd)
DRV:64bit: - [2011.07.04 13:36:56 | 000,600,920 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2011.07.04 13:36:54 | 000,288,088 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2011.07.04 13:35:28 | 000,045,400 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2011.07.04 13:32:35 | 000,031,064 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr.sys -- (aswRdr)
DRV:64bit: - [2011.07.04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2011.07.04 13:32:14 | 000,022,360 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2011.03.21 13:22:06 | 000,452,200 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 15:34:02 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2010.11.20 15:34:02 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:35:32 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2010.11.20 13:35:20 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010.08.31 15:11:07 | 000,120,336 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.08.04 04:22:36 | 007,451,648 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2010.08.04 04:22:36 | 007,451,648 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010.08.04 03:15:44 | 000,268,288 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010.08.03 09:23:04 | 000,100,472 | ---- | M] (Juniper Networks) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NEOFLTR_650_16339.SYS -- (NEOFLTR_650_16339) Juniper Networks TDI Filter Driver (NEOFLTR_650_16339)
DRV:64bit: - [2010.07.27 10:14:24 | 006,465,632 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64) Logitech Webcam C160(UVC)
DRV:64bit: - [2010.07.27 10:12:16 | 000,339,040 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2010.07.27 10:11:38 | 000,271,712 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvpopf64.sys -- (lvpopf64)
DRV:64bit: - [2010.07.15 14:47:42 | 000,116,240 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2010.05.07 19:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:64bit: - [2010.05.07 19:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2010.01.27 12:22:02 | 000,072,216 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
DRV:64bit: - [2010.01.27 12:21:36 | 000,011,552 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lmimirr.sys -- (lmimirr)
DRV:64bit: - [2009.12.02 12:20:56 | 000,137,608 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\EuDisk.sys -- (EuDisk)
DRV:64bit: - [2009.10.21 18:33:02 | 000,474,240 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wfeaglxt.sys -- (WFLR6654) WinFast DTV1800 H (XC3028)
DRV:64bit: - [2009.10.19 05:32:40 | 000,511,232 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AVerAF35.sys -- (AVerAF35)
DRV:64bit: - [2009.07.18 07:18:48 | 000,109,480 | ---- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\jraid.sys -- (JRAID)
DRV:64bit: - [2009.07.16 05:38:40 | 000,015,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 02:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2009.07.14 02:06:43 | 000,060,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\61883.sys -- (61883)
DRV:64bit: - [2009.07.14 02:06:43 | 000,048,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avc.sys -- (Avc)
DRV:64bit: - [2009.07.14 02:06:42 | 000,061,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msdv.sys -- (MSDV)
DRV:64bit: - [2009.07.13 07:34:38 | 000,344,592 | ---- | M] (TechniSat Provide) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MtsBda.sys -- (MTSBDA)
DRV:64bit: - [2009.07.10 05:07:02 | 001,222,144 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.02.17 19:11:25 | 000,031,400 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:64bit: - [2008.08.28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:64bit: - [2007.11.06 22:23:14 | 000,040,464 | ---- | M] (CACE Technologies) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (npf)
DRV:64bit: - [2007.02.16 02:57:06 | 000,040,648 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV:64bit: - [2005.09.23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV:64bit: - [2005.09.09 06:02:29 | 000,047,104 | ---- | M] (Samsung Electronics) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\DgivEcp.sys -- (DgiVecp)
DRV - [2010.03.22 12:19:50 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysWOW64\drivers\npf.sys -- (npf)
DRV - [2010.01.27 12:22:02 | 000,015,928 | ---- | M] (LogMeIn, Inc.) [Kernel | Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\rainfo.sys -- (LMIInfo)
DRV - [2009.12.02 12:20:58 | 000,017,800 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\eudskacs.sys -- (EUDSKACS)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2008.05.16 17:41:28 | 000,032,240 | ---- | M] (Cyberlink Corp.) [Kernel | Auto | Running] -- C:\Program Files (x86)\CyberLink\PlayMovie\000.fcl -- ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796})
DRV - [2007.02.16 02:57:06 | 000,040,648 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV - [2004.12.23 17:27:56 | 000,027,392 | ---- | M] (Ulead Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\ULCDRHlp.sys -- (ULCDRHlp)
DRV - [2004.08.11 08:39:38 | 000,041,984 | ---- | M] (Samsung Electronics Co., Ltd.) [Kernel | Auto | Stopped] -- C:\Windows\SysWOW64\drivers\DGIVECP.SYS -- (DgiVecp)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {95289393-33EA-4F8D-B952-483415B9C955}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory =
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes,DefaultScope = {95289393-33EA-4F8D-B952-483415B9C955}
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes\{05DC338B-368B-49D0-A9AD-9945A2C5C402}: "URL" = http://www.google.cz/search?q={searchTe ... {startPage}
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?clien ... E1903ECB9D
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes\{8E02D41C-5924-4816-9490-33CCD28BEB72}: "URL" = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}: "URL" = http://search.qip.ru/search?query={searchTerms}&from=IE
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\..\SearchScopes\{ABEF8372-8468-4952-B495-02A8828E140C}: "URL" = http://search.centrum.cz/index.php?q={s ... trum-1.0.0
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: ""
FF - prefs.js..browser.search.defaultenginename: ""
FF - prefs.js..browser.search.defaultthis.engineName: " "
FF - prefs.js..browser.search.order.1: ""
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "file://///WL-500GPV2/part0/intra/index.html"
FF - prefs.js..extensions.enabledItems: LogMeInClient@logmein.com:1.0.0.608
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_233.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\Windows\system32\TVUAx\npTVUAx.dll (TVU networks)
FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.669: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.669: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.669: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.669: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.669: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0: C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\ROMAN\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\ROMAN\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\ROMAN\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011.10.26 15:50:41 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3C5F0F00-683D-4847-89C8-E7AF64FD1CFB}: C:\Program Files (x86)\RelevantKnowledge [2012.05.02 10:11:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox 3\components [2012.04.24 23:24:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox 3\plugins [2012.04.17 23:09:36 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\te_9.0@nokia.com: C:\Program Files (x86)\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_9.0 [2012.01.15 18:15:25 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\ROMAN\AppData\Roaming\IDM\idmmzcc5 [2012.03.26 20:15:52 | 000,000,000 | ---D | M]

[2012.02.17 21:41:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Extensions
[2012.05.02 09:29:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions
[2012.03.11 14:40:48 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2012.02.17 21:52:12 | 000,000,000 | ---D | M] (TVU Web Player) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\firefox@tvunetworks.com
[2012.02.17 21:52:11 | 000,000,000 | ---D | M] (LogMeIn, Inc. Remote Access Plugin) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\LogMeInClient@logmein.com
[2012.02.17 21:52:12 | 000,000,000 | ---D | M] (Ovi Maps 3D browser plugin) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\maps@ovi.com
[2011.08.18 11:06:11 | 000,002,396 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\searchplugins\askcom.xml
[2012.02.17 21:50:56 | 000,000,000 | -H-- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\searchplugins\searchplugins.event
() (No name found) -- C:\USERS\ROMAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LS90GVHB.DEFAULT\EXTENSIONS\{35106BCA-6C78-48C7-AC28-56DF30B51D2A}.XPI
() (No name found) -- C:\USERS\ROMAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LS90GVHB.DEFAULT\EXTENSIONS\{A7C6CF7F-112C-4500-A7EA-39801A327E5F}.XPI
() (No name found) -- C:\USERS\ROMAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LS90GVHB.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\USERS\ROMAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LS90GVHB.DEFAULT\EXTENSIONS\DIVXWEBPLAYER@DIVX.COM.XPI
() (No name found) -- C:\USERS\ROMAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LS90GVHB.DEFAULT\EXTENSIONS\NELINKA@SHABBI.CZ.XPI
() (No name found) -- C:\USERS\ROMAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LS90GVHB.DEFAULT\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM.XPI

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\17.0.963.56\pdf.dll
CHR - plugin: Google Gears 0.5.33.0 (Enabled) = C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\17.0.963.56\gears.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\17.0.963.56\gcswf32.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.220.4 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U22 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\np-mswmp.dll
CHR - plugin: QuickTime Plug-in 7.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npqtplugin7.dll
CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files (x86)\Mozilla Firefox 3\plugins\npwachk.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Google Update (Enabled) = C:\Users\ROMAN\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Windows Activation Technologies (Enabled) = C:\Windows\system32\Wat\npWatWeb.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.51204.0\npctrl.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: CacheList = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\amhhdbdhoghppijbjfdkiaconkmfbbpa\2.3.3_0\
CHR - Extension: CacheList = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\amhhdbdhoghppijbjfdkiaconkmfbbpa\2.3.6_0\
CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\
CHR - Extension: RelevantKnowledge = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.332.1_0\

O1 HOSTS File: ([2012.01.17 21:04:01 | 000,000,191 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 serial.alcohol-soft.com
O1 - Hosts: 127.0.0.1 www.alcohol-soft.com
O1 - Hosts: 127.0.0.1 images.alcohol-soft.com
O1 - Hosts: 127.0.0.1 trial.alcohol-soft.com
O1 - Hosts: 127.0.0.1 alcohol-soft.com
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (VMN Toolbar) - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\Program Files (x86)\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O2 - BHO: (NXIECatcher Class) - {83B80A9C-D91A-4F22-8DCF-EA7204039F79} - C:\Program Files (x86)\Xi\NetXfer\NXIEHelper.dll (Xi)
O2 - BHO: (SnapFlash Class) - {A44CBB0B-C77D-4BF5-87CC-B4EE79AD1B7E} - C:\Program Files (x86)\Common Files\justDo\Jd2002.dll (justDo Software)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll ()
O3 - HKLM\..\Toolbar: (VMN Toolbar) - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\Program Files (x86)\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O3 - HKLM\..\Toolbar: (NetXfer) - {C16CBAAC-A75C-4DB5-A0DD-CDF5CAFCDD3A} - C:\Program Files (x86)\Xi\NetXfer\NXToolBar.dll (Xi)
O3 - HKLM\..\Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - No CLSID value found.
O4:64bit: - HKLM..\Run: [LogMeIn GUI] C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe (LogMeIn, Inc.)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [googletalk] C:\Program Files (x86)\Google\Google Talk\googletalk.exe (Google)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [iTraffic Monitor] C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe (Charles DeWeese)
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKLM..\Run: [TurboV EVO] C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe (Leadtek Research Inc.)
O4 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001..\Run: [] File not found
O4 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001..\Run: [Facebook Update] C:\Users\ROMAN\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe (Samsung)
O4 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()
O4 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001..\Run: [supertintin_skype] File not found
O4 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe (Leadtek Research Inc.)
O4 - Startup: C:\Users\ROMAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Startup.event ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-876401281-3636213226-3406816674-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: &Stáhnout všechno FlashGetem - C:\Program Files (x86)\FlashGet\jc_all.htm File not found
O8:64bit: - Extra context menu item: ????3?? - Reg Error: Value error. File not found
O8:64bit: - Extra context menu item: ????3?????? - Reg Error: Value error. File not found
O8:64bit: - Extra context menu item: Download all by FlashGet3 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O8:64bit: - Extra context menu item: Download by FlashGet3 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8:64bit: - Extra context menu item: Save Flash with Flash Catcher - C:\Program Files (x86)\Common Files\justDo\IECatcher.DLL (justDo Software)
O8:64bit: - Extra context menu item: Stáhnout Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
O8:64bit: - Extra context menu item: Stáhnout pomocí NetXferu - C:\Program Files (x86)\Xi\NetXfer\NXAddLink.html ()
O8:64bit: - Extra context menu item: Stáhnout video Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
O8:64bit: - Extra context menu item: Stáhnout vše Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
O8:64bit: - Extra context menu item: Stáhnout vše pomocí Net&Xferu - C:\Program Files (x86)\Xi\NetXfer\NXAddList.html ()
O8:64bit: - Extra context menu item: Stáhnout vybrané Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
O8:64bit: - Extra context menu item: 使用快车3下载 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8:64bit: - Extra context menu item: 使用快车3下载全部链接 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: &Stáhnout všechno FlashGetem - C:\Program Files (x86)\FlashGet\jc_all.htm File not found
O8 - Extra context menu item: ????3?? - Reg Error: Value error. File not found
O8 - Extra context menu item: ????3?????? - Reg Error: Value error. File not found
O8 - Extra context menu item: Download all by FlashGet3 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download by FlashGet3 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: Save Flash with Flash Catcher - C:\Program Files (x86)\Common Files\justDo\IECatcher.DLL (justDo Software)
O8 - Extra context menu item: Stáhnout Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: Stáhnout pomocí NetXferu - C:\Program Files (x86)\Xi\NetXfer\NXAddLink.html ()
O8 - Extra context menu item: Stáhnout video Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
O8 - Extra context menu item: Stáhnout vše Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Stáhnout vše pomocí Net&Xferu - C:\Program Files (x86)\Xi\NetXfer\NXAddList.html ()
O8 - Extra context menu item: Stáhnout vybrané Free Download Managerem - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
O8 - Extra context menu item: 使用快车3下载 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: 使用快车3下载全部链接 - C:\Users\ROMAN\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files (x86)\ICQ7.6\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files (x86)\ICQ7.6\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Flash Catcher - {90BAE0EF-F4BF-4FAC-B2EC-2C725C34AF12} - C:\Program Files (x86)\Common Files\justDo\IECatcher.DLL (justDo Software)
O9 - Extra 'Tools' menuitem : Flash Catcher - {90BAE0EF-F4BF-4FAC-B2EC-2C725C34AF12} - C:\Program Files (x86)\Common Files\justDo\IECatcher.DLL (justDo Software)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16:64bit: - DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_01)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {0427F569-3D57-4F10-B9FB-8D71A6A7BE24} file:///C:/Users/ROMAN/AppData/Local/Temp/KJPL60/frmeditor.ocx (FormelEditor Control)
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/ ... ontrol.cab (Office Genuine Advantage Validation Tool)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlm.tools.akamai.com/dlmanager/v ... .2.5.7.cab (DLM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/Juni ... Client.cab (JuniperSetupClientControl Class)
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com/activex/ractrl.cab?lmi=100 (Performance Viewer Activex Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138 10.0.0.50
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E5F14682-7CF1-4ACC-AB77-273B148D4CB8}: DhcpNameServer = 10.0.0.138 10.0.0.50
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (systempropertiesperformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: vidc.i420 - lvcod64.dll (Logitech Inc.)
Drivers32: msacm.ac3acm - C:\Windows\SysWow64\ac3acm.acm (fccHandler)
Drivers32: msacm.dvacm - c:\Program Files (x86)\Common Files\Ulead Systems\VIO\DVACM.acm (Corel TW Corp.)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codec - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - File not found
Drivers32: msacm.l3fhg - C:\Windows\SysWow64\mp3fhg.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Program Files (x86)\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
Drivers32: VIDC.FMVC - C:\Windows\SysWow64\fmcodec.DLL (Fox Magic Software)
Drivers32: vidc.i420 - C:\Windows\SysWow64\lvcodec2.dll (Logitech Inc.)
Drivers32: vidc.MP42 - C:\Windows\SysWow64\MPG4c32.dll (Microsoft Corporation)
Drivers32: vidc.MP43 - C:\Windows\SysWow64\MPG4c32.dll (Microsoft Corporation)
Drivers32: vidc.MPG4 - C:\Windows\SysWow64\MPG4c32.dll (Microsoft Corporation)
Drivers32: vidc.tscc - C:\Windows\SysWow64\tsccvid.dll (TechSmith Corporation)
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.x264 - C:\Windows\SysWow64\x264vfw.dll ()
Drivers32: VIDC.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
Drivers32: VIDC.YV12 - C:\Windows\SysWow64\yv12vfw.dll (www.helixcommunity.org)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2012.05.02 10:52:15 | 000,595,456 | ---- | C] (OldTimer Tools) -- C:\Users\ROMAN\Desktop\OTL.exe
[2012.05.02 08:59:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge

========== Files - Modified Within 7 Days ==========

[2012.05.02 10:58:02 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.05.02 10:52:23 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\ROMAN\Desktop\OTL.exe
[2012.05.02 10:48:02 | 000,000,928 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001UA.job
[2012.05.02 10:27:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001UA.job
[2012.05.02 10:23:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012.05.02 09:22:15 | 000,014,224 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.05.02 09:22:15 | 000,014,224 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.05.02 09:06:13 | 000,000,177 | -H-- | M] () -- C:\dvmexp.idx
[2012.05.02 08:58:57 | 000,000,200 | ---- | M] () -- C:\Windows\tasks\AutoKMS.job
[2012.05.02 08:58:31 | 000,000,202 | ---- | M] () -- C:\Windows\tasks\AutoKMSDaily.job
[2012.05.02 08:58:13 | 000,078,848 | ---- | M] () -- C:\Windows\KMSEmulator.exe
[2012.05.02 08:52:29 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.05.02 08:52:19 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\lvuvc.hs
[2012.05.02 08:51:57 | 3219,693,568 | -HS- | M] () -- C:\hiberfil.sys
[2012.05.01 19:48:00 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001Core.job
[2012.05.01 12:27:00 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001Core1cc7c62fc3809f1.job
[2012.04.30 09:39:19 | 000,000,949 | ---- | M] () -- C:\Users\ROMAN\Desktop\Rozvrhy do školy Roman – zástupce.lnk

========== Files Created - No Company Name ==========

[2012.05.02 10:58:02 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.05.02 10:50:31 | 002,954,021 | ---- | C] () -- C:\Users\ROMAN\Desktop\P9060301.JPG
[2012.04.30 09:39:19 | 000,000,949 | ---- | C] () -- C:\Users\ROMAN\Desktop\Rozvrhy do školy Roman – zástupce.lnk
[2012.02.17 21:37:08 | 000,000,000 | -H-- | C] () -- C:\Users\ROMAN\AppData\Roaming\Roaming.event
[2012.02.17 21:37:08 | 000,000,000 | -H-- | C] () -- C:\Users\ROMAN\AppData\Local\Local.event
[2012.01.31 19:15:44 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2012.01.31 19:15:42 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll
[2012.01.31 19:15:42 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll
[2012.01.31 19:15:42 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll
[2012.01.31 19:15:42 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll
[2012.01.02 22:13:11 | 000,003,584 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.01.02 21:31:12 | 000,484,352 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2012.01.02 20:45:12 | 000,000,028 | ---- | C] () -- C:\Windows\pspvc_path.ini
[2012.01.01 21:53:36 | 000,000,002 | ---- | C] () -- C:\Windows\SysWow64\Dvbpws.dll
[2011.12.21 23:01:57 | 007,437,824 | ---- | C] () -- C:\Windows\SysWow64\smfcore.dll
[2011.12.21 23:01:57 | 000,383,238 | ---- | C] () -- C:\Windows\SysWow64\libmp3lame-0.dll
[2011.12.21 17:06:28 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011.12.21 17:06:27 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011.12.21 17:06:27 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011.12.21 17:06:27 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011.12.21 17:06:26 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011.12.16 12:09:21 | 000,156,160 | ---- | C] () -- C:\Windows\SysWow64\WS_ContextMenu.dll
[2011.12.13 12:26:41 | 000,647,168 | ---- | C] () -- C:\Windows\AutoKMS.exe
[2011.12.13 12:26:41 | 000,000,184 | ---- | C] () -- C:\Windows\AutoKMS.ini
[2011.12.13 12:26:18 | 000,078,848 | ---- | C] () -- C:\Windows\KMSEmulator.exe
[2011.11.04 20:56:25 | 000,000,136 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2011.11.04 14:33:12 | 000,061,440 | ---- | C] () -- C:\Windows\SysWow64\drivers\bocf.sys
[2011.07.31 15:17:04 | 000,049,152 | R--- | C] () -- C:\Windows\SysWow64\AVerIO.dll
[2011.07.31 15:17:04 | 000,003,456 | R--- | C] () -- C:\Windows\SysWow64\AVerIO.sys
[2011.07.31 15:16:57 | 000,598,016 | R--- | C] () -- C:\Windows\SysWow64\sptlib21.dll
[2011.07.31 15:16:57 | 000,307,200 | R--- | C] () -- C:\Windows\SysWow64\sptlib01.dll
[2011.07.31 15:16:57 | 000,294,912 | R--- | C] () -- C:\Windows\SysWow64\sptlib11.dll
[2011.07.31 15:16:57 | 000,290,816 | R--- | C] () -- C:\Windows\SysWow64\sptlib22.dll
[2011.07.31 15:16:57 | 000,249,856 | R--- | C] () -- C:\Windows\SysWow64\sptlib03.dll
[2011.07.31 15:16:57 | 000,225,280 | R--- | C] () -- C:\Windows\SysWow64\sptlib02.dll
[2011.07.31 15:16:57 | 000,135,168 | R--- | C] () -- C:\Windows\SysWow64\sptlib12.dll
[2011.07.31 13:13:25 | 000,000,350 | ---- | C] () -- C:\Windows\SysWow64\AF15IRTBL.bin
[2011.07.31 12:35:44 | 000,000,024 | ---- | C] () -- C:\Windows\softcsa.ini
[2011.07.21 17:55:26 | 000,007,630 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\resmon.resmoncfg
[2011.06.07 23:10:27 | 000,001,606 | ---- | C] () -- C:\Windows\SysWow64\font.ini
[2011.04.09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011.03.30 19:37:02 | 000,000,041 | -HS- | C] () -- C:\ProgramData\.zreglib
[2011.03.30 18:16:55 | 000,001,316 | ---- | C] () -- C:\Windows\RBSystem.ini
[2011.03.30 18:13:05 | 000,397,312 | ---- | C] () -- C:\Windows\esi_kl01.dat
[2011.03.30 18:09:30 | 000,000,670 | ---- | C] () -- C:\Windows\ESIDATA.ini
[2011.03.06 12:47:07 | 000,001,184 | ---- | C] () -- C:\Windows\SysWow64\secushr.dat
[2011.03.03 19:18:40 | 000,000,248 | ---- | C] () -- C:\Windows\SysWow64\secustat.dat
[2011.02.24 20:42:06 | 000,000,816 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\SRDownloader(3).nast
[2011.02.22 12:11:24 | 000,193,891 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\SRDownloader(2).err
[2011.02.22 12:05:14 | 000,001,064 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\SRDownloader(2).nast
[2011.02.18 20:55:00 | 000,001,261 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\SRDownloader.err
[2011.02.18 20:51:24 | 000,001,048 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\SRDownloader.nast
[2011.02.08 11:56:55 | 000,213,640 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2010.12.18 15:33:58 | 000,016,384 | ---- | C] () -- C:\Windows\SysWow64\FileOps.exe
[2010.11.13 19:58:56 | 001,701,962 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010.11.07 20:29:20 | 000,454,656 | ---- | C] () -- C:\Windows\ssndii.exe
[2010.10.07 21:07:04 | 000,090,112 | ---- | C] () -- C:\Windows\RSetupCE.exe
[2010.09.27 19:50:17 | 000,011,832 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp64.sys
[2010.09.27 19:50:17 | 000,010,216 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp32.sys
[2010.09.15 07:54:09 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010.09.13 20:01:32 | 000,035,328 | ---- | C] () -- C:\Windows\SysWow64\INETWH32.DLL
[2010.09.13 20:01:32 | 000,009,136 | ---- | C] () -- C:\Windows\SysWow64\INETWH16.DLL
[2010.09.13 20:01:32 | 000,004,528 | ---- | C] () -- C:\Windows\SysWow64\SETBROWS.EXE
[2010.09.10 09:40:36 | 000,005,860 | ---- | C] () -- C:\Windows\SysWow64\FMCodec.dat
[2010.09.05 22:17:43 | 000,000,917 | ---- | C] () -- C:\Windows\SysWow64\CLWatson.ini
[2010.09.03 21:22:40 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010.09.03 21:22:39 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2010.09.03 21:22:35 | 000,765,952 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2010.09.03 21:22:35 | 000,134,144 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2010.09.03 21:22:35 | 000,108,032 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2010.09.01 23:16:22 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2010.09.01 10:13:48 | 000,000,088 | RHS- | C] () -- C:\ProgramData\720CD3C192.sys
[2010.09.01 10:13:47 | 000,005,018 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2010.08.31 20:33:16 | 000,190,976 | ---- | C] () -- C:\Windows\SysWow64\WgaLogon.dll
[2010.08.31 20:33:14 | 000,414,208 | ---- | C] () -- C:\Windows\SysWow64\WgaTray.exe
[2010.08.31 20:26:05 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.08.31 18:20:10 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010.08.31 18:12:04 | 000,081,920 | R--- | C] () -- C:\Windows\WiaInst.exe
[2010.08.31 17:17:02 | 000,000,025 | ---- | C] () -- C:\Windows\libem.INI
[2010.08.31 14:44:09 | 000,024,576 | R--- | C] () -- C:\Windows\SysWow64\AsIO.dll
[2010.08.31 14:44:09 | 000,013,368 | R--- | C] () -- C:\Windows\SysWow64\drivers\AsIO.sys
[2010.08.31 14:39:19 | 000,035,975 | ---- | C] () -- C:\Windows\Ascd_log.ini
[2010.08.31 14:38:57 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2010.08.31 14:38:54 | 000,026,147 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2010.07.27 10:03:20 | 010,829,656 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2010.07.27 10:03:20 | 000,102,744 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe
[2010.07.27 10:03:18 | 000,290,648 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2010.06.16 00:28:54 | 000,002,857 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat

========== LOP Check ==========

[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\aHisoft
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Autodesk
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\BITS
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Citrix
[2012.04.05 19:45:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DAEMON Tools Lite
[2012.03.26 20:11:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DMCache
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Dropbox
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FileZilla
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FlashGet
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FlashGetBHO
[2012.03.12 21:05:15 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Free Download Manager
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FreeAudioPack
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GeoGet
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GetRightToGo
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GHISLER
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ICAClient
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ICQ
[2012.03.26 20:15:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\IDM
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\JGoodies
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Jpeg Resampler
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks
[2012.03.12 22:25:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\KOSTAL Solar Electric GmbH
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Leadertech
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\LockLizard
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\NCH Swift Sound
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Nokia
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Opera
[2012.02.21 00:03:12 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Pamela
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PC Suite
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PDF reDirect
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PeaZip
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PowerCinema
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\QIP
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Red Kawa
[2012.02.29 22:55:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Samsung
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SMS posílač Treca
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Software602
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Sony
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\streamripper
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TeamViewer
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\UDC Profiles
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Ulead Systems
[2012.03.12 21:05:15 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\uTorrent
[2012.02.17 21:39:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\vmntoolbar
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\VSRevoGroup
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Wondershare Video Converter Ultimate
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Xi
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\YouTube Downloader
[2012.05.02 08:58:57 | 000,000,200 | ---- | M] () -- C:\Windows\Tasks\AutoKMS.job
[2012.05.02 08:58:31 | 000,000,202 | ---- | M] () -- C:\Windows\Tasks\AutoKMSDaily.job
[2012.05.01 19:48:00 | 000,000,906 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001Core.job
[2012.05.02 10:48:02 | 000,000,928 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001UA.job
[2012.03.20 08:08:01 | 000,032,586 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========

< >

< netsvc >

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\ERDNT\cache64\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

romcolahvac
Návštěvník
Návštěvník
Příspěvky: 186
Registrován: 23 pro 2008 00:30

Re: Prosím o kontrolu logu - pomalý náběh

#6 Příspěvek od romcolahvac »

< MD5 for: AUTOCHK.EXE >
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2009.10.31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\ERDNT\cache86\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.08.03 08:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2009.10.31 08:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 07:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 08:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 07:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 08:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2009.08.03 08:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

< MD5 for: HAL.DLL >
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\ERDNT\cache86\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\ERDNT\cache64\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\ERDNT\cache86\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\ERDNT\cache64\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 07:28:24 | 001,893,248 | ---- | M] (Microsoft Corporation) MD5=1F748D5439B65E0BEBD92F65048F030D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_0fb918de99201ffb\tcpip.sys
[2011.09.29 19:41:37 | 001,912,176 | ---- | M] (Microsoft Corporation) MD5=3810F06A4D74A7D62641EE73D6B3C660 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21828_none_11c6e9949627e69c\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2011.06.21 08:16:55 | 001,888,128 | ---- | M] (Microsoft Corporation) MD5=5279D4DD69C7C71524B8E7A5746D15CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20992_none_0f8ed978993fa916\tcpip.sys
[2010.06.14 08:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2011.04.25 07:32:22 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=61DC720BB065D607D5823F13D2A64321 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_0f668bf97fd90dd3\tcpip.sys
[2010.06.14 08:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2011.04.25 07:33:51 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316\tcpip.sys
[2011.06.21 08:20:30 | 001,914,752 | ---- | M] (Microsoft Corporation) MD5=A0EB71E0DC047C7CC95CD6AB4036296E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21754_none_11a276c29643d7ec\tcpip.sys
[2011.09.29 18:17:51 | 001,886,064 | ---- | M] (Microsoft Corporation) MD5=AC3E29880DB5659532A1AA3439304A43 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21060_none_0fad20ca992955d7\tcpip.sys
[2011.04.25 08:16:34 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357a\tcpip.sys
[2011.06.21 08:27:14 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=B9D87C7707F058AC652A398CD28DE14B -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16839_none_0f4d1e3b7feb1307\tcpip.sys
[2011.06.21 08:34:00 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=F0E98C00A09FDF791525829A1D14240F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17638_none_11327af77d12659c\tcpip.sys
[2011.09.29 18:24:44 | 001,897,328 | ---- | M] (Microsoft Corporation) MD5=F18F56EFC0BFB9C87BA01C37B27F4DA5 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16889_none_0f170e9f80139ebc\tcpip.sys
[2011.09.29 18:29:28 | 001,923,952 | ---- | M] (Microsoft Corporation) MD5=FC62769E7BFF2896035AEED399108162 -- C:\Windows\ERDNT\cache64\tcpip.sys
[2011.09.29 18:29:28 | 001,923,952 | ---- | M] (Microsoft Corporation) MD5=FC62769E7BFF2896035AEED399108162 -- C:\Windows\SysNative\drivers\tcpip.sys
[2011.09.29 18:29:28 | 001,923,952 | ---- | M] (Microsoft Corporation) MD5=FC62769E7BFF2896035AEED399108162 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17697_none_10f09b257d43f3eb\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\ERDNT\cache86\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\ERDNT\cache64\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\ERDNT\cache64\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< >

< %systemroot%*.* /U /s >
[1 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[2 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[7 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >
[2010.03.10 18:51:36 | 000,008,904 | ---- | M] (HTC) -- C:\EnterBootloader.exe
[2010.03.10 18:51:36 | 000,175,304 | ---- | M] (HTC) -- C:\rapitool.exe
[2010.03.10 18:51:36 | 000,013,512 | ---- | M] () -- C:\RUUGetInfo.exe
[2010.03.10 18:54:08 | 001,481,928 | ---- | M] (HTC) -- C:\task29.exe

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2012.02.17 21:39:02 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ABBYY
[2012.04.15 21:51:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Adobe
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\aHisoft
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Apple Computer
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ArcSoft
[2012.02.17 21:39:02 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ATI
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Autodesk
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\BITS
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Citrix
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Corel
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\CyberLink
[2012.04.05 19:45:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DAEMON Tools Lite
[2012.03.26 20:11:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DMCache
[2012.02.17 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Download Manager
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Dropbox
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FileZilla
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FlashGet
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FlashGetBHO
[2012.03.12 21:05:15 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Free Download Manager
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FreeAudioPack
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GeoGet
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GetRightToGo
[2012.02.17 21:39:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GHISLER
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ICAClient
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ICQ
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Identities
[2012.03.26 20:15:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\IDM
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\InstallShield
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\JGoodies
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Jpeg Resampler
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks
[2012.03.12 22:25:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\KOSTAL Solar Electric GmbH
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Leadertech
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\LockLizard
[2012.02.17 21:39:05 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Logitech
[2012.02.17 21:39:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Macromedia
[2012.02.17 21:39:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Malwarebytes
[2012.02.17 21:39:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Media Center Programs
[2012.04.04 21:37:22 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Media Player Classic
[2012.02.17 21:39:06 | 000,000,000 | --SD | M] -- C:\Users\ROMAN\AppData\Roaming\Microsoft
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Mozilla
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\NCH Swift Sound
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Nero
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Nokia
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Opera
[2012.02.21 00:03:12 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Pamela
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PC Suite
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PDF reDirect
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PeaZip
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PowerCinema
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PSpad
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\QIP
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Real
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Red Kawa
[2012.02.29 22:55:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Samsung
[2010.09.03 23:45:26 | 000,000,000 | RH-D | M] -- C:\Users\ROMAN\AppData\Roaming\SecuROM
[2012.04.04 22:26:34 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Skype
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\skypePM
[2012.02.17 21:39:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SMS posílač Treca
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Software602
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Sony
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\streamripper
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TeamViewer
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\U3
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\UDC Profiles
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Ulead Systems
[2012.03.12 21:05:15 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\uTorrent
[2012.02.17 21:39:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\vlc
[2012.02.17 21:39:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\vmntoolbar
[2012.02.17 21:39:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\VSRevoGroup
[2012.04.17 22:33:55 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Winamp
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\WinRAR
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Wondershare Video Converter Ultimate
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Xi
[2012.02.17 21:39:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\YouTube Downloader

< %APPDATA%\*.exe /s >
[2011.05.05 22:10:22 | 000,628,224 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\GeoGet\script\geojarry\geojarryw.exe
[2012.02.12 23:06:20 | 000,313,664 | ---- | M] (OPSWAT, Inc.) -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Host Checker\64bitProxy.exe
[2010.08.03 09:42:04 | 000,300,400 | ---- | M] (Juniper Networks") -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Host Checker\dsHostChecker.exe
[2010.08.03 09:42:04 | 000,234,864 | ---- | M] (Juniper Networks) -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Host Checker\dsHostCheckerProxy.exe
[2010.08.03 09:42:06 | 000,157,040 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Host Checker\InstallHelper.exe
[2010.08.03 09:42:20 | 000,056,072 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Host Checker\uninstall.exe
[2010.06.03 01:46:12 | 000,132,464 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Setup Client\dsmmf.exe
[2010.06.03 01:46:12 | 000,497,008 | ---- | M] (Juniper Networks) -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Setup Client\JuniperSetupClient.exe
[2010.06.03 01:45:36 | 000,330,088 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Setup Client\JuniperSetupClientOCX.exe
[2010.06.03 01:44:10 | 000,218,232 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Setup Client\JuniperSetupXP.exe
[2010.06.03 01:46:18 | 000,050,840 | ---- | M] (Juniper Networks) -- C:\Users\ROMAN\AppData\Roaming\Juniper Networks\Setup Client\uninstall.exe
[2011.10.26 15:31:58 | 000,053,632 | ---- | M] (Adobe Systems Inc.) -- C:\Users\ROMAN\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2010.11.05 23:10:57 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
[2011.11.04 20:17:08 | 000,370,070 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{664137C5-56B0-41D7-976C-9F93D8FF83A0}\_6FEFF9B68218417F98F549.exe
[2011.11.04 20:17:08 | 000,370,070 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{664137C5-56B0-41D7-976C-9F93D8FF83A0}\_9A2C31A60C05AF5B252A47.exe
[2011.11.04 20:17:08 | 000,370,070 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{664137C5-56B0-41D7-976C-9F93D8FF83A0}\_CFED7B44BB2D734AE472ED.exe
[2010.09.01 11:13:13 | 000,029,926 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2011.08.05 15:34:41 | 000,001,078 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{B4DBAD3D-84EC-4A99-9E73-37CEDF7A0B86}\_18be6784.exe
[2010.09.10 16:16:50 | 000,010,134 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2011.12.15 17:14:40 | 000,375,184 | ---- | M] (LogMeIn, Inc.) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\LogMeInClient@logmein.com\plugins\x64\LMIGuardian.exe
[2011.05.16 13:31:42 | 000,077,128 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\LogMeInClient@logmein.com\plugins\x64\LMIProxyHelper.exe
[2011.12.15 17:14:26 | 000,374,160 | ---- | M] (LogMeIn, Inc.) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\LogMeInClient@logmein.com\plugins\x86\LMIGuardian.exe
[2011.05.16 13:31:42 | 000,070,984 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\extensions\LogMeInClient@logmein.com\plugins\x86\LMIProxyHelper.exe
[2012.03.05 19:06:30 | 000,106,408 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AgentInstaller.exe
[2012.03.05 19:06:30 | 000,101,288 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AgentUpdate.exe
[2012.03.05 19:06:30 | 000,021,416 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\KiesPDLR.exe
[2012.02.03 18:50:16 | 000,943,504 | ---- | M] (Samsung) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\Kies.exe
[2012.02.03 18:50:20 | 000,278,928 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\KiesDriverInstaller.exe
[2012.02.01 18:17:02 | 000,308,224 | ---- | M] (Samsung) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\KiesLogger.exe
[2012.02.03 18:50:18 | 003,508,624 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\KiesTrayAgent.exe
[2012.01.31 19:16:12 | 000,290,816 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\DeviceDataService.exe
[2012.01.31 19:16:12 | 000,693,248 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\DeviceManager.exe
[2012.02.03 18:50:22 | 000,067,472 | ---- | M] (Samsung) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\Kies_Tutorial.exe
[2012.03.05 19:06:30 | 000,106,408 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\AgentInstaller.exe
[2012.03.05 19:06:30 | 000,101,288 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\AgentUpdate.exe
[2012.02.03 18:50:26 | 000,131,984 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.03.05 19:06:30 | 000,021,416 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\KiesPDLR.exe
[2012.02.03 18:50:28 | 003,570,312 | ---- | M] (Freeware) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\MediaModules\MyFreeCodecPack.exe
[2012.01.31 19:15:38 | 024,123,656 | ---- | M] (SAMSUNG Electronics Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
[2012.02.03 18:50:30 | 000,371,088 | ---- | M] (ml) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Temp\Kies.Update.exe
[2012.04.04 07:05:32 | 000,371,088 | ---- | M] (ml) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Updater\Kies.Update.exe
[2011.08.28 15:57:38 | 000,000,000 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\SMS posílač Treca\SMSposilac.exe
[2007.10.23 09:27:20 | 000,110,592 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\U3\temp\cleanup.exe
[2008.05.02 10:41:48 | 003,493,888 | -H-- | M] (SanDisk Corporation) -- C:\Users\ROMAN\AppData\Roaming\U3\temp\Launchpad Removal.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2012.05.02 11:23:06 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012.05.02 08:58:57 | 000,000,200 | ---- | M] () -- C:\Windows\Tasks\AutoKMS.job
[2012.05.02 08:58:31 | 000,000,202 | ---- | M] () -- C:\Windows\Tasks\AutoKMSDaily.job
[2012.05.01 19:48:00 | 000,000,906 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001Core.job
[2012.05.02 10:48:02 | 000,000,928 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001UA.job
[2012.05.01 12:27:00 | 000,000,910 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001Core1cc7c62fc3809f1.job
[2012.05.02 11:27:23 | 000,000,962 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-876401281-3636213226-3406816674-1001UA.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2012.05.02 08:53:51 | 000,041,749 | ---- | M] () -- C:\Windows\system32\DTVWizard_LOG.txt

< %SYSTEMDRIVE%\*.exe >
[2010.03.10 18:51:36 | 000,008,904 | ---- | M] (HTC) -- C:\EnterBootloader.exe
[2010.03.10 18:51:36 | 000,175,304 | ---- | M] (HTC) -- C:\rapitool.exe
[2010.03.10 18:51:36 | 000,013,512 | ---- | M] () -- C:\RUUGetInfo.exe
[2010.03.10 18:54:08 | 001,481,928 | ---- | M] (HTC) -- C:\task29.exe

< %userprofile%\Plocha\*.* >

< %userprofile%\Desktop\*.* >
[2011.08.17 20:54:32 | 000,000,977 | ---- | M] () -- C:\Users\ROMAN\Desktop\Burgman 400 – zástupce.lnk
[2012.02.15 13:05:15 | 000,000,282 | -HS- | M] () -- C:\Users\ROMAN\Desktop\desktop.ini
[2011.01.30 11:29:44 | 000,000,462 | ---- | M] () -- C:\Users\ROMAN\Desktop\DISK D.lnk
[2011.07.05 15:52:03 | 000,001,083 | ---- | M] () -- C:\Users\ROMAN\Desktop\Dokumenty..lnk
[2011.07.05 15:52:03 | 000,001,083 | ---- | M] () -- C:\Users\ROMAN\Desktop\Dokumenty.lnk
[2011.07.05 15:30:45 | 000,001,788 | ---- | M] () -- C:\Users\ROMAN\Desktop\DRAHSTYL – zástupce.lnk
[2011.01.30 11:38:52 | 000,000,846 | ---- | M] () -- C:\Users\ROMAN\Desktop\FIREFOX STAHOVANI – zástupce.lnk
[2012.01.01 17:25:03 | 000,001,198 | ---- | M] () -- C:\Users\ROMAN\Desktop\Format Factory.lnk
[2012.01.06 22:33:45 | 000,017,225 | ---- | M] () -- C:\Users\ROMAN\Desktop\FOTOAPARÁT.docx
[2011.06.15 21:14:00 | 000,001,067 | ---- | M] () -- C:\Users\ROMAN\Desktop\Free Download Manager.lnk
[2012.02.05 20:12:02 | 000,001,156 | ---- | M] () -- C:\Users\ROMAN\Desktop\GLD – zástupce.lnk
[2012.05.01 12:32:08 | 003,249,655 | ---- | M] () -- C:\Users\ROMAN\Desktop\KALENDÁŘ PRÁCE ROMAN.docx
[2012.03.29 17:11:36 | 000,414,141 | ---- | M] () -- C:\Users\ROMAN\Desktop\Keška Staňkovka.docx
[2011.01.12 22:47:12 | 000,001,325 | ---- | M] () -- C:\Users\ROMAN\Desktop\lexicon – zástupce.lnk
[2010.09.01 23:09:11 | 000,002,979 | ---- | M] () -- C:\Users\ROMAN\Desktop\Nero Burning ROM.lnk
[2012.05.02 10:52:23 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\ROMAN\Desktop\OTL.exe
[2011.09.06 19:28:18 | 002,954,021 | ---- | M] () -- C:\Users\ROMAN\Desktop\P9060301.JPG
[2010.08.31 21:52:08 | 000,000,359 | ---- | M] () -- C:\Users\ROMAN\Desktop\Počítač – zástupce.lnk
[2011.03.06 20:37:22 | 000,013,825 | ---- | M] () -- C:\Users\ROMAN\Desktop\RapgetRS – zástupce.lnk
[2012.04.03 16:35:00 | 000,000,158 | ---- | M] () -- C:\Users\ROMAN\Desktop\RH-SOLAR-SERVER.URL
[2012.04.30 09:39:19 | 000,000,949 | ---- | M] () -- C:\Users\ROMAN\Desktop\Rozvrhy do školy Roman – zástupce.lnk
[2011.10.21 10:09:37 | 000,000,796 | ---- | M] () -- C:\Users\ROMAN\Desktop\Růžička – zástupce.lnk
[2011.02.24 20:42:28 | 000,001,083 | ---- | M] () -- C:\Users\ROMAN\Desktop\SRDownloader - Share rapid.lnk
[2010.09.01 21:49:18 | 000,000,632 | ---- | M] () -- C:\Users\ROMAN\Desktop\Total Commander.lnk
[2012.03.03 06:06:30 | 000,411,395 | ---- | M] () -- C:\Users\ROMAN\Desktop\Voice.Speed.Dial.1.2.14.Android.apk
[2011.12.16 21:54:01 | 000,000,045 | ---- | M] () -- C:\Users\ROMAN\Desktop\VŠO.URL
[2011.04.13 20:43:09 | 000,000,162 | -H-- | M] () -- C:\Users\ROMAN\Desktop\~$Oja(1).doc

< %ALLUSERSPROFILE%\Plocha\*.* >

< %ALLUSERSPROFILE%\Desktop\*.* >

< *crack* /s >
[2012.02.28 22:00:42 | 006,230,592 | ---- | M] () -- \FIREFOX STAHOVANI\sygic_navigator1126cracked.apk
[2012.02.28 23:57:15 | 004,547,915 | ---- | M] () -- \FIREFOX STAHOVANI\The_Settlers_HD_1.0.3_Cracked_tag3r.apk
[2011.03.03 19:20:53 | 000,004,328 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\jd\plugins\hoster\CrackedCom.class
[2007.07.08 11:34:14 | 000,031,744 | ---- | M] () -- \Program Files (x86)\Alldj_PSP_Converter\crack.exe
[1 \Program Files (x86)\Alldj_PSP_Converter\*.tmp files -> \Program Files (x86)\Alldj_PSP_Converter\*.tmp -> ]
[2010.02.21 02:22:00 | 000,000,386 | ---- | M] () -- \Program Files (x86)\GeoGet\distdata\offline\sysimg\WM\Cracker_Barrel_Restaurants.gif
[2001.08.14 19:31:08 | 000,030,054 | ---- | M] () -- \ProgramData\Autodesk\Inventor Fusion 2012\Design Data\surfaces\Cracks.bmp
[2001.08.14 19:31:08 | 000,030,054 | ---- | M] () -- \Users\All Users\Autodesk\Inventor Fusion 2012\Design Data\surfaces\Cracks.bmp
[2010.02.21 02:22:00 | 000,000,386 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\GeoGet\offline\sysimg\WM\Cracker_Barrel_Restaurants.gif
[2010.02.21 01:22:00 | 000,000,386 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\GeoGet\offline\sysimg\WM\Cracker_Barrel_Restaurants.gif.old
[2011.12.30 12:25:44 | 023,951,794 | ---- | M] () -- \Users\ROMAN\Downloads\GetData Recover My Files Pro v4.9.4.1343-Cracked

< *keygen* /s >
[2007.05.29 00:10:08 | 000,102,400 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\SOFT WWW\Keygen_Ace_Html_v6.60.exe

< *loader* /s >
[2010.03.10 18:51:36 | 000,008,904 | ---- | M] () -- \EnterBootloader.exe
[2012.03.13 21:05:33 | 001,413,152 | ---- | M] () -- \FIREFOX STAHOVANI\BestVideoDownloaderSetup.exe
[2012.03.13 21:22:17 | 000,904,192 | ---- | M] () -- \FIREFOX STAHOVANI\SRDownloader(2).exe
[2012.03.26 21:48:08 | 000,904,192 | ---- | M] () -- \FIREFOX STAHOVANI\SRDownloader.exe
[2009.10.26 22:52:34 | 000,214,528 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\JDownloader.exe
[2011.03.03 19:20:00 | 000,593,293 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\JDownloader.jar
[2011.03.03 19:20:13 | 000,000,100 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\jd\img\hosterlogos\ipauploader.com.png
[2011.03.03 19:20:13 | 000,000,105 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\jd\img\hosterlogos\jdupdateloader.png
[2009.10.07 00:48:58 | 000,000,113 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\jd\img\hosterlogos\uploader.pl.png
[2009.10.01 01:57:04 | 000,003,264 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\jd\plugins\hoster\IPAUploaderCom.class
[2011.03.03 19:20:26 | 000,007,069 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\jd\plugins\hoster\UploaderPl.class
[2009.10.26 22:48:22 | 000,032,222 | ---- | M] () -- \FIREFOX STAHOVANI\JDownloader\JDownloader 0.9.310\licenses\jdownloader.license
[2010.03.09 04:28:40 | 005,297,608 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\Photodownloader.exe
[2010.03.09 01:38:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 01:38:58 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011.05.30 19:57:26 | 000,003,846 | ---- | M] () -- \Program Files (x86)\Adobe\Reader 8.0\Setup Files\{AC76BA86-7AD7-1033-7B44-A80000000002}\ResourceLoader.class
[2008.07.10 01:38:58 | 000,099,678 | ---- | M] () -- \Program Files (x86)\aHisoft\Video Download Studio\Video Downloader Studio.ico
[2004.02.03 10:27:56 | 000,113,664 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[2010.10.07 05:36:40 | 000,265,552 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 05:36:40 | 000,018,264 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2011.09.01 13:13:30 | 000,112,128 | ---- | M] () -- \Program Files (x86)\Common Files\Nokia\Tss\ProductApiLoader\ta_productapiloader.dll
[2009.01.04 19:53:08 | 000,002,945 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\accLoader.ini
[2010.06.26 11:55:30 | 000,111,776 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\VimeoUploader.dll
[2010.06.26 11:55:42 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\de-DE\MediaDownloader.resources.dll
[2010.06.26 11:55:50 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\de-DE\MediaDownloader_Lite.resources.dll
[2010.06.26 11:56:18 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\en-US\MediaDownloader.resources.dll
[2010.06.26 11:56:24 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\en-US\MediaDownloader_Lite.resources.dll
[2010.06.26 11:55:30 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\es-ES\MediaDownloader.resources.dll
[2010.06.26 11:55:42 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\es-ES\MediaDownloader_Lite.resources.dll
[2010.06.26 11:55:30 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\fr-FR\MediaDownloader.resources.dll
[2010.06.26 11:55:34 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\fr-FR\MediaDownloader_Lite.resources.dll
[2010.06.26 11:55:08 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\it-IT\MediaDownloader.resources.dll
[2010.06.26 11:55:20 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\it-IT\MediaDownloader_Lite.resources.dll
[2010.06.26 11:54:44 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\nl-NL\MediaDownloader.resources.dll
[2010.06.26 11:54:54 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\nl-NL\MediaDownloader_Lite.resources.dll
[2010.06.26 11:54:56 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\pl-PL\MediaDownloader.resources.dll
[2010.06.26 11:55:06 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\pl-PL\MediaDownloader_Lite.resources.dll
[2010.06.26 11:54:44 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\ru-RU\MediaDownloader.resources.dll
[2010.06.26 11:54:54 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\ru-RU\MediaDownloader_Lite.resources.dll
[2010.06.26 11:54:44 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\zh-CN\MediaDownloader.resources.dll
[2010.06.26 11:54:56 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\zh-CN\MediaDownloader_Lite.resources.dll
[2010.06.26 11:54:44 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\zh-HK\MediaDownloader.resources.dll
[2010.06.26 11:54:52 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\zh-HK\MediaDownloader_Lite.resources.dll
[2010.06.26 11:54:02 | 000,110,752 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\zh-TW\MediaDownloader.resources.dll
[2010.06.26 11:54:12 | 000,013,472 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\zh-TW\MediaDownloader_Lite.resources.dll
[2009.12.26 14:08:34 | 000,331,976 | ---- | M] () -- \Program Files (x86)\Corel\MLE\VimeoUploader.dll
[2008.05.16 17:40:58 | 000,010,758 | ---- | M] () -- \Program Files (x86)\CyberLink\PlayMovie\mm\MediaCtrl\ImageLoader.kc
[2008.05.16 17:41:04 | 000,003,475 | ---- | M] () -- \Program Files (x86)\CyberLink\PlayMovie\widget\langloader.kc
[2008.05.16 17:41:04 | 000,012,778 | ---- | M] () -- \Program Files (x86)\CyberLink\PlayMovie\widget\layoutloader.kc
[2008.10.21 15:03:08 | 000,010,481 | ---- | M] () -- \Program Files (x86)\CyberLink\PowerCinema\System\KernelCtrl\ImageLoader.kc
[2008.10.21 15:03:08 | 000,009,140 | ---- | M] () -- \Program Files (x86)\CyberLink\PowerCinema\System\KernelCtrl\ImageLoader2.kc
[2008.10.21 15:03:08 | 000,003,482 | ---- | M] () -- \Program Files (x86)\CyberLink\PowerCinema\Widget\langloader.kc
[2008.10.21 15:03:08 | 000,012,741 | ---- | M] () -- \Program Files (x86)\CyberLink\PowerCinema\Widget\layoutloader.kc
[2008.10.23 01:23:04 | 000,011,415 | ---- | M] () -- \Program Files (x86)\CyberLink\TV Enhance\mm\MediaCtrl\ImageLoader.kc
[2008.10.23 01:23:12 | 000,003,492 | ---- | M] () -- \Program Files (x86)\CyberLink\TV Enhance\widget\langloader.kc
[2008.10.23 01:23:12 | 000,012,402 | ---- | M] () -- \Program Files (x86)\CyberLink\TV Enhance\widget\layoutloader.kc
[2009.12.02 12:21:02 | 000,272,776 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\bin\Loader.exe
[2009.09.01 15:30:00 | 000,000,417 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\bin\Loader.exe.manifest
[2008.12.16 12:37:16 | 000,003,614 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\etc\gtk-2.0\gdk-pixbuf.loaders
[2008.12.16 12:17:26 | 000,028,560 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2008.12.16 12:17:22 | 000,027,492 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2008.12.16 12:17:24 | 000,041,827 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2008.12.16 12:17:34 | 000,020,750 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2008.12.16 12:17:26 | 000,027,004 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2008.12.16 12:17:28 | 000,033,364 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2008.12.16 12:17:36 | 000,021,329 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2008.12.16 12:17:20 | 000,035,326 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2008.12.16 12:17:28 | 000,023,528 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2008.12.16 12:17:30 | 000,018,354 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2008.12.16 12:17:34 | 000,023,858 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2008.12.16 12:17:30 | 000,028,334 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2008.12.16 12:17:22 | 000,017,895 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2008.12.16 12:17:32 | 000,023,851 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2008.12.16 12:17:32 | 000,041,060 | ---- | M] () -- \Program Files (x86)\EASEUS\EASEUS Todo Backup 1.1\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2010.10.29 04:18:36 | 000,003,922 | ---- | M] () -- \Program Files (x86)\EWA net\webapps\EWA-net\WEB-INF\classes\com\hp\tis\ewo\feedback\logic\UserContextLoader.class
[2010.03.31 00:09:18 | 000,003,922 | ---- | M] () -- \Program Files (x86)\EWA net\webapps\EWA-net_1112198948\WEB-INF\classes\com\hp\tis\ewo\feedback\logic\UserContextLoader.class
[2011.10.26 15:36:53 | 000,005,795 | ---- | M] () -- \Program Files (x86)\ICQ7.6\imApp\theme\IMAGES\XtraPreloader\loader.jpg
[2011.10.26 15:36:53 | 000,004,180 | ---- | M] () -- \Program Files (x86)\ICQ7.6\imApp\theme\IMAGES\XtraPreloader\zlango-preloader.png
[2011.10.26 15:36:52 | 000,005,520 | ---- | M] () -- \Program Files (x86)\ICQ7.6\imApp\theme\MUICoreLib\xtraLoader.swf

romcolahvac
Návštěvník
Návštěvník
Příspěvky: 186
Registrován: 23 pro 2008 00:30

Re: Prosím o kontrolu logu - pomalý náběh

#7 Příspěvek od romcolahvac »

[2011.10.28 19:37:56 | 000,000,402 | ---- | M] () -- \Program Files (x86)\ICQ7.6\Xtraz\icq\content\profile_lightboxs\preloader.html
[2006.08.16 04:25:58 | 000,174,888 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue.dds
[2006.08.16 04:25:58 | 000,262,272 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue_bump.dds
[2006.08.16 04:26:00 | 000,174,888 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue_lm.dds
[2006.08.16 04:26:00 | 000,349,648 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue_specular.dds
[2006.08.16 04:26:04 | 000,174,888 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderGrey.dds
[2006.08.16 04:26:04 | 000,174,888 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderGrey_lm.dds
[2006.09.04 21:21:28 | 000,301,367 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\SimObjects\GroundVehicles\VEH_Air_BagLoaderBlue\model\VEH_Air_BagLoaderBlue.mdl
[2006.09.04 21:21:30 | 000,301,815 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\SimObjects\GroundVehicles\VEH_Air_BagLoaderGrey\model\VEH_Air_BagLoaderGrey.mdl
[2011.01.11 16:20:20 | 000,017,624 | ---- | M] () -- \Program Files (x86)\Microsoft SQL Server\90\Tools\Binn\SqlResourceLoader.dll
[2011.01.11 16:20:22 | 000,017,624 | ---- | M] () -- \Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\SqlResourceLoader.dll
[2010.12.09 13:10:30 | 000,003,072 | ---- | M] () -- \Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\MapLoader_cze.NLR
[2009.05.31 03:21:00 | 000,071,008 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2009.05.31 03:21:00 | 000,073,568 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2009.09.21 15:04:18 | 000,002,713 | ---- | M] () -- \Program Files (x86)\Red Kawa\Video Converter App\components\uriloader.xpt
[2012.03.30 12:24:00 | 000,069,120 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2012.04.04 07:05:26 | 000,183,696 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2011.09.09 20:18:39 | 018,632,952 | ---- | M] () -- \Program Files (x86)\Sony Media Go Install\PSNDownloaderSetup.exe
[2007.06.29 11:11:00 | 000,001,494 | ---- | M] () -- \Program Files (x86)\Vstep\ShipSim2008\Common\Func_CGRLoader.cgr
[2007.06.29 11:11:00 | 000,020,383 | ---- | M] () -- \Program Files (x86)\Vstep\ShipSim2008\Common\MOD_Preloader\MOD_Preloader_Config.cgr
[2007.06.29 11:11:00 | 000,001,103 | ---- | M] () -- \Program Files (x86)\Vstep\ShipSim2008\Common\MOD_Preloader\MOD_Preloader_Config.xml
[2007.06.29 11:11:00 | 000,008,560 | ---- | M] () -- \Program Files (x86)\Vstep\ShipSim2008\Common\MOD_Preloader\MOD_Preloader_Main.cgr
[2007.06.29 11:11:00 | 000,002,844 | ---- | M] () -- \Program Files (x86)\Vstep\ShipSim2008\Common\MOD_Preloader\MOD_Preloader_Visuals.cgr
[2007.06.29 11:11:24 | 000,005,036 | ---- | M] () -- \Program Files (x86)\Vstep\ShipSim2008\GUI\Widgets\Dialogs\Dialogs_LoaderBar.cgr
[2007.06.29 11:10:34 | 000,016,384 | ---- | M] () -- \Program Files (x86)\Vstep\ShipSim2008\channels\FileLoader.dll
[2011.08.31 15:38:06 | 000,400,896 | ---- | M] () -- \Program Files (x86)\Wondershare\Video Converter Ultimate\DownLoader.exe
[2010.08.25 15:47:42 | 000,475,136 | ---- | M] () -- \Program Files (x86)\YouTube Downloader\YouTubeDownloader.exe
[2010.10.07 05:36:40 | 000,387,408 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 05:36:40 | 000,018,264 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2011.06.21 01:36:54 | 000,017,661 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\JARClassLoader.html
[2011.06.21 01:36:54 | 000,017,254 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\bsh\classpath\BshClassLoader.html
[2011.06.21 01:36:56 | 000,013,964 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\bsh\classpath\DiscreteFilesClassLoader.ClassSourceMap.html
[2011.06.21 01:36:54 | 000,016,539 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\bsh\classpath\DiscreteFilesClassLoader.html
[2011.06.21 01:36:54 | 000,007,473 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\bsh\classpath\class-use\BshClassLoader.html
[2011.06.21 01:36:54 | 000,008,155 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\bsh\classpath\class-use\DiscreteFilesClassLoader.ClassSourceMap.html
[2011.06.21 01:36:54 | 000,005,584 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\bsh\classpath\class-use\DiscreteFilesClassLoader.html
[2011.06.21 01:36:52 | 000,007,116 | ---- | M] () -- \Program Files\jEdit\doc\api\org\gjt\sp\jedit\class-use\JARClassLoader.html
[2011.06.21 01:35:38 | 000,003,468 | ---- | M] () -- \Program Files\jEdit\modes\sql-loader.xml
[2011.03.02 12:39:58 | 000,054,784 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2010.06.23 18:08:48 | 000,034,500 | ---- | M] () -- \ProgramData\Autodesk\Inventor Fusion 2012\Design Data\Loader2.ani
[2011.08.03 16:05:21 | 000,001,361 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
[2011.12.14 22:45:47 | 000,000,072 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Downloader\YouTube Downloader Help.url
[2011.12.14 22:45:47 | 000,002,056 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Downloader\YouTube Downloader.lnk
[2010.02.05 14:22:02 | 000,000,232 | ---- | M] () -- \ProgramData\Nero\Nero 10\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2011.10.26 15:50:41 | 000,007,715 | ---- | M] () -- \ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2011.10.26 15:50:41 | 000,000,319 | ---- | M] () -- \ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2006.08.05 04:03:36 | 000,005,624 | ---- | M] () -- \RADIO\EnterBootloader.exe
[2010.06.23 18:08:48 | 000,034,500 | ---- | M] () -- \Users\All Users\Autodesk\Inventor Fusion 2012\Design Data\Loader2.ani
[2011.08.03 16:05:21 | 000,001,361 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
[2011.12.14 22:45:47 | 000,000,072 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\YouTube Downloader\YouTube Downloader Help.url
[2011.12.14 22:45:47 | 000,002,056 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\YouTube Downloader\YouTube Downloader.lnk
[2010.02.05 14:22:02 | 000,000,232 | ---- | M] () -- \Users\All Users\Nero\Nero 10\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2011.10.26 15:50:41 | 000,007,715 | ---- | M] () -- \Users\All Users\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2011.10.26 15:50:41 | 000,000,319 | ---- | M] () -- \Users\All Users\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012.03.13 21:22:07 | 000,193,891 | ---- | M] () -- \Users\ROMAN\AppData\Local\SRDownloader(2).err
[2012.04.06 19:26:53 | 000,001,064 | ---- | M] () -- \Users\ROMAN\AppData\Local\SRDownloader(2).nast
[2011.02.24 20:42:06 | 000,000,816 | ---- | M] () -- \Users\ROMAN\AppData\Local\SRDownloader(3).nast
[2011.02.18 20:57:14 | 000,001,261 | ---- | M] () -- \Users\ROMAN\AppData\Local\SRDownloader.err
[2011.02.18 20:59:06 | 000,001,048 | ---- | M] () -- \Users\ROMAN\AppData\Local\SRDownloader.nast
[2012.05.01 16:46:54 | 000,002,105 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JLV7PZAS\loader_frame[1].htm
[2012.04.25 20:45:22 | 000,002,038 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QJB0TWH5\vbulletin_post_loader[1].js
[2012.05.02 09:36:37 | 000,002,516 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QJB0TWH5\youtubeuploader[1].js
[2012.04.26 16:00:02 | 000,009,051 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\DAEMON Tools Lite\MediaInfo\img\loader.gif
[2012.04.26 16:00:02 | 000,016,119 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\DAEMON Tools Lite\MediaInfo\img\logo_loader_page.jpg
[2012.04.26 16:00:02 | 000,018,434 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\DAEMON Tools Lite\MediaInfo\img\logo_loader_page.png
[2012.04.26 16:00:02 | 000,009,283 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\DAEMON Tools Lite\MediaInfo\js\app\MediaInfo\ImageInfoLoader.js
[2012.04.26 16:00:02 | 000,001,699 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\DAEMON Tools Lite\MediaInfo\js\app\MediaInfo\NewsLoader.js
[2011.02.07 16:43:00 | 000,001,245 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\GetRightToGo\Brothersoftdownloader_for_MT6225_Driver.data
[2011.02.07 16:42:50 | 000,000,830 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\GetRightToGo\Brothersoftdownloader_for_MT6225_Driver.data0
[2012.02.17 21:46:42 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\AppData\Roaming\Microsoft\FSX\SimObjects\VEH_Air_BagLoaderBlue\VEH_Air_BagLoaderBlue.event
[2012.02.17 21:46:42 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\AppData\Roaming\Microsoft\FSX\SimObjects\VEH_Air_BagLoaderGrey\VEH_Air_BagLoaderGrey.event
[2012.04.24 22:17:19 | 000,002,212 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Microsoft\Windows\Recent\2010.Moby.Dick.2010.DVDRip.CZ.by.Colly.of.PowerUploaders.lnk
[2012.04.24 22:21:46 | 000,002,212 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Microsoft\Windows\Recent\Alois.Nebel.2011.DVDRip.CZ.by.Colly.of.PowerUploaders(1).lnk
[2012.04.06 18:12:14 | 000,002,206 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Microsoft\Windows\Recent\Procitnuti.Gabriely.TVrip.CZ.by.mota.of.PowerUploaders.lnk
[2011.06.20 14:07:48 | 000,009,767 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\ls90gvhb.default\conduitCommon\modules\3.5.0.12\ExternalLibraryLoader.jsm
[2012.02.03 18:47:14 | 000,069,120 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2012.02.03 18:50:26 | 000,131,984 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.04.24 23:07:17 | 000,028,638 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll.cab
[2012.04.24 23:07:09 | 000,076,981 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\External\FirmwareUpdate\BinaryLoaderMgr.exe.cab
[2012.02.17 21:39:09 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\AppData\Roaming\YouTube Downloader\YouTube Downloader.event
[2011.02.24 20:42:28 | 000,001,083 | ---- | M] () -- \Users\ROMAN\Desktop\SRDownloader - Share rapid.lnk
[2010.02.06 00:27:16 | 000,000,015 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\TNod User & Password Finder\Licenses Downloader.bat
[2011.10.28 20:20:41 | 000,002,116 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\SMAZAT PROGRAMY\MP3 Downloader.lnk
[2011.12.14 22:45:47 | 000,001,122 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\SMAZAT PROGRAMY\Youtube downloader.lnk
[2006.06.13 18:27:40 | 000,005,624 | ---- | M] () -- \USPL\EnterBootloader.exe
[2010.03.24 21:12:34 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109110000000000000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.03.24 21:12:34 | 000,249,680 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109110000000000000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.03.24 21:35:48 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_amd64_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010.03.24 21:12:34 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010.03.24 21:35:48 | 000,370,512 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\VSTOLoader_dll_amd64.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010.03.24 21:12:34 | 000,249,680 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010.10.07 05:36:40 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004119110000000000000000F01FEC\14.0.6029\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.10.07 05:36:40 | 000,265,552 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004119110000000000000000F01FEC\14.0.6029\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2009.07.14 14:25:34 | 002,202,645 | R--- | M] () -- \Windows\Setup\SCRIPTS\Windows7Loader.exe
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:18:33 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_66f39ad995474166\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 08:23:09 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_66e5ca0f95521152\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:04:54 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:39:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_673e58b0ae93bb84\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:04:21 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_68daf829926cc6a9\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:44:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_68ce27a99276afec\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:00:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_695ac552ab919bbb\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:40:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_694ff566ab99b7ac\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 17:17:49 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 17:17:49 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009.07.14 17:17:49 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009.07.14 17:17:49 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009.07.14 17:17:49 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2011.07.06 10:27:41 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.07.06 10:27:41 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2011.07.06 10:27:41 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2011.07.06 10:27:41 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2011.07.06 10:27:41 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009.07.14 17:15:51 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 04:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 15:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 15:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 06:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:22:35 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_0ad4ff55dce9d030\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 07:45:50 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_0ac72e8bdcf4a01c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:19:58 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:50:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_0b1fbd2cf6364a4e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:13:36 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_0cbc5ca5da0f5573\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:47:28 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_0caf8c25da193eb6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:15:40 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_0d3c29cef3342a85\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:56:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_0d3159e2f33c4676\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.20 14:07:48 | 000,009,767 | ---- | M] () -- \Záloha Firefox 22.8.2011\ls90gvhb.default\conduitCommon\modules\3.5.0.12\ExternalLibraryLoader.jsm
[2011.07.31 15:50:42 | 000,010,145 | ---- | M] () -- \Záloha Firefox 22.8.2011\ls90gvhb.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\modules\ExternalLibraryLoader.jsm

< *RemoveWAT* /s >

< *minodlogin* /s >
[2012.02.17 21:42:12 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\4) MiNODLogin 3.9.9.10.event
[2011.10.27 11:40:40 | 000,406,004 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\MiNODLogin 3.9.9.10.exe
[2012.02.17 21:44:36 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\FOTO Návod instalace MiNODLogin\FOTO Návod instalace MiNODLogin.event
[2011.11.01 15:15:11 | 000,063,667 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\FOTO Návod instalace MiNODLogin\MiNODLogin 001.png
[2011.11.01 15:15:11 | 000,052,772 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\FOTO Návod instalace MiNODLogin\MiNODLogin 002.png
[2011.11.01 15:15:11 | 000,057,010 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\FOTO Návod instalace MiNODLogin\MiNODLogin 003.png
[2011.11.01 15:15:11 | 000,045,736 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\FOTO Návod instalace MiNODLogin\MiNODLogin 004.png
[2011.11.01 15:15:11 | 000,061,423 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\FOTO Návod instalace MiNODLogin\MiNODLogin 005.png
[2011.11.01 15:24:50 | 000,136,455 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\4) MiNODLogin 3.9.9.10\FOTO Návod instalace MiNODLogin\MiNODLogin 006.png

< *tnod* /s >
[2012.02.17 21:42:11 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\3) TNODUP 1.4.1 Final.event
[2012.02.17 21:44:35 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\Foto Návod TNODUP.event
[2011.11.01 14:35:06 | 000,076,052 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 001.png
[2011.11.01 14:35:06 | 000,052,068 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 002.png
[2011.11.01 14:35:06 | 000,051,377 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 003.png
[2011.11.01 14:35:07 | 000,047,891 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 004.png
[2011.11.01 14:35:06 | 000,075,978 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 005.png
[2011.11.01 14:43:22 | 000,134,647 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 006.png
[2011.06.27 18:46:19 | 000,087,803 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 007.jpg
[2011.11.01 14:50:14 | 000,063,434 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\Foto Návod TNODUP\TNODUP 008.png
[2012.02.17 21:44:35 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\TNod User & Password Finder\TNod User & Password Finder.event
[2010.04.02 01:08:00 | 000,097,792 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\TNod User & Password Finder\tnodicons.icl
[2011.09.18 20:20:54 | 001,892,352 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\TNod User & Password Finder\TNODUP.exe
[2011.11.01 14:32:21 | 000,070,441 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\ESET Smart Security 5\Eset Smart Security a ESET NOD32 Antivirus 5.0.94.0 CZ (x86,x64Bit) Complet\3) TNODUP 1.4.1 Final\TNod User & Password Finder\uninst-tnod.exe

< *TemDono* /s >

< *AutoKMS* /s >
[2011.12.13 12:26:41 | 000,647,168 | ---- | M] () -- \Windows\AutoKMS.exe
[2011.12.13 12:26:41 | 000,000,184 | ---- | M] () -- \Windows\AutoKMS.ini
[2012.05.02 08:58:28 | 000,009,868 | ---- | M] () -- \Windows\AutoKMS.log
[2012.05.02 08:58:57 | 000,000,200 | ---- | M] () -- \Windows\Tasks\AutoKMS.job
[2012.05.02 08:58:31 | 000,000,202 | ---- | M] () -- \Windows\Tasks\AutoKMSDaily.job

< *KMSEmulator* /s >
[2012.05.02 08:58:13 | 000,078,848 | ---- | M] () -- \Windows\KMSEmulator.exe
[2012.05.02 08:58:27 | 000,015,366 | ---- | M] () -- \Windows\Prefetch\KMSEMULATOR.EXE-27546CA6.pf

< *activator* /s >

< *serial* /s >
[2010.06.26 11:51:38 | 000,016,544 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\AppFramework.XmlSerializers.dll
[2010.06.26 11:52:46 | 000,016,544 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\Binary\AppFramework.XmlSerializers.dll
[2009.08.01 08:02:20 | 000,000,017 | ---- | M] () -- \Program Files (x86)\Corel\Corel VideoStudio Pro X3\Ulead.dat\AboutData\Loc\SerialStringFormat.txt
[2010.12.17 14:04:08 | 000,021,071 | ---- | M] () -- \Program Files (x86)\EWA net\webapps\EPC-net\WEB-INF\classes\com\snapon\sbs\epc\shared\model\common\FootnoteRev9Serial.class
[2010.07.07 11:17:24 | 000,021,028 | ---- | M] () -- \Program Files (x86)\EWA net\webapps\EPC-net_1112651574\WEB-INF\classes\com\snapon\sbs\epc\shared\model\common\FootnoteRev9Serial.class
[2012.01.11 19:19:24 | 000,413,696 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\4.1.10111.0\System.Runtime.Serialization.dll
[2012.02.14 23:46:35 | 001,186,816 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\4.1.10111.0\System.Runtime.Serialization.ni.dll
[2010.02.22 16:18:02 | 000,775,464 | ---- | M] () -- \Program Files (x86)\Nero\Nero 10\Nero BackItUp\SetSerial.exe
[2010.11.05 03:52:27 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2010.11.05 03:53:39 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2008.07.31 16:41:44 | 000,002,502 | ---- | M] () -- \Program Files\Common Files\Autodesk Shared\AdLM\R4\cs-CZ\Webdepot\RTSerialNumberHelp.html
[2011.06.21 01:36:54 | 000,224,103 | ---- | M] () -- \Program Files\jEdit\doc\api\serialized-form.html
[2011.06.21 01:35:52 | 000,004,224 | ---- | M] () -- \Program Files\jEdit\doc\users-guide\bsh-commands-serial.html
[2010.11.05 03:52:08 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2010.11.05 03:54:42 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2008.09.04 09:06:40 | 000,079,120 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\HfxSerial.exe
[2008.09.04 09:07:02 | 000,010,512 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-CHS.dll
[2008.09.04 09:07:04 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-DEU.dll
[2008.09.04 09:07:04 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ESP.dll
[2008.09.04 09:07:06 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-FRA.dll
[2008.09.04 09:07:10 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ITA.dll
[2008.09.04 09:07:14 | 000,010,512 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-JPN.dll
[2008.09.04 09:07:14 | 000,010,512 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-KOR.dll
[2008.09.04 09:07:16 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-NLD.dll
[2012.02.17 21:37:11 | 000,000,000 | -H-- | M] () -- \Users\ROMAN\Desktop\Programy\SMAZAT PROGRAMY\OJOsoft PSP Video Converter v2.7.4 + Serial Setup\OJOsoft PSP Video Converter v2.7.4 + Serial Setup.event
[2010.06.06 16:58:32 | 013,316,875 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\SMAZAT PROGRAMY\OJOsoft PSP Video Converter v2.7.4 + Serial Setup\OJOsoft PSP Video Converter v2.7.4 + Serial Setup.exe
[2010.11.03 13:26:16 | 000,000,700 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\SMAZAT PROGRAMY\Total Video Converter HD 3.71\serial.txt
[2009.12.25 12:28:47 | 000,000,277 | ---- | M] () -- \Users\ROMAN\Desktop\Programy\SOFT WWW\Serial.txt
[2009.07.14 17:17:20 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2009.07.14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2010.11.05 03:52:27 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2012.02.15 13:10:33 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\adb2fc93e7a4462eb399442c678be681\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2012.02.15 13:27:48 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\bc96c5c6e644452270ff7c3d066ff713\System.Runtime.Serialization.ni.dll
[2012.02.15 13:07:23 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\bc8c5bdae37a113b2274279ceb94d6d8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2012.02.15 13:12:46 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\f99728bbb535157b904873158379dc67\System.Runtime.Serialization.ni.dll
[2012.03.29 09:35:17 | 002,647,040 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\330eac198c16f89a2e10a753a649ed9f\System.Runtime.Serialization.ni.dll
[2012.03.29 09:34:26 | 000,311,296 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\c8d47bfd7b929a454dbb29dd663486db\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2012.03.29 09:39:00 | 000,009,216 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\b9614040a89429773cd624157153c122\System.Xml.Serialization.ni.dll
[2012.03.29 10:55:02 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\bc367852fcdd0114c4846c99efe70bee\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2012.03.29 10:53:15 | 003,412,992 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\f553580a690fd61bfcf0c9da8b3774d5\System.Runtime.Serialization.ni.dll
[2012.03.29 11:02:34 | 000,010,240 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\87c73b0e122799e2db0413e2da570049\System.Xml.Serialization.ni.dll
[2011.04.06 16:48:20 | 000,011,120 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\System.Xml.Serialization.dll.amd64
[2011.04.06 16:48:20 | 000,011,120 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\System.Xml.Serialization.dll.x86
[2012.02.29 23:30:45 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.04.11 23:37:40 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2012.02.29 23:30:44 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2012.04.11 23:37:37 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2012.04.11 23:37:48 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.05 03:53:33 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.11.05 03:52:39 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 14:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 14:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.01 13:26:40 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 02:33:16 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 02:33:16 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.05 03:54:38 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2010.11.05 03:52:16 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 14:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 14:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.01 13:26:40 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 02:48:20 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 02:48:20 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2009.07.14 17:17:13 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2009.07.14 17:17:13 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2009.07.14 17:17:19 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_1c215c9ac50719c5\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2010.11.05 03:54:38 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2009.07.14 17:17:22 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 03:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2009.07.14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_b96904386c2fe002\System.RunTime.Serialization.Resources.dll
[2010.11.05 03:54:42 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2009.07.14 17:17:25 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2009.06.10 22:30:46 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c\System.Runtime.Serialization.dll
[2010.11.05 03:52:16 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2009.06.10 22:30:43 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05\System.Runtime.Serialization.dll
[2010.11.05 03:52:08 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2011.07.06 10:26:53 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.07.06 10:26:53 | 000,017,792 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8_kdcom.dll_db5e7744
[2009.07.14 17:17:49 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23_serialui.dll.mui_7d29d2a3
[2009.07.14 04:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2009.07.14 17:17:47 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009.07.14 04:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009.07.14 04:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.02.05 15:10:43 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16757_none_6dccf6b5c641c933.manifest
[2011.02.05 15:05:47 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.20897_none_6e2b53d0df7fd8c1.manifest
[2011.02.05 19:35:45 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.02.05 15:11:05 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 04:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2009.07.14 04:26:23 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c.manifest
[2010.11.20 06:21:24 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2009.07.14 04:27:09 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05.manifest
[2010.11.20 06:22:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2009.07.14 03:52:33 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896.manifest
[2010.11.20 05:06:16 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2009.07.14 17:16:38 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2009.07.14 03:51:52 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9.manifest
[2010.11.20 05:05:38 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2009.07.14 03:57:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b.manifest
[2010.11.20 05:10:46 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2009.07.14 17:17:20 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 23:14:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896\System.Runtime.Serialization.dll
[2010.11.05 03:52:39 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2009.07.14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2009.06.10 23:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9\System.Runtime.Serialization.dll
[2010.11.05 03:52:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2009.07.14 17:17:21 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_267606ecf967dbc0\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.11.05 03:53:33 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.07.14 17:17:13 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2009.07.14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_5d4a68b4b3d26ecc\System.RunTime.Serialization.Resources.dll
[2010.11.05 03:53:39 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2009.06.10 23:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b\System.Runtime.Serialization.dll
[2010.11.05 03:52:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll

< *w7lxe* /s >

< *AutoRearm* /s >

< >

< HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /s >
"HDAudDeck" = C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r -- [2009.07.24 08:22:46 | 002,245,120 | R--- | M] (VIA)
"TurboV EVO" = "C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe" -b -- [2009.09.10 10:34:12 | 007,322,624 | ---- | M] (ASUSTeK Computer Inc.)
"iTraffic Monitor" = C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe -- [2009.04.22 14:44:12 | 000,942,080 | ---- | M] (Charles DeWeese)
"WinFastDTV" = C:\Program Files\WinFast\WFDTV\DTVSchdl.exe -- [2010.06.09 13:53:26 | 000,101,888 | ---- | M] (Leadtek Research Inc.)
"ArcSoft Connection Service" = C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe -- [2010.10.27 20:17:52 | 000,207,424 | ---- | M] (ArcSoft Inc.)
"AppleSyncNotifier" = C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe -- [2011.09.27 15:01:12 | 000,059,240 | ---- | M] (Apple Inc.)
"QuickTime Task" = "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime -- [2011.10.24 15:28:52 | 000,421,888 | ---- | M] (Apple Inc.)
"BCSSync" = "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices -- [2010.03.13 15:54:26 | 000,091,520 | ---- | M] (Microsoft Corporation)
"Adobe Reader Speed Launcher" = "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" -- [2012.03.27 14:41:07 | 000,037,296 | ---- | M] (Adobe Systems Incorporated)
"Adobe ARM" = "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" -- [2012.01.02 11:07:56 | 000,843,712 | R--- | M] (Adobe Systems Incorporated)
"JMB36X IDE Setup" = C:\Windows\RaidTool\xInsIDE.exe -- [2007.03.20 08:36:18 | 000,036,864 | R--- | M] ()
"KiesTrayAgent" = C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe -- [2012.04.04 07:05:16 | 003,521,424 | ---- | M] (Samsung Electronics Co., Ltd.)
"googletalk" = C:\Program Files (x86)\Google\Google Talk\googletalk.exe /autostart -- [2007.01.01 23:22:02 | 003,739,648 | ---- | M] (Google)
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
"" =
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"" =
"Installed" = 1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"" =
"Installed" = 1
"NoChange" = 1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"" =
"Installed" = 1

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2010.11.20 15:25:17 | 001,475,584 | ---- | M] (Microsoft Corporation)
"WinFast Schedule" = C:\Program Files\WinFast\WFDTV\WFWIZ.exe -- [2010.06.09 16:25:32 | 002,920,448 | ---- | M] (Leadtek Research Inc.)
"Google Update" = "C:\Users\ROMAN\AppData\Local\Google\Update\GoogleUpdate.exe" /c -- [2011.01.25 22:28:56 | 000,136,176 | ---- | M] (Google Inc.)
"" =
"Facebook Update" = "C:\Users\ROMAN\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver -- [2012.02.09 20:43:35 | 000,137,536 | ---- | M] (Facebook Inc.)
"supertintin_skype" =
"KiesHelper" = C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s -- [2012.04.04 07:05:14 | 000,954,256 | ---- | M] (Samsung)
"KiesPDLR" = C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe -- [2012.04.04 07:05:28 | 000,021,392 | ---- | M] ()
"3956FF94043D7A12E2C293FB22726B785385C057._service_run" = "C:\Users\ROMAN\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service -- [2012.02.15 07:03:37 | 001,049,072 | ---- | M] (Google Inc.)

< HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run /s >
"HDAudDeck" = C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r -- [2009.07.24 08:22:46 | 002,245,120 | R--- | M] (VIA)
"TurboV EVO" = "C:\Program Files (x86)\ASUS\TurboV EVO\TurboV_EVO.exe" -b -- [2009.09.10 10:34:12 | 007,322,624 | ---- | M] (ASUSTeK Computer Inc.)
"iTraffic Monitor" = C:\Program Files (x86)\iTraffic Monitor\iTrafficMon.exe -- [2009.04.22 14:44:12 | 000,942,080 | ---- | M] (Charles DeWeese)
"WinFastDTV" = C:\Program Files\WinFast\WFDTV\DTVSchdl.exe -- [2010.06.09 13:53:26 | 000,101,888 | ---- | M] (Leadtek Research Inc.)
"ArcSoft Connection Service" = C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe -- [2010.10.27 20:17:52 | 000,207,424 | ---- | M] (ArcSoft Inc.)
"AppleSyncNotifier" = C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe -- [2011.09.27 15:01:12 | 000,059,240 | ---- | M] (Apple Inc.)
"QuickTime Task" = "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime -- [2011.10.24 15:28:52 | 000,421,888 | ---- | M] (Apple Inc.)
"BCSSync" = "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices -- [2010.03.13 15:54:26 | 000,091,520 | ---- | M] (Microsoft Corporation)
"Adobe Reader Speed Launcher" = "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" -- [2012.03.27 14:41:07 | 000,037,296 | ---- | M] (Adobe Systems Incorporated)
"Adobe ARM" = "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" -- [2012.01.02 11:07:56 | 000,843,712 | R--- | M] (Adobe Systems Incorporated)
"JMB36X IDE Setup" = C:\Windows\RaidTool\xInsIDE.exe -- [2007.03.20 08:36:18 | 000,036,864 | R--- | M] ()
"KiesTrayAgent" = C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe -- [2012.04.04 07:05:16 | 003,521,424 | ---- | M] (Samsung Electronics Co., Ltd.)
"googletalk" = C:\Program Files (x86)\Google\Google Talk\googletalk.exe /autostart -- [2007.01.01 23:22:02 | 003,739,648 | ---- | M] (Google)
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
"" =
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"" =
"Installed" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"" =
"Installed" = 1
"NoChange" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"" =
"Installed" = 1

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.05.02 10:58:02 | 000,000,512 | ---- | M] () MD5=81BD6F795DE86BF90CFC9BC9418B8FD9 -- C:\PhysicalMBR.bin

========== Alternate Data Streams ==========

@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:05B51235

< End of report >

Uživatelský avatar
Danstahr
Přítel fóra
Přítel fóra
Příspěvky: 1069
Registrován: 28 říj 2006 20:23
Bydliště: Londýn
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - pomalý náběh

#8 Příspěvek od Danstahr »

Pravidla píše:Pokud z logu bude patrné, ze používáte jakýkoli nelegální software (př. crackle Windows), vaše téma bude uzamčeno a s vaším problémem vám nikdo pomáhat nebude :!: . Od toho, aby jsme podporovali uživatele nelegálního software, tady nejsme.
A copak mi povíte k tomuto článku pravidel?
Koupím trochu času, cenu respektuji.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu - pomalý náběh

#9 Příspěvek od vyosek »

Zdravim,

casu bylo dost...

priste bude pomoc tez odmitnuta...

:closed:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno