Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

PC se sam od sebe vypina

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
DavidSp
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 23 kvě 2012 12:43

PC se sam od sebe vypina

#1 Příspěvek od DavidSp »

Dobry den mam problem s PC dneska rano jsem ho zapnul vsechno bylo v poradku a najednou se sam od sebe vypnul.
Vypadalo to tak ze obrazovka zcernala a prestala reagovat s PC (jako by byl PC vyply) PC normalne svitil dal avsak neslo nic delat takze tvrde vypnuti.
Po te nesel PC ani zapnout musel jsem chvili cekat. Pak jsem ho konecne zapl a vypadalo to ze je vse v poradku avsak asi po pul hodine se stalo to same.
Prosim o radu.





Logfile of random's system information tool 1.09 (written by random/random)
Run by Trayy at 2012-05-23 13:41:04
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 55 GB (18%) free of 297 GB
Total RAM: 4095 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:41:11, on 23.5.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Users\Trayy\AppData\Roaming\QipGuard\QipGuard.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Steam\steam.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe
C:\Program Files (x86)\Razer\Krait\razerhid.exe
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files (x86)\Razer\Krait\razerofa.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
C:\Program Files (x86)\Razer\BlackWidow\BlackWidowTray.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Trayy.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: QipLI - {6B5863A0-C43F-4C0A-982B-CC0E9125783F} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso" UpdateWithCreateOnce "Software\CyberLink\MediaShow Espresso\5.6"
O4 - HKLM\..\Run: [ArcadeMovieService] "C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe"
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [Krait] C:\Program Files (x86)\Razer\Krait\razerhid.exe
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RoccatKone+] "C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [Hotkey Utility] C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [Razer Blackwidow Driver] C:\Program Files (x86)\Razer\BlackWidow\BlackwidowTray.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Trayy\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Users\Trayy\AppData\Roaming\QipGuard\QipGuard.exe /p
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{A0C87EBA-C6C3-4800-AE38-459BB944F6E9}: NameServer = 192.168.100.251
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: prio.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: QipGuard - QIP.ru - C:\Program Files (x86)\QipGuard\QipGuard.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 16380 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\QipGuard\QipGuard.exe"
"C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
WLIDSvcM.exe 2388
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-21dd0ba5-c63f-474f-84a2-f145c07fa67b -SystemEventPortName:HostProcess-5ed94d30-d77d-4fde-9864-7ba79ae8cb45 -IoCancelEventPortName:HostProcess-34e8d43c-4706-44f9-89f3-3aa48a581d7d -NonStateChangingEventPortName:HostProcess-a6506521-9dc4-4d1a-805c-8b439a442f0c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:39621702-3617-4224-bc17-1daf813c3665
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\Trayy\AppData\Roaming\QipGuard\QipGuard.exe" /p
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\Steam\steam.exe" -silent
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
"C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe"
"C:\Program Files (x86)\Razer\Krait\razerhid.exe"
"C:\Program Files (x86)\PowerISO\PWRISOVM.EXE"
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
"C:\Program Files (x86)\Razer\Krait\razerofa.exe"
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe"
"C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe"
"C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe"
"C:\Program Files (x86)\Razer\BlackWidow\BlackWidowTray.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ComodoDNSExperiment/inactive/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Hidden/OmniboxPrerenderHitWeightingTrial/OmniboxPrerenderWeight1.0/OmniboxSearchSuggest/9/Prerender/ContentPrefetchPrerender2/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/FooterLink/ --extension-process --renderer-print-preview --channel="1404.1.775537571\1447353214" /prefetch:3
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ComodoDNSExperiment/inactive/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Hidden/OmniboxPrerenderHitWeightingTrial/OmniboxPrerenderWeight1.0/OmniboxSearchSuggest/9/Prerender/ContentPrefetchPrerender2/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/FooterLink/ --extension-process --renderer-print-preview --channel="1404.2.1463226257\1821181899" /prefetch:3
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ComodoDNSExperiment/inactive/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Hidden/OmniboxPrerenderHitWeightingTrial/OmniboxPrerenderWeight1.0/OmniboxSearchSuggest/9/PepperFlash/DisableByDefault/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/FooterLink/ --renderer-print-preview --channel="1404.3.306957623\315110722" /prefetch:3
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1404.4.166636812\127033006" --reduce-gpu-sandbox --disable-image-transport-surface /prefetch:12
C:\Windows\system32\rundll32.exe "C:\Users\Trayy\AppData\Local\Google\Chrome\APPLIC~1\190108~1.46\gcswf32.dll",BrokerMain browser=chrome
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\gcswf32.dll" --lang=cs --channel="1404.7.1984718535\1284746541" --flash-broker=3364 /prefetch:4
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ComodoDNSExperiment/inactive/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Hidden/OmniboxPrerenderHitWeightingTrial/OmniboxPrerenderWeight1.0/OmniboxSearchSuggest/9/PepperFlash/DisableByDefault/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/FooterLink/ --renderer-print-preview --channel="1404.9.593017643\1812390278" /prefetch:3
"C:\Users\Trayy\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ComodoDNSExperiment/inactive/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Hidden/OmniboxPrerenderHitWeightingTrial/OmniboxPrerenderWeight1.0/OmniboxSearchSuggest/9/PepperFlash/DisableByDefault/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/FooterLink/ --renderer-print-preview --channel="1404.10.280857576\1884934174" /prefetch:3
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Users\Trayy\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore1cd09afc80b62d3.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2966925042-4052740615-870791363-1000Core1cd0ac6a11b5146.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2966925042-4052740615-870791363-1000UA.job
C:\Windows\tasks\{0530163F-1791-4401-9BBD-E31FCB6076AA}.job
C:\Windows\tasks\{78139842-4BDB-4628-BE44-0F2145DE7F21}.job
C:\Windows\tasks\{7CF89CCB-A404-4F2D-8553-07A7B903B963}.job
C:\Windows\tasks\{8C86EE59-52B8-40CE-9CF5-A5FED3CE26CD}.job
C:\Windows\tasks\{FCB40820-E277-448E-9C50-DAE58B8E2DC7}.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default

prefs.js - "browser.startup.homepage" - "http://home.sweetim.com/?st=1"
prefs.js - "keyword.URL" - "http://search.qip.ru/search?from=FF&query="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@idsoftware.com/QuakeLive]
"Description"=
"Path"=C:\ProgramData\id Software\QuakeLive\npquakezero.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions\
plugin@yontoo.com
{32a1fd71-835e-4b11-8e54-886fda0b4c89}
{800b5000-a755-47e1-992b-48a1c1357f07}
{e4a8a97b-f2ed-450b-b12d-ee082ba24781}

C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\
icqplugin-1.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin.gif
icqplugin.src
icqplugin.xml
qip-search.xml
sweetim.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2012-03-07 1211776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-03-15 253040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-12 346168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-03-26 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B5863A0-C43F-4C0A-982B-CC0E9125783F}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2012-02-24 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-03-07 1003704]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-10-25 140752]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-15 192112]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17 3855520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll [2012-01-12 1003576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-02-28 1089288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2012-02-24 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetPacks Browser Helper - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-01-15 1330480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo - C:\Program Files (x86)\Yontoo\YontooIEClient.dll [2011-12-09 194848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2010-03-25 1548096]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-03-15 253040]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2012-03-07 1211776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-02-28 1089288]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll [2010-11-21 1054520]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-15 192112]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetPacks Toolbar for Internet Explorer - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-01-15 1330480]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-03-07 1003704]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"mwlDaemon"=C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe [2010-02-01 349552]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-04-12 39408]
"Google Update"=C:\Users\Trayy\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-24 136176]
"QIP Internet Guardian"=C:\Users\Trayy\AppData\Roaming\QipGuard\QipGuard.exe [2012-03-23 191440]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2011-08-02 1242448]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2010-02-01 337264]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2009-12-25 201512]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2009-12-25 401192]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-03-27 37296]
"MDS_Menu"=C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"ArcadeMovieService"=C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe [2010-02-05 124136]
"ATICustomerCare"=C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"Krait"=C:\Program Files (x86)\Razer\Krait\razerhid.exe [2006-01-24 147456]
"PWRISOVM.EXE"=C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2010-04-12 180224]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-03-07 4241512]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"RoccatKone+"=C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE [2011-07-12 552960]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]
"SweetIM"=C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2012-01-19 114992]
"Hotkey Utility"=C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [2010-05-06 609312]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-04-06 641664]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []
"Razer Blackwidow Driver"=C:\Program Files (x86)\Razer\BlackWidow\BlackwidowTray.exe [2011-05-16 887696]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
GamePark klient 2.lnk - C:\Program Files\GamePark2\gpcl.exe

C:\Users\Trayy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.XFR1"=xfcodec64.dll
"VIDC.FPS1"=frapsv64.dll
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%*

======List of files/folders created in the last 1 month======

2012-05-23 13:41:04 ----D---- C:\rsit
2012-05-23 13:41:04 ----D---- C:\Program Files\trend micro
2012-05-20 01:48:32 ----D---- C:\Users\Trayy\AppData\Roaming\groove-dl
2012-05-19 00:25:50 ----D---- C:\Users\Trayy\AppData\Roaming\runic games
2012-05-12 08:47:12 ----A---- C:\Windows\system32\IPROSetMonitor.exe
2012-05-12 08:47:06 ----D---- C:\Program Files\Intel
2012-05-12 08:47:03 ----A---- C:\Windows\system32\PROUnstl.exe
2012-05-12 08:45:20 ----A---- C:\Windows\system32\NicInstY.dll
2012-05-12 08:45:20 ----A---- C:\Windows\system32\drivers\e1y62x64.sys
2012-05-12 08:41:17 ----D---- C:\Program Files (x86)\Lavalys
2012-05-11 21:56:34 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-05-11 21:55:56 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\tosade.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\tepeqapo64.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\tadefxapo264.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\tadefxapo.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-05-11 21:55:56 ----A---- C:\Windows\system32\SRSHP64.dll
2012-05-11 21:55:55 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2012-05-11 21:55:55 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-05-11 21:55:55 ----A---- C:\Windows\system32\SFNHK64.dll
2012-05-11 21:55:55 ----A---- C:\Windows\system32\SFCOM64.dll
2012-05-11 21:55:55 ----A---- C:\Windows\system32\SFAPO64.dll
2012-05-11 21:55:54 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-05-11 21:55:54 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-05-11 21:55:54 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2012-05-11 21:55:54 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-05-11 21:55:54 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-05-11 21:55:54 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RtkApi64.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RTEED64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RTCOM64.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RCoRes64.dat
2012-05-11 21:55:53 ----A---- C:\Windows\system32\RCoInstII64.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\R4EEP64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\R4EEL64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\R4EEG64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\R4EED64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\R4EEA64A.dll
2012-05-11 21:55:53 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2012-05-11 21:55:52 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-05-11 21:55:52 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2012-05-11 21:55:52 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-05-11 21:55:52 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-05-11 21:55:52 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2012-05-11 21:55:52 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-05-11 21:55:52 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-05-11 21:55:52 ----A---- C:\Windows\system32\KAAPORT64.dll
2012-05-11 21:55:50 ----A---- C:\Windows\system32\FMAPO64.dll
2012-05-11 21:55:50 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2012-05-11 21:55:50 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2012-05-11 21:55:50 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2012-05-11 21:55:50 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\AERTAR64.dll
2012-05-11 21:55:49 ----A---- C:\Windows\system32\AERTAC64.dll
2012-05-11 19:14:51 ----D---- C:\Program Files\Microsoft Silverlight
2012-05-11 19:14:51 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-05-11 19:02:53 ----A---- C:\Windows\system32\drivers\cpuz135_x64.sys
2012-05-11 19:02:32 ----D---- C:\ProgramData\ATI
2012-05-11 19:02:29 ----D---- C:\Program Files (x86)\AMD AVT
2012-05-11 19:02:23 ----D---- C:\Program Files (x86)\AMD APP
2012-05-11 18:58:21 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2012-05-11 18:58:21 ----A---- C:\Windows\system32\atiglpxx.dll
2012-05-11 18:58:00 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2012-05-11 18:57:50 ----A---- C:\Windows\system32\atiedu64.dll
2012-05-11 18:57:48 ----A---- C:\Windows\system32\atieclxx.exe
2012-05-11 18:57:44 ----A---- C:\Windows\system32\atiadlxx.dll
2012-05-11 18:57:40 ----A---- C:\Windows\system32\drivers\AtihdW76.sys
2012-05-11 18:57:34 ----A---- C:\Windows\system32\aticalrt64.dll
2012-05-11 18:57:29 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2012-05-11 18:57:19 ----A---- C:\Windows\system32\atitmm64.dll
2012-05-11 18:57:18 ----A---- C:\Windows\system32\aticaldd64.dll
2012-05-11 18:57:04 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2012-05-11 18:56:55 ----A---- C:\Windows\system32\ATIDEMGX.dll
2012-05-11 18:56:50 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2012-05-11 18:56:46 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2012-05-11 18:56:46 ----A---- C:\Windows\system32\atiesrxx.exe
2012-05-11 18:56:33 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2012-05-11 18:56:33 ----A---- C:\Windows\system32\atig6pxx.dll
2012-05-11 18:56:28 ----A---- C:\Windows\system32\atimpc64.dll
2012-05-11 18:56:28 ----A---- C:\Windows\system32\amdpcom64.dll
2012-05-11 18:56:26 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2012-05-11 18:56:26 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2012-05-11 18:56:10 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2012-05-11 18:56:00 ----A---- C:\Windows\SYSWOW64\atiumdmv.dll
2012-05-11 18:55:54 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2012-05-11 18:55:54 ----A---- C:\Windows\system32\atio6axx.dll
2012-05-11 18:55:52 ----A---- C:\Windows\system32\atiumd6v.dll
2012-05-11 18:55:47 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2012-05-11 18:55:26 ----A---- C:\Windows\system32\aticalcl64.dll
2012-05-11 18:55:25 ----A---- C:\Windows\system32\atimuixx.dll
2012-05-11 18:55:24 ----A---- C:\Windows\system32\atig6txx.dll
2012-05-11 18:55:17 ----A---- C:\Windows\SYSWOW64\ati2edxx.dll
2012-05-11 18:55:06 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2012-05-11 18:54:58 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2012-05-11 18:54:58 ----A---- C:\Windows\system32\atiapfxx.exe
2012-05-10 21:25:45 ----SD---- C:\32788R22FWJFW
2012-05-10 21:25:00 ----D---- C:\ComboFix
2012-05-10 21:23:31 ----D---- C:\Qoobox
2012-05-10 01:39:22 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-05-10 01:39:22 ----A---- C:\Windows\system32\DWrite.dll
2012-05-10 01:39:18 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-05-10 01:39:17 ----A---- C:\Windows\system32\win32k.sys
2012-05-10 01:39:15 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-05-10 01:39:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-05-10 01:38:45 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-05-10 01:38:31 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-05-09 12:24:12 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2012-05-05 13:06:42 ----D---- C:\ProgramData\id Software
2012-04-27 23:31:07 ----D---- C:\Program Files\MyDefrag v4.3.1
2012-04-27 23:10:55 ----D---- C:\Windows\pss
2012-04-27 22:53:22 ----D---- C:\Program Files\CCleaner
2012-04-25 22:25:22 ----D---- C:\Users\Trayy\AppData\Roaming\Dream Aquarium
2012-04-25 22:25:20 ----D---- C:\Program Files (x86)\Dream Aquarium
2012-04-25 22:23:28 ----D---- C:\Windows\3D Ocean Lite
2012-04-25 22:23:28 ----A---- C:\Windows\instoceanlite.exe
2012-04-25 22:23:28 ----A---- C:\Windows\Fantastic Ocean 3D Lite.scr

======List of files/folders modified in the last 1 month======

2012-05-23 13:41:11 ----D---- C:\Windows\Prefetch
2012-05-23 13:41:04 ----RD---- C:\Program Files
2012-05-23 13:34:26 ----D---- C:\Windows\Temp
2012-05-23 13:32:59 ----D---- C:\Program Files (x86)\Steam
2012-05-23 13:12:23 ----D---- C:\Users\Trayy\AppData\Roaming\Skype
2012-05-23 12:56:33 ----D---- C:\Windows\system32\config
2012-05-23 01:15:51 ----D---- C:\Users\Trayy\AppData\Roaming\BitTorrent
2012-05-23 01:15:49 ----D---- C:\Users\Trayy\AppData\Roaming\vlc
2012-05-22 10:35:06 ----SHD---- C:\System Volume Information
2012-05-20 21:22:53 ----D---- C:\Program Files (x86)\BitTorrent
2012-05-19 00:24:01 ----RSD---- C:\Windows\assembly
2012-05-19 00:23:11 ----SHD---- C:\Windows\Installer
2012-05-19 00:23:10 ----D---- C:\Windows\winsxs
2012-05-19 00:22:16 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-05-17 19:12:40 ----RD---- C:\Program Files (x86)
2012-05-17 12:45:04 ----D---- C:\Windows\system32\catroot2
2012-05-15 10:52:37 ----D---- C:\Windows\system32\catroot
2012-05-15 10:52:21 ----D---- C:\Windows\system32\drivers
2012-05-15 10:52:21 ----D---- C:\Windows\inf
2012-05-15 10:52:14 ----D---- C:\Windows\system32\DriverStore
2012-05-15 10:52:14 ----D---- C:\Windows\System32
2012-05-15 10:52:10 ----D---- C:\Windows
2012-05-15 10:52:05 ----D---- C:\Program Files (x86)\Razer
2012-05-15 10:52:04 ----D---- C:\Windows\SysWOW64
2012-05-14 19:38:11 ----D---- C:\Windows\Logs
2012-05-12 08:43:56 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2012-05-12 08:28:42 ----D---- C:\Windows\Minidump
2012-05-11 21:56:52 ----HD---- C:\Program Files (x86)\Temp
2012-05-11 19:55:28 ----D---- C:\Program Files (x86)\ATITool
2012-05-11 19:47:27 ----D---- C:\Program Files (x86)\AV Vcs 4.0
2012-05-11 19:46:27 ----D---- C:\Program Files (x86)\Loonies
2012-05-11 19:13:04 ----D---- C:\Windows\system32\Tasks
2012-05-11 19:02:53 ----D---- C:\Program Files\CPUID
2012-05-11 19:02:32 ----HD---- C:\ProgramData
2012-05-11 19:02:30 ----D---- C:\ProgramData\AMD
2012-05-11 19:02:10 ----D---- C:\Program Files\ATI Technologies
2012-05-11 18:58:53 ----A---- C:\Windows\system32\atiumd6a.dll
2012-05-11 18:57:56 ----A---- C:\Windows\system32\aticfx64.dll
2012-05-11 18:57:44 ----A---- C:\Windows\system32\atiu9p64.dll
2012-05-11 18:57:19 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2012-05-11 18:57:03 ----A---- C:\Windows\system32\atiuxp64.dll
2012-05-11 18:56:02 ----A---- C:\Windows\system32\coinst.dll
2012-05-11 18:55:42 ----A---- C:\Windows\system32\atidxx64.dll
2012-05-11 18:55:41 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2012-05-11 18:55:40 ----A---- C:\Windows\system32\atiumd64.dll
2012-05-11 18:55:25 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2012-05-11 18:55:22 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2012-05-10 15:32:08 ----D---- C:\Windows\Microsoft.NET
2012-05-10 10:16:53 ----D---- C:\ProgramData\Microsoft Help
2012-05-10 10:13:57 ----D---- C:\Program Files\Windows Journal
2012-05-10 01:42:17 ----D---- C:\Windows\debug
2012-05-10 01:42:15 ----A---- C:\Windows\system32\MRT.exe
2012-05-10 01:41:05 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-05-09 12:24:19 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-05-08 13:00:43 ----D---- C:\Users\Trayy\AppData\Roaming\gtk-2.0
2012-05-05 17:18:59 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-04-30 19:38:51 ----D---- C:\Windows\system32\NDF
2012-04-30 19:33:35 ----D---- C:\ProgramData\Xfire
2012-04-30 19:33:35 ----D---- C:\Program Files (x86)\Xfire
2012-04-30 17:21:42 ----D---- C:\Users\Trayy\AppData\Roaming\Xfire
2012-04-30 16:33:31 ----D---- C:\Program Files (x86)\SplitMediaLabs
2012-04-29 22:41:14 ----D---- C:\Program Files (x86)\ROCCAT
2012-04-29 12:23:05 ----D---- C:\Users\Trayy\AppData\Roaming\TS3Client
2012-04-29 12:22:57 ----D---- C:\Program Files\TeamSpeak 3 Client
2012-04-28 16:35:11 ----D---- C:\Windows\rescache
2012-04-27 23:23:53 ----SD---- C:\ProgramData\Microsoft
2012-04-27 22:58:57 ----D---- C:\Users\Trayy\AppData\Roaming\FileZilla
2012-04-27 22:57:29 ----D---- C:\Windows\Panther

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel RAID Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-12-25 834544]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-03-07 53080]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 819032]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337240]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 59224]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2009-06-03 22576]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2009-06-03 20016]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2009-06-03 60464]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 91568]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 24408]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 69976]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2012-04-28 88480]
R2 cpuz133;cpuz133; \??\C:\Windows\system32\drivers\cpuz133_x64.sys [2010-03-31 20968]
R2 cpuz135;cpuz135; \??\C:\Windows\system32\drivers\cpuz135_x64.sys [2011-09-21 21992]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2012-04-28 46400]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-05-11 11174400]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-05-11 343040]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-11 95760]
R3 ATITool;ATITool Overclocking Utility; C:\Windows\system32\DRIVERS\ATITool64.sys [2007-08-08 35624]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y62x64.sys [2011-10-20 302296]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2011-02-01 33344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-03-27 4015592]
R3 RzSynapse;Razer Driver; C:\Windows\system32\DRIVERS\RzSynapse.sys [2011-05-12 154624]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM); C:\Windows\system32\DRIVERS\vcsvad.sys [2008-12-26 21504]
S1 prio;prio driver; \??\C:\Windows\system32\drivers\prio.sys []
S3 arzo7fro;arzo7fro; C:\Windows\system32\drivers\arzo7fro.sys []
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-01-28 116736]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys []
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 ScreamBAudioSvc;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2010-07-01 38992]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-05-11 236544]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-03-07 44768]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-08-28 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 ICQ Service;ICQ Service; C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-11-21 247608]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2011-11-09 189608]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2012-04-05 255376]
R2 MWLService;MyWinLocker Service; C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [2010-02-01 305520]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2011-07-16 75136]
R2 QipGuard;QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [2012-03-23 191440]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe [2010-02-03 244904]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2012-04-05 255376]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2012-05-20 529232]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-24 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-02-29 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-09 257696]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-02-28 183560]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-24 135664]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-04-12 182768]
S3 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2010-01-15 935208]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-26 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: PC se sam od sebe vypina

#2 Příspěvek od vyosek »

Zdravim a pekny den preji :)

:arrow: Doporucuji odinstalovat (pokud nepouzivate) toolbary (listy prohlizecu) v Přidat nebo odebrat programy

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    
    %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
    %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
    %PROGRAMFILES%\Opera\opera.exe /md5
    %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
    
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

DavidSp
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 23 kvě 2012 12:43

Re: PC se sam od sebe vypina

#3 Příspěvek od DavidSp »

toolbary jsem odinstaloval a pri skenovani jsem dostal BSOD..


ntoskrnl.exe ntoskrnl.exe+c9db8 fffff800`0324b000 fffff800`03833000
0x005e8000 0x4f76721c 31.3.2012 4:55:24 Microsoft® Windows® Operating System NT Kernel & System
6.1.7601.17803 (win7sp1_gdr.120330-1504) Microsoft Corporation C:\Windows\system32\ntoskrnl.exe

jdu ted zkusit zapnout to skenovai znova

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: PC se sam od sebe vypina

#4 Příspěvek od vyosek »

Spustte jej v nouzovem rezimu (restart, mackat F8, zvolit Stav nouze s praci v siti)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

DavidSp
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 23 kvě 2012 12:43

Re: PC se sam od sebe vypina

#5 Příspěvek od DavidSp »

OTL logfile created on: 23.5.2012 14:53:21 - Run 1
OTL by OldTimer - Version 3.2.43.1 Folder = C:\Users\Trayy\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 3,24 Gb Available Physical Memory | 81,05% Memory free
8,00 Gb Paging File | 7,26 Gb Available in Paging File | 90,74% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 289,95 Gb Total Space | 53,05 Gb Free Space | 18,30% Space Free | Partition Type: NTFS
Drive D: | 290,12 Gb Total Space | 53,83 Gb Free Space | 18,55% Space Free | Partition Type: NTFS

Computer Name: TRAYY-PC | User Name: Trayy | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2012.05.23 14:19:10 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Trayy\Desktop\OTL.exe


========== Modules (No Company Name) ==========

MOD - [2012.05.09 05:04:52 | 000,441,840 | ---- | M] () -- C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\ppgooglenaclpluginchrome.dll
MOD - [2012.05.09 05:04:51 | 003,921,904 | ---- | M] () -- C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\pdf.dll
MOD - [2012.05.09 05:03:25 | 000,134,656 | ---- | M] () -- C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\avutil-51.dll
MOD - [2012.05.09 05:03:24 | 000,250,368 | ---- | M] () -- C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\avformat-54.dll
MOD - [2012.05.09 05:03:23 | 002,375,680 | ---- | M] () -- C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\avcodec-54.dll
MOD - [2012.05.09 04:09:13 | 008,743,584 | ---- | M] () -- C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\gcswf32.dll
MOD - [2011.05.22 19:21:36 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2012.05.11 18:56:48 | 000,236,544 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2012.04.05 15:48:02 | 000,255,376 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Updater Service)
SRV:64bit: - [2012.04.05 15:48:02 | 000,255,376 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Live Updater Service)
SRV:64bit: - [2012.03.07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2011.11.09 17:38:06 | 000,189,608 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Windows\SysNative\IPROSetMonitor.exe -- (Intel(R) PROSet Monitoring Service) Intel(R)
SRV:64bit: - [2010.09.22 19:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV - [2012.05.20 02:00:49 | 000,529,232 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2012.05.09 12:24:19 | 000,257,696 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.05.03 08:31:10 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.03.23 16:55:34 | 000,191,440 | ---- | M] (QIP.ru) [Auto | Stopped] -- C:\Program Files (x86)\QipGuard\QipGuard.exe -- (QipGuard)
SRV - [2011.07.16 17:14:24 | 000,075,136 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011.02.28 19:44:14 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011.02.25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.02.01 20:04:40 | 000,305,520 | ---- | M] (Egis Technology Inc.) [Auto | Stopped] -- C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe -- (MWLService)
SRV - [2010.01.15 23:08:38 | 000,935,208 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2009.08.28 11:38:58 | 001,150,496 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Acer\Registration\GregHSRW.exe -- (Greg_Service)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.06.05 04:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012.05.11 18:57:42 | 000,095,760 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012.05.11 18:57:06 | 000,343,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012.05.11 18:56:26 | 011,174,400 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012.04.28 10:18:18 | 000,088,480 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2012.04.28 10:18:17 | 000,046,400 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2012.03.07 01:04:06 | 000,819,032 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012.03.07 01:04:04 | 000,337,240 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012.03.07 01:02:20 | 000,053,080 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012.03.07 01:01:57 | 000,059,224 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012.03.07 01:01:52 | 000,069,976 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012.03.07 01:01:32 | 000,024,408 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.10.20 11:24:16 | 000,302,296 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1y62x64.sys -- (e1yexpress) Intel(R)
DRV:64bit: - [2011.09.21 10:25:54 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\cpuz135_x64.sys -- (cpuz135)
DRV:64bit: - [2011.05.12 17:04:22 | 000,154,624 | ---- | M] (Razer USA Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RzSynapse.sys -- (RzSynapse)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.02.01 23:08:32 | 000,033,344 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2010.12.25 01:56:06 | 000,834,544 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.09.23 01:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010.07.01 15:21:50 | 000,038,992 | ---- | M] (Screaming Bee LLC) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ScreamingBAudio64.sys -- (ScreamBAudioSvc)
DRV:64bit: - [2010.04.12 10:55:00 | 000,091,568 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2010.03.31 00:35:04 | 000,020,968 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\cpuz133_x64.sys -- (cpuz133)
DRV:64bit: - [2010.01.28 03:33:38 | 000,116,736 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.06.04 12:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009.06.03 04:15:30 | 000,060,464 | ---- | M] (Egis Technology Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mwlPSDVDisk.sys -- (mwlPSDVDisk)
DRV:64bit: - [2009.06.03 04:15:30 | 000,022,576 | ---- | M] (Egis Technology Inc.) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\mwlPSDFilter.sys -- (mwlPSDFilter)
DRV:64bit: - [2009.06.03 04:15:30 | 000,020,016 | ---- | M] (Egis Technology Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mwlPSDNserv.sys -- (mwlPSDNServ)
DRV:64bit: - [2008.12.26 13:56:04 | 000,021,504 | ---- | M] (Avnex) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vcsvad.sys -- (VCSVADHWSer) Avnex Virtual Audio Device (WDM)
DRV:64bit: - [2007.08.08 18:54:12 | 000,035,624 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ATITool64.sys -- (ATITool)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2005.11.04 21:31:15 | 000,029,184 | ---- | M] (Xeno) [Kernel | System | Stopped] -- C:\Windows\SysWOW64\drivers\prio.sys -- (prio)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=i ... lz=1I7ACAW
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKLM\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}


IE - HKU\.DEFAULT\..\URLSearchHook: - No CLSID value found
IE - HKU\.DEFAULT\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
IE - HKU\.DEFAULT\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\.DEFAULT\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKU\.DEFAULT\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\.DEFAULT\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKU\.DEFAULT\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-18\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
IE - HKU\S-1-5-18\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-18\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKU\S-1-5-18\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-18\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKU\S-1-5-18\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}: "URL" = http://search.icq.com/search/results.ph ... &ch_id=osd
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=i ... AW_csCZ411
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}: "URL" = http://search.qip.ru/search?query={searchTerms}&from=IE
IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.startup.homepage: "http://home.sweetim.com/?st=1"
FF - prefs.js..keyword.URL: "http://search.qip.ru/search?from=FF&query="
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: ""
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "QIP Search"
FF - prefs.js..browser.startup.homepage: "http://qip.ru"
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://search.icq.com/search/afe_result ... r=1.4.3&q="


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_235.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@idsoftware.com/QuakeLive: C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Trayy\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Trayy\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Trayy\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fbphotozoom@installdaddy.com: C:\Program Files (x86)\fbphotozoom\fbphotozoom14.xpi [2012.03.18 14:57:06 | 000,102,505 | ---- | M] ()
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012.03.25 22:15:37 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.05.05 17:18:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.05.11 19:49:36 | 000,000,000 | ---D | M]

[2011.05.06 18:26:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Trayy\AppData\Roaming\Mozilla\Extensions
[2012.05.06 20:23:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions
[2011.11.25 18:09:45 | 000,000,000 | ---D | M] (QipAuthorizer) -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions\{32a1fd71-835e-4b11-8e54-886fda0b4c89}
[2012.04.04 00:51:25 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2012.05.05 17:19:01 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2012.03.18 14:58:16 | 000,000,000 | ---D | M] (Yontoo) -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions\plugin@yontoo.com
[2012.05.05 13:25:18 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-1.xml
[2011.09.01 10:09:45 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-2.xml
[2012.01.12 19:32:23 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-3.xml
[2012.03.25 00:25:47 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-4.xml
[2012.04.05 00:37:33 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-5.xml
[2012.03.19 20:09:28 | 000,000,168 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin.gif
[2012.03.19 20:09:28 | 000,000,618 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin.src
[2011.03.30 16:14:34 | 000,001,042 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin.xml
[2012.04.10 16:39:15 | 000,002,062 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\qip-search.xml
[2012.04.04 01:00:13 | 000,004,031 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\sweetim.xml
[2012.05.05 17:19:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012.05.23 13:54:41 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2012.03.18 14:57:55 | 000,162,686 | ---- | M] () (No name found) -- C:\USERS\TRAYY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\H5P2ADLJ.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}.XPI
[2012.05.05 17:18:59 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.02.24 14:09:31 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2012.05.05 17:18:56 | 000,002,208 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2012.05.05 17:18:56 | 000,000,638 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2012.05.05 17:18:56 | 000,001,367 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2012.05.05 17:18:56 | 000,000,654 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2012.05.05 17:18:56 | 000,001,179 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms},
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Trayy\AppData\Local\Google\Chrome\Application\19.0.1084.46\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: QUAKE LIVE (Enabled) = C:\ProgramData\id Software\QuakeLive\npquakezero.dll
CHR - plugin: Unity Player (Enabled) = C:\Users\Trayy\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: Angry Birds = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.1.2.1_0\
CHR - Extension: Dota 2 Stream Viewer = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\dckodhdcpcdalhfmboodbkolcanpdekc\1.2.1_0\
CHR - Extension: Chris Delbuck = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\elgfababjopgjalkgbfndlempbfdiecf\2_0\
CHR - Extension: Sonic the Hedgehog = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\giffpibkknienblbfdlnljbkelppdnob\1.0.0_0\
CHR - Extension: avast! WebRep = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: SweetIM for Facebook = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\Copy of
CHR - Extension: SweetIM for Facebook = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\
CHR - Extension: LineBall = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeclmehkhpookgkhkecnaanahhoglakj\1.2.0_0\
CHR - Extension: Super Mario Bros = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfbanmklbelbcamgokhjgcojkogbgkig\2.1_0\
CHR - Extension: Skype Click to Call = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.10.0.9560_0\
CHR - Extension: QIP Authorizer = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdefnbcpjeflgggkipfemfckjicceiii\1.0_0\
CHR - Extension: FBPHOTOZOOM = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpieaakhacmfleokhjcjnpcnmnmpfkid\1.8_0\
CHR - Extension: Gmail = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Quake Live Window Mode Extender = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppecocelhinekclcnjplkjpkoilifnee\1.3_1\
CHR - Extension: Angry Birds = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.1.2.1_0\
CHR - Extension: Dota 2 Stream Viewer = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\dckodhdcpcdalhfmboodbkolcanpdekc\1.2.1_0\
CHR - Extension: Chris Delbuck = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\elgfababjopgjalkgbfndlempbfdiecf\2_0\
CHR - Extension: Sonic the Hedgehog = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\giffpibkknienblbfdlnljbkelppdnob\1.0.0_0\
CHR - Extension: avast! WebRep = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: SweetIM for Facebook = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\Copy of
CHR - Extension: SweetIM for Facebook = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\
CHR - Extension: LineBall = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeclmehkhpookgkhkecnaanahhoglakj\1.2.0_0\
CHR - Extension: Super Mario Bros = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfbanmklbelbcamgokhjgcojkogbgkig\2.1_0\
CHR - Extension: Skype Click to Call = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.10.0.9560_0\
CHR - Extension: QIP Authorizer = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdefnbcpjeflgggkipfemfckjicceiii\1.0_0\
CHR - Extension: FBPHOTOZOOM = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpieaakhacmfleokhjcjnpcnmnmpfkid\1.8_0\
CHR - Extension: Gmail = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Quake Live Window Mode Extender = C:\Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppecocelhinekclcnjplkjpkoilifnee\1.3_1\

O1 HOSTS File: ([2011.01.19 15:32:46 | 000,001,052 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 static3.cdn.ubi.com
O1 - Hosts: 127.0.0.1 ubisoft-orbit.s3.amazonaws.com
O1 - Hosts: 127.0.0.1 onlineconfigservice.ubi.com
O1 - Hosts: 127.0.0.1 orbitservice.ubi.com
O1 - Hosts: 127.0.0.1 ubisoft-orbit-savegames.s3.amazonaws.com
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (no name) - {6B5863A0-C43F-4C0A-982B-CC0E9125783F} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (QIPBHO Class) - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
O3 - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3:64bit: - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [mwlDaemon] C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [AMD AVT] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation)
O4 - HKLM..\Run: [ArcadeMovieService] C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe (CyberLink Corp.)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [EgisTecPMMUpdate] C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [EgisUpdate] C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [Hotkey Utility] C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe ()
O4 - HKLM..\Run: [Krait] C:\Program Files (x86)\Razer\Krait\razerhid.exe ()
O4 - HKLM..\Run: [MDS_Menu] C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [Razer Blackwidow Driver] C:\Program Files (x86)\Razer\BlackWidow\BlackWidowTray.exe (Razer USA Ltd)
O4 - HKLM..\Run: [RoccatKone+] C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE (ROCCAT GmbH)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SuiteTray] C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.)
O4 - HKU\S-1-5-21-2966925042-4052740615-870791363-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-2966925042-4052740615-870791363-1000..\Run: [QIP Internet Guardian] C:\Users\Trayy\AppData\Roaming\QipGuard\QipGuard.exe (QIP.ru)
O4 - HKU\S-1-5-21-2966925042-4052740615-870791363-1000..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html File not found
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html File not found
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A0C87EBA-C6C3-4800-AE38-459BB944F6E9}: NameServer = 192.168.100.251
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (prio.dll) - C:\Windows\SysWow64\prio.dll (Xeno)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{4bb3b427-0fbb-11e0-a6c2-4487fcaa0038}\Shell - "" = AutoRun
O33 - MountPoints2\{4bb3b427-0fbb-11e0-a6c2-4487fcaa0038}\Shell\AutoRun\command - "" = K:\autorun.exe
O33 - MountPoints2\L\Shell - "" = AutoRun
O33 - MountPoints2\L\Shell\AutoRun\command - "" = L:\crysis.exe -auto
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084


Drivers32:64bit: msacm.bdmpeg - bdmpega64.acm ()
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32:64bit: vidc.mjpg - bdmjpeg64.dll ()
Drivers32:64bit: vidc.mpeg - bdmpegv64.dll ()
Drivers32:64bit: VIDC.XFR1 - xfcodec64.dll ()
Drivers32: msacm.aacacm - C:\Windows\SysWow64\AACACM.acm (fccHandler)
Drivers32: msacm.ac3acm - C:\Windows\SysWow64\ac3acm.acm (fccHandler)
Drivers32: msacm.ac3filter - C:\Windows\SysWow64\ac3filter.acm ()
Drivers32: msacm.avis - C:\Windows\SysWow64\ff_acm.acm ()
Drivers32: msacm.bdmpeg - C:\Windows\SysWow64\bdmpega.acm ()
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3pacm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\Windows\SysWow64\lameACM.acm (http://lame.sourceforge.net/)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll ()
Drivers32: VIDC.FMVC - C:\Windows\SysWow64\fmcodec.DLL (Fox Magic Software)
Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
Drivers32: VIDC.LAGS - C:\Windows\SysWow64\lagarith.dll ( )
Drivers32: vidc.mjpg - C:\Windows\SysWow64\bdmjpeg.dll ()
Drivers32: vidc.mpeg - C:\Windows\SysWow64\bdmpegv.dll ()
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.x264 - C:\Windows\SysWow64\x264vfw.dll ()
Drivers32: VIDC.XFR1 - C:\Windows\SysWow64\xfcodec.dll ()
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2012.05.23 14:19:02 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Users\Trayy\Desktop\OTL.exe
[2012.05.23 14:18:43 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012.05.23 14:06:10 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2012.05.23 14:06:01 | 000,000,000 | --SD | C] -- C:\ComboFix
[2012.05.23 13:41:04 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2012.05.23 13:41:04 | 000,000,000 | ---D | C] -- C:\rsit
[2012.05.23 13:34:36 | 000,000,000 | ---D | C] -- C:\Users\Trayy\Desktop\bsw
[2012.05.20 01:56:59 | 000,000,000 | ---D | C] -- C:\Users\Trayy\Desktop\groove
[2012.05.20 01:48:32 | 000,000,000 | ---D | C] -- C:\Users\Trayy\AppData\Roaming\groove-dl
[2012.05.19 00:25:50 | 000,000,000 | ---D | C] -- C:\Users\Trayy\AppData\Roaming\runic games
[2012.05.18 14:29:17 | 000,000,000 | ---D | C] -- C:\Users\Trayy\AppData\Local\EA Games
[8 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2012.05.23 14:56:51 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.05.23 14:51:23 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.05.23 14:51:13 | 3220,549,632 | -HS- | M] () -- C:\hiberfil.sys
[2012.05.23 14:41:26 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.05.23 14:41:26 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.05.23 14:33:32 | 597,640,307 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012.05.23 14:24:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012.05.23 14:19:10 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Trayy\Desktop\OTL.exe
[2012.05.23 14:17:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2966925042-4052740615-870791363-1000UA.job
[2012.05.23 14:02:00 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.05.20 21:22:53 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2012.05.18 19:05:28 | 000,305,415 | ---- | M] () -- C:\Users\Trayy\Desktop\torrent.png
[2012.05.16 17:22:43 | 000,002,363 | ---- | M] () -- C:\Users\Trayy\Desktop\Google Chrome.lnk
[8 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012.05.23 14:26:45 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.05.20 01:48:34 | 000,001,896 | ---- | C] () -- C:\Users\Trayy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JTR's Grooveshark Downloader.lnk
[2012.05.18 19:05:28 | 000,305,415 | ---- | C] () -- C:\Users\Trayy\Desktop\torrent.png
[2012.04.25 22:23:28 | 000,027,648 | ---- | C] () -- C:\Windows\instoceanlite.exe
[2012.04.17 07:24:40 | 000,042,392 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2012.03.31 15:55:32 | 000,000,891 | ---- | C] () -- C:\Users\Trayy\AppData\Roaming\MPQEditor.ini
[2012.03.09 14:06:14 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012.02.15 04:36:36 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012.02.15 04:36:36 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012.02.05 17:05:29 | 000,000,261 | ---- | C] () -- C:\Windows\WPE PRO.INI
[2011.12.15 16:30:20 | 000,000,093 | ---- | C] () -- C:\Users\Trayy\AppData\Local\fusioncache.dat
[2011.12.15 16:28:17 | 000,007,600 | ---- | C] () -- C:\Users\Trayy\AppData\Local\resmon.resmoncfg
[2011.12.03 20:29:57 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.10.25 22:21:34 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\OVDecoder.dll
[2011.10.11 16:58:16 | 000,000,355 | ---- | C] () -- C:\Windows\SIERRA.INI
[2011.09.28 17:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011.09.19 09:07:46 | 000,015,360 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2011.09.19 09:07:32 | 000,058,368 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2011.09.04 18:09:48 | 000,061,895 | ---- | C] () -- C:\Windows\prio192uninstall.exe
[2011.09.04 18:09:48 | 000,000,135 | ---- | C] () -- C:\Windows\SysWow64\prio.ini
[2011.08.16 14:21:27 | 000,000,262 | ---- | C] () -- C:\Windows\game.ini
[2011.06.27 22:49:18 | 000,051,270 | ---- | C] () -- C:\Users\Trayy\AppData\Roaming\room_v3.dat
[2011.06.22 21:02:18 | 000,000,000 | ---- | C] () -- C:\Users\Trayy\AppData\Local\{28C5B27C-3355-49AD-BCF2-8E2415CAB814}
[2011.06.22 19:40:28 | 000,000,000 | ---- | C] () -- C:\Users\Trayy\AppData\Local\{32D82E3D-FDAD-4E90-B4AA-481C0E1B45C1}
[2011.05.06 18:26:29 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2011.04.29 12:30:46 | 000,061,440 | ---- | C] () -- C:\Windows\SysWow64\wintab32.dll
[2011.04.24 20:04:44 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2011.04.11 19:09:18 | 000,073,216 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011.04.10 20:36:04 | 000,120,320 | ---- | C] ( ) -- C:\Windows\SysWow64\lagarith.dll
[2011.03.28 17:13:58 | 003,220,992 | ---- | C] () -- C:\Windows\SysWow64\x264vfw.dll
[2011.03.26 23:12:55 | 000,046,742 | ---- | C] () -- C:\Users\Trayy\AppData\Roaming\room.dat
[2011.03.19 11:06:02 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011.03.19 11:04:28 | 000,650,752 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011.03.02 19:10:58 | 000,000,268 | ---- | C] () -- C:\Windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini
[2011.02.09 16:42:56 | 000,000,474 | ---- | C] () -- C:\Windows\wininit.ini
[2011.01.18 21:05:25 | 000,000,384 | ---- | C] () -- C:\Windows\ODBC.INI
[2011.01.15 17:24:23 | 000,085,167 | ---- | C] () -- C:\Windows\War3Unin.dat
[2010.12.31 01:22:30 | 001,582,918 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010.12.31 01:21:31 | 002,250,024 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2010.12.28 15:27:32 | 000,000,000 | ---- | C] () -- C:\Users\Trayy\AppData\Roaming\wklnhst.dat
[2010.12.25 13:28:32 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010.12.24 23:21:34 | 000,234,536 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.12.24 23:21:01 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010.07.06 12:09:00 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.07.06 12:04:57 | 000,311,296 | ---- | C] () -- C:\Windows\SysWow64\Rezip.exe

========== LOP Check ==========

[2011.02.24 15:48:47 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\.minecraft
[2010.12.29 15:31:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Allstar
[2011.06.03 13:19:39 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\AnvSoft
[2011.03.16 19:57:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\AutoText
[2012.03.21 15:11:27 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Avnex
[2012.04.02 13:32:58 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BANDISOFT
[2011.01.24 11:03:29 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Bioshock
[2011.06.15 16:08:29 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Bioshock2
[2012.05.23 01:15:51 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BitTorrent
[2011.03.05 23:02:42 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BSplayer
[2011.02.21 00:59:51 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BSplayer Pro
[2011.04.07 14:06:26 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Command and Conquer 4
[2010.12.25 02:11:46 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\DAEMON Tools Lite
[2012.02.12 16:22:40 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\DarknessII
[2011.11.22 12:59:23 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\digipen
[2011.06.21 22:11:38 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\DisneyInteractiveStudios
[2011.07.16 13:52:26 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Downloaded Installations
[2012.04.25 22:25:43 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Dream Aquarium
[2012.04.27 22:58:57 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\FileZilla
[2011.08.24 17:06:25 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\GarenaMessenger
[2011.12.26 09:50:44 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\GarenaPlus
[2012.03.09 23:26:06 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\GHISLER
[2012.04.13 14:32:01 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Gmail Notifier Plus
[2011.06.19 12:00:52 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\go
[2012.05.20 01:50:22 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\groove-dl
[2012.05.08 13:00:43 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\gtk-2.0
[2011.08.14 15:01:22 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\HLSW
[2012.03.14 18:06:55 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\ICQ
[2010.12.26 11:42:04 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Leadertech
[2011.04.17 11:36:56 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\LucasArts
[2011.06.26 20:13:38 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Mumble
[2011.11.15 19:47:37 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\My Battle for Middle-earth(tm) II Files
[2010.12.24 18:34:24 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\OEM
[2011.08.22 14:12:24 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Opera
[2012.02.15 00:30:20 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Origin
[2011.04.08 17:55:52 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\PowerCinema
[2011.12.18 13:35:45 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\progeSOFT
[2011.03.19 10:36:12 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\PunkBuster
[2011.11.25 18:09:49 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\QIP
[2012.04.10 16:39:11 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\QipGuard
[2011.12.15 23:03:17 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Rovio
[2012.05.19 00:25:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\runic games
[2012.03.21 14:43:54 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Screaming Bee
[2012.02.12 23:03:55 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\SplitMediaLabs
[2012.03.18 16:56:21 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\SPORE
[2011.05.05 18:23:10 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\TeamViewer
[2010.12.28 15:27:33 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Template
[2011.12.13 22:43:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Trine2
[2012.04.29 12:23:05 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\TS3Client
[2011.12.03 18:00:53 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Ubisoft
[2011.01.23 19:21:19 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\VitySoft
[2011.04.07 19:57:12 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Warsow 0.6
[2011.04.15 13:46:11 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Win7codecs
[2011.02.18 21:37:36 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Windows Live Writer
[2009.07.14 07:08:49 | 000,024,472 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011.11.25 18:05:26 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{0530163F-1791-4401-9BBD-E31FCB6076AA}.job
[2011.08.19 21:44:53 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{78139842-4BDB-4628-BE44-0F2145DE7F21}.job
[2011.06.19 12:02:08 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{7CF89CCB-A404-4F2D-8553-07A7B903B963}.job
[2011.02.22 21:17:53 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{8C86EE59-52B8-40CE-9CF5-A5FED3CE26CD}.job
[2011.05.23 23:39:03 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{FCB40820-E277-448E-9C50-DAE58B8E2DC7}.job

========== Purity Check ==========

DavidSp
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 23 kvě 2012 12:43

Re: PC se sam od sebe vypina

#6 Příspěvek od DavidSp »

========== Custom Scans ==========

< >

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2009.10.06 08:06:36 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=00B0358734CAA32C39D181FE6916B178 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20542_none_b8b0208ee0ce1889\explorer.exe
[2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2009.10.31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.10.06 08:35:29 | 002,868,736 | ---- | M] (Microsoft Corporation) MD5=6D4F9E4B640B413C6F73414327484C80 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16434_none_addea9f19345cd81\explorer.exe
[2010.02.04 12:49:48 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2009.10.31 08:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2010.02.04 12:49:48 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 08:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2010.02.04 12:49:48 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2009.10.06 08:31:09 | 002,868,736 | ---- | M] (Microsoft Corporation) MD5=CA17F8620815267DC838E30B68CB5052 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20542_none_ae5b763cac6d568e\explorer.exe
[2011.02.26 08:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2010.02.04 12:49:48 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
[2009.10.06 07:53:03 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=FC89FACA0473641CB625EDA9277D0885 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16434_none_b8335443c7a68f7c\explorer.exe

< MD5 for: HAL.DLL >
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 07:28:24 | 001,893,248 | ---- | M] (Microsoft Corporation) MD5=1F748D5439B65E0BEBD92F65048F030D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_0fb918de99201ffb\tcpip.sys
[2011.09.29 19:41:37 | 001,912,176 | ---- | M] (Microsoft Corporation) MD5=3810F06A4D74A7D62641EE73D6B3C660 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21828_none_11c6e9949627e69c\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2011.06.21 08:16:55 | 001,888,128 | ---- | M] (Microsoft Corporation) MD5=5279D4DD69C7C71524B8E7A5746D15CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20992_none_0f8ed978993fa916\tcpip.sys
[2010.06.14 08:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2012.03.30 12:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2011.04.25 07:32:22 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=61DC720BB065D607D5823F13D2A64321 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_0f668bf97fd90dd3\tcpip.sys
[2012.03.30 13:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.06.14 08:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2011.04.25 07:33:51 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316\tcpip.sys
[2011.06.21 08:20:30 | 001,914,752 | ---- | M] (Microsoft Corporation) MD5=A0EB71E0DC047C7CC95CD6AB4036296E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21754_none_11a276c29643d7ec\tcpip.sys
[2011.09.29 18:17:51 | 001,886,064 | ---- | M] (Microsoft Corporation) MD5=AC3E29880DB5659532A1AA3439304A43 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21060_none_0fad20ca992955d7\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\SysNative\drivers\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2011.04.25 08:16:34 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357a\tcpip.sys
[2011.06.21 08:27:14 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=B9D87C7707F058AC652A398CD28DE14B -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16839_none_0f4d1e3b7feb1307\tcpip.sys
[2011.06.21 08:34:00 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=F0E98C00A09FDF791525829A1D14240F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17638_none_11327af77d12659c\tcpip.sys
[2011.09.29 18:24:44 | 001,897,328 | ---- | M] (Microsoft Corporation) MD5=F18F56EFC0BFB9C87BA01C37B27F4DA5 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16889_none_0f170e9f80139ebc\tcpip.sys
[2011.09.29 18:29:28 | 001,923,952 | ---- | M] (Microsoft Corporation) MD5=FC62769E7BFF2896035AEED399108162 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17697_none_10f09b257d43f3eb\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< >

< %systemroot%*.* /U /s >
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[6 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[3 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\744d0a29f79b4b4949620ac5107e09ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\744d0a29f79b4b4949620ac5107e09ad\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\e2ae778f2037152039ec560f0abd6f3e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e2ae778f2037152039ec560f0abd6f3e\*.tmp -> ]
[8 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[8 C:\Windows\SysWOW64\*.tmp files -> C:\Windows\SysWOW64\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2011.02.24 15:48:47 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\.minecraft
[2011.01.18 18:13:38 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Adobe
[2010.12.29 15:31:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Allstar
[2011.06.03 13:19:39 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\AnvSoft
[2010.12.24 18:35:20 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\ATI
[2011.03.16 19:57:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\AutoText
[2012.03.21 15:11:27 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Avnex
[2012.04.02 13:32:58 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BANDISOFT
[2011.01.24 11:03:29 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Bioshock
[2011.06.15 16:08:29 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Bioshock2
[2012.05.23 01:15:51 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BitTorrent
[2011.03.05 23:02:42 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BSplayer
[2011.02.21 00:59:51 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\BSplayer Pro
[2011.04.07 14:06:26 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Command and Conquer 4
[2010.12.24 20:39:58 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\CyberLink
[2010.12.25 02:11:46 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\DAEMON Tools Lite
[2012.02.12 16:22:40 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\DarknessII
[2011.11.22 12:59:23 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\digipen
[2011.06.21 22:11:38 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\DisneyInteractiveStudios
[2011.07.16 13:52:26 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Downloaded Installations
[2012.04.25 22:25:43 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Dream Aquarium
[2011.11.19 21:38:58 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\dvdcss
[2011.09.30 17:18:49 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\FastStone
[2012.04.27 22:58:57 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\FileZilla
[2011.08.24 17:06:25 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\GarenaMessenger
[2011.12.26 09:50:44 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\GarenaPlus
[2012.03.09 23:26:06 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\GHISLER
[2012.04.13 14:32:01 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Gmail Notifier Plus
[2011.06.19 12:00:52 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\go
[2010.12.24 19:09:40 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Google
[2012.05.20 01:50:22 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\groove-dl
[2012.05.08 13:00:43 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\gtk-2.0
[2011.08.14 21:01:33 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Hamachi
[2011.08.14 15:01:22 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\HLSW
[2012.03.14 18:06:55 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\ICQ
[2010.12.24 18:33:42 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Identities
[2011.01.09 20:11:59 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\InstallShield
[2010.12.26 11:42:04 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Leadertech
[2011.04.17 11:36:56 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\LucasArts
[2010.12.24 18:34:22 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Macromedia
[2009.07.14 09:44:38 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Media Center Programs
[2011.12.18 21:20:19 | 000,000,000 | --SD | M] -- C:\Users\Trayy\AppData\Roaming\Microsoft
[2011.05.21 19:47:42 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Microsoft Game Studios
[2011.05.06 18:26:33 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Mozilla
[2011.06.26 20:13:38 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Mumble
[2011.11.15 19:47:37 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\My Battle for Middle-earth(tm) II Files
[2011.06.24 18:47:28 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Nero
[2010.12.24 18:34:24 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\OEM
[2011.08.22 14:12:24 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Opera
[2012.02.15 00:30:20 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Origin
[2011.04.08 17:55:52 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\PowerCinema
[2011.12.18 13:35:45 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\progeSOFT
[2011.03.19 10:36:12 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\PunkBuster
[2011.11.25 18:09:49 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\QIP
[2012.04.10 16:39:11 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\QipGuard
[2011.12.15 23:03:17 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Rovio
[2012.05.19 00:25:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\runic games
[2012.03.21 14:43:54 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Screaming Bee
[2011.01.22 10:54:17 | 000,000,000 | RH-D | M] -- C:\Users\Trayy\AppData\Roaming\SecuROM
[2012.05.23 14:13:46 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Skype
[2011.05.28 22:03:37 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\skypePM
[2012.02.12 23:03:55 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\SplitMediaLabs
[2012.03.18 16:56:21 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\SPORE
[2011.05.05 18:23:10 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\TeamViewer
[2010.12.28 15:27:33 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Template
[2011.12.13 22:43:50 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Trine2
[2012.04.29 12:23:05 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\TS3Client
[2011.12.03 18:00:53 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Ubisoft
[2011.03.02 19:14:55 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Ventrilo
[2011.01.23 19:21:19 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\VitySoft
[2012.05.23 01:15:49 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\vlc
[2011.04.07 19:57:12 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Warsow 0.6
[2011.04.15 13:46:11 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Win7codecs
[2011.02.18 21:37:36 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Windows Live Writer
[2010.12.24 23:31:18 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\WinRAR
[2012.04.30 17:21:42 | 000,000,000 | ---D | M] -- C:\Users\Trayy\AppData\Roaming\Xfire

< %APPDATA%\*.exe /s >
[2009.08.11 22:21:26 | 000,087,552 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 22:21:30 | 000,090,112 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 15:52:04 | 000,697,690 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\AC3 Filter\unins000.exe
[2010.02.23 18:01:52 | 001,185,871 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\FFDShow\unins000.exe
[2010.08.14 11:42:54 | 000,113,152 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 11:45:10 | 000,358,400 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 11:42:06 | 000,137,728 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 16:30:22 | 000,042,305 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\BSplayer\Haali media splitter\uninstall.exe
[2012.02.21 19:40:15 | 000,039,936 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\groove-dl\groove.exe
[2011.01.16 00:45:01 | 000,012,862 | R--- | M] () -- C:\Users\Trayy\AppData\Roaming\Microsoft\Installer\{0E2B767B-EA6A-489B-BF83-8083FE1DB661}\_1EEFFF72773535163E4216.exe
[2011.02.21 14:34:52 | 000,010,134 | R--- | M] () -- C:\Users\Trayy\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2011.04.29 12:30:00 | 000,028,672 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\progeSOFT\progeCAD\R10\Professional - English\pdf2dxf.exe
[2011.04.29 12:30:00 | 000,020,480 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\progeSOFT\progeCAD\R10\Professional - English\fonts\FontSetup.exe
[2011.02.24 17:07:45 | 000,835,440 | R--- | M] () -- C:\Users\Trayy\AppData\Roaming\PunkBuster\pbsetup\pbsvc.exe
[2011.08.05 00:23:17 | 001,663,656 | ---- | M] (Blizzard Entertainment) -- C:\Users\Trayy\AppData\Roaming\QIP\Profiles\331795362@qip.ru\RcvdFiles\Hardscream_257733351\InstallWoW.exe
[2012.03.23 16:55:34 | 000,191,440 | ---- | M] (QIP.ru) -- C:\Users\Trayy\AppData\Roaming\QipGuard\QipGuard.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[8 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job >
[2012.05.23 14:24:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012.03.24 13:18:04 | 000,000,948 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cd09afc80b62d3.job
[2012.05.23 14:02:00 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.03.25 22:34:08 | 000,000,910 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2966925042-4052740615-870791363-1000Core1cd0ac6a11b5146.job
[2012.05.23 14:17:00 | 000,000,962 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2966925042-4052740615-870791363-1000UA.job
[2011.11.25 18:05:26 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{0530163F-1791-4401-9BBD-E31FCB6076AA}.job
[2011.08.19 21:44:53 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{78139842-4BDB-4628-BE44-0F2145DE7F21}.job
[2011.06.19 12:02:08 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{7CF89CCB-A404-4F2D-8553-07A7B903B963}.job
[2011.02.22 21:17:53 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{8C86EE59-52B8-40CE-9CF5-A5FED3CE26CD}.job
[2011.05.23 23:39:03 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{FCB40820-E277-448E-9C50-DAE58B8E2DC7}.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[8 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[8 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Google Update" = "C:\Users\Trayy\AppData\Local\Google\Update\GoogleUpdate.exe" /c -- [2010.12.24 19:12:47 | 000,136,176 | ---- | M] (Google Inc.)
"QIP Internet Guardian" = C:\Users\Trayy\AppData\Roaming\QipGuard\QipGuard.exe /p -- [2012.03.23 16:55:34 | 000,191,440 | ---- | M] (QIP.ru)
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2010.04.01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd)
"Steam" = "C:\Program Files (x86)\Steam\steam.exe" -silent -- [2011.08.02 13:04:56 | 001,242,448 | ---- | M] (Valve Corporation)
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2010.11.20 15:25:17 | 001,475,584 | ---- | M] (Microsoft Corporation)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2012.05.05 17:18:58 | 000,924,632 | ---- | M] (Mozilla Corporation) MD5=5AC757AE411CBC603C33C85F81F8657D -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2010.11.20 14:22:51 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=C613E69C3B191BB02C7A191741A1D024 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.05.23 14:56:51 | 000,000,512 | ---- | M] () MD5=D5D0A7313F0883958751E42AD6645713 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2009.03.08 10:59:14 | 000,163,840 | ---- | M] () -- \Program Files (x86)\Garena\plugins\UI\AvoidCrackPlugin.dll
[2010.10.04 23:50:56 | 000,062,238 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\share\gimp\2.0\patterns\cracked.pat
[2011.12.09 20:12:11 | 000,002,347 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_1.psf
[2011.12.09 20:11:32 | 000,001,899 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_1b.psf
[2011.12.09 20:12:11 | 000,001,787 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_2.psf
[2011.12.09 20:11:32 | 000,002,571 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_2b.psf
[2011.12.09 20:12:11 | 000,002,123 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_3.psf
[2011.12.09 20:12:11 | 000,002,235 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_4.psf
[2011.12.09 20:12:11 | 000,001,899 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_5.psf
[2011.12.09 20:12:11 | 000,001,787 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_6.psf
[2011.12.09 20:12:11 | 000,002,683 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_7.psf
[2012.02.25 02:20:33 | 000,002,347 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_1.psf
[2012.02.25 02:23:22 | 000,001,899 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_1b.psf
[2012.02.25 02:21:56 | 000,001,787 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_2.psf
[2012.02.25 02:23:22 | 000,002,571 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_2b.psf
[2012.02.25 02:25:44 | 000,002,123 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_3.psf
[2012.02.25 02:25:44 | 000,002,235 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_4.psf
[2012.02.25 02:21:56 | 000,001,899 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_5.psf
[2012.02.25 02:23:25 | 000,001,787 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_6.psf
[2012.02.25 02:20:33 | 000,002,683 | ---- | M] () -- \Program Files (x86)\Steam\SteamApps\common\dota 2 test\dota\particles\particle_snapshots\good_ancient_destruction\goodancient_ground_crackglow_7.psf
[2012.05.16 20:00:03 | 000,005,120 | ---- | M] () -- \Users\Trayy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_skidrowcrack.com_0.localstorage
[2011.12.15 22:58:50 | 000,019,263 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Angry Birds - Christmas Edition - Seasons 2.0 HD - FULL + Key and Crack.torrent
[2011.12.02 22:18:56 | 000,005,682 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Assassins creed 2 funkcni crack + navod.rar.torrent
[2011.12.03 11:06:16 | 000,033,509 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Assassins Creed 2+crack,emulator,cestina.1.torrent
[2011.01.17 21:23:51 | 000,033,509 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Assassins Creed 2+crack,emulator,cestina.torrent
[2011.03.01 22:24:38 | 000,003,962 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Banner Maker Professional v7.0.3 [Crack] [Eng] [Arx].torrent
[2011.08.15 21:43:08 | 000,153,152 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\CALL OF DUTY 2 PC DVD + Key + 1.3 Patch + NoCd Crack.torrent
[2011.01.24 12:00:52 | 000,002,011 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\G.T.A.IV.Crack-Razor1911.torrent
[2012.02.06 19:28:47 | 000,019,714 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Kingdoms.of.Amalur.Reckoning.v1.0.cracked.READ.NFO-THETA.torrent
[2012.03.06 00:40:10 | 000,014,233 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Mass Effect 3 Crack.torrent
[2011.05.20 12:50:42 | 000,012,342 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Need.For.Speed.Most.Wanted.[ENG]PC.DVD[.ISO].[.NFO].Keygen & Crack.torrent
[2011.05.30 15:15:18 | 001,613,388 | ---- | M] () -- \Users\Trayy\Documents\Keyclone1.8cracked.rar
[2012.04.06 21:31:44 | 000,012,020 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrack.cfx
[2012.04.06 21:31:47 | 000,012,072 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackalphatest.cfx
[2012.04.06 21:31:47 | 000,012,440 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2012.04.06 21:31:49 | 000,012,988 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2012.04.06 21:31:50 | 000,012,340 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2012.04.06 21:31:49 | 000,012,624 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackalphatestshadow.cfx
[2012.04.06 21:31:44 | 000,012,388 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcracklightmap.cfx
[2012.04.06 21:31:45 | 000,012,936 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcracklightmapshadow.cfx
[2012.04.06 21:31:45 | 000,012,624 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrack.cfx
[2012.04.06 21:31:48 | 000,012,660 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2012.04.06 21:31:48 | 000,013,000 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2012.04.06 21:31:50 | 000,013,576 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2012.04.06 21:31:50 | 000,012,720 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2012.04.06 21:31:50 | 000,013,252 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2012.04.06 21:31:45 | 000,012,964 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2012.04.06 21:31:46 | 000,013,540 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2012.04.06 21:31:47 | 000,012,684 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2012.04.06 21:31:46 | 000,013,216 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2012.04.06 21:31:47 | 000,012,304 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackpointlight.cfx
[2012.04.06 21:31:45 | 000,012,572 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetailcrackshadow.cfx
[2012.04.06 21:31:44 | 000,012,200 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrack.cfx
[2012.04.06 21:31:47 | 000,012,252 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackalphatest.cfx
[2012.04.06 21:31:47 | 000,012,620 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2012.04.06 21:31:49 | 000,013,168 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2012.04.06 21:31:50 | 000,012,516 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2012.04.06 21:31:49 | 000,012,804 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2012.04.06 21:31:44 | 000,012,568 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcracklightmap.cfx
[2012.04.06 21:31:45 | 000,013,116 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2012.04.06 21:31:45 | 000,012,804 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2012.04.06 21:31:48 | 000,012,840 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2012.04.06 21:31:48 | 000,013,180 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2012.04.06 21:31:50 | 000,013,756 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2012.04.06 21:31:50 | 000,012,900 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2012.04.06 21:31:50 | 000,013,432 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2012.04.06 21:31:45 | 000,013,144 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2012.04.06 21:31:46 | 000,013,720 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2012.04.06 21:31:47 | 000,012,864 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2012.04.06 21:31:46 | 000,013,396 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2012.04.06 21:31:47 | 000,012,480 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackpointlight.cfx
[2012.04.06 21:31:45 | 000,012,752 | ---- | M] () -- \Users\Trayy\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BB9-11CF-A470-59C1BEC2C535}_3153_2\rashaderstmbasedetaildirtcrackshadow.cfx
[2011.03.01 22:24:38 | 000,003,962 | ---- | M] () -- \Users\Trayy\Downloads\Banner_Maker_Professional_v7.0.3_[Crack]_[Eng]_[Arx].4650147.TPB.torrent
[2012.01.01 12:53:48 | 000,510,210 | ---- | M] () -- \Users\Trayy\Downloads\Jedi.Academy.SP.V.1.0.1.NoCD.recracks.de (1).rar
[2012.01.01 12:46:35 | 000,510,210 | ---- | M] () -- \Users\Trayy\Downloads\Jedi.Academy.SP.V.1.0.1.NoCD.recracks.de.rar
[2011.01.10 07:43:29 | 006,201,864 | ---- | M] () -- \Users\Trayy\Downloads\Tom Clancys H.A.W.X 2 crack.rar
[2011.12.02 22:18:56 | 000,005,682 | ---- | M] () -- \Users\Trayy\Downloads\[CzT]Assassins_creed_2_funkcni_crack_navod.torrent
[2012.03.06 00:40:10 | 000,014,233 | ---- | M] () -- \Users\Trayy\Downloads\[CzT]Mass_Effect_3_Crack_RELOADED.torrent
[2011.10.15 17:04:00 | 000,011,211 | ---- | M] () -- \Users\Trayy\Downloads\[CzT]Might_and_Magic_Heroes_VI_Update_v1_1_CRACK.torrent

< *keygen* /s >
[2011.05.20 12:50:42 | 000,012,342 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Need.For.Speed.Most.Wanted.[ENG]PC.DVD[.ISO].[.NFO].Keygen & Crack.torrent
[2011.01.15 15:36:41 | 000,028,706 | ---- | M] () -- \Users\Trayy\AppData\Roaming\BitTorrent\Warcraft RoC + TFT + Keygens + Patch 1.24c ONLINE WORKING.torrent

< *loader* /s >
[2010.02.05 23:08:58 | 000,058,664 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\Koan\pyloader.dll
[2010.02.05 23:09:04 | 000,001,731 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\System\FlvLoader.swf
[2010.02.05 23:09:06 | 000,011,732 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\System\KernelCtrl\ImageLoader.kc
[2010.02.05 23:09:06 | 000,021,419 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\System\KernelCtrl\ImageLoader2.kc
[2010.02.05 23:09:08 | 000,003,955 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\Widget\langloader.kc
[2010.02.05 23:09:08 | 000,013,982 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\Widget\layoutloader.kc
[2010.02.05 21:33:54 | 000,010,787 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\mm\MediaCtrl\ImageLoader.kc
[2010.02.05 21:33:56 | 000,003,498 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\Widget\langloader.kc
[2010.02.05 21:33:56 | 000,012,801 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\Widget\layoutloader.kc
[2010.02.02 10:20:58 | 000,011,710 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\HomeMedia\mm\MediaCtrl\ImageLoader.kc
[2010.02.02 10:21:06 | 000,003,489 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\HomeMedia\widget\langloader.kc
[2010.02.02 10:21:06 | 000,012,539 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\HomeMedia\widget\layoutloader.kc
[2010.02.04 01:37:34 | 000,056,416 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\Koan\pyloader.dll
[2010.02.04 01:37:38 | 000,018,115 | ---- | M] () -- \Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\subsys\DataCenter\ImageLoader.kc
[2011.07.02 12:42:13 | 000,000,000 | ---- | M] () -- \Program Files (x86)\Common Files\Blizzard Entertainment\BlizzardDownloader.ini
[2004.12.28 18:40:02 | 000,169,384 | ---- | M] () -- \Program Files (x86)\Counter-Strike 1.6\cstrike\models\qloader.mdl
[2003.09.15 14:55:50 | 000,352,548 | ---- | M] () -- \Program Files (x86)\Counter-Strike 1.6\valve\models\loader.mdl
[2003.09.15 14:56:04 | 000,012,764 | ---- | M] () -- \Program Files (x86)\Counter-Strike 1.6\valve\sound\ambience\loader_hydra1.wav
[2003.09.15 14:56:04 | 000,012,164 | ---- | M] () -- \Program Files (x86)\Counter-Strike 1.6\valve\sound\ambience\loader_step1.wav
[2011.08.19 11:42:30 | 000,038,400 | ---- | M] () -- \Program Files (x86)\Garena Plus\FileLoader.dll
[2011.07.04 08:39:32 | 002,621,952 | ---- | M] () -- \Program Files (x86)\Garena Plus\ggdownloader.dll
[2010.02.07 23:40:00 | 000,000,543 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\etc\gtk-2.0\gdk-pixbuf.loaders
[2009.12.15 19:58:18 | 000,017,056 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2009.12.15 19:58:20 | 000,018,592 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2009.12.15 19:58:24 | 000,026,272 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2009.12.15 19:58:26 | 000,012,960 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2009.12.15 19:58:28 | 000,017,568 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2009.12.15 19:58:56 | 000,019,616 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2009.12.15 19:59:04 | 000,015,008 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2009.12.15 19:59:06 | 000,019,104 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2009.12.15 19:59:10 | 000,017,056 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2009.12.15 19:59:14 | 000,012,448 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2009.12.15 19:59:16 | 000,016,544 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2009.12.15 19:59:20 | 000,016,544 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2009.12.15 19:59:22 | 000,011,936 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2009.12.15 19:59:24 | 000,013,984 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2009.12.15 19:59:28 | 000,028,320 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2009.05.01 21:42:00 | 000,009,880 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2011.08.24 15:13:34 | 001,015,128 | ---- | M] () -- \Program Files (x86)\IObit\Game Booster\Freeware\GB_FreeSoftwareDownloader.exe
[2011.02.25 11:46:26 | 000,005,987 | ---- | M] () -- \Program Files (x86)\Microsoft\BingBar\scripts\io\downloader.js
[2009.05.31 03:21:00 | 000,071,008 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2009.05.31 03:21:00 | 000,073,568 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2010.03.15 12:27:20 | 000,054,784 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2010.01.15 23:09:08 | 000,000,232 | ---- | M] () -- \ProgramData\Nero\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2010.01.15 23:09:08 | 000,000,232 | ---- | M] () -- \Users\All Users\Nero\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2010.12.23 14:59:10 | 000,000,073 | ---- | M] () -- \Users\Trayy\AppData\Local\HHD Software\Hex Editor Neo\downloader.cdm
[2011.01.27 13:42:22 | 000,180,736 | ---- | M] () -- \Users\Trayy\AppData\Local\HHD Software\Hex Editor Neo\downloader.dll
[2010.09.22 14:16:48 | 000,005,273 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Toolbar\Applications\loader.xap
[2012.05.12 21:25:24 | 000,010,519 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\30YBOZJC\AdLoader-aee74f28845638b42a47bb02dc06a7c6.min[1].js
[2012.05.23 13:01:33 | 000,000,652 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DQT2KIVG\AdLoader[1].htm
[2012.05.23 12:20:39 | 000,000,652 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DQT2KIVG\AdLoader[2].htm
[2012.05.23 13:12:00 | 000,000,652 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G3FFQR4J\AdLoader[1].htm
[2012.05.23 13:54:47 | 000,000,652 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G3FFQR4J\AdLoader[2].htm
[2012.05.23 14:16:39 | 000,014,290 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\JX2FY0FL\TooltipLoader[1].js
[2012.05.23 14:16:39 | 000,000,905 | ---- | M] () -- \Users\Trayy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZMG8L2J3\TooltipLoader[1].css
[2010.12.29 15:33:40 | 000,000,054 | ---- | M] () -- \Users\Trayy\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\KCK9EBDW\media.mtvnservices.com\player\loader\loaderLogging.sol
[2011.03.03 16:46:51 | 000,000,054 | ---- | M] () -- \Users\Trayy\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\KCK9EBDW\www.mtv.com\global\apps\player\flex\Loader.swf\loaderLogging.sol
[2012.05.20 01:48:34 | 000,001,896 | ---- | M] () -- \Users\Trayy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JTR's Grooveshark Downloader.lnk
[2010.02.06 11:57:22 | 000,002,932 | ---- | M] () -- \Users\Trayy\Desktop\AddOns\Afflicted\libs\AceGUI-3.0-Spell-EditBox\SpellLoader.lua
[2010.12.30 18:52:16 | 000,000,382 | ---- | M] () -- \Users\Trayy\Desktop\AddOns\Prat-3.0\pullouts\Prat-3.0_Loader\Prat-3.0_Loader.toc
[2012.01.18 23:29:04 | 000,000,061 | ---- | M] () -- \Users\Trayy\Desktop\groove\SciLor's Grooveshark.com Downloader\SciLors GrooveDownloader WithTor.bat
[2012.04.29 16:22:54 | 000,374,272 | ---- | M] () -- \Users\Trayy\Desktop\groove\SciLor's Grooveshark.com Downloader\SciLors GrooveDownloader.exe
[2011.12.06 11:46:22 | 000,002,120 | ---- | M] () -- \Users\Trayy\Desktop\mirek\MP3 Downloader.lnk
[2009.12.27 13:53:13 | 002,335,304 | ---- | M] () -- \Users\Trayy\Desktop\Wow\BackgroundDownloader.exe
[2010.10.09 00:39:02 | 002,705,537 | ---- | M] () -- \Users\Trayy\Desktop\Wow\wow-2.1.1.1897-enGB-tools-downloader.exe
[2009.12.27 13:53:28 | 002,400,032 | ---- | M] () -- \Users\Trayy\Desktop\Wow\WoW-3.2.2.10505-to-3.3.0.10958-enGB-downloader.exe
[2009.12.27 15:06:46 | 002,336,112 | ---- | M] () -- \Users\Trayy\Desktop\Wow\WoW-3.3.0.10958-to-3.3.0.11159-enGB-downloader.exe
[2010.02.18 16:57:46 | 002,350,144 | ---- | M] () -- \Users\Trayy\Desktop\Wow\WoW-3.3.0.11159-to-3.3.2.11403-enGB-downloader.exe
[2010.05.07 10:10:48 | 002,654,392 | ---- | M] () -- \Users\Trayy\Desktop\Wow\WoW-3.3.2.11403-to-3.3.3.11685-enGB-downloader.exe
[2010.05.07 10:19:57 | 002,640,192 | ---- | M] () -- \Users\Trayy\Desktop\Wow\WoW-3.3.3.11685-to-3.3.3.11723-enGB-downloader.exe
[2010.07.05 12:11:10 | 002,711,048 | ---- | M] () -- \Users\Trayy\Desktop\Wow\WoW-3.3.3.11723-to-3.3.5.12213-enGB-downloader.exe
[2010.07.05 12:16:26 | 002,710,448 | ---- | M] () -- \Users\Trayy\Desktop\Wow\WoW-3.3.5.12213-to-3.3.5.12340-enGB-downloader.exe
[2008.12.06 02:27:18 | 000,003,026 | ---- | M] () -- \Users\Trayy\Desktop\Wow\Data\enGB\Documentation\Troubleshooting\(Mac)BlizzardDownloaderProblems.html
[2008.12.06 02:27:18 | 000,004,261 | ---- | M] () -- \Users\Trayy\Desktop\Wow\Data\enGB\Documentation\Troubleshooting\(PC)BlizzardDownloaderProblems.html
[2010.02.06 11:57:22 | 000,002,932 | ---- | M] () -- \Users\Trayy\Desktop\Wow\Interface\AddOns\Afflicted\libs\AceGUI-3.0-Spell-EditBox\SpellLoader.lua
[2010.12.30 18:52:16 | 000,000,382 | ---- | M] () -- \Users\Trayy\Desktop\Wow\Interface\AddOns\Prat-3.0\pullouts\Prat-3.0_Loader\Prat-3.0_Loader.toc
[2010.01.01 23:16:08 | 000,003,017 | ---- | M] () -- \Users\Trayy\Desktop\Wow\Interface\AddOns\SpellAlerter\Libs\AceGUI-3.0-Spell-EditBox\SpellLoader.lua
[2010.10.09 00:39:25 | 000,034,897 | ---- | M] () -- \Users\Trayy\Desktop\Wow\Logs\Downloader.log
[2012.05.20 01:55:39 | 011,019,339 | ---- | M] () -- \Users\Trayy\Downloads\SciLorsGrooveshark.comDownloaderV0.4.9.4.zip
[2012.03.21 14:41:09 | 000,301,632 | ---- | M] () -- \Users\Trayy\Downloads\SoftonicDownloader_fuer_morphvox.exe
[2012.01.01 12:48:36 | 000,756,638 | ---- | M] () -- \Users\Trayy\Downloads\SW Jedi Knight - Jedi Academy v1.0 MP NoCD fixed loader by mainfraME.rar
[2010.04.12 18:26:17 | 000,082,784 | ---- | M] () -- \Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[8 \Windows\System32\*.tmp files -> \Windows\System32\*.tmp -> ]
[2011.06.10 15:42:32 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[8 \Windows\SysWOW64\*.tmp files -> \Windows\SysWOW64\*.tmp -> ]
[2011.06.10 15:42:32 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:18:33 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_66f39ad995474166\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 08:23:09 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_66e5ca0f95521152\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:04:54 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:39:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_673e58b0ae93bb84\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:04:21 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_68daf829926cc6a9\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:44:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_68ce27a99276afec\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:00:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_695ac552ab919bbb\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:40:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_694ff566ab99b7ac\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2010.07.06 12:54:50 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2010.07.06 12:54:50 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2010.07.06 12:54:50 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2010.07.06 12:54:50 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2010.07.06 12:54:50 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2011.04.15 06:27:19 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.04.15 06:27:19 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2011.04.15 06:27:19 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2011.04.15 06:27:19 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2011.04.15 06:27:19 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2010.07.06 12:52:32 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 04:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 15:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 15:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 07:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:22:35 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_0ad4ff55dce9d030\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 07:45:50 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_0ac72e8bdcf4a01c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:19:58 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:50:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_0b1fbd2cf6364a4e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:13:36 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_0cbc5ca5da0f5573\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:47:28 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_0caf8c25da193eb6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:15:40 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_0d3c29cef3342a85\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:56:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_0d3159e2f33c4676\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll

========== Alternate Data Streams ==========

@Alternate Data Stream - 145 bytes -> C:\ProgramData\Temp:AB689DEA
@Alternate Data Stream - 130 bytes -> C:\ProgramData\Temp:798A3728
@Alternate Data Stream - 129 bytes -> C:\ProgramData\Temp:0B9176C0

< End of report >

DavidSp
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 23 kvě 2012 12:43

Re: PC se sam od sebe vypina

#7 Příspěvek od DavidSp »

OTL Extras logfile created on: 23.5.2012 14:53:21 - Run 1
OTL by OldTimer - Version 3.2.43.1 Folder = C:\Users\Trayy\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 3,24 Gb Available Physical Memory | 81,05% Memory free
8,00 Gb Paging File | 7,26 Gb Available in Paging File | 90,74% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 289,95 Gb Total Space | 53,05 Gb Free Space | 18,30% Space Free | Partition Type: NTFS
Drive D: | 290,12 Gb Total Space | 53,83 Gb Free Space | 18,55% Space Free | Partition Type: NTFS

Computer Name: TRAYY-PC | User Name: Trayy | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl[@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Browse with FastStone] -- "C:\Program Files (x86)\FastStone Image Viewer\FSViewer.exe" "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Browse with FastStone] -- "C:\Program Files (x86)\FastStone Image Viewer\FSViewer.exe" "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01ECD67F-A486-4123-B013-1704CA7FCDE2}" = lport=10243 | protocol=6 | dir=in | app=system |
"{0517CED9-CABC-45AA-85F6-E24F17BBAD42}" = rport=138 | protocol=17 | dir=out | app=system |
"{26C8F3FB-344B-4E12-AA59-07B790C57DC6}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{27CD2AAF-F954-4B7C-A823-CA8FEC1313FD}" = rport=10243 | protocol=6 | dir=out | app=system |
"{2AE19A3A-356D-41D4-9013-0FBFB1CFCC54}" = rport=137 | protocol=17 | dir=out | app=system |
"{34939B8E-17E5-4DA5-8D2A-11DB7CC43815}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{36EA1FBA-AB09-4008-9B90-946C9D43E725}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{496609D4-2694-4372-976B-E208F5924EC5}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{54730726-5C30-41A2-8CFF-8FFFEF55712B}" = lport=139 | protocol=6 | dir=in | app=system |
"{57857710-715D-49B8-BE27-3F920DFA5858}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{62F46FE5-0B73-4DE4-B9DD-668A6C634A21}" = lport=138 | protocol=17 | dir=in | app=system |
"{69796287-E3F2-47CB-94DA-12DFBE920C1A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6EF06974-B256-4AC8-82DD-B7F6BE104EEC}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{7043C085-B270-4C57-96EC-256CAA8D1488}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{7148B00E-11E3-4723-A7B6-7B79E5542941}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{7F296A3C-348F-49D8-B4EB-D8F04FB4912D}" = rport=139 | protocol=6 | dir=out | app=system |
"{808F67F1-9FE0-4FF2-B2F2-D65A5BA52CB7}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{81F8CFB1-6FB2-4E38-BB2F-41268D67C630}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{93F47630-1EFB-433D-ABCD-5F8B1C84FF6B}" = lport=445 | protocol=6 | dir=in | app=system |
"{9BEDD72B-108B-4FD5-9CEA-8BB4B9356192}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9CC15B77-6BE3-4849-BF0F-FCC0C08D9134}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A1A650C3-7E27-4FE7-A67A-7718138C193E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{A7BFBB65-1F69-4D92-B2FA-4D7116B02B10}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{AF0CB08F-A57D-42EA-B535-B738A803A5FC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{B1991C6E-B1FB-4CBD-9867-BED55E04CFB4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C0702403-DAE3-439A-BE2A-09AD348C6128}" = lport=137 | protocol=17 | dir=in | app=system |
"{C142F4F1-973A-47CE-8D45-B925E4037547}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{C8C3AEBB-4DE2-4617-89A8-19A722E55159}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{CDCD3D8E-B2CC-4609-A2E7-6726BCBE869C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{D0A8C54C-E0A4-4EE3-9821-FCD0C87AB3FA}" = lport=2869 | protocol=6 | dir=in | app=system |
"{DB2FC327-236D-4C19-8E8A-FD9141081BDC}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{E4707AD3-B4DF-4C1C-9A3A-36BC513C6ED5}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{EE7F4176-2076-4BC8-B592-64AAFD98DC36}" = rport=445 | protocol=6 | dir=out | app=system |
"{F6288D43-CE5A-4C38-BB04-FDA9A13FAA36}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F9652E55-F859-41BB-9AB1-79CB2561B667}" = lport=2869 | protocol=6 | dir=in | app=system |
"{FCD06A89-9C01-4172-AD1E-D9E7625DEED5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00E07E14-FDDB-4816-8357-AB1388FCFE1E}" = protocol=17 | dir=in | app=c:\program files (x86)\counter-strike 1.6\hl.exe |
"{00E24156-38E4-4CEB-A84F-D07ED562F9F4}" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"{018791BE-975A-4E4E-9EF3-915DC84AA21A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 teaser\smp.exe |
"{02D063D6-C64F-4699-8522-E7BF54B73B69}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{036EEA81-7781-43D8-A629-48112DDD2CFC}" = protocol=6 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\temp\wow-4.0.1.2210-enus-tools-downloader.exe |
"{0D343DBA-9390-438C-B452-6BE4E261A482}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{10CC9FB6-0E32-4BF8-A307-1131E9B68E20}" = protocol=17 | dir=in | app=d:\program files (x86)\mass effect 2\binaries\masseffect2.exe |
"{125229D7-55F9-4870-9628-D6FA6BF6FC10}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{15BB3377-4F4D-4969-95FC-CDD1FB77D972}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{174D0593-1026-4DA3-B7DD-DA9CCC95D440}" = protocol=6 | dir=in | app=d:\program files (x86)\ea sports\fifa 12 [multi5] cz\game\fifa.exe |
"{17C18755-0AE5-4292-9FE3-EB2B379FCE19}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{19DAD569-F1EE-4CFE-99F4-3464B7D4BE7A}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{1D0BF2F5-196D-421E-A53C-37885E7ED97B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{1F486E1C-8376-4E57-B74A-8E92299981AA}" = protocol=17 | dir=in | app=c:\program files (x86)\warcraft iii\war3.exe |
"{1FEEC1D2-1C4C-4FE8-B052-701D5AC2FE6C}" = protocol=6 | dir=in | app=c:\program files (x86)\hamachi\hamachi.exe |
"{216974B1-6CEE-45FD-9A20-6982D505A968}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\rayman origins\rayman origins.exe |
"{21A3E8DD-D360-4813-9644-F9E7A8D18492}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{2201BD5D-83C4-452A-A5EF-86BDB4296AC1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 teaser\smp.exe |
"{2648CA45-A904-41D0-AA77-BB74BAEB6C28}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\homemedia\homemedia.exe |
"{293A8AFA-42CC-41F7-AB91-5FD248C09E62}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{2AB0D439-C53E-4604-95FA-20FF7E72B7AC}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{2AF8107D-9771-40C8-AFE8-3C0C6E6802C2}" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"{2CB85193-76D4-4ED9-945B-B05482D405C0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{3180FE57-7EF0-4101-A726-0B6695B64905}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{31FF69D2-A9E3-4568-B8A0-91EC573BCE27}" = protocol=17 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\temp\wow-4.0.1.2210-enus-tools-downloader.exe |
"{32D2515E-CFAE-4FA8-A02E-4304E1B8F1EE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{3339970E-D900-4186-A40A-E43F9455024A}" = protocol=17 | dir=in | app=d:\program files (x86)\runic games\torchlight\torchlight.exe |
"{3CD068F4-8CC3-4CA7-A8E1-B68060B59C07}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{3FEC7051-770B-4E0C-B03F-316ABAC21720}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{40A3CEA2-DE7B-4F35-93A5-20C5B84314D0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{41C1B36B-712A-43E2-898C-5B3FC7931076}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{49B8942D-2CC5-41F4-AEB7-9F26B9B8CEAC}" = protocol=6 | dir=in | app=c:\program files (x86)\garena\garena.exe |
"{4C88F949-BF04-4F84-AB87-6D7F9F91DDA0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{4DA376FE-5856-42A3-AEF1-B687B252FE6F}" = protocol=6 | dir=in | app=d:\program files (x86)\mass effect 2\masseffect2launcher.exe |
"{4F4428D6-0264-4EAF-9543-2983AB4385AB}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{504AA720-5E00-4043-94F4-DD37DB8C6261}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\rayman origins\rayman origins.exe |
"{52D7EB37-79E6-469B-98A4-678BFBF5A84D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{56079178-08D0-495B-B3A5-250041A8E64B}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{5B633F49-DB8F-4495-BA25-14CA0AE61BBD}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{5BFE6B08-55F8-4AF1-8DFA-6EBD1A6A9CAF}" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"{6732EFD5-8F2B-44D4-BAB3-EDD6B21F1178}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{69135513-65C7-435D-94BD-20F449FC6FDC}" = protocol=6 | dir=in | app=c:\program files (x86)\qip 2012\qip.exe |
"{6A66E0DA-0F14-4628-9114-5A6D9917C313}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 test\dota.exe |
"{6D5CCF4B-31BB-4D70-99FD-37EC5C83AA45}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{6E2A93EB-0B54-4CE2-80BD-8B8BD6FAAFA2}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{6EA79E53-DDFF-4909-98FC-EE877E36906D}" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"{73206596-E959-4190-8EDB-A0885F62E7C5}" = protocol=17 | dir=in | app=c:\program files (x86)\hamachi\hamachi.exe |
"{737D52D9-1DC7-4DE5-B2A0-0107BF23B2DD}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{7855DF6A-D930-45F3-9F64-6B843CBCD5D6}" = protocol=6 | dir=in | app=c:\program files (x86)\bittorrent\bittorrent.exe |
"{790C41ED-16FF-42AB-8256-5137AAFC7ABA}" = protocol=6 | dir=in | app=d:\program files (x86)\runic games\torchlight\torchlight.exe |
"{7E301BFA-978A-47CA-9A9C-65CF404C2633}" = protocol=6 | dir=in | app=d:\program files (x86)\tmnationsforever\tmforever.exe |
"{80F8C3ED-6A96-42C8-8B95-BC7A987C3270}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 test\dota.exe |
"{8168C443-233E-476C-91C1-E1D4865D8B76}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{84848FA2-16D1-4AE4-9836-E73B7EC6751E}" = protocol=6 | dir=in | app=c:\program files (x86)\hlsw\hlsw.exe |
"{8500B717-D140-4452-8D22-A5AED875C138}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{88DDE838-C2DC-4FCB-B168-2F7C475188E4}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\heroes 3 complete\heroes3.exe |
"{8963C0E3-1B52-432B-899A-1877DEA6DD92}" = protocol=17 | dir=in | app=c:\program files (x86)\hlsw\hlsw.exe |
"{8AFEB4EC-33D3-405A-9D8C-F584F2D220D2}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{90F542F7-08CF-4B89-9F9F-621047067204}" = protocol=17 | dir=in | app=c:\program files (x86)\bittorrent\bittorrent.exe |
"{91897156-721F-4413-B91A-432224E8D660}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{918E20CB-7EB8-4C6D-BA95-FEEB95B5FBD4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{93F56FE1-7E05-4784-9E1A-419B56C58F02}" = protocol=6 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\launcher.exe |
"{99023C12-CA42-4737-94A9-330D3EE8121C}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{9AA0B73C-2F6F-4740-9C9D-0697CD6E1739}" = protocol=6 | dir=out | app=system |
"{9B69A5E2-1B50-4AE1-8049-D735F8535037}" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"{A5C5BB54-E097-4611-B0E3-06973D31A64B}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{A5E1A27E-C819-4027-BB1B-CB3AB031FC19}" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe |
"{A79C263D-6B76-4CAD-984F-CED0ACE2BB2D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{A867C497-7FBE-4F25-ABE0-05615CFF0BB8}" = protocol=17 | dir=in | app=c:\program files (x86)\qip 2012\qip.exe |
"{A8B021B6-AE37-4F0C-B1EE-91B4DA52D7C7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{AB4FFEEB-A6AE-43AD-970C-B9107C54EC9B}" = protocol=6 | dir=in | app=d:\program files (x86)\mass effect 2\binaries\masseffect2.exe |
"{AC1CD77D-AA8B-42FB-B919-B87C2AC2F49A}" = protocol=17 | dir=in | app=d:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{AFDD8217-FCB1-43DA-99F5-56FD50257433}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B1CBCA51-53DB-472E-BA66-D2E33CC09F4F}" = protocol=17 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\launcher.exe |
"{B4205141-057B-4794-AD5F-5435B6FD04D1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{B61DC829-0D92-44B5-97DF-B0486892E64C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{B62933FC-0F4F-41F2-A457-828427AD734B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{B6446979-BDCE-4354-AEF4-9E74D2CF0A80}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{B7399A53-E2AA-420B-B322-5B146D5BBA9E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{B893E11A-7F3E-4153-B8CA-F7BE7496DA50}" = protocol=6 | dir=in | app=c:\program files (x86)\ventrilo\ventrilo.exe |
"{B92B13B7-D5F2-4177-A270-8D67F7612957}" = protocol=17 | dir=in | app=c:\program files (x86)\ventrilo\ventrilo.exe |
"{BA5A8F15-F6FD-4B7D-9F43-AAFC12383B5B}" = protocol=6 | dir=in | app=d:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{BAE7BB68-41AC-447F-8A57-BF98A3360481}" = protocol=17 | dir=in | app=c:\program files (x86)\garena\garena.exe |
"{BCE7035F-0E4E-4B65-8F7C-4C5298F54CF7}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{C5EFD4D2-ADB6-4F51-953F-E0BC3EB086A5}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{C6FCADF0-B7E6-47A1-BAD7-8A719E383161}" = protocol=6 | dir=in | app=c:\program files (x86)\counter-strike 1.6\hl.exe |
"{C7173952-6C8B-4273-9A78-F761633E5200}" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"{C818771C-B293-479F-8ECE-B7F4E1181182}" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe |
"{C8D25AD0-0B89-4891-9326-CA7B44CBA0D5}" = protocol=17 | dir=in | app=d:\program files (x86)\mass effect 2\masseffect2launcher.exe |
"{C94F4392-65FD-4B7D-840C-A8008A325DCB}" = protocol=58 | dir=in | app=system |
"{CA277B56-8014-4985-848B-4694B82FEEF8}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{CC30227C-8E14-403B-908D-38085C228215}" = protocol=17 | dir=in | app=d:\program files (x86)\ea sports\fifa 12 [multi5] cz\game\fifa.exe |
"{CC33C092-329D-4054-AFD6-F3A289101DB2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CD530EC2-330B-43C3-9E6F-AB646264B6EA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{D074189F-B6F3-4E9C-8BC6-7DA6FD101871}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{D375AB2E-ABC1-4E3B-87C3-5F8C52DF0566}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\rayman origins\gu.exe |
"{D7877414-4A4B-4F9D-AC90-71F03ED67B33}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{D793E895-380C-49F1-BC43-C62E8F4C5722}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\heroes 3 complete\heroes3.exe |
"{D8BA7E04-3A31-41BA-8C25-9FE3674372A6}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{DAEA6F48-D053-4A7D-8C0D-B4DC69FC8358}" = protocol=17 | dir=in | app=d:\program files (x86)\tmnationsforever\tmforever.exe |
"{DD50CAA0-AEB7-4D73-BE2F-8449D27F417B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{DF15A696-F39C-475E-AEF9-54A4E85F57F3}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{DF9F836C-15F4-4989-AB91-35ED1083EB24}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\rayman origins\gu.exe |
"{E00E8B40-CE8E-47EE-81CE-93EDE7DB2D17}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{E50F37A5-00A7-4698-8E70-AF2529A1FD26}" = protocol=6 | dir=in | app=c:\program files (x86)\warcraft iii\war3.exe |
"{E9CDA328-64DD-4C11-A293-BBD6ACF8A5A9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe |
"{EE029578-699C-4E05-8C1D-198151F81DBA}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{F13D03B6-4167-4B00-960E-8E52217FF600}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{F55309C1-2F4E-44EB-8A2C-29ECA94D015B}" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"{FA156681-0701-4A4A-8AEF-87CEC9349BA1}" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"TCP Query User{05171443-BF56-41D7-BFFD-AF0A0060A8D4}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"TCP Query User{0548C1C9-8613-434B-9CED-CBE38F03603A}D:\hry\world of warcraft cataclysm engb 4.0.3 installed\launcher.exe" = protocol=6 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\launcher.exe |
"TCP Query User{1A7F70AA-9FAD-4F64-960F-7F6906EEF15D}C:\program files (x86)\warcraft iii\war3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\warcraft iii\war3.exe |
"TCP Query User{1D2F1D48-7E3C-48E4-B1FF-A1F1D53BFDD0}D:\program files (x86)\ea sports\fifa 12 [multi5] cz\game\fifa.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ea sports\fifa 12 [multi5] cz\game\fifa.exe |
"TCP Query User{212E8DFE-213E-46DB-AF83-A25674FE97C2}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
"TCP Query User{2137910A-4F9D-4F56-B5FD-88F1F7B62B2F}K:\quake3\quake3.exe" = protocol=6 | dir=in | app=k:\quake3\quake3.exe |
"TCP Query User{2597B034-C999-440F-AB9C-C0BD87A7BB6A}D:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=d:\program files (x86)\tmnationsforever\tmforever.exe |
"TCP Query User{2BE056E5-82B1-4B13-8DF5-1CAF30470134}D:\program files (x86)\dead space 2\deadspace2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\dead space 2\deadspace2.exe |
"TCP Query User{378E9B3D-7520-4AE9-9324-AB661EC4E3A2}D:\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=d:\call of duty 2\cod2mp_s.exe |
"TCP Query User{3BB6FE67-AA16-446D-B92D-0E1346A5993C}C:\users\trayy\appdata\local\microsoft\age of empires online\spartan.exe" = protocol=6 | dir=in | app=c:\users\trayy\appdata\local\microsoft\age of empires online\spartan.exe |
"TCP Query User{4AD1C95F-4551-4392-8A33-4814D1AE3B7E}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe |
"TCP Query User{53C000C6-1AC7-4CB4-98E3-5640E96344BA}C:\program files (x86)\garena\garena.exe" = protocol=6 | dir=in | app=c:\program files (x86)\garena\garena.exe |
"TCP Query User{5BBCB0E1-2DC2-49E3-B0AE-D0314EAA42D3}D:\hry\mass effect 3 n7 digital deluxe edition\binaries\win32\masseffect3.exe" = protocol=6 | dir=in | app=d:\hry\mass effect 3 n7 digital deluxe edition\binaries\win32\masseffect3.exe |
"TCP Query User{645A9053-A04B-4D8B-B3EE-609AEF4ED818}C:\program files (x86)\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\xfire\xfire.exe |
"TCP Query User{65BEAA42-63A6-4D7C-BF3F-D2ABE336FEFD}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"TCP Query User{66E40BFB-E37F-4649-85CF-56E5362B8F4D}C:\users\trayy\desktop\keyclone\keyclone.exe" = protocol=6 | dir=in | app=c:\users\trayy\desktop\keyclone\keyclone.exe |
"TCP Query User{6C97C3B8-57EC-4B2B-8F24-E4EB50B7C02B}C:\program files (x86)\ubisoft\heroes 3 complete\heroes3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\heroes 3 complete\heroes3.exe |
"TCP Query User{76575F37-2AC7-44ED-9E6C-E964FDC46C40}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"TCP Query User{8B25A80E-382F-4011-A4EA-A51C5E3A4D5D}C:\program files (x86)\hlsw\hlsw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hlsw\hlsw.exe |
"TCP Query User{8EB804E3-EC15-4818-9FD6-630071B0BAAD}C:\program files (x86)\qip 2012\qip.exe" = protocol=6 | dir=in | app=c:\program files (x86)\qip 2012\qip.exe |
"TCP Query User{A29C56FF-570F-45EF-AB2C-E6D6E4227896}D:\hry\world of warcraft cataclysm engb 4.0.3 installed\temp\wow-4.0.1.2210-enus-tools-downloader.exe" = protocol=6 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\temp\wow-4.0.1.2210-enus-tools-downloader.exe |
"TCP Query User{AB5050BB-5FB1-4BF8-9613-F86414FF7A2D}C:\program files (x86)\1clickdownload\1clickdownload.exe" = protocol=6 | dir=in | app=c:\program files (x86)\1clickdownload\1clickdownload.exe |
"TCP Query User{ACC0420A-9384-4DCD-9967-E30C9D5D239C}C:\program files (x86)\garena plus\room\garena_room.exe" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe |
"TCP Query User{D5405858-A7A8-430A-9DAB-6EEEE3A6E864}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{E684E064-03E7-49A8-A775-4FF373FA5EA2}K:\crysis2(5620)_01_13\bin64\crysis2.exe" = protocol=6 | dir=in | app=k:\crysis2(5620)_01_13\bin64\crysis2.exe |
"TCP Query User{F10EF814-3748-4730-B4DE-643C6E057B38}C:\program files (x86)\counter-strike 1.6\hl.exe" = protocol=6 | dir=in | app=c:\program files (x86)\counter-strike 1.6\hl.exe |
"TCP Query User{FB8467A9-AFD8-45CE-A9F0-F479A85F5F8D}C:\users\trayy\appdata\local\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\users\trayy\appdata\local\google\chrome\application\chrome.exe |
"UDP Query User{17762F85-F5AF-497A-BB31-454E84DB3AF2}C:\program files (x86)\hlsw\hlsw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hlsw\hlsw.exe |
"UDP Query User{1B7BBD1F-2ED2-4964-A9A7-5377B91B7E67}C:\users\trayy\appdata\local\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\users\trayy\appdata\local\google\chrome\application\chrome.exe |
"UDP Query User{2E1051F9-419F-4499-AF3E-B2883D71B0FB}D:\program files (x86)\dead space 2\deadspace2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\dead space 2\deadspace2.exe |
"UDP Query User{4537E5BF-BB72-4EF2-92DC-C2C6178CEFFB}C:\program files (x86)\counter-strike 1.6\hl.exe" = protocol=17 | dir=in | app=c:\program files (x86)\counter-strike 1.6\hl.exe |
"UDP Query User{4C5AF5BC-9BDC-4CD9-9738-7DF7442EE57B}C:\users\trayy\desktop\keyclone\keyclone.exe" = protocol=17 | dir=in | app=c:\users\trayy\desktop\keyclone\keyclone.exe |
"UDP Query User{4DFF8A50-7BC4-4592-8623-83F4E85F8A45}D:\hry\mass effect 3 n7 digital deluxe edition\binaries\win32\masseffect3.exe" = protocol=17 | dir=in | app=d:\hry\mass effect 3 n7 digital deluxe edition\binaries\win32\masseffect3.exe |
"UDP Query User{52F82A46-517A-41A5-BC52-F2C13194B2B5}D:\hry\world of warcraft cataclysm engb 4.0.3 installed\temp\wow-4.0.1.2210-enus-tools-downloader.exe" = protocol=17 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\temp\wow-4.0.1.2210-enus-tools-downloader.exe |
"UDP Query User{5374DC89-D78C-4043-9776-E7F2513F7731}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
"UDP Query User{5491E908-0DE2-4A8E-A199-45611B2EF4CD}D:\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=d:\call of duty 2\cod2mp_s.exe |
"UDP Query User{55822756-B8AA-4EAF-8957-605A874E72CF}C:\program files (x86)\garena plus\room\garena_room.exe" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe |
"UDP Query User{5F0638FC-7755-4FAE-BC33-2F7A94630EF8}C:\program files (x86)\warcraft iii\war3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\warcraft iii\war3.exe |
"UDP Query User{5FE58E3A-98F0-4738-9F79-D107E54C8612}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe |
"UDP Query User{601C599E-D8EF-4251-BC73-A789BE9B07CB}K:\quake3\quake3.exe" = protocol=17 | dir=in | app=k:\quake3\quake3.exe |
"UDP Query User{7CDB4F9E-651F-451B-ABCE-B02AB6753568}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"UDP Query User{873EC145-123E-4C60-B29D-DDB9D59C53FF}K:\crysis2(5620)_01_13\bin64\crysis2.exe" = protocol=17 | dir=in | app=k:\crysis2(5620)_01_13\bin64\crysis2.exe |
"UDP Query User{88378FE7-E97D-4B29-B1E3-9A7781A8E8F2}C:\program files (x86)\ubisoft\heroes 3 complete\heroes3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\heroes 3 complete\heroes3.exe |
"UDP Query User{8B1A1385-211B-4302-8E9A-5EFDEA18D6F9}C:\program files (x86)\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\xfire\xfire.exe |
"UDP Query User{997BAC2E-715C-403E-A457-B5D06EA4299C}C:\program files (x86)\garena\garena.exe" = protocol=17 | dir=in | app=c:\program files (x86)\garena\garena.exe |
"UDP Query User{A1077A9C-B521-4D7D-9572-F3B912AAD96B}D:\hry\world of warcraft cataclysm engb 4.0.3 installed\launcher.exe" = protocol=17 | dir=in | app=d:\hry\world of warcraft cataclysm engb 4.0.3 installed\launcher.exe |
"UDP Query User{A6D83B79-75C0-407E-AD10-D40C14FA338C}C:\program files (x86)\1clickdownload\1clickdownload.exe" = protocol=17 | dir=in | app=c:\program files (x86)\1clickdownload\1clickdownload.exe |
"UDP Query User{A82B21F4-1B1A-4D16-8043-F9FBC2B03285}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"UDP Query User{B69A92B7-A3C9-4837-B588-2C37C7536BBB}D:\program files (x86)\ea sports\fifa 12 [multi5] cz\game\fifa.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ea sports\fifa 12 [multi5] cz\game\fifa.exe |
"UDP Query User{C593004A-6D32-4687-BBD9-658E44E448A4}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"UDP Query User{E9419567-F74E-4C24-B398-76A349F1C6CA}C:\users\trayy\appdata\local\microsoft\age of empires online\spartan.exe" = protocol=17 | dir=in | app=c:\users\trayy\appdata\local\microsoft\age of empires online\spartan.exe |
"UDP Query User{EAEDD5D9-738D-4CDD-ACF0-57CF3BB44F7C}C:\program files (x86)\qip 2012\qip.exe" = protocol=17 | dir=in | app=c:\program files (x86)\qip 2012\qip.exe |
"UDP Query User{F185BE05-436C-4281-B4FB-E6D9412ADE67}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{FC74F036-5CDE-46AF-B77E-E7F4CC70AFA1}D:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=d:\program files (x86)\tmnationsforever\tmforever.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1F557316-CFC0-41BD-AFF7-8BC49CE444D7}" = Shredder
"{2D58E228-ACD8-0B8A-E1FF-D3F7020DA30F}" = AMD Media Foundation Decoders
"{34384A2A-2CA2-4446-AB0E-1F360BA2AAC5}" = Windows Live Remote Service Resources
"{3921492E-82D2-4180-8124-E347AD2F2DB4}" = Windows Live Remote Client Resources
"{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}" = Windows Live Family Safety
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{52E5D8A7-B129-4A29-AD4B-EBB749DCC3A3}_is1" = GamePark klient 2.0.9.0
"{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}" = Windows Live Language Selector
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{659996B5-9284-EB7D-8F0E-9FA910ADE2B4}" = AMD Drag and Drop Transcoding
"{701D8EE6-6A5A-4509-9740-35F551193CE0}" = Windows Live Family Safety
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 1.10.02
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{90AB246D-A0A0-29EA-199A-4B07841E0737}" = ATI AVIVO64 Codecs
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A9C6CA47-D937-D61D-4BD3-7CFAB7A5BA56}" = ATI Problem Report Wizard
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{BABA4667-CF82-B330-A8E5-6E8A09B2D911}" = AMD Accelerated Video Transcoding
"{CB500A52-1B84-CA65-BB07-D092FCE39E42}" = ccc-utility64
"{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = DEVIL MAY CRY 4
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{E4490157-303F-F06F-FB6E-D2053A43A182}" = AMD Catalyst Install Manager
"{E76A136D-3A4F-40AA-BBDA-D682FCC8C90D}" = Intel(R) Network Connections 17.0.200.2
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}" = Ventrilo Client for Windows x64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
"CCleaner" = CCleaner
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.54
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.19
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"MyDefrag v4.3.1_is1" = MyDefrag v4.3.1
"PROSetDX" = Intel(R) Network Connections 17.0.200.2
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{03D4C700-2BFE-43E0-A0B4-9512B43C5B9F}" = Catalyst Control Center - Branding
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{05B2AAA8-F30A-163D-76E4-9E618DBDAFB1}" = Catalyst Control Center InstallProxy
"{068B46A0-8858-4CEB-80BC-A4AE787A05FC}" = Windows Live Sync
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0CA38F52-F0FA-4B9F-8A36-EC8A9609FBBC}" = Halo 2 for Windows Vista
"{0D7CD0D9-4A88-4A63-8F91-3F4E8F371768}" = MyWinLocker
"{0E2B767B-EA6A-489B-BF83-8083FE1DB661}" = Pcsx2 0.9.6
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{14A0F49A-8C93-4C64-8C74-C5EEBA1EC04A}_is1" = Free The Pharaoh v1.0
"{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1EECBA68-8BE4-4076-94DF-E9ED206B1D21}" = Star Wars Jedi Knight Jedi Academy
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1F77C418-2C90-459C-BD33-B56A4182B9FA}" = System Requirements Lab CYRI
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}" = Nero InfoTool Help
"{2348B586-C9AE-46CE-936C-A68E9426E214}" = Nero StartSmart Help
"{259C0ABB-A3B2-4D70-008F-BF7EE491B70B}" = Need for Speed™ Carbon
"{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
"{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{33CF58F5-48D8-4575-83D6-96F574E4D83A}" = Nero DriveSpeed
"{35CB6715-41F8-4F99-8881-6FC75BF054B0}" = Oblivion
"{3BB4634D-CEE5-7AB0-D78D-EA263389A8AB}" = Catalyst Control Center
"{3CD46118-9A4E-46CD-8081-95E45ED2BDBE}_is1" = AutoText 2.77.0
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"{463F67F4-58D0-4C0D-BBC9-D0CC4E56D1B8}" = Windows Live UX Platform Language Pack
"{46710AEB-ACE9-4386-9DFB-8B65153BFA74}" = REALTEK Wireless LAN Driver
"{4968622A-4D3F-489E-9ACE-5FEC4CC0BDE3}" = MediaShow Espresso
"{4991FCCE-1131-4B92-B697-9EC0FCAFDA5B}" = Torchlight
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{4D43D635-6FDA-4FA5-AA9B-23CF73D058EA}" = Nero StartSmart OEM
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{53744FB0-7D1E-4572-B544-C230E6D23E2C}" = Razer BlackWidow
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{595A3116-40BB-4E0F-A2E8-D7951DA56270}" = NeroExpress
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6D8CDEF0-1BB9-400C-A337-BF69488DB331}" = Painkiller
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite
"{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}" = Mass Effect 2
"{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart
"{77F8A71E-3515-4832-B8B2-2F1EDBD2E0F1}" = Bing Bar
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7A0B3920-14B9-11DF-6784-106B5FC118BE}" = progeCAD 2010 Professional
"{7AB86D35-DF3B-407F-B43E-468345DABF29}" = SL-6555-SBK
"{7B4A5C13-069F-4AFE-AE57-C497B4E33C7E}" = Call of Duty(R) 2 Patch 1.3
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{817B97FF-3CB7-8F10-1832-0890DCDD0526}" = CCC Help Czech
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}" = Chicken Invaders 2
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110300453}" = Spin & Win
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697}" = Granny In Paradise
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}" = Cake Mania
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}" = Galapago
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}" = Amazonia
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}" = Heroes of Hellas
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}" = Dairy Dash
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}" = Farm Frenzy 2
"{83202942-84B3-4C50-8622-B8C0AA2D2885}" = Nero Express Help
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83A606F5-BF6F-42ED-9F33-B9F74297CDED}" = Need for Speed(TM) Hot Pursuit
"{869200DB-287A-4DC0-B02B-2B6787FBCD4C}" = Nero DiscSpeed
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8C0CAA7A-3272-4991-A808-2C7559DE3409}" = Win7codecs
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0017-0405-0000-0000000FF1CE}" = Microsoft Office SharePoint Designer MUI (Czech) 2007
"{90120000-0017-0405-0000-0000000FF1CE}_OMUI.cs-cz_{13E6D9FD-5FE8-43A6-9874-515A50909DEF}" = Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_OMUI.cs-cz_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_OMUI.cs-cz_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}_OMUI.cs-cz_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_OMUI.cs-cz_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0405-1000-0000000FF1CE}_OMUI.cs-cz_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_OMUI.cs-cz_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0100-0405-0000-0000000FF1CE}" = Microsoft Office O MUI (Czech) 2007
"{90120000-0100-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0101-0405-0000-0000000FF1CE}" = Microsoft Office X MUI (Czech) 2007
"{90120000-0101-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90170405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office FrontPage 2003
"{90F50409-6000-11D3-8CFE-0150048383C9}" = Visual Basic for Applications (R) Core
"{90F60409-6000-11D3-8CFE-0150048383C9}" = Visual Basic for Applications (R) Core - English
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{95120000-00AF-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Czech)
"{99D7DE4C-2775-4B16-B155-7F09AE939E8E}" = Microsoft Works
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{ABEE079E-648E-488B-8301-0C3DB48C1BCE}_is1" = Acer GameZone Console
"{AC2F8B30-0236-486D-A549-30BD50086BAB}" = XSplit
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.5.1 MUI
"{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted
"{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
"{B44F3823-52DD-45CA-A916-8B320778715D}" = Messenger Companion
"{B6190387-0036-4BEB-8D74-A0AFC5F14706}" = Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B85C4CB2-B352-4BD8-818C-BCE353599107}" = SweetIM for Messenger 3.6
"{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}" = Acer Arcade Movie
"{B99CB207-4704-4C51-9309-0FA90AA26DD4}" = ROCCAT Kone[+] Mouse Driver
"{BAF19BB1-7716-4F37-5C47-E9DD9A70BC0F}" = Catalyst Control Center InstallProxy
"{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C2695E83-CF1D-43D1-84FE-B3BEC561012A}" = Shredder
"{C3592426-531E-4110-911D-BFECE2CE284C}" = osu!
"{C41E46F9-0F37-8379-E792-B323021FA4BB}" = Catalyst Control Center Localization All
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{C5DA59CF-2BB8-48D5-8E5B-17F2E0F0FEE4}" = System Requirements Lab for Intel
"{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}" = Nero Online Upgrade
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC019E3F-59D2-4486-8D4B-878105B62A71}" = Nero DiscSpeed Help
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.9 Game
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = DEVIL MAY CRY 4
"{DE491AB9-1D47-4FED-A8F5-4D4325B2EB4B}" = Rayman Origins
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E12ABE6F-830C-AE8F-29EA-76FEC5F2D376}" = Catalyst Control Center Graphics Previews Common
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{E5C7D048-F9B4-4219-B323-8BDB01A2563D}" = Nero DriveSpeed Help
"{E6DA58C0-4EC5-4F5E-B73E-2F22ED30ACFC}" = Razer Krait
"{E6FE6139-8678-4DE9-9E76-0279B258BE35}" = Manga Reader v1.5.6
"{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EDFB64A7-5BFD-4137-943D-5663149A15F5}" = Heroes of Might and Magic III Complete
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.9
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f2ecc0e7-b82d-4c4e-bf28-0c462f5f2cf5}" = Nero 9 Essentials
"{F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}" = Nero ControlCenter
"{FA66CFD7-0977-4C45-AACD-A8BB994B1A05}" = Quake Live Mozilla Plugin
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FBCDFD61-7DCF-4E71-9226-873BA0053139}" = Nero InfoTool
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Acer Registration" = Acer Registration
"Acer Screensaver" = Acer ScreenSaver
"Acer Welcome Center" = Welcome Center
"Adobe AIR" = Adobe AIR
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Any Video Converter_is1" = Any Video Converter 3.2.3
"ATITool" = ATITool Overclocking Utility
"aTube Catcher" = aTube Catcher
"avast" = avast! Free Antivirus
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"Banner Maker Pro 7_is1" = Banner Maker Pro Version 7
"BitTorrent" = BitTorrent
"BSPlayerf" = BS.Player FREE
"Counter-Strike 1.6" = Counter-Strike 1.6
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"DirectVobSub" = DirectVobSub (remove only)
"DreamAqua" = Dream Aquarium
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"Fantastic Ocean 3D Lite_is1" = Fantastic Ocean 3D Lite v1.1
"FastStone Image Viewer" = FastStone Image Viewer 4.6
"FileZilla Client" = FileZilla Client 3.5.0
"FLVPlayer4Free Free FLV Player_is1" = FLVPlayer4Free Free FLV Player 1.3.0.0
"Fraps" = Fraps
"Game Booster_is1" = Game Booster 3
"GameParkClient_is1" = GamePark
"Garena" = Garena 2010
"gBurner" = gBurner
"GFWL_{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"GIF Movie Gear_is1" = GIF Movie Gear 4.2.3
"Hamachi" = Hamachi 1.0.2.5
"HLSW_is1" = HLSW v1.3.3.7b
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"Hotkey Utility" = Hotkey Utility
"Identity Card" = Identity Card
"im" = Garena Plus
"InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
"InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
"InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"InstallShield_{EDFB64A7-5BFD-4137-943D-5663149A15F5}" = Heroes of Might and Magic III Complete
"Mozilla Firefox 10.0.2 (x86 cs)" = Mozilla Firefox 10.0.2 (x86 cs)
"Mumble" = Mumble and Murmur
"OMUI.cs-cz" = Microsoft Office Language Pack 2007 - Czech/èeština
"OpenAL" = OpenAL
"pcsx2-r3878" = PCSX2 - Playstation 2 Emulator
"Pharaoh" = Pharaoh
"PowerISO" = PowerISO
"Prio" = Prio v1.9.2
"PunkBusterSvc" = PunkBuster Services
"SopCast" = SopCast 3.4.0
"Steam App 400" = Portal
"Steam App 550" = Left 4 Dead 2
"Steam App 570" = Dota 2
"Steam App 730" = Counter-Strike: Global Offensive Beta
"TmNationsForever_is1" = TmNationsForever
"Totalcmd" = Total Commander (Remove or Repair)
"VLC media player" = VLC media player 2.0.1
"Warcraft III" = Warcraft III
"WinGimp-2.0_is1" = GIMP 2.6.11
"WinLiveSuite" = Windows Live Essentials
"Xfire" = Xfire (remove only)

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{8EB85C0E-DE7D-4A53-BD66-708B8F2C80B0}" = HHD Software Free Hex Editor Neo 4.95
"Game Organizer" = EasyBits GO
"Google Chrome" = Google Chrome
"QIP 2012" = QIP 2012 4.0.7221
"QipGuard" = QIP Internet Guardian
"UnityWebPlayer" = Unity Web Player
"Warcraft III" = Warcraft III: All Products

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 6.5.2012 10:24:47 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files (x86)\SplitMediaLabs\XSplit\XSplitBroadcasterSrc.exe
se nezdařilo. Závislé sestavení Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 6.5.2012 10:25:49 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

Error - 7.5.2012 9:58:04 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files (x86)\SplitMediaLabs\XSplit\XSplitBroadcasterSrc.exe
se nezdařilo. Závislé sestavení Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 7.5.2012 9:59:01 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

Error - 7.5.2012 12:16:15 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files (x86)\SplitMediaLabs\XSplit\XSplitBroadcasterSrc.exe
se nezdařilo. Závislé sestavení Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 7.5.2012 12:17:01 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

Error - 7.5.2012 17:10:46 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files (x86)\SplitMediaLabs\XSplit\XSplitBroadcasterSrc.exe
se nezdařilo. Závislé sestavení Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 7.5.2012 17:11:38 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

Error - 11.5.2012 7:54:20 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files (x86)\SplitMediaLabs\XSplit\XSplitBroadcasterSrc.exe
se nezdařilo. Závislé sestavení Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 11.5.2012 7:55:14 | Computer Name = Trayy-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

[ Media Center Events ]
Error - 23.1.2011 9:01:38 | Computer Name = Trayy-PC | Source = MCUpdate | ID = 0
Description = 14:01:38 - Chyba při připojování k Internetu 14:01:38 - Nelze kontaktovat
server..

Error - 23.1.2011 9:01:46 | Computer Name = Trayy-PC | Source = MCUpdate | ID = 0
Description = 14:01:44 - Chyba při připojování k Internetu 14:01:44 - Nelze kontaktovat
server..

[ System Events ]
Error - 13.1.2011 2:42:33 | Computer Name = Trayy-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Steam Client Service bylo dosaženo
časového limitu (30000 ms).

Error - 13.1.2011 2:42:33 | Computer Name = Trayy-PC | Source = Service Control Manager | ID = 7000
Description = Služba Steam Client Service neuspěla při spuštění v důsledku následující
chyby: %%1053


< End of report >

DavidSp
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 23 kvě 2012 12:43

Re: PC se sam od sebe vypina

#8 Příspěvek od DavidSp »

no uz to nekolik hodin to nepadlo akorat nevim proc z niceho nic u vsech souboru vidim koncovky.. (.srt, .rar, .txt, .avi apod.)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: PC se sam od sebe vypina

#9 Příspěvek od vyosek »

:arrow: Cracky a keygeny jsou nejlepsi cesta do pekel a prameni z nich nejvetsi cast haveti, toto tu podporovat nebudem - nema cenu nejak lecit PC ktere bude stejne za chvili zaliskane vlastni nezodpovednosti :-/

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5w4621v69n
    IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
    IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
    IE - HKLM\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}
    IE - HKU\.DEFAULT\..\URLSearchHook: - No CLSID value found
    IE - HKU\.DEFAULT\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
    IE - HKU\.DEFAULT\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    IE - HKU\.DEFAULT\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - No CLSID value found
    IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKU\.DEFAULT\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\.DEFAULT\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
    IE - HKU\.DEFAULT\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}
    IE - HKU\S-1-5-18\..\URLSearchHook: - No CLSID value found
    IE - HKU\S-1-5-18\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
    IE - HKU\S-1-5-18\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    IE - HKU\S-1-5-18\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - No CLSID value found
    IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKU\S-1-5-18\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-18\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
    IE - HKU\S-1-5-18\..\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955}: "URL" = http://search.qip.ru/?query={searchTerms}
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\URLSearchHook: - No CLSID value found
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}: "URL" = http://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_csCZ411
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
    IE - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}: "URL" = http://search.qip.ru/search?query={searchTerms}&from=IE
    FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
    FF - prefs.js..browser.search.defaulturl: ""
    FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
    FF - prefs.js..browser.startup.homepage: "http://home.sweetim.com/?st=1"
    FF - prefs.js..keyword.URL: "http://search.qip.ru/search?from=FF&query="
    FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "ICQ Search"
    FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: ""
    FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "QIP Search"
    FF - prefs.js..browser.startup.homepage: "http://qip.ru"
    FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.4.3&q="
    [2012.04.04 00:51:25 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
    [2012.03.18 14:58:16 | 000,000,000 | ---D | M] (Yontoo) -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\extensions\plugin@yontoo.com
    [2012.05.05 13:25:18 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-1.xml
    [2011.09.01 10:09:45 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-2.xml
    [2012.01.12 19:32:23 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-3.xml
    [2012.03.25 00:25:47 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-4.xml
    [2012.04.05 00:37:33 | 000,000,950 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin-5.xml
    [2012.03.19 20:09:28 | 000,000,168 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin.gif
    [2012.03.19 20:09:28 | 000,000,618 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin.src
    [2011.03.30 16:14:34 | 000,001,042 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\icqplugin.xml
    [2012.04.10 16:39:15 | 000,002,062 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\qip-search.xml
    [2012.04.04 01:00:13 | 000,004,031 | ---- | M] () -- C:\Users\Trayy\AppData\Roaming\Mozilla\Firefox\Profiles\h5p2adlj.default\searchplugins\sweetim.xml
    O2 - BHO: (QIPBHO Class) - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Trayy\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC)
    O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
    O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
    O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
    O3 - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3:64bit: - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
    O3 - HKU\S-1-5-21-2966925042-4052740615-870791363-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
    O1364bit: - gopher Prefix: missing
    O13 - gopher Prefix: missing
    O8:64bit: - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html File not found
    O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html File not found
    O18:64bit: - Protocol\Handler\livecall - No CLSID value found
    O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
    O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
    O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
    O18:64bit: - Protocol\Handler\msnim - No CLSID value found
    O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
    O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
    O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
    O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
    O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
    O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O33 - MountPoints2\{4bb3b427-0fbb-11e0-a6c2-4487fcaa0038}\Shell - "" = AutoRun
    O33 - MountPoints2\L\Shell - "" = AutoRun
    [2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
    [6 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
    [3 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\744d0a29f79b4b4949620ac5107e09ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\744d0a29f79b4b4949620ac5107e09ad\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\e2ae778f2037152039ec560f0abd6f3e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e2ae778f2037152039ec560f0abd6f3e\*.tmp -> ]
    [8 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
    [8 C:\Windows\SysWOW64\*.tmp files -> C:\Windows\SysWOW64\*.tmp -> ]
    [2012.05.23 14:24:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
    [2012.03.24 13:18:04 | 000,000,948 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cd09afc80b62d3.job
    [2012.05.23 14:02:00 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    [2012.03.25 22:34:08 | 000,000,910 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2966925042-4052740615-870791363-1000Core1cd0ac6a11b5146.job
    [2012.05.23 14:17:00 | 000,000,962 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2966925042-4052740615-870791363-1000UA.job
    [2011.11.25 18:05:26 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{0530163F-1791-4401-9BBD-E31FCB6076AA}.job
    [2011.08.19 21:44:53 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{78139842-4BDB-4628-BE44-0F2145DE7F21}.job
    [2011.06.19 12:02:08 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{7CF89CCB-A404-4F2D-8553-07A7B903B963}.job
    [2011.02.22 21:17:53 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{8C86EE59-52B8-40CE-9CF5-A5FED3CE26CD}.job
    [2011.05.23 23:39:03 | 000,000,198 | ---- | M] () -- C:\Windows\Tasks\{FCB40820-E277-448E-9C50-DAE58B8E2DC7}.job
    
    :services
    Nero BackItUp Scheduler 4.0
    
    :reg
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "swg"=-
    "Google Update"=-
    "QIP Internet Guardian"=-
    "DAEMON Tools Lite"=-
    "Steam"=-
    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
    "EgisUpdate"=-
    "EgisTecPMMUpdate"=-
    "Adobe Reader Speed Launcher"=-
    "PWRISOVM.EXE"=-
    "Adobe ARM"=-
    "SunJavaUpdateSched"=-
    "SweetIM"=-
    
    :files
    C:\Program Files (x86)\SweetIM
    C:\Program Files (x86)\DAEMON Tools Toolbar
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět