Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o preventivku-zamrzá mozilla, videa na youtube

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Cvrkot_
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 12 čer 2011 17:34

prosím o preventivku-zamrzá mozilla, videa na youtube

#1 Příspěvek od Cvrkot_ »

Díky moc, mám s tímto webem dobré zkušenosti, tak doufám, žě mi opět pomůžete :)
Testoval jsem PC avastem ale nenašel zadny infikovaný soubor.
Tady je LOG z RSIT, prosím o kontrolu ;),

Logfile of random's system information tool 1.09 (written by random/random)
Run by Honzik at 2012-09-27 14:32:35
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 56 GB (44%) free of 128 GB
Total RAM: 4095 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:32:39, on 27.9.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files\trend micro\Honzik.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daum.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: TopSpaceHelper - {C8625893-2C0F-4484-8C18-52B00D5A8BB9} - C:\Program Files (x86)\TopSpace\bin\TopSpaceHelper.dll
O2 - BHO: żŔÇÂĹÇ - {DA742A73-CFA7-4DE2-BF28-1FC51CF214BC} - C:\Users\Honzik\AppData\Roaming\OpenTab\OpenTab.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O3 - Toolbar: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [TopSpace] C:\Program Files (x86)\TopSpace\bin\TopSpaceHelper.exe UPDATE
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Honzik\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Honzik\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AODService - Unknown owner - C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Process Monitor (LVPrcS64) - Logitech Inc. - C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe
O23 - Service: Správce úloh aplikace Autodesk Moldflow Inventor Tool Suite Integration 2011 (mitsijm2011) - Unknown owner - C:\Program Files\Autodesk\Inventor 2011\Moldflow\bin\mitsijm.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11657 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe"
"C:\Program Files (x86)\Common Files\Logishrd\LVMVFM\LVPrS64H.exe" -Embedding
"taskhost.exe"
"C:\Program Files\Autodesk\Inventor 2011\Moldflow\bin\mitsijm.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2944
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4676.e03ea70.62897254 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 4676 "\\.\pipe\gecko-crash-server-pipe.4676" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe" --proxy-stub-channel=Flash2868.6C96F168.41 --host-broker-channel=Flash2868.6C96F168.18467 --host-pid=2868 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe" --channel=4392.0043F340.1089695527 --proxy-stub-channel=Flash2868.6C96F168.41 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
"E:\Stažené soubory\RSITx64.exe"
"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6, wrc@avast.com:20110101, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17, {c8f71e5b-88f8-42a7-98bb-e4c506161de9}:0.4, {20C3BDFF-DA68-468d-8D9A-F5A6C76B0F9E}:3.13"
prefs.js - "keyword.URL" - "http://slirsredirect.search.aol.com/red ... 011&query="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.4.402.265 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@ASC/FileLabPlugin;version=1.1.33]
"Description"=FileLab Plugin
"Path"=C:\ProgramData\FileLab\Plugin\Framework\npFlPluginS.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.4.402.265 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_265.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.4.0]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.4.0]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
npdnu.dll
npdnu.xpt
npdnupdater2.dll
npdnupdater2.xpt
nppdf32.dll
npwachk.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\
{0b38152b-1b20-484d-a11f-5e04a9b0661f}
{7473b6bd-4691-4744-a82b-7854eb3d70b6}
{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}

C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\searchplugins\
aol-web-search.xml
conduit.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2012-08-21 1501776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-06-09 545224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-06-09 193480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-05-23 115072]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-08-21 1227224]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17 3855520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}]
TopSpaceHelper Class - C:\Program Files (x86)\TopSpace\bin\TopSpaceHelper.dll [2012-09-26 128144]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DA742A73-CFA7-4DE2-BF28-1FC51CF214BC}]
żŔÇÂĹÇ - C:\Users\Honzik\AppData\Roaming\OpenTab\OpenTab.dll [2012-05-18 250944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2012-08-21 1501776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-08-21 1227224]
{7473b6bd-4691-4744-a82b-7854eb3d70b6} - uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-07-06 11057768]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Honzik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-12 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Clownfish]
C:\Program Files (x86)\Clownfish\Clownfish.exe [2012-02-13 1055992]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2012-08-17 336992]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirtualCloneDrive]
C:\Program Files (x86)\VirtualCloneDrive\VCDDaemon.exe [2009-06-17 85160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Akcelerátor spuštění AutoCADu.lnk]
C:\PROGRA~2\COMMON~1\AUTODE~1\ACSTAR~1.EXE [2004-02-25 10872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GamePark klient 2.lnk]
C:\PROGRA~1\GAMEPA~1\gpcl.exe [2011-07-29 442880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~2\MCAFEE~1\30937D~1.207\SSSCHE~1.EXE []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-08-21 4282728]
"LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2010-05-07 165208]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-08-06 642216]
"TopSpace"=C:\Program Files (x86)\TopSpace\bin\TopSpaceHelper.exe [2012-09-26 66704]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcod64.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"MSVideo8"=VfWWDM32.dll
"MSVideo"=vfwwdm32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2012-09-26 07:47:39 ----A---- C:\Windows\system32\OxpsConverter.exe
2012-09-22 10:24:54 ----A---- C:\Windows\system32\mshtml.dll
2012-09-22 10:24:52 ----A---- C:\Windows\system32\ieframe.dll
2012-09-22 10:24:51 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-09-22 10:24:49 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-09-22 10:24:48 ----A---- C:\Windows\system32\msfeeds.dll
2012-09-22 10:24:47 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-09-22 10:24:47 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-09-22 10:24:47 ----A---- C:\Windows\system32\urlmon.dll
2012-09-22 10:24:46 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-09-22 10:24:46 ----A---- C:\Windows\system32\wininet.dll
2012-09-22 10:24:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-09-22 10:24:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-09-22 10:24:44 ----A---- C:\Windows\system32\ieui.dll
2012-09-22 10:24:44 ----A---- C:\Windows\system32\iertutil.dll
2012-09-22 10:24:43 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-09-22 10:24:43 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-09-22 10:24:43 ----A---- C:\Windows\system32\url.dll
2012-09-22 10:24:43 ----A---- C:\Windows\system32\mshtmled.dll
2012-09-22 10:24:43 ----A---- C:\Windows\system32\jsproxy.dll
2012-09-22 10:24:42 ----A---- C:\Windows\SYSWOW64\url.dll
2012-09-12 10:22:12 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2012-09-12 10:22:12 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-09-12 10:22:10 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-09-12 10:22:10 ----A---- C:\Windows\system32\d3d10level9.dll
2012-09-12 10:22:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-09-12 10:22:09 ----A---- C:\Windows\system32\drivers\netio.sys
2012-09-12 10:22:09 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-09-08 12:08:01 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-09-08 11:05:54 ----D---- C:\Program Files\Daum
2012-09-08 11:03:23 ----D---- C:\Program Files (x86)\TopSpace
2012-09-08 11:01:05 ----D---- C:\Users\Honzik\AppData\Roaming\OpenTab
2012-09-08 11:00:19 ----D---- C:\Program Files (x86)\PANDORA.TV
2012-09-05 10:54:24 ----D---- C:\ProgramData\ATI
2012-09-05 10:54:20 ----D---- C:\Program Files (x86)\AMD APP

======List of files/folders modified in the last 1 month======

2012-09-27 14:32:40 ----D---- C:\Windows\Temp
2012-09-27 14:32:37 ----D---- C:\Program Files\trend micro
2012-09-27 12:59:49 ----D---- C:\Windows\system32\logishrd
2012-09-27 12:59:47 ----D---- C:\Windows\SYSWOW64\logishrd
2012-09-27 06:31:03 ----D---- C:\Windows\system32\config
2012-09-26 07:50:57 ----D---- C:\Windows\winsxs
2012-09-26 07:50:50 ----D---- C:\Windows\System32
2012-09-26 07:50:45 ----SHD---- C:\System Volume Information
2012-09-26 07:46:56 ----D---- C:\Windows\system32\catroot
2012-09-25 20:44:30 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2012-09-25 11:09:11 ----D---- C:\Windows\Prefetch
2012-09-22 15:31:12 ----D---- C:\Windows\SYSWOW64\migration
2012-09-22 15:31:12 ----D---- C:\Windows\SysWOW64
2012-09-22 15:31:12 ----D---- C:\Windows\system32\migration
2012-09-22 15:31:12 ----D---- C:\Program Files (x86)\Internet Explorer
2012-09-22 15:31:11 ----D---- C:\Program Files\Internet Explorer
2012-09-22 10:23:21 ----D---- C:\Windows\system32\catroot2
2012-09-20 23:36:18 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-09-20 11:01:14 ----D---- C:\Windows\system32\NDF
2012-09-20 00:03:25 ----D---- C:\Users\Honzik\AppData\Roaming\Skype
2012-09-15 18:09:03 ----SHD---- C:\Windows\Installer
2012-09-15 18:04:33 ----D---- C:\Program Files (x86)
2012-09-13 22:21:33 ----D---- C:\Program Files (x86)\FreeRapid-0.86u1
2012-09-13 15:50:25 ----D---- C:\Windows\inf
2012-09-13 15:50:25 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-12 10:37:31 ----D---- C:\Windows
2012-09-12 10:36:40 ----D---- C:\Windows\system32\drivers
2012-09-12 10:36:39 ----D---- C:\Windows\system32\DriverStore
2012-09-12 10:36:28 ----D---- C:\ProgramData\Microsoft Help
2012-09-12 10:34:13 ----D---- C:\Windows\debug
2012-09-12 10:34:11 ----A---- C:\Windows\system32\MRT.exe
2012-09-12 10:19:20 ----HD---- C:\ProgramData
2012-09-09 11:31:50 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2012-09-08 11:05:54 ----RD---- C:\Program Files
2012-09-08 11:04:14 ----D---- C:\Windows\system32\Tasks
2012-09-08 10:59:50 ----D---- C:\Program Files (x86)\The KMPlayer
2012-09-05 10:53:56 ----D---- C:\Program Files\ATI Technologies
2012-09-05 10:53:08 ----D---- C:\ProgramData\AMD

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-08-21 54072]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 969200]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 359464]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 59728]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2009-12-18 34472]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2012-08-17 126944]
R2 AODDriver4.1;AODDriver4.1; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 25232]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 71600]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-07-28 10278912]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-07-28 368640]
R3 AODDriver2;AODDriver2; \??\C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [2010-04-23 52352]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-07-06 2419176]
R3 LVPr2M64;Logitech LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304]
R3 LVUVC64;Logitech Webcam C100(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2010-05-15 6465760]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-24 261120]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-06-23 344680]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2009-08-09 36352]
S3 LVPr2Mon;LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2011-12-10 23152]
S3 MSICDSetup;MSICDSetup; \??\F:\CDriver64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-07-28 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-08-06 361984]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-08-21 44808]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 LVPrcS64;Process Monitor; C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe [2010-05-07 197976]
R2 mitsijm2011;Správce úloh aplikace Autodesk Moldflow Inventor Tool Suite Integration 2011; C:\Program Files\Autodesk\Inventor 2011\Moldflow\bin\mitsijm.exe [2010-01-23 673792]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-08-18 75064]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
S2 AODService;AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2010-04-23 136616]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-27 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-03 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-09-20 250288]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2011-04-13 74360]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-03-03 1436424]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-27 135664]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 51740536]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-08 114144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-03-20 1255736]
S4 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-12-24 652872]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Doporucuji odinstalovat (pokud nepouzivate) toolbary (listy prohlizecu) v Přidat nebo odebrat programy

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    services.exe
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    
    %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
    %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
    %PROGRAMFILES%\Opera\opera.exe /md5
    %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
    
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
  • Pokud budou logy dlouhe (forum bude kricet o prekroceni maximalniho poctu znaku), tak je rozdelte do vice prispevku
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Cvrkot_
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 12 čer 2011 17:34

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#3 Příspěvek od Cvrkot_ »

Díky za rychlou odpověď, tady máte LOGy ;)

OTL logfile created on: 28.9.2012 13:30:56 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Honzik\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 2,29 Gb Available Physical Memory | 57,39% Memory free
8,00 Gb Paging File | 6,01 Gb Available in Paging File | 75,11% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 124,90 Gb Total Space | 53,92 Gb Free Space | 43,17% Space Free | Partition Type: NTFS
Drive D: | 200,00 Gb Total Space | 6,62 Gb Free Space | 3,31% Space Free | Partition Type: NTFS
Drive E: | 606,51 Gb Total Space | 247,67 Gb Free Space | 40,84% Space Free | Partition Type: NTFS

Computer Name: HONZIK-PC | User Name: Honzik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2012.09.28 13:28:35 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Honzik\Desktop\OTL.exe
PRC - [2012.09.08 12:08:06 | 000,917,984 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2012.08.22 12:27:02 | 001,807,560 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe
PRC - [2012.08.21 11:12:26 | 004,282,728 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2012.08.21 11:12:25 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2012.08.18 22:11:52 | 000,075,064 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2012.07.27 22:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2010.05.07 18:47:32 | 000,114,008 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
PRC - [2010.05.07 18:35:22 | 000,165,208 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe


========== Modules (No Company Name) ==========

MOD - [2012.09.08 12:08:05 | 002,244,064 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2012.08.22 12:27:01 | 009,813,704 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll
MOD - [2011.03.17 01:11:16 | 004,297,568 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2010.05.07 18:37:40 | 000,126,808 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\ImageFormats\QJpeg4.dll
MOD - [2010.05.07 18:37:40 | 000,027,480 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\ImageFormats\QGif4.dll
MOD - [2010.05.07 18:36:54 | 000,340,824 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTXml4.dll
MOD - [2010.05.07 18:36:20 | 000,921,944 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtNetwork4.dll
MOD - [2010.05.07 18:35:56 | 007,954,776 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTGui4.dll
MOD - [2010.05.07 18:35:44 | 002,143,576 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTCore4.dll


========== Services (SafeList) ==========

SRV:64bit: - [2012.08.21 11:12:25 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2012.08.06 12:24:22 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2012.07.28 04:09:44 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011.03.03 21:34:46 | 001,436,424 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:64bit: - [2010.05.07 18:45:16 | 000,197,976 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:64bit: - [2010.01.23 05:12:18 | 000,673,792 | ---- | M] () [Auto | Running] -- C:\Program Files\Autodesk\Inventor 2011\Moldflow\bin\mitsijm.exe -- (mitsijm2011)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012.09.20 23:36:19 | 000,250,288 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.09.08 12:08:05 | 000,114,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012.08.18 22:11:52 | 000,075,064 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2012.07.27 22:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.07.03 13:19:28 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2011.12.24 18:50:18 | 000,652,872 | ---- | M] (Malwarebytes Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011.04.13 18:25:08 | 000,074,360 | ---- | M] (Autodesk, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2010.04.23 06:39:00 | 000,136,616 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe -- (AODService)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012.08.21 11:13:13 | 000,969,200 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012.08.21 11:13:13 | 000,359,464 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012.08.21 11:13:13 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012.08.21 11:13:12 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012.08.21 11:13:12 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012.08.21 11:13:11 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012.08.17 06:41:48 | 000,126,944 | ---- | M] (Power Software Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2012.07.28 06:07:44 | 010,278,912 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012.07.28 03:14:46 | 000,368,640 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012.05.14 08:12:30 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012.03.05 16:04:30 | 000,053,888 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.1)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.12.10 16:24:08 | 000,023,152 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.06.23 11:10:56 | 000,344,680 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010.05.15 00:02:14 | 006,465,760 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64)
DRV:64bit: - [2010.05.07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:64bit: - [2010.05.07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2010.02.18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.12.22 03:26:36 | 000,038,456 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2009.12.18 00:25:17 | 000,034,472 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:64bit: - [2009.08.09 23:25:45 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.05 03:00:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie)
DRV:64bit: - [2005.09.24 00:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV - [2010.04.23 06:38:48 | 000,052,352 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys -- (AODDriver2)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - No CLSID value found
IE - HKLM\..\SearchScopes,DefaultScope = {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.as ... =CT3220468
IE - HKLM\..\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}: "URL" = http://slirsredirect.search.aol.com/red ... 26-01-2012


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-38041712-215416969-1754313506-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.daum.net/
IE - HKU\S-1-5-21-38041712-215416969-1754313506-1000\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-38041712-215416969-1754313506-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-38041712-215416969-1754313506-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-38041712-215416969-1754313506-1000\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.as ... =CT3220468
IE - HKU\S-1-5-21-38041712-215416969-1754313506-1000\..\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}: "URL" = http://slirsredirect.search.aol.com/red ... 26-01-2012
IE - HKU\S-1-5-21-38041712-215416969-1754313506-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "AOL Web Search"
FF - prefs.js..browser.search.defaultthis.engineName: "servervideo.com Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search? ... 011&query="
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: DivXWebPlayer@divx.com:2.0.2.039
FF - prefs.js..extensions.enabledAddons: {1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}:0.4.6
FF - prefs.js..extensions.enabledAddons: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.126
FF - prefs.js..extensions.enabledAddons: wrc@avast.com:7.0.1466
FF - prefs.js..extensions.enabledAddons: {7473b6bd-4691-4744-a82b-7854eb3d70b6}:10.10.27.6
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6
FF - prefs.js..extensions.enabledItems: wrc@avast.com:20110101
FF - prefs.js..extensions.enabledItems: {c8f71e5b-88f8-42a7-98bb-e4c506161de9}:0.4
FF - prefs.js..extensions.enabledItems: {20C3BDFF-DA68-468d-8D9A-F5A6C76B0F9E}:3.13
FF - prefs.js..keyword.URL: "http://slirsredirect.search.aol.com/red ... 011&query="


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_265.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.0: C:\Windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.0: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll ()
FF - HKLM\Software\MozillaPlugins\@ASC/FileLabPlugin;version=1.1.33: C:\ProgramData\FileLab\Plugin\Framework\npFlPluginS.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Honzik\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2011.10.27 23:39:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012.08.23 20:06:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.09.08 12:08:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.09.08 12:08:03 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.09.08 12:08:06 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.09.08 12:08:03 | 000,000,000 | ---D | M]

[2011.03.20 13:53:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Extensions
[2012.08.28 21:25:05 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions
[2012.05.15 13:30:46 | 000,000,000 | ---D | M] (Winamp Toolbar) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2012.08.28 21:25:05 | 000,000,000 | ---D | M] (uTorrentControl_v2) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6}
[2011.12.04 16:40:26 | 000,000,000 | ---D | M] ("Free YouTube Download (Free Studio) Menu") -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2012.08.27 12:13:01 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2011.10.27 23:48:19 | 000,550,833 | ---- | M] () (No name found) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\DivXWebPlayer@divx.com.xpi
[2011.07.31 22:44:14 | 000,079,135 | ---- | M] () (No name found) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}.xpi
[2012.07.25 21:29:40 | 000,741,958 | ---- | M] () (No name found) -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011.07.03 18:06:14 | 000,002,354 | ---- | M] () -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\searchplugins\aol-web-search.xml
[2011.04.06 11:12:44 | 000,000,933 | ---- | M] () -- C:\Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\searchplugins\conduit.xml
[2012.09.08 12:08:02 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011.10.27 23:39:06 | 000,000,000 | ---D | M] (DivX Plus Web Player HTML5 <video>) -- C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5
[2012.08.23 20:06:40 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST5\WEBREP\FF
[2012.09.08 12:08:06 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011.03.17 21:57:30 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2012.06.18 09:20:56 | 000,002,208 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2012.06.18 09:20:56 | 000,000,638 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2012.06.18 09:20:56 | 000,001,367 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2012.06.18 09:20:56 | 000,000,654 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2012.06.18 09:20:56 | 000,001,179 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.google.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.47\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.47\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.47\pdf.dll
CHR - plugin: downloadUpdater (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
CHR - plugin: downloadUpdater2 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\Honzik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\Honzik\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: avast! WebRep = C:\Users\Honzik\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: avast! WebRep = C:\Users\Honzik\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1451_0\
CHR - Extension: Skype Click to Call = C:\Users\Honzik\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Honzik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.126_0\
CHR - Extension: Gmail = C:\Users\Honzik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (TopSpaceHelper Class) - {C8625893-2C0F-4484-8C18-52B00D5A8BB9} - C:\Program Files (x86)\TopSpace\bin\TopSpaceHelper.dll ((C) T-Comms)
O2 - BHO: (żŔÇÂĹÇ) - {DA742A73-CFA7-4DE2-BF28-1FC51CF214BC} - C:\Users\Honzik\AppData\Roaming\OpenTab\OpenTab.dll (Cipherlogis)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-38041712-215416969-1754313506-1000\..\Toolbar\WebBrowser: (uTorrentControl_v2 Toolbar) - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AMD AVT] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [TopSpace] C:\Program Files (x86)\TopSpace\bin\TopSpaceHelper.exe ((C) T-Comms)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-38041712-215416969-1754313506-1000..\Run: [Facebook Update] C:\Users\Honzik\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O8:64bit: - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Honzik\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Honzik\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.4.0)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.4.0)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.28.1.1 79.127.192.230
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A78DA86-8019-46B0-BEE1-CE691D12A6C7}: DhcpNameServer = 172.28.1.1 79.127.192.230
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012.02.22 11:44:49 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell - "" = AutoRun
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\AutoRun\command - "" = H:\aoesetup.exe /autorun
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\directx\command - "" = H:\DirectX\dxsetup.exe
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\dplay\command - "" = H:\DirectX\dplay61a.exe
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\dxdiag\command - "" = H:\goodies\ar40eng.exe
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\dxinfo\command - "" = H:\goodies\DirectX\dxinfo.exe
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\dxtest\command - "" = H:\DirectX\dxdiag.exe
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\dxtool\command - "" = H:\goodies\DirectX\dxtool.exe
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\log\command - "" = H:\goodies\machine\machine.exe -l
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\machine\command - "" = H:\goodies\machine\machine.exe
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\setup\command - "" = H:\aoesetup.exe /autorun
O33 - MountPoints2\{5869fbff-45c7-11e0-a909-6c626d7dd8d9}\Shell\zone\command - "" = H:\goodies\mszone\zoneA600.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32:64bit: vidc.i420 - lvcod64.dll (Logitech Inc.)
Drivers32: msacm.iac2 - C:\Windows\SysWOW64\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)
Drivers32: VIDC.FMVC - C:\Windows\SysWow64\fmcodec.DLL (Fox Magic Software)
Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
Drivers32: vidc.i420 - C:\Windows\SysWow64\lvcodec2.dll (Logitech Inc.)
Drivers32: VIDC.IV41 - C:\Windows\SysWow64\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\Windows\SysWow64\ir50_32.dll (Intel Corporation)
Drivers32: vidc.mjpg - pvmjpg30.dll File not found
Drivers32: vidc.yv12 - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2012.09.28 13:28:43 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Honzik\Desktop\OTL.exe
[2012.09.26 07:47:39 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OxpsConverter.exe
[2012.09.23 13:25:38 | 000,000,000 | ---D | C] -- C:\Users\Honzik\AppData\Local\{5C8CF2E2-FA8E-4DAF-B043-2D74E0ED5302}
[2012.09.22 11:23:31 | 000,000,000 | ---D | C] -- C:\Users\Honzik\AppData\Local\{7BC3AFA4-92BC-4060-80CF-0A514F6EB9D5}
[2012.09.22 10:24:48 | 000,735,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2012.09.22 10:24:44 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2012.09.22 10:24:44 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2012.09.22 10:24:43 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2012.09.22 10:24:43 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2012.09.22 10:24:43 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2012.09.22 10:24:42 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2011.08.13 17:47:46 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Honzik\AppData\Roaming\pcouffin.sys

========== Files - Modified Within 7 Days ==========

[2012.09.28 13:32:27 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.09.28 13:28:35 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Honzik\Desktop\OTL.exe
[2012.09.28 13:22:01 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000UA.job
[2012.09.28 13:09:00 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.09.28 12:36:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012.09.28 12:34:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.09.28 12:34:18 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\lvuvc.hs
[2012.09.28 11:51:03 | 000,014,448 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.09.28 11:51:03 | 000,014,448 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.09.28 11:43:56 | 000,000,948 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.09.28 11:43:26 | 3220,578,304 | -HS- | M] () -- C:\hiberfil.sys
[2012.09.27 19:22:00 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000Core.job
[2012.09.26 20:12:37 | 000,002,376 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012.09.25 20:44:30 | 000,214,520 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2012.09.25 20:44:30 | 000,214,520 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2012.09.25 13:33:19 | 000,001,483 | ---- | M] () -- C:\Users\Honzik\.recently-used.xbel
[2012.09.22 18:56:40 | 000,828,671 | ---- | M] () -- C:\Users\Honzik\AppData\Local\Tempmusic.ogg
[2012.09.22 12:53:27 | 000,016,896 | ---- | M] () -- C:\Users\Honzik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.09.22 11:49:24 | 000,000,349 | ---- | M] () -- C:\Users\Public\Documents\PCLECHAL.INI

========== Files Created - No Company Name ==========

[2012.09.28 13:32:27 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.09.25 13:33:19 | 000,001,483 | ---- | C] () -- C:\Users\Honzik\.recently-used.xbel
[2012.09.11 14:40:02 | 000,828,671 | ---- | C] () -- C:\Users\Honzik\AppData\Local\Tempmusic.ogg
[2012.06.03 17:00:19 | 000,159,359 | ---- | C] () -- C:\Windows\EXPStudio Audio Editor 3.8 Uninstaller.exe
[2012.04.06 03:29:34 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012.04.06 03:29:34 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012.03.09 14:06:14 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012.01.25 14:50:27 | 000,000,000 | ---- | C] () -- C:\Windows\Graffiti5.2Pin.ini
[2012.01.13 17:48:57 | 002,580,552 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2012.01.10 21:20:22 | 000,000,186 | ---- | C] () -- C:\Windows\pdf2word.INI
[2011.12.25 17:37:50 | 000,000,040 | ---- | C] () -- C:\Users\Honzik\AppData\Roaming\cdr.ini
[2011.09.13 00:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.09.07 18:31:49 | 000,002,161 | ---- | C] () -- C:\Users\Honzik\Videos.scn
[2011.09.06 18:44:21 | 000,016,896 | ---- | C] () -- C:\Users\Honzik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.08.13 17:47:46 | 000,099,384 | ---- | C] () -- C:\Users\Honzik\AppData\Roaming\inst.exe
[2011.08.13 17:47:46 | 000,007,859 | ---- | C] () -- C:\Users\Honzik\AppData\Roaming\pcouffin.cat
[2011.08.13 17:47:46 | 000,001,167 | ---- | C] () -- C:\Users\Honzik\AppData\Roaming\pcouffin.inf
[2011.07.14 11:59:32 | 000,286,208 | ---- | C] () -- C:\Windows\SysWow64\binkw32.dll
[2011.06.21 23:08:36 | 000,000,116 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2011.06.21 18:02:24 | 000,001,191 | ---- | C] () -- C:\Users\Honzik\AppData\Roaming\vso_ts_preview.xml
[2011.04.09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011.03.24 22:09:04 | 000,214,520 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011.03.24 22:08:47 | 000,075,064 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011.03.21 03:17:45 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2011.03.08 21:28:45 | 000,237,568 | ---- | C] () -- C:\Windows\SysWow64\qtmlClient.dll
[2011.03.03 20:41:00 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin

========== ZeroAccess Check ==========

[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 07:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 06:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2012.08.17 21:37:13 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\.minecraft
[2011.03.27 16:38:59 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Allstar
[2011.12.02 17:13:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\AnvSoft
[2011.06.21 15:18:51 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Audacity
[2011.12.12 18:03:02 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Autodesk
[2011.12.18 02:25:04 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\DVDVideoSoft
[2011.12.04 16:40:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\DVDVideoSoftIEHelpers
[2011.12.04 16:06:14 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\GetRightToGo
[2012.01.10 21:52:55 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\go
[2012.08.07 12:27:31 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\gtk-2.0
[2011.10.30 19:33:31 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\HLSW
[2011.08.17 20:28:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Leadertech
[2011.06.07 15:08:36 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\MAGIX
[2011.05.28 11:21:37 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Nvu
[2011.04.15 17:05:05 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\OpenCandy
[2012.09.18 10:07:31 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\OpenTab
[2012.08.23 13:05:51 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\PowerISO
[2012.06.27 11:40:11 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\proDAD
[2011.06.19 14:27:29 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Ubisoft
[2012.04.30 19:17:03 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Ulozto File Manager
[2012.08.26 22:24:19 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\uTorrent
[2011.03.21 21:29:39 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\VitySoft
[2012.07.25 13:21:14 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Vso

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,032,544 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011.10.27 23:33:56 | 000,000,948 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2011.10.27 23:33:57 | 000,000,952 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.03.31 21:42:59 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012.08.12 19:17:35 | 000,000,910 | ---- | C] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000Core.job
[2012.08.12 19:17:36 | 000,000,932 | ---- | C] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000UA.job

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2009.10.31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.08.03 08:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2009.10.31 08:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 07:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 08:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 07:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 08:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2009.08.03 08:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

< MD5 for: HAL.DLL >
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SERVICES.EXE >
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2011.12.24 18:50:20 | 000,182,856 | ---- | M] () MD5=B382935AB01B27D0E14F267DBF288896 -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 07:28:24 | 001,893,248 | ---- | M] (Microsoft Corporation) MD5=1F748D5439B65E0BEBD92F65048F030D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_0fb918de99201ffb\tcpip.sys
[2011.09.29 19:41:37 | 001,912,176 | ---- | M] (Microsoft Corporation) MD5=3810F06A4D74A7D62641EE73D6B3C660 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21828_none_11c6e9949627e69c\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2011.06.21 08:16:55 | 001,888,128 | ---- | M] (Microsoft Corporation) MD5=5279D4DD69C7C71524B8E7A5746D15CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20992_none_0f8ed978993fa916\tcpip.sys
[2010.06.14 08:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2012.03.30 12:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2011.04.25 07:32:22 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=61DC720BB065D607D5823F13D2A64321 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_0f668bf97fd90dd3\tcpip.sys
[2012.03.30 13:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2012.08.22 20:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.06.14 08:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2011.04.25 07:33:51 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316\tcpip.sys
[2011.06.21 08:20:30 | 001,914,752 | ---- | M] (Microsoft Corporation) MD5=A0EB71E0DC047C7CC95CD6AB4036296E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21754_none_11a276c29643d7ec\tcpip.sys
[2011.09.29 18:17:51 | 001,886,064 | ---- | M] (Microsoft Corporation) MD5=AC3E29880DB5659532A1AA3439304A43 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21060_none_0fad20ca992955d7\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2011.04.25 08:16:34 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357a\tcpip.sys
[2011.06.21 08:27:14 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=B9D87C7707F058AC652A398CD28DE14B -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16839_none_0f4d1e3b7feb1307\tcpip.sys
[2011.06.21 08:34:00 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=F0E98C00A09FDF791525829A1D14240F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17638_none_11327af77d12659c\tcpip.sys
[2011.09.29 18:24:44 | 001,897,328 | ---- | M] (Microsoft Corporation) MD5=F18F56EFC0BFB9C87BA01C37B27F4DA5 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16889_none_0f170e9f80139ebc\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\SysNative\drivers\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
[2011.09.29 18:29:28 | 001,923,952 | ---- | M] (Microsoft Corporation) MD5=FC62769E7BFF2896035AEED399108162 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17697_none_10f09b257d43f3eb\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2011.12.24 18:50:20 | 000,182,856 | ---- | M] () MD5=B382935AB01B27D0E14F267DBF288896 -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2009.10.28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< >

< %systemroot%*.* /U /s >
[5 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[7 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[5 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2012.08.17 21:37:13 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\.minecraft
[2011.03.04 18:26:11 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Adobe
[2011.03.27 16:38:59 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Allstar
[2011.12.02 17:13:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\AnvSoft
[2011.03.03 20:41:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\ATI
[2011.06.21 15:18:51 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Audacity
[2011.12.12 18:03:02 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Autodesk
[2011.10.28 11:24:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\DivX
[2011.12.18 02:25:04 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\DVDVideoSoft
[2011.12.04 16:40:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\DVDVideoSoftIEHelpers
[2011.12.04 16:06:14 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\GetRightToGo
[2012.01.10 21:52:55 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\go
[2012.08.07 12:27:31 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\gtk-2.0
[2011.10.30 19:33:31 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\HLSW
[2011.03.03 20:34:34 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Identities
[2011.08.17 20:28:25 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Leadertech
[2011.08.17 21:22:32 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Logitech
[2011.03.03 20:54:02 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Macromedia
[2011.06.07 15:08:36 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\MAGIX
[2012.01.01 13:38:45 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Malwarebytes
[2009.07.14 17:36:58 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Media Center Programs
[2012.06.02 00:01:34 | 000,000,000 | --SD | M] -- C:\Users\Honzik\AppData\Roaming\Microsoft
[2011.03.20 13:53:12 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Mozilla
[2011.05.28 11:21:37 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Nvu
[2011.04.15 17:05:05 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\OpenCandy
[2012.09.18 10:07:31 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\OpenTab
[2012.08.23 13:05:51 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\PowerISO
[2012.06.27 11:40:11 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\proDAD
[2012.06.18 13:58:25 | 000,000,000 | RH-D | M] -- C:\Users\Honzik\AppData\Roaming\SecuROM
[2012.09.27 16:16:48 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Skype
[2011.08.03 22:41:59 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\skypePM
[2011.03.06 09:54:51 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\teamspeak2
[2011.06.19 14:27:29 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Ubisoft
[2012.04.30 19:17:03 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Ulozto File Manager
[2012.08.26 22:24:19 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\uTorrent
[2011.03.21 21:29:39 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\VitySoft
[2012.07.25 13:21:14 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Vso
[2012.07.30 13:03:46 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\Winamp
[2011.03.03 20:57:29 | 000,000,000 | ---D | M] -- C:\Users\Honzik\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2011.08.13 17:48:46 | 000,099,384 | ---- | M] () -- C:\Users\Honzik\AppData\Roaming\inst.exe
[2011.03.03 20:54:00 | 000,053,632 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Honzik\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2011.10.03 19:54:36 | 003,126,944 | ---- | M] (Adobe Systems, Inc.) -- C:\Users\Honzik\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe
[2011.08.17 20:28:24 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Users\Honzik\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
[2012.01.19 18:26:05 | 000,001,078 | R--- | M] () -- C:\Users\Honzik\AppData\Roaming\Microsoft\Installer\{6C472DFC-6D44-4947-9E1A-F79A2469D953}\_1DA131122C66AE2AF93D01.exe
[2012.01.19 18:26:05 | 000,001,078 | R--- | M] () -- C:\Users\Honzik\AppData\Roaming\Microsoft\Installer\{6C472DFC-6D44-4947-9E1A-F79A2469D953}\_C7135D8DD8E38D24DFF917.exe
[2012.01.25 14:48:47 | 000,029,926 | R--- | M] () -- C:\Users\Honzik\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2011.12.05 19:59:21 | 000,010,134 | R--- | M] () -- C:\Users\Honzik\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2011.04.15 17:05:07 | 000,416,160 | ---- | M] () -- C:\Users\Honzik\AppData\Roaming\OpenCandy\OpenCandy_B9FBE3F9C1A24B68A421E514F1A2A166\LatestDLMgr.exe
[2010.12.18 00:07:06 | 000,043,440 | ---- | M] () -- C:\Users\Honzik\AppData\Roaming\OpenCandy\OpenCandy_B9FBE3F9C1A24B68A421E514F1A2A166\SpeedstarterCZ.exe
[2010.12.17 19:48:22 | 001,720,472 | ---- | M] (Speedchecker Limited ) -- C:\Users\Honzik\AppData\Roaming\OpenCandy\OpenCandy_B9FBE3F9C1A24B68A421E514F1A2A166\ZrychleniPocitace.exe
[2011.04.15 17:05:14 | 001,842,096 | ---- | M] () -- C:\Users\Honzik\AppData\Roaming\OpenCandy\OpenCandy_B9FBE3F9C1A24B68A421E514F1A2A166\ZrychleniPocitace_p2v1.exe
[2012.09.06 19:04:38 | 000,301,152 | ---- | M] (사이퍼로지스) -- C:\Users\Honzik\AppData\Roaming\OpenTab\Opentab.exe
[2012.09.05 16:33:06 | 000,182,368 | ---- | M] ( CIPHERLOGIS) -- C:\Users\Honzik\AppData\Roaming\OpenTab\Opentabch.exe
[2012.09.05 16:45:50 | 000,212,064 | ---- | M] (CIPHERLOGIS) -- C:\Users\Honzik\AppData\Roaming\OpenTab\OpenTabUninstall.exe
[2012.09.08 11:02:57 | 004,091,288 | ---- | M] (Copyright CIPHERLOGIS All rights reserved. ) -- C:\Users\Honzik\AppData\Roaming\OpenTab\OpenTab_kmpopentab_Setup.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2012.09.28 13:36:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012.09.27 19:22:00 | 000,000,910 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000Core.job
[2012.09.28 13:22:01 | 000,000,932 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-38041712-215416969-1754313506-1000UA.job
[2012.09.28 11:43:56 | 000,000,948 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.09.28 13:09:00 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2012.09.25 20:44:30 | 000,214,520 | ---- | M] () -- C:\Windows\system32\PnkBstrB.exe
[2012.09.25 20:44:30 | 000,214,520 | ---- | M] () -- C:\Windows\system32\PnkBstrB.xtr

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Facebook Update" = "C:\Users\Honzik\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver -- [2012.08.12 19:17:30 | 000,138,096 | ---- | M] (Facebook Inc.)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2012.09.08 12:08:06 | 000,917,984 | ---- | M] (Mozilla Corporation) MD5=9C376F42BDE37F18D0A39AF7415D9BE6 -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2010.11.20 14:22:51 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=C613E69C3B191BB02C7A191741A1D024 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2012.09.25 11:43:01 | 001,239,064 | ---- | M] (Google Inc.) MD5=6194CC4A71F51CF3E815252BB43AAC28 -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.09.28 13:32:27 | 000,000,512 | ---- | M] () MD5=BD5B3266EF70CCFA8F73846245142CFA -- C:\PhysicalMBR.bin

< >

Cvrkot_
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 12 čer 2011 17:34

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#4 Příspěvek od Cvrkot_ »

< *crack* /s >
[2012.07.19 19:53:45 | 000,005,369 | ---- | M] () -- \Program Files (x86)\FreeRapid-0.86u1\plugins\crackle.frp
[2009.12.15 22:22:58 | 000,062,238 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\share\gimp\2.0\patterns\cracked.pat
[2012.08.18 04:09:09 | 000,012,116 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrack.cfx
[2012.08.18 04:09:15 | 000,012,168 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackalphatest.cfx
[2012.08.18 04:09:15 | 000,012,536 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2012.08.18 04:09:17 | 000,013,084 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2012.08.18 04:09:19 | 000,012,436 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2012.08.18 04:09:17 | 000,012,720 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackalphatestshadow.cfx
[2012.08.18 04:09:09 | 000,012,484 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcracklightmap.cfx
[2012.08.18 04:09:12 | 000,013,032 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcracklightmapshadow.cfx
[2012.08.18 04:09:10 | 000,012,720 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrack.cfx
[2012.08.18 04:09:16 | 000,012,756 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2012.08.18 04:09:16 | 000,013,096 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2012.08.18 04:09:19 | 000,013,672 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2012.08.18 04:09:20 | 000,012,816 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2012.08.18 04:09:19 | 000,013,348 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2012.08.18 04:09:11 | 000,013,060 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2012.08.18 04:09:13 | 000,013,636 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2012.08.18 04:09:11 | 000,012,836 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetail.cfx
[2012.08.18 04:09:16 | 000,012,872 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatest.cfx
[2012.08.18 04:09:17 | 000,013,212 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2012.08.18 04:09:19 | 000,013,788 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2012.08.18 04:09:20 | 000,012,924 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2012.08.18 04:09:19 | 000,013,464 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2012.08.18 04:09:11 | 000,013,176 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmap.cfx
[2012.08.18 04:09:13 | 000,013,752 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2012.08.18 04:09:15 | 000,012,888 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailpointlight.cfx
[2012.08.18 04:09:13 | 000,013,428 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailshadow.cfx
[2012.08.18 04:09:14 | 000,012,780 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2012.08.18 04:09:13 | 000,013,312 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2012.08.18 04:09:14 | 000,012,400 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackpointlight.cfx
[2012.08.18 04:09:11 | 000,012,668 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetailcrackshadow.cfx
[2012.08.18 04:09:09 | 000,012,296 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrack.cfx
[2012.08.18 04:09:15 | 000,012,348 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackalphatest.cfx
[2012.08.18 04:09:15 | 000,012,716 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2012.08.18 04:09:17 | 000,013,264 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2012.08.18 04:09:19 | 000,012,612 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2012.08.18 04:09:17 | 000,012,900 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2012.08.18 04:09:09 | 000,012,664 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcracklightmap.cfx
[2012.08.18 04:09:12 | 000,013,212 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2012.08.18 04:09:11 | 000,012,900 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2012.08.18 04:09:16 | 000,012,936 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2012.08.18 04:09:16 | 000,013,276 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2012.08.18 04:09:19 | 000,013,852 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2012.08.18 04:09:20 | 000,012,996 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2012.08.18 04:09:19 | 000,013,528 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2012.08.18 04:09:11 | 000,013,240 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2012.08.18 04:09:13 | 000,013,816 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2012.08.18 04:09:11 | 000,013,016 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetail.cfx
[2012.08.18 04:09:17 | 000,013,052 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatest.cfx
[2012.08.18 04:09:17 | 000,013,392 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2012.08.18 04:09:19 | 000,013,968 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2012.08.18 04:09:20 | 000,013,104 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2012.08.18 04:09:19 | 000,013,644 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2012.08.18 04:09:11 | 000,013,356 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmap.cfx
[2012.08.18 04:09:14 | 000,013,932 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2012.08.18 04:09:15 | 000,013,068 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailpointlight.cfx
[2012.08.18 04:09:14 | 000,013,608 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailshadow.cfx
[2012.08.18 04:09:14 | 000,012,960 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2012.08.18 04:09:13 | 000,013,492 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2012.08.18 04:09:14 | 000,012,576 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackpointlight.cfx
[2012.08.18 04:09:12 | 000,012,848 | ---- | M] () -- \Users\Honzik\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BF8-11CF-BE73-4A01BEC2C535}_3153_3\rashaderstmbasedetaildirtcrackshadow.cfx
[2001.08.15 00:01:08 | 000,030,054 | ---- | M] () -- \Users\Public\Documents\Autodesk\Inventor 2011\Textures\surfaces\Cracks.bmp

< *keygen* /s >
[2010.07.26 01:03:08 | 000,104,960 | ---- | M] () -- \Program Files\WinRAR\keygen.exe

< *loader* /s >
[2010.01.21 08:48:10 | 000,030,056 | ---- | M] () -- \Autodesk\AutoCAD_2011_Czech_Win_64bit\x64\acad\Program Files\Root\AecLoader.arx
[2011.12.07 20:18:52 | 002,952,856 | ---- | M] () -- \Program Files (x86)\Common Files\DVDVideoSoft\Dll\DVSVideoDownloader.dll
[2010.10.07 05:36:40 | 000,265,552 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 05:36:40 | 000,018,264 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2011.12.07 20:18:48 | 000,041,112 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.DVSVideoDownloader.dll
[2009.09.02 23:09:22 | 000,003,614 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\etc\gtk-2.0\gdk-pixbuf.loaders
[2009.12.15 17:58:18 | 000,017,056 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2009.12.15 17:58:20 | 000,018,592 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2009.12.15 17:58:24 | 000,026,272 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2009.12.15 17:58:26 | 000,012,960 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2009.12.15 17:58:28 | 000,017,568 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2009.12.15 17:58:56 | 000,019,616 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2009.12.15 17:59:04 | 000,015,008 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2009.12.15 17:59:06 | 000,019,104 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2009.12.15 17:59:10 | 000,017,056 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2009.12.15 17:59:14 | 000,012,448 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2009.12.15 17:59:16 | 000,016,544 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2009.12.15 17:59:20 | 000,016,544 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2009.12.15 17:59:22 | 000,011,936 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2009.12.15 17:59:24 | 000,013,984 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2009.12.15 17:59:28 | 000,028,320 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2009.05.01 19:42:00 | 000,009,880 | ---- | M] () -- \Program Files (x86)\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2009.05.31 03:21:00 | 000,071,008 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2009.05.31 03:21:00 | 000,073,568 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2008.09.04 02:13:56 | 000,486,216 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 12 Ultimate Plugins\Vitascene\current\imageloader10x1.dll
[2012.02.27 23:58:46 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderLargeBlue.gif
[2012.02.27 23:58:46 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderLargeGrey.gif
[2012.02.27 23:58:46 | 000,001,737 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderSmallBlue.gif
[2012.02.27 23:58:46 | 000,001,737 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderSmallGold.gif
[2008.02.25 08:05:22 | 000,856,064 | ---- | M] () -- \Program Files (x86)\The KMPlayer\ImLoader.dll
[2010.01.28 00:04:30 | 000,046,592 | ---- | M] () -- \Program Files\Autodesk\Inventor 2011\Bin\iLogicBin\Autodesk.iLogic.AddinLoader.dll
[2010.10.07 05:36:40 | 000,387,408 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 05:36:40 | 000,018,264 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2010.03.15 12:27:20 | 000,054,784 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2012.01.06 20:58:09 | 000,001,743 | ---- | M] () -- \ProgramData\__FileUploader.log
[2012.06.03 14:04:44 | 000,002,030 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter\Free YouTube Downloader Converter on the Web.lnk
[2012.06.03 14:04:44 | 000,002,058 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter\Free YouTube Downloader Converter.lnk
[2012.06.03 14:04:44 | 000,002,038 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter\Uninstall Free YouTube Downloader Converter.lnk
[2012.02.29 09:49:32 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012.02.29 09:49:32 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2008.09.04 01:13:56 | 000,486,216 | ---- | M] () -- \Programy\Pinnacle Studio 12\Pinnacle Studio12 UPG do ultimate\Vitascene\current\imageloader10x1.dll
[2012.01.06 20:58:09 | 000,001,743 | ---- | M] () -- \Users\All Users\__FileUploader.log
[2012.06.03 14:04:44 | 000,002,030 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter\Free YouTube Downloader Converter on the Web.lnk
[2012.06.03 14:04:44 | 000,002,058 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter\Free YouTube Downloader Converter.lnk
[2012.06.03 14:04:44 | 000,002,038 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter\Uninstall Free YouTube Downloader Converter.lnk
[2012.02.29 09:49:32 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012.02.29 09:49:32 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2012.09.17 20:08:24 | 000,105,903 | ---- | M] () -- \Users\Honzik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C0ZHA2YV\AdLoader-427d9fd2a91e2f2c023aefe9f69a01d0.min[1].js
[2012.09.17 20:08:24 | 000,000,753 | ---- | M] () -- \Users\Honzik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CN0E9BI6\AdLoader[1].htm
[2012.08.27 17:58:10 | 000,000,847 | ---- | M] () -- \Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\chrome\CT3220468\content\tb\al\ac\img\ajax-loader.gif
[2012.08.27 17:58:10 | 000,001,135 | ---- | M] () -- \Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\chrome\CT3220468\content\tb\al\ac\img\loader-icon.png
[2012.08.27 17:58:10 | 000,003,208 | ---- | M] () -- \Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\chrome\CT3220468\content\tb\al\ui\gf\img\loader.gif
[2012.08.27 17:58:10 | 000,001,849 | ---- | M] () -- \Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\chrome\CT3220468\content\tb\al\wa\TWITTER\resources\ajax-loader.gif
[2012.08.26 16:01:12 | 000,010,145 | ---- | M] () -- \Users\Honzik\AppData\Roaming\Mozilla\Firefox\Profiles\aartau15.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\modules\ExternalLibraryLoader.jsm
[2011.12.04 16:21:37 | 000,001,846 | ---- | M] () -- \Users\Honzik\AppData\Roaming\uTorrent\YouTube Music Downloader 3.1 + Serial [1337x] [Ahmed].torrent
[2012.06.03 14:04:44 | 000,002,040 | ---- | M] () -- \Users\Honzik\Desktop\Free YouTube Downloader Converter.lnk
[2012.01.04 21:26:38 | 000,001,188 | ---- | M] () -- \Users\Public\Desktop\Youtube video downloader.lnk
[2012.06.03 14:04:44 | 000,002,040 | ---- | M] () -- \Users\tata\Desktop\Free YouTube Downloader Converter.lnk
[2010.03.24 20:35:48 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004119110000000100000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_amd64_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010.03.24 20:12:34 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004119110000000100000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010.03.24 20:35:48 | 000,370,512 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004119110000000100000000F01FEC\14.0.4763\VSTOLoader_dll_amd64.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010.03.24 20:12:34 | 000,249,680 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004119110000000100000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2009.07.14 14:25:34 | 002,202,645 | R--- | M] () -- \Windows\Setup\SCRIPTS\Windows7Loader.exe
[2011.02.05 15:09:31 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 15:04:44 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2011.02.05 15:09:50 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_9c05f879842e1792.manifest
[2011.02.05 15:05:03 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_9c6455949d6c2720.manifest
[2011.02.05 19:34:40 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_9deb553581556a27.manifest
[2011.02.05 15:10:12 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_9e73f1b69a73f09a.manifest
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:18:33 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_66f39ad995474166\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 08:23:09 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_66e5ca0f95521152\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:04:54 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:39:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_673e58b0ae93bb84\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:04:21 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_68daf829926cc6a9\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:44:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_68ce27a99276afec\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:00:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_695ac552ab919bbb\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:40:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_694ff566ab99b7ac\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 17:17:49 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 17:17:49 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009.07.14 17:17:49 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009.07.14 17:17:49 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009.07.14 17:17:49 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2011.06.11 15:53:39 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.06.11 15:53:39 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2011.06.11 15:53:39 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2011.06.11 15:53:40 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2011.06.11 15:53:40 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009.07.14 17:15:51 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 04:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 15:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 15:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 06:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:22:35 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_0ad4ff55dce9d030\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 07:45:50 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_0ac72e8bdcf4a01c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:19:58 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:50:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_0b1fbd2cf6364a4e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:13:36 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_0cbc5ca5da0f5573\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:47:28 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_0caf8c25da193eb6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 09:15:40 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_0d3c29cef3342a85\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 08:56:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_0d3159e2f33c4676\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll

< End of report >

Cvrkot_
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 12 čer 2011 17:34

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#5 Příspěvek od Cvrkot_ »

a tady je druhý LOG

OTL Extras logfile created on: 28.9.2012 13:30:56 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Honzik\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 2,29 Gb Available Physical Memory | 57,39% Memory free
8,00 Gb Paging File | 6,01 Gb Available in Paging File | 75,11% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 124,90 Gb Total Space | 53,92 Gb Free Space | 43,17% Space Free | Partition Type: NTFS
Drive D: | 200,00 Gb Total Space | 6,62 Gb Free Space | 3,31% Space Free | Partition Type: NTFS
Drive E: | 606,51 Gb Total Space | 247,67 Gb Free Space | 40,84% Space Free | Partition Type: NTFS

Computer Name: HONZIK-PC | User Name: Honzik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_USERS\S-1-5-21-38041712-215416969-1754313506-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{023222E0-BCAC-49C2-8C89-988B9AFC93C9}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{0A6BE862-7C7C-49BF-B980-1F8D1A80E65E}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1518DC0B-BAC2-4A79-9880-A6A9634D6FDA}" = rport=137 | protocol=17 | dir=out | app=system |
"{1D7E3F0C-C8E8-4539-89B7-26538CFCCBE1}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1D83BCFA-1156-4EE0-A3BA-1D0296F93D55}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{1FB8E003-2E1C-460E-9CF0-DC8B89129A6A}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{1FDD5D0B-FEBF-4C01-BBA6-570A341C0490}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{22010851-9A65-4F6D-962C-33CF8C4D6497}" = lport=10243 | protocol=6 | dir=in | app=system |
"{26073D50-B5DD-41F7-9A16-38C633BCFBF6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{30C1B525-42EF-4123-BC32-C6A1E9CB2FAA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{51549EB1-D7CB-4D0E-AD99-869C378EE337}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{69170A8F-E7A3-486A-8F69-EEFAD98225D1}" = lport=2869 | protocol=6 | dir=in | app=system |
"{6A236E98-F4E8-4945-918E-BF20A977CAE5}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{6CA83C93-B807-4C64-8960-93BFB2FE39F8}" = lport=445 | protocol=6 | dir=in | app=system |
"{6FED866C-98C4-46B0-8B65-92C93987A54F}" = lport=138 | protocol=17 | dir=in | app=system |
"{7A778F5A-BCB8-453C-9A8F-DE3E58D6A691}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7C0188F3-38CE-4F32-BBC9-73B9F6478AB6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{892B5931-DC01-4A16-9CBB-5DE1983BF8BB}" = rport=445 | protocol=6 | dir=out | app=system |
"{928B248F-8458-4951-8F09-6F3A10A0E97D}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{A110977A-EB13-4953-B125-EDBDC7505114}" = lport=137 | protocol=17 | dir=in | app=system |
"{A85457F5-0535-49A1-B8AD-8705F6DDFA29}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{AF0C8680-AC63-49AA-B11A-72EF74F81794}" = rport=10243 | protocol=6 | dir=out | app=system |
"{B1BA47D7-C7E1-48FE-84EE-0A9EA4932A25}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe |
"{B290FA7C-8876-46A9-8E1C-CED2AC1AD836}" = rport=139 | protocol=6 | dir=out | app=system |
"{B479C430-A606-4ABE-B532-1CFE1349165A}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{B9B632C7-6BBE-4F05-8ADD-B0476901E57E}" = lport=139 | protocol=6 | dir=in | app=system |
"{BE1FA71E-025A-4082-BBA0-6C0945B62AD9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{C16999DC-48D7-41C5-A610-CF564F5EB36D}" = rport=138 | protocol=17 | dir=out | app=system |
"{DA4F6C1D-7615-487F-AB6E-2CB93926D070}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E9CDF091-714D-49C3-82E4-60DC9724A27B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F0D14FA9-1AA4-4C14-BF91-B5F6761253C8}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{F212AE91-0DF2-4AC0-935B-4E73695C4062}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{F8E34A87-CCD3-44EA-83F9-B024A4439287}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{FD090C59-F42E-423A-81E7-1BA0BAAF8B99}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0252071D-8D35-42A5-A86C-7438EDA58603}" = protocol=6 | dir=in | app=d:\hry\assasins creed2\uplaybrowser.exe |
"{027368F3-9DF8-4255-A577-206C9F4130A6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{02B37A81-388B-4658-9F34-CD724846A960}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{049A98C9-1B54-4AB4-B846-0024A54306FC}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{04DB5275-FB5F-42E2-A0E2-ABFB6161299A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{099306F6-FECA-43B2-B332-3866C1227590}" = protocol=17 | dir=in | app=c:\programy\pinnaclee12\programs\studio.exe |
"{0A2427F9-14EF-4FD6-A3F8-BC3ADAB0FF65}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{1A69CBF0-E5FA-4394-9C3B-E5D59FE1CCA7}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\umi.exe |
"{1C490B79-ECB1-4949-824D-3437D77D697D}" = protocol=17 | dir=in | app=d:\hry\flatout\flatout ultimate carnage\fouc.exe |
"{1FF11E23-B8D0-4E6A-A51C-5BB16978A6BC}" = protocol=6 | dir=in | app=c:\programy\pinnaclee12\programs\umi.exe |
"{22DA0A81-4471-41AD-B947-EC14A87C4C08}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{23940910-F156-4021-8B92-1EDCBFC0D30E}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe |
"{245259FA-1C31-454C-A115-FC3FFAB83576}" = protocol=17 | dir=in | app=d:\hry\wolfenstein\wolfenstein2009\wwww\mp\wolf2mplite.exe |
"{2581EA9A-5537-41E4-A4EE-97049F6F0BA4}" = protocol=6 | dir=in | app=e:\hry\cod5\codwawmp.exe |
"{27CBD5E4-D928-4F17-8319-1C3ED4F185CD}" = protocol=6 | dir=in | app=d:\hry\wolfenstein\wolfenstein2009\wwww\mp\wolf2mplite.exe |
"{298D90CC-846A-4DFF-918D-F4EB23C08027}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{2C059903-F8DB-4A5E-B811-D5B97564A1A1}" = dir=in | app=c:\users\honzik\appdata\local\facebook\video\skype\facebookvideocalling.exe |
"{2F92A685-1FDD-459C-AF8E-E1C5E1B3179C}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 12\programs\studio.exe |
"{2F9DFFFE-7780-4E16-8405-1E7323A375C6}" = protocol=17 | dir=in | app=e:\hry\cod5\codwawmp.exe |
"{360D9EF4-41E1-4BEB-AA23-092CC0A8E99B}" = protocol=17 | dir=in | app=c:\programy\pinnaclee12\programs\rm.exe |
"{428A6A37-F1C5-47FD-9705-F92EBE89AF4D}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 12\programs\studio.exe |
"{43D19A5F-3478-4053-A327-761A9CEB1DD0}" = protocol=6 | dir=in | app=e:\hry\bf2.exe |
"{491EB98B-F1C8-4F2D-A372-B172E3BD0B7C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{4E018803-8BF0-4D06-B147-16C425C7F390}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{4EF0B2A2-F794-4F4A-91B7-265BAD3B7DB7}" = protocol=6 | dir=in | app=d:\hry\rockstar games max payne 3\playmaxpayne3.exe |
"{518CB400-DC85-4781-B04C-88D4DFC6F093}" = protocol=17 | dir=in | app=d:\hry\battlefield3\battlefield 3™\bf3.exe |
"{54FAB97A-EED6-4F2E-BED3-9BE7CFD75353}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{56B2F4DA-2D5D-4A45-8587-959FC2C0F19A}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{57C576ED-4BBD-4799-B88A-357271BAAEF5}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{5916651A-E30A-4FC4-AF46-9FC3B6FC0377}" = protocol=6 | dir=in | app=d:\operace flešpoint\redriverlauncher.exe |
"{59E2B7F7-3A55-4069-BAAA-84D0BFCA2C03}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{5C04F2A6-70D7-42FD-8C5A-9041CD31A800}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{6077D11A-E4B1-40A5-89E2-85079AE435F9}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{662C4459-DBB5-47DD-AA48-BD0FC41D0679}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe |
"{66D838DA-7944-4091-9695-D9C93DC5CFCF}" = protocol=17 | dir=in | app=c:\users\public\documents\blizzard entertainment\world of warcraft\wow-3.1.2.9926-to-3.2.0.10194-engb-trial-downloader.exe |
"{6896568A-2F63-4712-8452-9FDF431637DA}" = protocol=6 | dir=in | app=c:\users\public\documents\blizzard entertainment\world of warcraft\wow-3.1.2.9926-to-3.2.0.10194-engb-trial-downloader.exe |
"{690581FB-44B1-4FD4-89D5-C996B7F6E064}" = protocol=17 | dir=in | app=d:\hry\assasins creed2\assassinscreedii.exe |
"{6E186D99-9DA2-4EAF-BA85-400EE32C54F6}" = protocol=17 | dir=in | app=d:\hry\assasins creed2\assassinscreediigame.exe |
"{71497A71-5DBD-47B0-A4F5-97A129C10D6A}" = protocol=17 | dir=in | app=d:\hry\battlefield2\bfbc2updater.exe |
"{7641B624-AE59-4712-A551-8798CB5848CE}" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"{767567C2-A658-43B9-ACAB-A02BBB927E29}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 12\programs\umi.exe |
"{7726DCB2-E6B5-44CA-9C89-D15EB73C450A}" = protocol=6 | dir=in | app=d:\operace flešpoint\redriver.exe |
"{79DF02B1-6BD6-4961-B6CC-A1AF6F3A6004}" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"{7A9E6E99-4CF8-4238-89BC-B0D17A913715}" = protocol=6 | dir=in | app=e:\hry\battlefield2\bf2.exe |
"{7CBC51BD-48F3-4538-A37A-E9AD8A33E2EF}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\rm.exe |
"{7F0BC786-3FD4-40B3-A3BC-970BB87A89C0}" = protocol=17 | dir=in | app=d:\operace flešpoint\redriver.exe |
"{80419F4A-FFB1-4DD8-A901-06B55728134F}" = protocol=6 | dir=in | app=d:\hry\flatout\flatout ultimate carnage\fouc.exe |
"{81641C28-BA4F-4393-9A09-CCB5C16761D8}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 12\programs\rm.exe |
"{82F98369-D95B-472E-9CCA-BA48E2D454F1}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{832ED385-5935-4D44-9170-21BD7C45813B}" = protocol=6 | dir=in | app=c:\programy\pinnaclee12\programs\rm.exe |
"{85E01769-5BD4-4DE3-96EA-9A4640C46BF1}" = protocol=17 | dir=in | app=d:\hry\rockstar games max payne 3\playmaxpayne3.exe |
"{88F65D2F-CD68-42BF-95FF-2677B5F3589E}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\studio.exe |
"{89712D15-056B-4C7D-8C21-0FC2B098C2E6}" = protocol=6 | dir=in | app=d:\hry\wolfenstein\wolfenstein2009\wwww\mp\wolf2mp.exe |
"{8AA64431-736D-4B30-A14E-2FB3B15D6B62}" = protocol=6 | dir=in | app=e:\hry\gta4\grand theft auto iv\launchgtaiv.exe |
"{8FCA0374-788C-4E45-B4A0-ADACB4612BE1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{92E133BC-CB06-4E1C-AAD1-765E48031A36}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{964E7E12-E4D0-4B29-81A0-EA87B035F487}" = protocol=6 | dir=in | app=d:\hry\battlefield3\battlefield 3™\bf3.exe |
"{9875804A-1E8B-4C5E-9C2E-411B6926565D}" = protocol=17 | dir=in | app=d:\hry\assasins creed2\uplaybrowser.exe |
"{996F2686-8AB6-4F66-9A78-AFC2A0451C1F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{99BF0FB4-0F94-4E9D-8E99-9994EE47B3B1}" = protocol=6 | dir=in | app=d:\hry\assasins creed2\assassinscreedii.exe |
"{9A2CF9A0-FAEF-4CD9-8E7C-D2183CDB1A0F}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{9C999198-9A1A-4104-8536-7A9EB1C0A819}" = protocol=17 | dir=in | app=d:\hry\cod4_2\iw3mp.exe |
"{A3D23917-3CF5-4E94-B15E-6E17DE766E1C}" = protocol=6 | dir=in | app=c:\programy\pinnaclee12\programs\studio.exe |
"{A72C0895-FF20-41BB-B4E0-04AAAFC202F8}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 12\programs\rm.exe |
"{A8F554AB-4AD3-48EE-9B18-B619399F891D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{ADB34C43-9168-4DEC-AF83-B2039C1595DE}" = protocol=6 | dir=in | app=e:\hry\cod5\codwaw.exe |
"{B54DCEE9-7C8C-4EDA-9B23-55BA5649D41A}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 12\programs\umi.exe |
"{B61297A1-1F9D-4F41-A397-5F1D9634BAE3}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\studio.exe |
"{B7CB37DA-7205-4C41-A6C8-D13F85896A0E}" = protocol=17 | dir=in | app=d:\hry\wolfenstein\wolfenstein2009\wwww\mp\wolf2mp.exe |
"{B8DB835A-BB0E-4B8D-807F-13CA5C776285}" = protocol=17 | dir=in | app=e:\hry\gta4\grand theft auto iv\launchgtaiv.exe |
"{BB42371F-1D08-4745-93EE-548AD0B3980A}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\umi.exe |
"{BD6DE60D-436B-465B-B83C-EA0DFD2CC300}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{C1B3DB13-2F1A-49D6-BF16-27D12CE16D08}" = protocol=17 | dir=in | app=e:\hry\bf2.exe |
"{C24A3531-C12C-4EF2-983C-A0A89ACD8081}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe |
"{CC44825F-BB84-447F-8726-9A6228617454}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{CF44004B-4160-4746-8C6F-7CD19D78449C}" = protocol=17 | dir=in | app=e:\hry\battlefield2\bf2.exe |
"{CFC2355C-F107-4022-8F72-549F0342DAA9}" = protocol=6 | dir=out | app=system |
"{D368BDC6-5A85-46B6-826B-60AF1F3E993C}" = protocol=6 | dir=in | app=d:\hry\cod4_2\iw3mp.exe |
"{D3F7E4BB-D92B-4AA4-A9C0-0369F5B21093}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{D96FD371-24D6-42CE-9F09-45684D8C2A9A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D979072D-DB1F-4FEE-9351-7AFF285B0A5B}" = protocol=17 | dir=in | app=e:\hry\cod5\codwaw.exe |
"{DC16C1E4-C265-4E8C-939E-3B24185C1530}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{DC8CE5C7-9031-4EB5-924D-212B31A4E91E}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{DF90625C-1708-4160-ADAF-7EBE3A8A3218}" = protocol=17 | dir=in | app=d:\hry\cod2\codplayer.exe |
"{E8255CCA-F96F-45C1-8286-9BD1521BF070}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe |
"{EA1E3663-5CA5-4694-8C32-FD32CE44C7C5}" = protocol=6 | dir=in | app=d:\hry\cod2\codplayer.exe |
"{EC74313F-9999-4EC9-9A02-B64CFB5385A0}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{EDBAF7EF-C69E-47C7-9A3B-5E07FD9D33EA}" = protocol=17 | dir=in | app=d:\operace flešpoint\redriverlauncher.exe |
"{F1180048-B5BA-43AA-A6E4-4C0BEC4222ED}" = protocol=17 | dir=in | app=c:\programy\pinnaclee12\programs\umi.exe |
"{F11E93DF-DEA6-4185-AE02-9C3B189534AA}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\rm.exe |
"{F41CBEF4-9E4D-4B41-91B5-E89015D3C852}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F5B3233A-6D6E-4D4F-9F0F-A597736C1861}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F67A3F8E-26FE-40AD-B0A8-941C1E333749}" = protocol=6 | dir=in | app=d:\hry\battlefield2\bfbc2updater.exe |
"{FC82B55B-1B9C-430E-AC2F-0FF229DEABAF}" = protocol=6 | dir=in | app=d:\hry\assasins creed2\assassinscreediigame.exe |
"{FCE8CEFA-513B-47E2-9A0F-9C731A350DD3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{04B17291-BA88-4D67-A8B0-04C42C6FF3A6}C:\program files (x86)\edonkey2000\edonkey2000.exe" = protocol=6 | dir=in | app=c:\program files (x86)\edonkey2000\edonkey2000.exe |
"TCP Query User{077105DC-33FA-4F22-AE50-94A0577AD77D}D:\hry\cod...black obs\call of duty - black ops\blackops.exe" = protocol=6 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\blackops.exe |
"TCP Query User{0816156E-00A3-44E5-9E86-A5D39A0DCBB5}C:\programy\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=c:\programy\tmnationsforever\tmforever.exe |
"TCP Query User{0DEEC734-540E-448E-8B36-6BCC0C41AB93}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |
"TCP Query User{0E28CC2A-4B25-4256-A9A1-091E2EE2E068}E:\hry\battlefield2\bf2_w32ded.exe" = protocol=6 | dir=in | app=e:\hry\battlefield2\bf2_w32ded.exe |
"TCP Query User{19CDB103-97F5-4D73-B336-B329ABCDFCEC}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{1F0551B8-BEA6-4782-9627-66A67CE8B561}D:\hry\cod black ops\call of duty - black ops\blackops.exe" = protocol=6 | dir=in | app=d:\hry\cod black ops\call of duty - black ops\blackops.exe |
"TCP Query User{28FC0A4E-BF40-4472-AC3F-573522F6E3A1}D:\hry\cod...black obs\call of duty - black ops\blackopsmp.exe" = protocol=6 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\blackopsmp.exe |
"TCP Query User{2E15E144-B27D-465F-882F-C47DC40028EF}C:\programy\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\programy\winamp\winamp.exe |
"TCP Query User{353A9917-00AD-483E-A9F9-B78336787491}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{3DA1C4A9-613C-42ED-B3B6-27C8BA3F0128}D:\hry\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=d:\hry\tmnationsforever\tmforever.exe |
"TCP Query User{4BAEF56A-E6F5-4ACF-A35E-62AF403A6905}D:\hry\callll2\cod2mp_s.exe" = protocol=6 | dir=in | app=d:\hry\callll2\cod2mp_s.exe |
"TCP Query User{4EAE0677-D737-4E74-97D7-42CD86CAA543}D:\hry\cod2\cod2mp_s.exe" = protocol=6 | dir=in | app=d:\hry\cod2\cod2mp_s.exe |
"TCP Query User{57182EBC-E040-4E8A-9E74-7EA7495E25EC}E:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe" = protocol=6 | dir=in | app=e:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe |
"TCP Query User{5B7E8431-6C59-4822-BDE5-E7D451F9E905}E:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe" = protocol=6 | dir=in | app=e:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe |
"TCP Query User{5E46CE6F-2C93-4A69-A69D-2A8215D85604}D:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackopsmp.exe" = protocol=6 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackopsmp.exe |
"TCP Query User{5EBBD1E5-5E8D-4659-A25A-EE1E606DAA46}D:\hry\operation flashpoint red diver\operace flešpoint\redriver.exe" = protocol=6 | dir=in | app=d:\hry\operation flashpoint red diver\operace flešpoint\redriver.exe |
"TCP Query User{667BD0DC-9463-4A1D-BBD3-68577BD058CB}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"TCP Query User{67C249AD-1782-4BF4-A635-002AEED8F602}C:\users\honzik\appdata\local\temp\keygen.exe" = protocol=6 | dir=in | app=c:\users\honzik\appdata\local\temp\keygen.exe |
"TCP Query User{69919B88-69A7-4A72-B7BE-8A17121D1D89}E:\hry\crysis2\bin32\crysis2.exe" = protocol=6 | dir=in | app=e:\hry\crysis2\bin32\crysis2.exe |
"TCP Query User{6A98FD20-7D17-4BC0-BA76-9A9B0AECA3C4}C:\program files (x86)\hlsw\hlsw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hlsw\hlsw.exe |
"TCP Query User{6FE91472-2430-4EB6-B43B-427D7112B5EE}D:\hry\operace flešpoint\redriver.exe" = protocol=6 | dir=in | app=d:\hry\operace flešpoint\redriver.exe |
"TCP Query User{7A113656-7CC1-4C83-935B-8AB6A61D4DD5}E:\hry\cod5\codwaw.exe" = protocol=6 | dir=in | app=e:\hry\cod5\codwaw.exe |
"TCP Query User{8D54AB89-15F6-4536-9362-3A32C44F730A}C:\program files\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe |
"TCP Query User{931A2C85-7492-4A03-A807-85F484C2C840}D:\hry\tmunitedforever\tmforever.exe" = protocol=6 | dir=in | app=d:\hry\tmunitedforever\tmforever.exe |
"TCP Query User{97209FA9-D35A-4ADC-9194-72DEB8FB0B33}D:\hry\flatout2\flatout2.exe" = protocol=6 | dir=in | app=d:\hry\flatout2\flatout2.exe |
"TCP Query User{A27AA360-E004-46CD-9FA9-4A25B308A835}D:\hry\age of empires 2\empires2.exe" = protocol=6 | dir=in | app=d:\hry\age of empires 2\empires2.exe |
"TCP Query User{A2925B28-E4C9-4177-BD4E-669499EFFA44}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{B5BE80D5-C376-481E-8586-D5D265368E16}D:\hry\cod...black obs\blackops.exe" = protocol=6 | dir=in | app=d:\hry\cod...black obs\blackops.exe |
"TCP Query User{B924A738-531F-4ADF-B728-AA7D4EBC419A}E:\stažené soubory\call of duty 5 world at war\setup\data\codwawmp.exe" = protocol=6 | dir=in | app=e:\stažené soubory\call of duty 5 world at war\setup\data\codwawmp.exe |
"TCP Query User{C1CA4961-87BE-4C16-9247-603E7F7A9A36}E:\hry\tmunitedforever\tmforever.exe" = protocol=6 | dir=in | app=e:\hry\tmunitedforever\tmforever.exe |
"TCP Query User{C2316335-55A3-4AB3-B44A-3269397925DC}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
"TCP Query User{C28B87BF-EF4C-43C0-AA11-FFADEBA57D0C}D:\hry\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=d:\hry\tmnationsforever\tmforever.exe |
"TCP Query User{C7EF9724-300A-48DD-9CBD-EB8F9EFE6A1F}E:\hry\gta4\grand theft auto iv\gtaiv.exe" = protocol=6 | dir=in | app=e:\hry\gta4\grand theft auto iv\gtaiv.exe |
"TCP Query User{CA2963BF-62B2-423D-B9E6-E2D3BE43DC4F}D:\hry\fifa 2012\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\hry\fifa 2012\fifa 12\game\fifa.exe |
"TCP Query User{D921E9F3-105B-4888-982B-BB1B92FAE87A}D:\hry\cod black ops\call of duty - black ops\blackops.exe" = protocol=6 | dir=in | app=d:\hry\cod black ops\call of duty - black ops\blackops.exe |
"TCP Query User{DE8AEE47-A058-4516-A20C-DCD7F8719914}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{EB198B49-2D01-4A76-B801-65C21E72CEB9}E:\hry\tmunitedforever\tmforever.exe" = protocol=6 | dir=in | app=e:\hry\tmunitedforever\tmforever.exe |
"TCP Query User{F012059F-0DC4-4085-8B39-06D3F0375C08}D:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackops.exe" = protocol=6 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackops.exe |
"TCP Query User{F7313ED7-85ED-4367-87C5-C310300D6EF7}C:\programy\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\programy\winamp\winamp.exe |
"UDP Query User{063A299E-EDBC-493A-8CFF-C257E2BFE430}D:\hry\age of empires 2\empires2.exe" = protocol=17 | dir=in | app=d:\hry\age of empires 2\empires2.exe |
"UDP Query User{09DEBDD2-1670-4663-AABE-9B8E08E3C55E}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
"UDP Query User{0B517BA6-8550-4480-B592-8A18E08D6BED}E:\hry\crysis2\bin32\crysis2.exe" = protocol=17 | dir=in | app=e:\hry\crysis2\bin32\crysis2.exe |
"UDP Query User{1CB8CBA7-FF6F-424D-9EA7-0E61FB0F2A01}D:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackops.exe" = protocol=17 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackops.exe |
"UDP Query User{3756F54B-73C9-4981-8A34-20AD5895BF1A}D:\hry\tmunitedforever\tmforever.exe" = protocol=17 | dir=in | app=d:\hry\tmunitedforever\tmforever.exe |
"UDP Query User{3B341E74-0916-4E22-8282-C6805ECC9C38}D:\hry\fifa 2012\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\hry\fifa 2012\fifa 12\game\fifa.exe |
"UDP Query User{3C86D93C-99BA-4C1B-9D88-85813E48AB22}D:\hry\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=d:\hry\tmnationsforever\tmforever.exe |
"UDP Query User{3F777863-D9D1-45F1-B8AC-852005B15664}C:\users\honzik\appdata\local\temp\keygen.exe" = protocol=17 | dir=in | app=c:\users\honzik\appdata\local\temp\keygen.exe |
"UDP Query User{4080539E-D87A-45C4-AB29-F17F81E02B40}D:\hry\cod...black obs\blackops.exe" = protocol=17 | dir=in | app=d:\hry\cod...black obs\blackops.exe |
"UDP Query User{4BFA13FD-5585-42A3-845F-C2DCAE6479B1}D:\hry\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=d:\hry\tmnationsforever\tmforever.exe |
"UDP Query User{4D0814FA-928D-491F-8989-070F0AA9F5FD}D:\hry\cod...black obs\call of duty - black ops\blackops.exe" = protocol=17 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\blackops.exe |
"UDP Query User{5231BA1A-B7DD-4A2E-8E79-51DB0755FD23}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{5B43552E-2DAA-4AB4-A489-8B565E206117}D:\hry\callll2\cod2mp_s.exe" = protocol=17 | dir=in | app=d:\hry\callll2\cod2mp_s.exe |
"UDP Query User{6734B537-1FF5-46DB-B6AE-65DEF7A2BF2E}D:\hry\cod black ops\call of duty - black ops\blackops.exe" = protocol=17 | dir=in | app=d:\hry\cod black ops\call of duty - black ops\blackops.exe |
"UDP Query User{6B0EF63C-FF14-413D-84A2-16A3CBEDCE3F}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{6DA7AA59-960C-4C47-A055-6D79F9B7F856}C:\program files\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe |
"UDP Query User{6E0E60B3-60DB-44DB-80EE-493E25D2E0C2}E:\hry\battlefield2\bf2_w32ded.exe" = protocol=17 | dir=in | app=e:\hry\battlefield2\bf2_w32ded.exe |
"UDP Query User{75A4020E-9EBD-449A-9353-23FD98F6E51D}E:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe" = protocol=17 | dir=in | app=e:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe |
"UDP Query User{75EE9565-21DB-4546-84B5-C69C63959887}D:\hry\operation flashpoint red diver\operace flešpoint\redriver.exe" = protocol=17 | dir=in | app=d:\hry\operation flashpoint red diver\operace flešpoint\redriver.exe |
"UDP Query User{765C6102-BF3F-4E0C-8E50-2672FFB997E4}E:\hry\tmunitedforever\tmforever.exe" = protocol=17 | dir=in | app=e:\hry\tmunitedforever\tmforever.exe |
"UDP Query User{7FAE19A3-A475-4352-9F06-FC762D8D06CD}C:\programy\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=c:\programy\tmnationsforever\tmforever.exe |
"UDP Query User{8797585A-0F6D-4635-BDBE-CD56D6DB1E52}E:\hry\gta4\grand theft auto iv\gtaiv.exe" = protocol=17 | dir=in | app=e:\hry\gta4\grand theft auto iv\gtaiv.exe |
"UDP Query User{A22D2D99-5DDE-4E1D-8708-9E8008DA59DD}C:\program files (x86)\edonkey2000\edonkey2000.exe" = protocol=17 | dir=in | app=c:\program files (x86)\edonkey2000\edonkey2000.exe |
"UDP Query User{A42867C0-3AAD-4937-8273-955CE6DD8647}C:\programy\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\programy\winamp\winamp.exe |
"UDP Query User{AABB3D04-F286-4781-8977-59CF0DE9BD00}E:\stažené soubory\call of duty 5 world at war\setup\data\codwawmp.exe" = protocol=17 | dir=in | app=e:\stažené soubory\call of duty 5 world at war\setup\data\codwawmp.exe |
"UDP Query User{AC4322DD-4AF2-49A6-8403-90A7581D97DA}D:\hry\operace flešpoint\redriver.exe" = protocol=17 | dir=in | app=d:\hry\operace flešpoint\redriver.exe |
"UDP Query User{B3F99EAB-E9F7-4AE3-9A3D-4E99D9C1DDD5}C:\program files (x86)\hlsw\hlsw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hlsw\hlsw.exe |
"UDP Query User{B414B3F4-3FAB-4016-88D3-0133BFD7B40B}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{BC57F70E-9573-4E94-B165-E8F21CB8274C}D:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackopsmp.exe" = protocol=17 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\call of duty - black ops\blackopsmp.exe |
"UDP Query User{C7F3AF72-63B7-4C4B-BC75-191180FD763C}C:\programy\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\programy\winamp\winamp.exe |
"UDP Query User{C94B2298-04B7-494D-AC02-341D09C82A4E}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{D686B858-D823-4D97-A848-ADB831ADBA28}E:\hry\cod5\codwaw.exe" = protocol=17 | dir=in | app=e:\hry\cod5\codwaw.exe |
"UDP Query User{DACC9F8D-7E81-4829-A64B-51E6B7A33116}D:\hry\cod2\cod2mp_s.exe" = protocol=17 | dir=in | app=d:\hry\cod2\cod2mp_s.exe |
"UDP Query User{DDB19BF4-2B05-4CCE-BAA4-B85B4A700100}E:\hry\tmunitedforever\tmforever.exe" = protocol=17 | dir=in | app=e:\hry\tmunitedforever\tmforever.exe |
"UDP Query User{E12BC274-D4E4-468A-9A57-6E6F399B81FA}E:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe" = protocol=17 | dir=in | app=e:\hry\red orchestra 2 heroes of stalingrad\binaries\win32\rogame.exe |
"UDP Query User{EB643634-CA02-417B-9100-5AB8BF6F66CC}D:\hry\flatout2\flatout2.exe" = protocol=17 | dir=in | app=d:\hry\flatout2\flatout2.exe |
"UDP Query User{F32E192D-BB9D-4506-ABB6-EE7B7369B174}D:\hry\cod...black obs\call of duty - black ops\blackopsmp.exe" = protocol=17 | dir=in | app=d:\hry\cod...black obs\call of duty - black ops\blackopsmp.exe |
"UDP Query User{F7D78DEB-5C1D-4299-9AC4-EC5185E22041}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |
"UDP Query User{F837C744-3FF6-4808-9931-F5D831ABFD25}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{F842D4C0-1956-4306-9CC6-1F0171887A53}D:\hry\cod black ops\call of duty - black ops\blackops.exe" = protocol=17 | dir=in | app=d:\hry\cod black ops\call of duty - black ops\blackops.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}" = AMD Accelerated Video Transcoding
"{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{26A24AE4-039D-4CA4-87B4-2F86416031FF}" = Java(TM) 6 Update 31 (64-bit)
"{26A24AE4-039D-4CA4-87B4-2F86417004FF}" = Java(TM) 7 Update 4 (64-bit)
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4FEDA15F-C426-5241-0794-FDC432C67710}" = AMD Drag and Drop Transcoding
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{52E5D8A7-B129-4A29-AD4B-EBB749DCC3A3}_is1" = GamePark klient 2.0.9.0
"{5783F2D7-9001-0405-1102-0060B0CE6BBA}" = AutoCAD 2011 Language Pack - česky
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6C2E334F-37F5-C312-53BA-1482F9A6FD4D}" = ccc-utility64
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{7F4DD591-1564-0409-0000-7107D70F3DB4}" = Autodesk Inventor Professional 2011
"{7F4DD591-1564-0409-0001-7107D70F3DB4}" = Autodesk Inventor Professional 2011 Jazykový balíček – čeština
"{81D00339-968D-15D1-3499-8431658E896F}" = AMD Catalyst Install Manager
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-0015-0405-1000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0015-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0405-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0016-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0405-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0018-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0405-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-0019-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0405-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001A-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0405-1000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001B-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0405-1000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{AEC2C00D-1E7E-45E3-9058-81EA2446B3CD}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUSR_{70A3169E-288F-454F-A08D-20DF66639B50}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-1000-0000000FF1CE}_Office14.PROPLUSR_{0242505C-4E90-407F-9299-B5B275F50D86}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-041B-1000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-001F-041B-1000-0000000FF1CE}_Office14.PROPLUSR_{4B806706-B352-42E8-8C8B-5CEBCEDBC4E0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0405-1000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-002C-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{715203B3-AD16-41A4-B13C-E1065EAB8963}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010
"{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{E8B6D35B-0B6F-4DCE-9493-859BF3809A7F}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0043-0405-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Czech) 2010
"{90140000-0043-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{15D45352-C443-406A-9DF2-EF4A750A40CF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0044-0405-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-0044-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0405-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-006E-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{4B8654FE-410D-462C-9B3C-09D031BF4534}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0405-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00A1-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00BA-0405-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{90140000-00BA-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{91140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{9387E5ED-7D5D-A744-6BDC-8F6CB26DE09A}" = AMD Fuel
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{ABCF7983-3860-318E-EB24-E89E8AEC1967}" = ATI AVIVO64 Codecs
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{E6F5D8BE-0B00-6DD9-18F9-D4045798FCBE}" = AMD Media Foundation Decoders
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Autodesk Inventor Professional 2011" = Autodesk Inventor Professional 2011 Čeština
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Office14.PROPLUSR" = Microsoft Office Professional Plus 2010
"WinRAR archiver" = WinRAR

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01496C89-6117-AD97-3CB3-98AF2026070C}" = CCC Help German
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{0486991B-63F4-5106-06CE-404D7BA55041}" = CCC Help Italian
"{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
"{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
"{177A3BC5-ECD3-BFF1-4D87-C4B417924DF2}" = CCC Help Russian
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{19D368B2-5601-007B-A296-535706E00D97}" = CCC Help English
"{1AA94747-3BF6-4237-9E1A-7B3067738FE1}" = Max Payne 3
"{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
"{262BF2CD-601D-4F43-919C-4B00B1D1F338}" = Boris Graffiti
"{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java(TM) 6 Update 29
"{278FA289-F502-D888-A3BA-5FA10308AAAD}" = CCC Help Danish
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{434D083E-7E9A-4D3A-914B-121000008100}" = Operation Flashpoint ®: Red River
"{44F77218-4BBD-1B74-88B7-FC302868F2B3}" = CCC Help Japanese
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{489BC3B4-AEF9-E14A-11BC-B70FDE9D543D}" = CCC Help Chinese Traditional
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A85AE1B-9727-261D-9EAF-07C1AECCF977}" = CCC Help Turkish
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{502699FF-F586-54B1-91E8-E85D9FAE0D6D}" = CCC Help Greek
"{53EF1C4D-0705-98F2-1889-A69BBF9F03F3}" = CCC Help Thai
"{548A4EF3-BD97-0813-B469-E1E2FC9DE487}" = CCC Help Korean
"{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01)
"{55533224-CAD0-39B5-6297-E1B2D1D8F176}" = AMD VISION Engine Control Center
"{5783F2D7-0301-0405-0002-0060B0CE6BBA}" = AutoCAD 2005 - Český
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{590828E0-9BA6-3E4D-8491-A1D9CC3EB8CE}" = CCC Help French
"{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{6563FAF5-84F9-0A35-C032-182EBC4C3BDB}" = CCC Help Finnish
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FB248E-690D-434F-94A7-248D5F1ECD70}" = AMD OverDrive
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6AC5F630-9453-433D-90FF-BB3A8E4F8960}" = FileLab Plugin 1.1.33
"{6C472DFC-6D44-4947-9E1A-F79A2469D953}" = eTesty - autoškola
"{6D46F639-5F2F-90F3-4B60-EB2EF264B82E}" = CCC Help Spanish
"{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
"{70210CF8-CAB1-8FEB-D964-C33AFE18730B}" = CCC Help Czech
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{7CAC6A44-C3DE-4153-ACA6-7524602C789E}" = Facebook Video Calling 1.2.0.159
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
"{8B1AEC85-4507-28BD-F3BA-4A5D732752E7}" = CCC Help Hungarian
"{8C5ACED4-34D3-23BB-F90E-2F90420321BC}" = Catalyst Control Center Localization All
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{975951E7-14D0-49AF-A630-89680D12D7F6}" = Autodesk Material Library 2011 Medium Image library
"{987B04C4-B5AC-4AD6-A7E9-8D681085B850}" = AMD USB Filter Driver
"{99BEB67F-B288-44F5-8B2A-23F5A52FA1AE}_is1" = Universal AntiCheat 3 v1.064
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
"{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}" = Autodesk Material Library 2011
"{A137D52E-FA96-4815-85F5-E7B8F66837DB}" = Race Driver 3
"{A3DAD349-E48E-AE45-3F26-7B80A4FFCD26}" = Catalyst Control Center InstallProxy
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AADD1C8F-D59F-4D55-A726-768C71A205A8}" = Pinnacle Studio 14
"{AC76BA86-7AD7-1029-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Czech
"{B0B1A8A5-4711-BB6C-DD59-9794AD928368}" = CCC Help Dutch
"{B33D2348-2938-1A03-0CD3-E6F7101244E0}" = CCC Help Polish
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B7C8D838-9C3A-1177-B80A-E3C512FD8AF5}" = CCC Help Swedish
"{C72D7008-266D-4DD8-BF3C-296B736127F6}" = Mafia
"{CD1E078C-A6B9-47DA-B035-6365C85C7832}" = Autodesk Material Library 2011 Base Image library
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D1860E6E-520E-4380-8433-E58E8F88B473}" = Pinnacle Studio 12 Ultimate Plugins
"{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.12.327
"{DBECFA83-42DC-4585-A970-A764AB01A956}" = Call Of Duty(R) 2
"{DDCB737A-EEC8-3815-42DA-69011A55E3E5}" = Catalyst Control Center Graphics Previews Common
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E170E984-6B20-79C2-1E9F-0256EC5ADFB4}" = CCC Help Chinese Standard
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E866E52C-1F56-4CCF-0071-CA915F8CFEDA}" = CCC Help Norwegian
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10
"{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{F5D245CC-C332-1E8E-CCB1-75E0C3C4D6F1}" = CCC Help Portuguese
"{F8AE2978-3A1B-0542-C3FE-8941F3C016C2}" = HydraVision
"{F9B37992-968C-4264-8449-489032FC28DE}" = Wolfenstein
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Age of Empires 2.0" = Microsoft Age of Empires II
"Any Video Converter_is1" = Any Video Converter 3.3.0
"aTube Catcher" = aTube Catcher
"Autodesk DWF Viewer" = Autodesk DWF Viewer
"avast" = avast! Free Antivirus
"Call of Duty Modern Warfare 2_is1" = Call of Duty Modern Warfare 2
"Call of Duty: Black Ops_is1" = Call of Duty: Black Ops
"CCleaner" = CCleaner
"Clownfish" = Clownfish for Skype
"DivX Setup" = DivX Setup
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50
"EXPStudio Audio Editor 3.8" = EXPStudio Audio Editor 3.8
"FIFA 12 (c) EA_is1" = FIFA 12 (c) EA version 1
"FlatOut Ultimate Carnage" = FlatOut Ultimate Carnage
"Fraps" = Fraps
"Free CD to MP3 Converter" = Free CD to MP3 Converter
"Free YouTube Downloader Converter" = Free YouTube Downloader Converter
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.10.14.1206
"GameParkClient_is1" = GamePark
"GFWL_{434D083E-7E9A-4D3A-914B-121000008100}" = Operation Flashpoint ®: Red River
"Google Chrome" = Google Chrome
"HLSW_is1" = HLSW v1.3.1
"i-Charger_is1" = i-Charger
"InstallShield_{2BF0AE92-C3BC-4112-9066-1546342B1FAE}" = Call of Duty(R) - World at War(TM) 1.2 Patch
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{AFAE2B15-89A0-4215-A030-F7B5B478886B}" = Call of Duty(R) - World at War(TM) 1.1 Patch
"InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"InstallShield_{F9B37992-968C-4264-8449-489032FC28DE}" = Wolfenstein
"Logitech Vid" = Logitech Vid HD
"Mafia II_is1" = Mafia II
"Magic Bullet Looks Studio" = Magic Bullet Looks Studio
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.60.0.1800
"Mozilla Firefox 15.0 (x86 cs)" = Mozilla Firefox 15.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Mp3 Knife_is1" = Mp3 Knife 3.2
"Opentab" = OpentabUninstall
"PowerISO" = PowerISO
"PunkBusterSvc" = PunkBuster Services
"Red Orchestra 2 Heroes of Stalingrad_is1" = Red Orchestra 2 Heroes of Stalingrad
"Rockstar Games Social Club" = Rockstar Games Social Club
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"The KMPlayer" = The KMPlayer (remove only)
"TmUnitedForever_is1" = TmUnitedForever Update 2010-03-15
"TopSpace" = Topspace Windows IE Platform
"uTorrent" = µTorrent
"uTorrentBar Toolbar" = uTorrentBar Toolbar
"uTorrentControl_v2 Toolbar" = uTorrentControl_v2 Toolbar
"VirtualCloneDrive" = VirtualCloneDrive
"Winamp" = Winamp
"WinGimp-2.0_is1" = GIMP 2.6.8
"WinLiveSuite" = Windows Live Essentials

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-38041712-215416969-1754313506-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Mozilla Firefox 15.0.1 (x86 cs)" = Mozilla Firefox 15.0.1 (x86 cs)
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"Winamp Detect" = Winamp Detector Plug-in

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 28.2.2012 11:56:37 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: C:\Program Files (x86)\Skype\Toolbars\Internet
Explorer\SkypeIEPluginBroker.exe. Chyba v souboru manifestu nebo zásad C:\Program
Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe na řádku 2.
V
manifestu není povoleno více prvků requestedPrivileges.

Error - 28.2.2012 12:15:41 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: C:\Program Files (x86)\Skype\Toolbars\Internet
Explorer\SkypeIEPluginBroker.exe. Chyba v souboru manifestu nebo zásad C:\Program
Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe na řádku 2.
V
manifestu není povoleno více prvků requestedPrivileges.

Error - 28.2.2012 12:18:59 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro d:\Hry\wolfenstein\wolfenstein2009\wwww\MP\serverlauncher.exe
se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku . Verze součásti požadovaná
aplikací je v konfliktu s jinou verzí součásti, která je již aktivní. Konfliktní
součásti: Součást 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Součást
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error - 1.3.2012 13:00:50 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: C:\Program Files (x86)\Skype\Toolbars\Internet
Explorer\SkypeIEPluginBroker.exe. Chyba v souboru manifestu nebo zásad C:\Program
Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe na řádku 2.
V
manifestu není povoleno více prvků requestedPrivileges.

Error - 1.3.2012 13:04:05 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro d:\Hry\wolfenstein\wolfenstein2009\wwww\MP\serverlauncher.exe
se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku . Verze součásti požadovaná
aplikací je v konfliktu s jinou verzí součásti, která je již aktivní. Konfliktní
součásti: Součást 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Součást
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error - 2.3.2012 7:32:34 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: C:\Program Files (x86)\Skype\Toolbars\Internet
Explorer\SkypeIEPluginBroker.exe. Chyba v souboru manifestu nebo zásad C:\Program
Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe na řádku 2.
V
manifestu není povoleno více prvků requestedPrivileges.

Error - 2.3.2012 7:35:47 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro d:\Hry\wolfenstein\wolfenstein2009\wwww\MP\serverlauncher.exe
se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku . Verze součásti požadovaná
aplikací je v konfliktu s jinou verzí součásti, která je již aktivní. Konfliktní
součásti: Součást 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Součást
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error - 4.3.2012 7:56:19 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: C:\Program Files (x86)\Skype\Toolbars\Internet
Explorer\SkypeIEPluginBroker.exe. Chyba v souboru manifestu nebo zásad C:\Program
Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe na řádku 2.
V
manifestu není povoleno více prvků requestedPrivileges.

Error - 6.3.2012 12:04:07 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: C:\Program Files (x86)\Skype\Toolbars\Internet
Explorer\SkypeIEPluginBroker.exe. Chyba v souboru manifestu nebo zásad C:\Program
Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe na řádku 2.
V
manifestu není povoleno více prvků requestedPrivileges.

Error - 6.3.2012 12:07:35 | Computer Name = Honzik-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro d:\Hry\wolfenstein\wolfenstein2009\wwww\MP\serverlauncher.exe
se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku . Verze součásti požadovaná
aplikací je v konfliktu s jinou verzí součásti, která je již aktivní. Konfliktní
součásti: Součást 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Součást
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

[ System Events ]
Error - 18.8.2012 7:29:21 | Computer Name = Honzik-PC | Source = cdrom | ID = 262151
Description = Zařízení \Device\CdRom1 má chybný blok.

Error - 18.8.2012 7:29:25 | Computer Name = Honzik-PC | Source = cdrom | ID = 262151
Description = Zařízení \Device\CdRom1 má chybný blok.

Error - 18.8.2012 7:29:29 | Computer Name = Honzik-PC | Source = cdrom | ID = 262151
Description = Zařízení \Device\CdRom1 má chybný blok.

Error - 18.8.2012 7:29:33 | Computer Name = Honzik-PC | Source = cdrom | ID = 262151
Description = Zařízení \Device\CdRom1 má chybný blok.

Error - 18.8.2012 7:29:36 | Computer Name = Honzik-PC | Source = cdrom | ID = 262151
Description = Zařízení \Device\CdRom1 má chybný blok.

Error - 18.8.2012 7:29:40 | Computer Name = Honzik-PC | Source = cdrom | ID = 262151
Description = Zařízení \Device\CdRom1 má chybný blok.

Error - 18.8.2012 7:29:43 | Computer Name = Honzik-PC | Source = cdrom | ID = 262151
Description = Zařízení \Device\CdRom1 má chybný blok.

Error - 8.9.2012 5:00:21 | Computer Name = Honzik-PC | Source = Service Control Manager | ID = 7030
Description = Služba PandoraService je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.

Error - 13.9.2012 9:25:37 | Computer Name = Honzik-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (15:18:54, ?13.?9.?2012) bylo neočekávané.

Error - 24.9.2012 18:04:49 | Computer Name = Honzik-PC | Source = DCOM | ID = 10010
Description =


< End of report >

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#6 Příspěvek od vyosek »

Zeptam se, pouzivate legalni operacni system = zakoupena licence na windows :???:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Cvrkot_
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 12 čer 2011 17:34

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#7 Příspěvek od Cvrkot_ »

Na jednom PC máme zakoupený legální windows, na tomhle pravděpodobně ne, instaloval to kamarád. Znamená to, že končí naše spolupráce ? :o

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#8 Příspěvek od vyosek »

Pravidla fora http://forum.viry.cz/viewtopic.php?f=12&t=115512 hovori zcela jasne
Pomáhat NELZE:
2) Pokud stroj uživatele prokazatelně obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.)
:wink:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Cvrkot_
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 12 čer 2011 17:34

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#9 Příspěvek od Cvrkot_ »

Ok fajn, ale i tak díky :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o preventivku-zamrzá mozilla, videa na youtube

#10 Příspěvek od vyosek »

Nemate zac :)

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno