
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
preventivní kontrola logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
preventivní kontrola logu
Logfile of random's system information tool 1.09 (written by random/random)
Run by tomas at 2012-11-25 13:48:23
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 41 GB (4%) free of 954 GB
Total RAM: 3071 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:48:37, on 25.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16448)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
C:\Program Files (x86)\Protected Search\ProtectedSearch.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files\trend micro\tomas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si= ... bs=true&q=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.certified-toolbar.com?si= ... e&tid=2958
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si= ... bs=true&q=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.certified-toolbar.com?si= ... e&tid=2958
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
O2 - BHO: Certified Toolbar - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Certified Toolbar - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Steam] "C:\_hry\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\tomas\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {a9ff5a45-b433-4940-9299-de737a9c11f6} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: DokanMounter - Unknown owner - C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 9585 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe"
"C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe"
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe" -nogui
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {5F473DA4-9321-4936-9C8F-29E0D69A27BF}
C:\Windows\SysWOW64\PnkBstrA.exe
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Protected Search\ProtectedSearch.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\System32\alg.exe
WLIDSvcM.exe 2524
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Opera\opera.exe"
"C:\Users\tomas\Desktop\Nová složka (4)\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default
prefs.js - "browser.startup.homepage" - "http://search.certified-toolbar.com?si= ... e&tid=2958"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, multipletab@piro.sakura.ne.jp:0.6.2011020301, {1280606b-2510-4fe0-97ef-9b5a22eafe30}:0.6.7.4, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7"
prefs.js - "browser.search.useDBForOrder" - false
prefs.js - "keyword.URL" - "http://search.certified-toolbar.com?si= ... bs=true&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@wolfram.com/Mathematica]
"Description"=Wolfram Mathematica Plug-in
"Path"=C:\Program Files (x86)\Common Files\Wolfram Research\Browser\8.0.1.2063897\npmathplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
NPOFF12.DLL
nppdf32.DEU
nppdf32.dll
nppdf32.FRA
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
Web Search.xml
wikipedia-cz.xml
C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\
battlefieldplay4free@ea.com
multipletab@piro.sakura.ne.jp
{624ad42d-e714-46b4-843e-c7094f740b0f}
{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\searchplugins\
Web Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2011-12-14 79240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0de094f5-e894-48c7-b16f-338d64674721}]
Certified Toolbar - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll [2012-11-08 1031752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-10-25 340384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0de094f5-e894-48c7-b16f-338d64674721} - Certified Toolbar - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll [2012-11-08 1031752]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-09-09 12856936]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\_hry\Steam\Steam.exe -silent []
"Google Update"=C:\Users\tomas\AppData\Local\Google\Update\GoogleUpdate.exe [2011-05-12 136176]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-02-13 3481408]
"Pando Media Booster"=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2012-11-17 3093624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2010-10-25 821144]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Speed Launcher]
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2010-10-25 36760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-10-25 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverUpdaterPro]
C:\Program Files (x86)\iXi Tools\Driver Updater Pro\DriverUpdaterPro.exe -t []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\tomas\AppData\Local\Google\Update\GoogleUpdate.exe [2011-05-12 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [2010-05-25 619008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-11-11 1451520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime Alternative\QTTask.exe [2010-03-17 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RESTART_STICKY_NOTES]
C:\Windows\System32\StikyNot.exe [2009-07-14 427520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"amd_dc_opt"=C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-08-06 642216]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2012-06-03 249344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2012-11-23 16:29:32 ----D---- C:\Users\tomas\AppData\Roaming\TP-LINK
2012-11-23 16:29:05 ----D---- C:\Program Files (x86)\TP-LINK
2012-11-23 16:27:37 ----A---- C:\Windows\system32\drivers\athurx.sys
2012-11-23 16:27:37 ----A---- C:\Windows\system32\athurx.sys
2012-11-23 16:26:36 ----D---- C:\ProgramData\TP-LINK
2012-11-17 10:29:59 ----D---- C:\Program Files (x86)\Protected Search
2012-11-17 10:29:55 ----D---- C:\Users\tomas\AppData\Roaming\CertifiedToolbar
2012-11-17 10:29:55 ----D---- C:\Program Files (x86)\CertifiedToolbar
2012-11-17 10:29:55 ----A---- C:\Windows\Launcher.exe
2012-11-05 20:13:15 ----A---- C:\Windows\Rtcwplat.INI
======List of files/folders modified in the last 1 month======
2012-11-25 13:48:35 ----D---- C:\Windows\Prefetch
2012-11-25 13:48:28 ----D---- C:\Windows\temp
2012-11-25 13:48:25 ----D---- C:\Program Files\trend micro
2012-11-25 12:00:13 ----D---- C:\Program Files (x86)\uTorrent
2012-11-25 00:11:55 ----D---- C:\Windows\system32\config
2012-11-25 00:00:28 ----SHD---- C:\System Volume Information
2012-11-24 13:38:55 ----D---- C:\_download
2012-11-24 09:38:41 ----D---- C:\Windows\System32
2012-11-24 09:38:41 ----D---- C:\Windows\inf
2012-11-24 09:38:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-11-24 09:31:27 ----D---- C:\_filmy
2012-11-23 16:35:50 ----D---- C:\Program Files (x86)\Opera
2012-11-23 16:30:27 ----SD---- C:\ProgramData\Microsoft
2012-11-23 16:29:05 ----RD---- C:\Program Files (x86)
2012-11-23 16:29:05 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-11-23 16:28:04 ----D---- C:\Windows\system32\drivers
2012-11-23 16:28:03 ----D---- C:\Windows\system32\DriverStore
2012-11-23 16:28:03 ----D---- C:\Windows\system32\catroot
2012-11-23 16:27:39 ----D---- C:\Temp
2012-11-23 16:26:36 ----D---- C:\ProgramData
2012-11-17 21:54:24 ----D---- C:\ProgramData\PMB Files
2012-11-17 13:07:55 ----D---- C:\_hry
2012-11-17 10:30:01 ----D---- C:\Windows\system32\Tasks
2012-11-17 10:29:55 ----D---- C:\Windows
2012-11-17 09:14:09 ----A---- C:\Windows\NeroDigital.ini
2012-11-07 01:53:09 ----D---- C:\ProgramData\Ubisoft
2012-11-05 21:02:30 ----D---- C:\_fotky
2012-11-05 20:14:14 ----D---- C:\Windows\SysWOW64
2012-11-05 13:17:13 ----D---- C:\Windows\system32\catroot2
2012-11-04 23:48:03 ----D---- C:\_věci
2012-10-30 13:00:15 ----A---- C:\Windows\SOF.INI
2012-10-29 20:15:26 ----D---- C:\_hudba
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-03-19 564792]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-06-27 88632]
R2 Dokan;Dokan; \??\C:\Windows\system32\drivers\dokan.sys [2011-01-10 120408]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-12-23 43168]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-07-28 10278912]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-07-28 368640]
R3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2011-04-20 1930240]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2011-05-09 33344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-09-13 3076456]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-03-06 310728]
S3 akjsg1ji;akjsg1ji; C:\Windows\system32\drivers\akjsg1ji.sys []
S3 amw8r3n0;amw8r3n0; C:\Windows\system32\drivers\amw8r3n0.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cpuz130;cpuz130; \??\C:\Users\tomas\AppData\Local\Temp\cpuz130\cpuz_x64.sys []
S3 cpuz135;cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files (x86)\MediaCoder\SysInfoX64.sys []
S3 nmwcdcx64;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbox64.sys [2009-10-06 25088]
S3 nmwcdx64;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmbx64.sys [2009-10-06 18944]
S3 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RTCore64;RTCore64; \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2010-05-27 14648]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\WNt500x64\Sandra.sys [2009-08-07 23112]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2009-10-06 8704]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys [2009-10-06 8704]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-07-28 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-08-06 361984]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DokanMounter;DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [2011-01-10 14848]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2011-12-31 75136]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2009-07-24 189728]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-09 136176]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [2011-12-09 135584]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-09 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2009-10-27 657408]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-10-09 1255736]
S4 Desura Install Service;Desura Install Service; C:\Program Files (x86)\Common Files\Desura\desura_service.exe [2011-08-15 131400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SandraAgentSrv;SiSoftware Deployment Agent Service; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\RpcAgentSrv.exe [2009-08-10 93848]
S4 TeamViewer6;TeamViewer 6; C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-08-30 2358656]
-----------------EOF-----------------
Run by tomas at 2012-11-25 13:48:23
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 41 GB (4%) free of 954 GB
Total RAM: 3071 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:48:37, on 25.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16448)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
C:\Program Files (x86)\Protected Search\ProtectedSearch.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files\trend micro\tomas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si= ... bs=true&q=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.certified-toolbar.com?si= ... e&tid=2958
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si= ... bs=true&q=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.certified-toolbar.com?si= ... e&tid=2958
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
O2 - BHO: Certified Toolbar - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Certified Toolbar - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Steam] "C:\_hry\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\tomas\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {a9ff5a45-b433-4940-9299-de737a9c11f6} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: DokanMounter - Unknown owner - C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 9585 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe"
"C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe"
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe" -nogui
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {5F473DA4-9321-4936-9C8F-29E0D69A27BF}
C:\Windows\SysWOW64\PnkBstrA.exe
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Protected Search\ProtectedSearch.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\System32\alg.exe
WLIDSvcM.exe 2524
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Opera\opera.exe"
"C:\Users\tomas\Desktop\Nová složka (4)\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default
prefs.js - "browser.startup.homepage" - "http://search.certified-toolbar.com?si= ... e&tid=2958"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, multipletab@piro.sakura.ne.jp:0.6.2011020301, {1280606b-2510-4fe0-97ef-9b5a22eafe30}:0.6.7.4, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7"
prefs.js - "browser.search.useDBForOrder" - false
prefs.js - "keyword.URL" - "http://search.certified-toolbar.com?si= ... bs=true&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@wolfram.com/Mathematica]
"Description"=Wolfram Mathematica Plug-in
"Path"=C:\Program Files (x86)\Common Files\Wolfram Research\Browser\8.0.1.2063897\npmathplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
NPOFF12.DLL
nppdf32.DEU
nppdf32.dll
nppdf32.FRA
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
Web Search.xml
wikipedia-cz.xml
C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\
battlefieldplay4free@ea.com
multipletab@piro.sakura.ne.jp
{624ad42d-e714-46b4-843e-c7094f740b0f}
{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\searchplugins\
Web Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2011-12-14 79240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0de094f5-e894-48c7-b16f-338d64674721}]
Certified Toolbar - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll [2012-11-08 1031752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-10-25 340384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0de094f5-e894-48c7-b16f-338d64674721} - Certified Toolbar - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll [2012-11-08 1031752]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-09-09 12856936]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\_hry\Steam\Steam.exe -silent []
"Google Update"=C:\Users\tomas\AppData\Local\Google\Update\GoogleUpdate.exe [2011-05-12 136176]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-02-13 3481408]
"Pando Media Booster"=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2012-11-17 3093624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2010-10-25 821144]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Speed Launcher]
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2010-10-25 36760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-10-25 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverUpdaterPro]
C:\Program Files (x86)\iXi Tools\Driver Updater Pro\DriverUpdaterPro.exe -t []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\tomas\AppData\Local\Google\Update\GoogleUpdate.exe [2011-05-12 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [2010-05-25 619008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-11-11 1451520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime Alternative\QTTask.exe [2010-03-17 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RESTART_STICKY_NOTES]
C:\Windows\System32\StikyNot.exe [2009-07-14 427520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"amd_dc_opt"=C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-08-06 642216]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2012-06-03 249344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2012-11-23 16:29:32 ----D---- C:\Users\tomas\AppData\Roaming\TP-LINK
2012-11-23 16:29:05 ----D---- C:\Program Files (x86)\TP-LINK
2012-11-23 16:27:37 ----A---- C:\Windows\system32\drivers\athurx.sys
2012-11-23 16:27:37 ----A---- C:\Windows\system32\athurx.sys
2012-11-23 16:26:36 ----D---- C:\ProgramData\TP-LINK
2012-11-17 10:29:59 ----D---- C:\Program Files (x86)\Protected Search
2012-11-17 10:29:55 ----D---- C:\Users\tomas\AppData\Roaming\CertifiedToolbar
2012-11-17 10:29:55 ----D---- C:\Program Files (x86)\CertifiedToolbar
2012-11-17 10:29:55 ----A---- C:\Windows\Launcher.exe
2012-11-05 20:13:15 ----A---- C:\Windows\Rtcwplat.INI
======List of files/folders modified in the last 1 month======
2012-11-25 13:48:35 ----D---- C:\Windows\Prefetch
2012-11-25 13:48:28 ----D---- C:\Windows\temp
2012-11-25 13:48:25 ----D---- C:\Program Files\trend micro
2012-11-25 12:00:13 ----D---- C:\Program Files (x86)\uTorrent
2012-11-25 00:11:55 ----D---- C:\Windows\system32\config
2012-11-25 00:00:28 ----SHD---- C:\System Volume Information
2012-11-24 13:38:55 ----D---- C:\_download
2012-11-24 09:38:41 ----D---- C:\Windows\System32
2012-11-24 09:38:41 ----D---- C:\Windows\inf
2012-11-24 09:38:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-11-24 09:31:27 ----D---- C:\_filmy
2012-11-23 16:35:50 ----D---- C:\Program Files (x86)\Opera
2012-11-23 16:30:27 ----SD---- C:\ProgramData\Microsoft
2012-11-23 16:29:05 ----RD---- C:\Program Files (x86)
2012-11-23 16:29:05 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-11-23 16:28:04 ----D---- C:\Windows\system32\drivers
2012-11-23 16:28:03 ----D---- C:\Windows\system32\DriverStore
2012-11-23 16:28:03 ----D---- C:\Windows\system32\catroot
2012-11-23 16:27:39 ----D---- C:\Temp
2012-11-23 16:26:36 ----D---- C:\ProgramData
2012-11-17 21:54:24 ----D---- C:\ProgramData\PMB Files
2012-11-17 13:07:55 ----D---- C:\_hry
2012-11-17 10:30:01 ----D---- C:\Windows\system32\Tasks
2012-11-17 10:29:55 ----D---- C:\Windows
2012-11-17 09:14:09 ----A---- C:\Windows\NeroDigital.ini
2012-11-07 01:53:09 ----D---- C:\ProgramData\Ubisoft
2012-11-05 21:02:30 ----D---- C:\_fotky
2012-11-05 20:14:14 ----D---- C:\Windows\SysWOW64
2012-11-05 13:17:13 ----D---- C:\Windows\system32\catroot2
2012-11-04 23:48:03 ----D---- C:\_věci
2012-10-30 13:00:15 ----A---- C:\Windows\SOF.INI
2012-10-29 20:15:26 ----D---- C:\_hudba
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-03-19 564792]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-06-27 88632]
R2 Dokan;Dokan; \??\C:\Windows\system32\drivers\dokan.sys [2011-01-10 120408]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-12-23 43168]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-07-28 10278912]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-07-28 368640]
R3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2011-04-20 1930240]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2011-05-09 33344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-09-13 3076456]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-03-06 310728]
S3 akjsg1ji;akjsg1ji; C:\Windows\system32\drivers\akjsg1ji.sys []
S3 amw8r3n0;amw8r3n0; C:\Windows\system32\drivers\amw8r3n0.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cpuz130;cpuz130; \??\C:\Users\tomas\AppData\Local\Temp\cpuz130\cpuz_x64.sys []
S3 cpuz135;cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files (x86)\MediaCoder\SysInfoX64.sys []
S3 nmwcdcx64;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbox64.sys [2009-10-06 25088]
S3 nmwcdx64;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmbx64.sys [2009-10-06 18944]
S3 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RTCore64;RTCore64; \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2010-05-27 14648]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\WNt500x64\Sandra.sys [2009-08-07 23112]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2009-10-06 8704]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys [2009-10-06 8704]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-07-28 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-08-06 361984]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DokanMounter;DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [2011-01-10 14848]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2011-12-31 75136]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2009-07-24 189728]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-09 136176]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [2011-12-09 135584]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-09 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2009-10-27 657408]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-10-09 1255736]
S4 Desura Install Service;Desura Install Service; C:\Program Files (x86)\Common Files\Desura\desura_service.exe [2011-08-15 131400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SandraAgentSrv;SiSoftware Deployment Agent Service; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\RpcAgentSrv.exe [2009-08-10 93848]
S4 TeamViewer6;TeamViewer 6; C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-08-30 2358656]
-----------------EOF-----------------
Re: preventivní kontrola logu
Zdravim
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner


- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Search
- Probehne skenovani a pak se objevi log, pripadne bude ulozen na systemovem disku jako AdwCleaner[R?].txt, ten sem vlozte
Re: preventivní kontrola logu
Tady to je:
# AdwCleaner v2.009 - Logfile created 11/25/2012 at 20:18:13
# Updated 24/11/2012 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : tomas - TOMAS-PC
# Boot Mode : Normal
# Running from : C:\Users\tomas\Desktop\adwcleaner.exe
# Option [Search]
***** [Services] *****
***** [Files / Folders] *****
File Found : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\searchplugins\Web Search.xml
Folder Found : C:\Program Files (x86)\CertifiedToolbar
Folder Found : C:\Program Files (x86)\DAEMON Tools Toolbar
Folder Found : C:\ProgramData\boost_interprocess
Folder Found : C:\ProgramData\Trymedia
Folder Found : C:\Users\tomas\AppData\LocalLow\CertifiedToolbar
Folder Found : C:\Users\tomas\AppData\Roaming\CertifiedToolbar
***** [Registry] *****
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Headlight
Key Found : HKLM\Software\Conduit
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16421
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://newtab.certified-toolbar.com/nie?si=33953&tid=2958&new=true
[HKCU\Software\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
-\\ Mozilla Firefox v4.0.1 (cs)
Profile name : default
File : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\prefs.js
Found : user_pref("browser.startup.homepage", "hxxp://search.certified-toolbar.com?si=33953&home=true&tid=29[...]
Found : user_pref("browser.search.defaultenginename", "Web Search");
Found : user_pref("browser.search.defaultengine", "Web Search");
Found : user_pref("browser.search.selectedEngine", "Web Search");user_pref("browser.search.order.1", "Web Se[...]
Found : user_pref("browser.newtab.url", "hxxp://newtab.certified-toolbar.com/nff?si=33953&tid=2958&new=true"[...]
Found : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=");
-\\ Google Chrome v23.0.1271.64
File : C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
-\\ Opera v12.11.1661.0
File : C:\Users\tomas\AppData\Roaming\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [4932 octets] - [25/11/2012 20:18:13]
########## EOF - C:\AdwCleaner[R1].txt - [4992 octets] ##########
# AdwCleaner v2.009 - Logfile created 11/25/2012 at 20:18:13
# Updated 24/11/2012 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : tomas - TOMAS-PC
# Boot Mode : Normal
# Running from : C:\Users\tomas\Desktop\adwcleaner.exe
# Option [Search]
***** [Services] *****
***** [Files / Folders] *****
File Found : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\searchplugins\Web Search.xml
Folder Found : C:\Program Files (x86)\CertifiedToolbar
Folder Found : C:\Program Files (x86)\DAEMON Tools Toolbar
Folder Found : C:\ProgramData\boost_interprocess
Folder Found : C:\ProgramData\Trymedia
Folder Found : C:\Users\tomas\AppData\LocalLow\CertifiedToolbar
Folder Found : C:\Users\tomas\AppData\Roaming\CertifiedToolbar
***** [Registry] *****
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Headlight
Key Found : HKLM\Software\Conduit
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16421
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://newtab.certified-toolbar.com/nie?si=33953&tid=2958&new=true
[HKCU\Software\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=
-\\ Mozilla Firefox v4.0.1 (cs)
Profile name : default
File : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\prefs.js
Found : user_pref("browser.startup.homepage", "hxxp://search.certified-toolbar.com?si=33953&home=true&tid=29[...]
Found : user_pref("browser.search.defaultenginename", "Web Search");
Found : user_pref("browser.search.defaultengine", "Web Search");
Found : user_pref("browser.search.selectedEngine", "Web Search");user_pref("browser.search.order.1", "Web Se[...]
Found : user_pref("browser.newtab.url", "hxxp://newtab.certified-toolbar.com/nff?si=33953&tid=2958&new=true"[...]
Found : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=");
-\\ Google Chrome v23.0.1271.64
File : C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
-\\ Opera v12.11.1661.0
File : C:\Users\tomas\AppData\Roaming\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [4932 octets] - [25/11/2012 20:18:13]
########## EOF - C:\AdwCleaner[R1].txt - [4992 octets] ##########
Re: preventivní kontrola logu

- Pokud pouzivate Win Vista ci W7, kliknete na AdwCleaner pravym a dejte Run As Administrator ci Spustit jako spravce
- Kliknete na Delete
- PC provede opravu, restartuje se a da Vam log (C:\AdwCleaner [S1].txt) , jeho obsah vlozte sem
Re: preventivní kontrola logu
tady je ten log:
# AdwCleaner v2.009 - Logfile created 11/27/2012 at 12:34:14
# Updated 24/11/2012 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : tomas - TOMAS-PC
# Boot Mode : Normal
# Running from : C:\Users\tomas\Desktop\adwcleaner.exe
# Option [Delete]
***** [Services] *****
***** [Files / Folders] *****
File Deleted : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\searchplugins\Web Search.xml
Folder Deleted : C:\Program Files (x86)\CertifiedToolbar
Folder Deleted : C:\Program Files (x86)\DAEMON Tools Toolbar
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\Users\tomas\AppData\LocalLow\CertifiedToolbar
Folder Deleted : C:\Users\tomas\AppData\Roaming\CertifiedToolbar
***** [Registry] *****
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Headlight
Key Deleted : HKLM\Software\Conduit
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16421
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://newtab.certified-toolbar.com/nie?si=33953&tid=2958&new=true --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
-\\ Mozilla Firefox v4.0.1 (cs)
Profile name : default
File : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\prefs.js
Deleted : user_pref("browser.startup.homepage", "hxxp://search.certified-toolbar.com?si=33953&home=true&tid=29[...]
Deleted : user_pref("browser.search.defaultenginename", "Web Search");
Deleted : user_pref("browser.search.defaultengine", "Web Search");
Deleted : user_pref("browser.search.selectedEngine", "Web Search");user_pref("browser.search.order.1", "Web Se[...]
Deleted : user_pref("browser.newtab.url", "hxxp://newtab.certified-toolbar.com/nff?si=33953&tid=2958&new=true"[...]
Deleted : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=");
-\\ Google Chrome v23.0.1271.64
File : C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
-\\ Opera v12.11.1661.0
File : C:\Users\tomas\AppData\Roaming\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [5061 octets] - [25/11/2012 20:18:13]
AdwCleaner[S1].txt - [5801 octets] - [27/11/2012 12:34:14]
########## EOF - C:\AdwCleaner[S1].txt - [5861 octets] ##########
# AdwCleaner v2.009 - Logfile created 11/27/2012 at 12:34:14
# Updated 24/11/2012 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : tomas - TOMAS-PC
# Boot Mode : Normal
# Running from : C:\Users\tomas\Desktop\adwcleaner.exe
# Option [Delete]
***** [Services] *****
***** [Files / Folders] *****
File Deleted : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\searchplugins\Web Search.xml
Folder Deleted : C:\Program Files (x86)\CertifiedToolbar
Folder Deleted : C:\Program Files (x86)\DAEMON Tools Toolbar
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\Users\tomas\AppData\LocalLow\CertifiedToolbar
Folder Deleted : C:\Users\tomas\AppData\Roaming\CertifiedToolbar
***** [Registry] *****
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Headlight
Key Deleted : HKLM\Software\Conduit
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16421
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://newtab.certified-toolbar.com/nie?si=33953&tid=2958&new=true --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=33953&home=true&tid=2958 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q= --> hxxp://www.google.com
-\\ Mozilla Firefox v4.0.1 (cs)
Profile name : default
File : C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\prefs.js
Deleted : user_pref("browser.startup.homepage", "hxxp://search.certified-toolbar.com?si=33953&home=true&tid=29[...]
Deleted : user_pref("browser.search.defaultenginename", "Web Search");
Deleted : user_pref("browser.search.defaultengine", "Web Search");
Deleted : user_pref("browser.search.selectedEngine", "Web Search");user_pref("browser.search.order.1", "Web Se[...]
Deleted : user_pref("browser.newtab.url", "hxxp://newtab.certified-toolbar.com/nff?si=33953&tid=2958&new=true"[...]
Deleted : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=33953&tid=2958&bs=true&q=");
-\\ Google Chrome v23.0.1271.64
File : C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
-\\ Opera v12.11.1661.0
File : C:\Users\tomas\AppData\Roaming\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [5061 octets] - [25/11/2012 20:18:13]
AdwCleaner[S1].txt - [5801 octets] - [27/11/2012 12:34:14]
########## EOF - C:\AdwCleaner[S1].txt - [5861 octets] ##########
Re: preventivní kontrola logu

- Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
- Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
- Zaskrtnete okenko Pro vsechny uzivatele
- Zaskrtnete okenko Kontrola na havet "LOP"
- Zaskrtnete okenko Kontrola na havet "Purity"
- Stari souboru zmente z 30 dnu na 7 dnu
- Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
Kód: Vybrat vše
CREATERESTOREPOINT netsvcs drivers32 savembr:0 /md5start atapi.sys autochk.exe cdrom.sys explorer.exe hal.dll scecli.dll services.exe svchost.exe tcpip.sys userinit.exe winlogon.exe /md5stop %systemroot%*.* /U /s %SYSTEMDRIVE%\*.exe %ALLUSERSPROFILE%\Application Data\*. %ALLUSERSPROFILE%\Application Data\*.exe /s %APPDATA%\*. %APPDATA%\*.exe /s %systemroot%\*. /mp /s %systemroot%\system32\*.dll /lockedfiles %systemroot%\Tasks\*.job %systemroot%\system32\drivers\*.sys /lockedfiles %systemroot%\System32\config\*.sav %systemroot%\system32\*.dll /lockedfiles %systemroot%\system32\drivers\*.sys /3 %systemroot%\system32\*.* /3 %SYSTEMDRIVE%\*.exe HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 %PROGRAMFILES%\Opera\opera.exe /md5 %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 %SystemDrive%\PhysicalMBR.bin /md5 *crack* /s *keygen* /s *loader* /s
- Kliknete na tlacitko Prohledat
- Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
- Pokud budou logy dlouhe (forum bude kricet o prekroceni maximalniho poctu znaku), tak je rozdelte do vice prispevku
Re: preventivní kontrola logu
tade je log OTL, část 1:
OTL logfile created on: 28.11.2012 13:22:07 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\tomas\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,67 Gb Available Physical Memory | 55,74% Memory free
4,95 Gb Paging File | 3,23 Gb Available in Paging File | 65,17% Paging File free
Paging file location(s): c:\pagefile.sys 2000 4000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,51 Gb Total Space | 36,89 Gb Free Space | 3,96% Space Free | Partition Type: NTFS
Drive D: | 146,00 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive H: | 465,76 Gb Total Space | 6,75 Gb Free Space | 1,45% Space Free | Partition Type: NTFS
Computer Name: TOMAS-PC | User Name: tomas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2012.11.28 13:19:45 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\tomas\Desktop\OTL.exe
PRC - [2012.11.23 16:35:48 | 000,878,480 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\opera.exe
PRC - [2011.12.31 14:47:10 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2011.01.10 13:49:20 | 000,014,848 | ---- | M] () -- C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
PRC - [2009.07.24 19:38:50 | 000,189,728 | ---- | M] (Protexis Inc.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
========== Modules (No Company Name) ==========
MOD - [2012.11.23 16:35:50 | 000,835,584 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\gstreamer.dll
MOD - [2012.11.23 16:35:50 | 000,312,832 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstoggdec.dll
MOD - [2012.11.23 16:35:50 | 000,158,208 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstffmpegcolorspace.dll
MOD - [2012.11.23 16:35:50 | 000,101,888 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstwebmdec.dll
MOD - [2012.11.23 16:35:50 | 000,096,256 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstcoreplugins.dll
MOD - [2012.11.23 16:35:50 | 000,094,208 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstaudioresample.dll
MOD - [2012.11.23 16:35:50 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstaudioconvert.dll
MOD - [2012.11.23 16:35:50 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstwavparse.dll
MOD - [2012.11.23 16:35:50 | 000,067,072 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstdirectsound.dll
MOD - [2012.11.23 16:35:50 | 000,062,976 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstdecodebin2.dll
MOD - [2012.11.23 16:35:50 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstautodetect.dll
MOD - [2012.11.23 16:35:50 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstwaveform.dll
MOD - [2012.02.21 15:36:01 | 008,527,008 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
========== Services (SafeList) ==========
SRV:64bit: - [2012.08.06 11:24:22 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2012.07.28 03:09:44 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009.08.10 12:34:40 | 000,093,848 | ---- | M] (SiSoftware) [Disabled | Stopped] -- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\RpcAgentSrv.exe -- (SandraAgentSrv)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011.12.31 14:47:10 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011.12.09 13:39:52 | 000,135,584 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe -- (Futuremark SystemInfo Service)
SRV - [2011.08.30 17:18:30 | 002,358,656 | ---- | M] (TeamViewer GmbH) [Disabled | Stopped] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2011.08.15 16:44:14 | 000,131,400 | ---- | M] (Desura Pty Ltd) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Desura\desura_service.exe -- (Desura Install Service)
SRV - [2011.03.16 09:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011.01.10 13:49:20 | 000,014,848 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe -- (DokanMounter)
SRV - [2010.06.25 18:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd)
SRV - [2010.03.18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.10.27 09:26:36 | 000,657,408 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009.07.24 19:38:50 | 000,189,728 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012.11.28 08:12:38 | 000,049,872 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mnqbbakk.sys -- (mnqbbakk)
DRV:64bit: - [2012.07.28 05:07:44 | 010,278,912 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012.07.28 02:14:46 | 000,368,640 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012.05.14 07:12:30 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012.03.19 19:35:02 | 000,564,792 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.05.09 12:41:33 | 000,033,344 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2011.04.20 03:07:48 | 001,930,240 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athurx.sys -- (athur)
DRV:64bit: - [2011.03.06 18:31:24 | 000,310,728 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2011.01.10 13:51:40 | 000,120,408 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\dokan.sys -- (Dokan)
DRV:64bit: - [2010.12.23 21:40:48 | 000,043,168 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2010.11.20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 14:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 14:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010.11.20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 11:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010.06.25 18:07:26 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2010.02.18 08:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.10.06 11:54:18 | 000,008,704 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64j.sys -- (UsbserFilt)
DRV:64bit: - [2009.10.06 11:53:56 | 000,025,088 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdcx64)
DRV:64bit: - [2009.10.06 11:53:56 | 000,008,704 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:64bit: - [2009.10.06 11:53:54 | 000,018,944 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcdx64)
DRV:64bit: - [2009.08.07 22:46:56 | 000,023,112 | ---- | M] (SiSoftware) [Kernel | On_Demand | Stopped] -- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\WNt500x64\sandra.sys -- (SANDRA)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008.08.28 11:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:64bit: - [2008.06.27 07:51:10 | 000,088,632 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\adfs.sys -- (adfs)
DRV:64bit: - [2005.09.23 21:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV - [2010.05.27 01:43:00 | 000,014,648 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\MSI Afterburner\RTCore64.sys -- (RTCore64)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2003.02.04 22:11:41 | 000,011,376 | R--- | M] () [Kernel | Auto | Running] -- C:\Windows\SysWOW64\drivers\SECDRV.SYS -- (SecDrv)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}: "URL" = http://search.certified-toolbar.com?si= ... earchTerms}
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.qip.ru/?query={searchTerms}
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = B0 F0 A7 AA 49 C4 CA 01 [binary data]
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.certified-toolbar.com?si= ... earchTerms}
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}: "URL" = http://search.qip.ru/?query={searchTerms}
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.search.useDBForOrder: false
FF - prefs.js..extensions.enabledAddons: multipletab@piro.sakura.ne.jp:0.6.2011020301
FF - prefs.js..extensions.enabledAddons: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.7
FF - prefs.js..extensions.enabledAddons: {1280606b-2510-4fe0-97ef-9b5a22eafe30}:0.7.5
FF - prefs.js..extensions.enabledAddons: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.13
FF - prefs.js..extensions.enabledAddons: battlefieldplay4free@ea.com:1.0.66.2
FF - prefs.js..extensions.enabledAddons: {624ad42d-e714-46b4-843e-c7094f740b0f}:1.8
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: multipletab@piro.sakura.ne.jp:0.6.2011020301
FF - prefs.js..extensions.enabledItems: {1280606b-2510-4fe0-97ef-9b5a22eafe30}:0.6.7.4
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@wolfram.com/Mathematica: C:\Program Files (x86)\Common Files\Wolfram Research\Browser\8.0.1.2063897\npmathplugin.dll (Wolfram Research, Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\tomas\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\tomas\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\tomas\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files (x86)\Nokia\Nokia PC Suite 7\bkmrksync\ [2010.03.15 15:55:16 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2011.09.22 08:54:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.05.19 18:50:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.09.22 08:55:05 | 000,000,000 | ---D | M]
[2010.10.11 17:52:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions
[2010.10.11 17:51:02 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions\Coder Preset
[2010.10.11 17:52:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions\MediaCoder
[2010.10.11 17:51:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions\MediaCoder-Setup-Wizard
[2012.11.17 10:29:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions
[2012.11.28 08:12:17 | 000,000,000 | ---D | M] (Certified Toolbar) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{624ad42d-e714-46b4-843e-c7094f740b0f}
[2011.11.21 20:53:53 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011.12.31 14:29:36 | 000,000,000 | ---D | M] (Battlefield Play4Free) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\battlefieldplay4free@ea.com
[2011.05.04 08:52:52 | 000,000,000 | ---D | M] ("Multiple Tab Handler") -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\multipletab@piro.sakura.ne.jp
[2011.05.19 19:48:20 | 000,440,796 | ---- | M] () (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
[2011.05.19 19:48:13 | 000,594,137 | ---- | M] () (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011.12.11 21:55:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011.04.14 17:38:52 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011.11.23 01:21:00 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010.01.01 09:00:00 | 000,002,208 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2010.01.01 09:00:00 | 000,000,638 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2010.01.01 09:00:00 | 000,001,367 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2010.01.01 09:00:00 | 000,000,654 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2012.11.17 10:29:52 | 000,003,269 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\Web Search.xml
[2010.01.01 09:00:00 | 000,001,179 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - homepage: http://www.facebook.com/#!/home.php?sk=myuploads
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.facebook.com/#!/home.php?sk=myuploads
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\tomas\AppData\Local\Google\Chrome\Application\22.0.1229.94\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\tomas\AppData\Local\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\tomas\AppData\Local\Google\Chrome\Application\22.0.1229.94\pdf.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Users\tomas\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012.09.16 18:25:29 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Certified Toolbar) - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll File not found
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - Reg Error: Value error. File not found
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Certified Toolbar) - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll File not found
O3 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 10.2.0)
O16:64bit: - DPF: {CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/200 ... ader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6EE8D23E-00F3-425F-BD8D-DDBD4430CE03}: DhcpNameServer = 192.168.137.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B104883E-46BB-4B78-9F9F-7A74F259A1C7}: DhcpNameServer = 192.168.137.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B5C145EA-B300-4DE6-8E84-CFC309B24CFE}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (c:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.03.13 18:48:04 | 000,385,024 | R--- | M] (TP-LINK TECHNOLOGIES CO., LTD.) - D:\Autorun.exe -- [ CDFS ]
O32 - AutoRun File - [2011.09.05 15:15:56 | 000,000,047 | R--- | M] () - D:\autorun.inf -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.ac3acm - C:\Windows\SysWow64\ac3acm.acm (fccHandler)
Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codec - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\Windows\SysWow64\lameACM.acm (http://www.mp3dev.org/)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll ()
Drivers32: vidc.tscc - C:\Windows\SysWow64\tsccvid.dll (TechSmith Corporation)
Drivers32: VIDC.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
Drivers32: VIDC.YV12 - C:\Windows\SysWow64\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2012.11.28 13:19:44 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\tomas\Desktop\OTL.exe
[2012.11.28 08:12:36 | 000,049,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\mnqbbakk.sys
[2012.11.27 17:03:48 | 000,000,000 | ---D | C] -- C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\REFOG Personal Monitor
[2012.11.27 17:03:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\MPK
[2012.11.27 01:53:20 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Nová složka (5)
[2012.11.25 04:26:04 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Nová složka (4)
[2012.11.24 13:14:06 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Ainol catalog
[2012.11.24 12:56:55 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Nová složka
[2012.11.23 16:29:32 | 000,000,000 | ---D | C] -- C:\Users\tomas\AppData\Roaming\TP-LINK
[2012.11.23 16:29:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
[2012.11.23 16:29:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TP-LINK
[2012.11.23 16:27:37 | 001,930,240 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athurx.sys
[2012.11.23 16:27:37 | 001,930,240 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\athurx.sys
[2012.11.23 16:26:36 | 000,000,000 | ---D | C] -- C:\ProgramData\TP-LINK
[2012.11.21 23:35:02 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\DCIM
[6 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2012.11.28 13:28:23 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.11.28 13:26:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
[2012.11.28 13:22:00 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.11.28 13:19:45 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\tomas\Desktop\OTL.exe
[2012.11.28 08:26:01 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
[2012.11.28 08:12:38 | 000,049,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\mnqbbakk.sys
[2012.11.27 21:22:00 | 000,000,948 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.11.27 17:12:18 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.11.27 17:12:18 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.11.27 17:09:26 | 000,875,872 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.11.27 17:09:26 | 000,669,310 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2012.11.27 17:09:26 | 000,140,946 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2012.11.27 17:09:26 | 000,052,148 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.11.27 17:09:26 | 000,022,450 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.11.27 17:05:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.11.27 17:04:46 | 2415,468,544 | -HS- | M] () -- C:\hiberfil.sys
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\SysWow64\runrefog.lnk
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\SysWow64\runkgb.lnk
[2012.11.27 10:19:19 | 000,092,997 | ---- | M] () -- C:\Users\tomas\Desktop\30822830.jpg
[2012.11.25 21:31:20 | 000,000,751 | ---- | M] () -- C:\Windows\Rtcwplat.INI
[2012.11.25 20:35:06 | 000,939,320 | ---- | M] () -- C:\Users\tomas\Desktop\Bondbarrel.gif
[2012.11.25 20:21:57 | 000,049,501 | ---- | M] () -- C:\Users\tomas\Desktop\486211_560360807322670_1064310643_n.jpg
[2012.11.25 20:17:27 | 000,480,125 | ---- | M] () -- C:\Users\tomas\Desktop\adwcleaner.exe
[2012.11.25 15:00:41 | 000,266,449 | ---- | M] () -- C:\Users\tomas\Desktop\w9y53b.jpg
[2012.11.25 02:43:59 | 309,935,705 | ---- | M] () -- C:\Users\tomas\Desktop\The Hobbit Trailer @ 48fps - Medium Quality.mov
[2012.11.24 15:49:09 | 000,060,571 | ---- | M] () -- C:\Users\tomas\Desktop\198224_379612495456780_1768271830_n.jpg
[2012.11.24 15:06:04 | 105,512,768 | ---- | M] () -- C:\Users\tomas\Desktop\WA_23597.part3.rar
[2012.11.24 13:08:15 | 006,103,167 | ---- | M] () -- C:\Users\tomas\Desktop\Ainol catalog.zip
[2012.11.24 12:13:17 | 000,467,389 | ---- | M] () -- C:\Users\tomas\Desktop\703936_448672351859498_1536152395_o.jpg
[2012.11.24 05:30:29 | 969,713,068 | ---- | M] () -- C:\Users\tomas\Desktop\WA_23597.part1.rar
[2012.11.24 02:34:08 | 997,195,776 | ---- | M] () -- C:\Users\tomas\Desktop\WA_23597.part2.rar
[2012.11.23 19:21:47 | 000,371,127 | ---- | M] () -- C:\Users\tomas\Desktop\f13.jpg
[2012.11.23 16:29:07 | 000,002,297 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk
[6 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
OTL logfile created on: 28.11.2012 13:22:07 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\tomas\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,67 Gb Available Physical Memory | 55,74% Memory free
4,95 Gb Paging File | 3,23 Gb Available in Paging File | 65,17% Paging File free
Paging file location(s): c:\pagefile.sys 2000 4000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,51 Gb Total Space | 36,89 Gb Free Space | 3,96% Space Free | Partition Type: NTFS
Drive D: | 146,00 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive H: | 465,76 Gb Total Space | 6,75 Gb Free Space | 1,45% Space Free | Partition Type: NTFS
Computer Name: TOMAS-PC | User Name: tomas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2012.11.28 13:19:45 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\tomas\Desktop\OTL.exe
PRC - [2012.11.23 16:35:48 | 000,878,480 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\opera.exe
PRC - [2011.12.31 14:47:10 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2011.01.10 13:49:20 | 000,014,848 | ---- | M] () -- C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
PRC - [2009.07.24 19:38:50 | 000,189,728 | ---- | M] (Protexis Inc.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
========== Modules (No Company Name) ==========
MOD - [2012.11.23 16:35:50 | 000,835,584 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\gstreamer.dll
MOD - [2012.11.23 16:35:50 | 000,312,832 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstoggdec.dll
MOD - [2012.11.23 16:35:50 | 000,158,208 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstffmpegcolorspace.dll
MOD - [2012.11.23 16:35:50 | 000,101,888 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstwebmdec.dll
MOD - [2012.11.23 16:35:50 | 000,096,256 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstcoreplugins.dll
MOD - [2012.11.23 16:35:50 | 000,094,208 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstaudioresample.dll
MOD - [2012.11.23 16:35:50 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstaudioconvert.dll
MOD - [2012.11.23 16:35:50 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstwavparse.dll
MOD - [2012.11.23 16:35:50 | 000,067,072 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstdirectsound.dll
MOD - [2012.11.23 16:35:50 | 000,062,976 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstdecodebin2.dll
MOD - [2012.11.23 16:35:50 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstautodetect.dll
MOD - [2012.11.23 16:35:50 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\Opera\gstreamer\plugins\gstwaveform.dll
MOD - [2012.02.21 15:36:01 | 008,527,008 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
========== Services (SafeList) ==========
SRV:64bit: - [2012.08.06 11:24:22 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2012.07.28 03:09:44 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009.08.10 12:34:40 | 000,093,848 | ---- | M] (SiSoftware) [Disabled | Stopped] -- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\RpcAgentSrv.exe -- (SandraAgentSrv)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011.12.31 14:47:10 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011.12.09 13:39:52 | 000,135,584 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe -- (Futuremark SystemInfo Service)
SRV - [2011.08.30 17:18:30 | 002,358,656 | ---- | M] (TeamViewer GmbH) [Disabled | Stopped] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2011.08.15 16:44:14 | 000,131,400 | ---- | M] (Desura Pty Ltd) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Desura\desura_service.exe -- (Desura Install Service)
SRV - [2011.03.16 09:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011.01.10 13:49:20 | 000,014,848 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe -- (DokanMounter)
SRV - [2010.06.25 18:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd)
SRV - [2010.03.18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.10.27 09:26:36 | 000,657,408 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009.07.24 19:38:50 | 000,189,728 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012.11.28 08:12:38 | 000,049,872 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mnqbbakk.sys -- (mnqbbakk)
DRV:64bit: - [2012.07.28 05:07:44 | 010,278,912 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012.07.28 02:14:46 | 000,368,640 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012.05.14 07:12:30 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012.03.19 19:35:02 | 000,564,792 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.05.09 12:41:33 | 000,033,344 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2011.04.20 03:07:48 | 001,930,240 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athurx.sys -- (athur)
DRV:64bit: - [2011.03.06 18:31:24 | 000,310,728 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2011.01.10 13:51:40 | 000,120,408 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\dokan.sys -- (Dokan)
DRV:64bit: - [2010.12.23 21:40:48 | 000,043,168 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2010.11.20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 14:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 14:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010.11.20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 11:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010.06.25 18:07:26 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2010.02.18 08:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.10.06 11:54:18 | 000,008,704 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64j.sys -- (UsbserFilt)
DRV:64bit: - [2009.10.06 11:53:56 | 000,025,088 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdcx64)
DRV:64bit: - [2009.10.06 11:53:56 | 000,008,704 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:64bit: - [2009.10.06 11:53:54 | 000,018,944 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcdx64)
DRV:64bit: - [2009.08.07 22:46:56 | 000,023,112 | ---- | M] (SiSoftware) [Kernel | On_Demand | Stopped] -- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010.SP2\WNt500x64\sandra.sys -- (SANDRA)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008.08.28 11:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:64bit: - [2008.06.27 07:51:10 | 000,088,632 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\adfs.sys -- (adfs)
DRV:64bit: - [2005.09.23 21:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV - [2010.05.27 01:43:00 | 000,014,648 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\MSI Afterburner\RTCore64.sys -- (RTCore64)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2003.02.04 22:11:41 | 000,011,376 | R--- | M] () [Kernel | Auto | Running] -- C:\Windows\SysWOW64\drivers\SECDRV.SYS -- (SecDrv)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}: "URL" = http://search.certified-toolbar.com?si= ... earchTerms}
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.qip.ru/?query={searchTerms}
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = B0 F0 A7 AA 49 C4 CA 01 [binary data]
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.certified-toolbar.com?si= ... earchTerms}
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}: "URL" = http://search.qip.ru/?query={searchTerms}
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.search.useDBForOrder: false
FF - prefs.js..extensions.enabledAddons: multipletab@piro.sakura.ne.jp:0.6.2011020301
FF - prefs.js..extensions.enabledAddons: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.7
FF - prefs.js..extensions.enabledAddons: {1280606b-2510-4fe0-97ef-9b5a22eafe30}:0.7.5
FF - prefs.js..extensions.enabledAddons: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.13
FF - prefs.js..extensions.enabledAddons: battlefieldplay4free@ea.com:1.0.66.2
FF - prefs.js..extensions.enabledAddons: {624ad42d-e714-46b4-843e-c7094f740b0f}:1.8
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: multipletab@piro.sakura.ne.jp:0.6.2011020301
FF - prefs.js..extensions.enabledItems: {1280606b-2510-4fe0-97ef-9b5a22eafe30}:0.6.7.4
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@wolfram.com/Mathematica: C:\Program Files (x86)\Common Files\Wolfram Research\Browser\8.0.1.2063897\npmathplugin.dll (Wolfram Research, Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\tomas\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\tomas\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\tomas\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files (x86)\Nokia\Nokia PC Suite 7\bkmrksync\ [2010.03.15 15:55:16 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2011.09.22 08:54:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.05.19 18:50:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.09.22 08:55:05 | 000,000,000 | ---D | M]
[2010.10.11 17:52:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions
[2010.10.11 17:51:02 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions\Coder Preset
[2010.10.11 17:52:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions\MediaCoder
[2010.10.11 17:51:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Extensions\MediaCoder-Setup-Wizard
[2012.11.17 10:29:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions
[2012.11.28 08:12:17 | 000,000,000 | ---D | M] (Certified Toolbar) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{624ad42d-e714-46b4-843e-c7094f740b0f}
[2011.11.21 20:53:53 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011.12.31 14:29:36 | 000,000,000 | ---D | M] (Battlefield Play4Free) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\battlefieldplay4free@ea.com
[2011.05.04 08:52:52 | 000,000,000 | ---D | M] ("Multiple Tab Handler") -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\multipletab@piro.sakura.ne.jp
[2011.05.19 19:48:20 | 000,440,796 | ---- | M] () (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
[2011.05.19 19:48:13 | 000,594,137 | ---- | M] () (No name found) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011.12.11 21:55:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011.04.14 17:38:52 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011.11.23 01:21:00 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010.01.01 09:00:00 | 000,002,208 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2010.01.01 09:00:00 | 000,000,638 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2010.01.01 09:00:00 | 000,001,367 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2010.01.01 09:00:00 | 000,000,654 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2012.11.17 10:29:52 | 000,003,269 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\Web Search.xml
[2010.01.01 09:00:00 | 000,001,179 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - homepage: http://www.facebook.com/#!/home.php?sk=myuploads
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.facebook.com/#!/home.php?sk=myuploads
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\tomas\AppData\Local\Google\Chrome\Application\22.0.1229.94\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\tomas\AppData\Local\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\tomas\AppData\Local\Google\Chrome\Application\22.0.1229.94\pdf.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Users\tomas\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012.09.16 18:25:29 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Certified Toolbar) - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll File not found
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - Reg Error: Value error. File not found
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Certified Toolbar) - {0de094f5-e894-48c7-b16f-338d64674721} - C:\Users\tomas\AppData\Roaming\CertifiedToolbar\CertifiedToolbar.dll File not found
O3 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 10.2.0)
O16:64bit: - DPF: {CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/200 ... ader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6EE8D23E-00F3-425F-BD8D-DDBD4430CE03}: DhcpNameServer = 192.168.137.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B104883E-46BB-4B78-9F9F-7A74F259A1C7}: DhcpNameServer = 192.168.137.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B5C145EA-B300-4DE6-8E84-CFC309B24CFE}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (c:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.03.13 18:48:04 | 000,385,024 | R--- | M] (TP-LINK TECHNOLOGIES CO., LTD.) - D:\Autorun.exe -- [ CDFS ]
O32 - AutoRun File - [2011.09.05 15:15:56 | 000,000,047 | R--- | M] () - D:\autorun.inf -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.ac3acm - C:\Windows\SysWow64\ac3acm.acm (fccHandler)
Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codec - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\Windows\SysWow64\lameACM.acm (http://www.mp3dev.org/)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll ()
Drivers32: vidc.tscc - C:\Windows\SysWow64\tsccvid.dll (TechSmith Corporation)
Drivers32: VIDC.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
Drivers32: VIDC.YV12 - C:\Windows\SysWow64\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2012.11.28 13:19:44 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\tomas\Desktop\OTL.exe
[2012.11.28 08:12:36 | 000,049,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\mnqbbakk.sys
[2012.11.27 17:03:48 | 000,000,000 | ---D | C] -- C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\REFOG Personal Monitor
[2012.11.27 17:03:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\MPK
[2012.11.27 01:53:20 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Nová složka (5)
[2012.11.25 04:26:04 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Nová složka (4)
[2012.11.24 13:14:06 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Ainol catalog
[2012.11.24 12:56:55 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\Nová složka
[2012.11.23 16:29:32 | 000,000,000 | ---D | C] -- C:\Users\tomas\AppData\Roaming\TP-LINK
[2012.11.23 16:29:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
[2012.11.23 16:29:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TP-LINK
[2012.11.23 16:27:37 | 001,930,240 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athurx.sys
[2012.11.23 16:27:37 | 001,930,240 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\athurx.sys
[2012.11.23 16:26:36 | 000,000,000 | ---D | C] -- C:\ProgramData\TP-LINK
[2012.11.21 23:35:02 | 000,000,000 | ---D | C] -- C:\Users\tomas\Desktop\DCIM
[6 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2012.11.28 13:28:23 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.11.28 13:26:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
[2012.11.28 13:22:00 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.11.28 13:19:45 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\tomas\Desktop\OTL.exe
[2012.11.28 08:26:01 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
[2012.11.28 08:12:38 | 000,049,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\mnqbbakk.sys
[2012.11.27 21:22:00 | 000,000,948 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.11.27 17:12:18 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.11.27 17:12:18 | 000,013,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.11.27 17:09:26 | 000,875,872 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.11.27 17:09:26 | 000,669,310 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2012.11.27 17:09:26 | 000,140,946 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2012.11.27 17:09:26 | 000,052,148 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.11.27 17:09:26 | 000,022,450 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.11.27 17:05:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.11.27 17:04:46 | 2415,468,544 | -HS- | M] () -- C:\hiberfil.sys
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\SysWow64\runrefog.lnk
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\SysWow64\runkgb.lnk
[2012.11.27 10:19:19 | 000,092,997 | ---- | M] () -- C:\Users\tomas\Desktop\30822830.jpg
[2012.11.25 21:31:20 | 000,000,751 | ---- | M] () -- C:\Windows\Rtcwplat.INI
[2012.11.25 20:35:06 | 000,939,320 | ---- | M] () -- C:\Users\tomas\Desktop\Bondbarrel.gif
[2012.11.25 20:21:57 | 000,049,501 | ---- | M] () -- C:\Users\tomas\Desktop\486211_560360807322670_1064310643_n.jpg
[2012.11.25 20:17:27 | 000,480,125 | ---- | M] () -- C:\Users\tomas\Desktop\adwcleaner.exe
[2012.11.25 15:00:41 | 000,266,449 | ---- | M] () -- C:\Users\tomas\Desktop\w9y53b.jpg
[2012.11.25 02:43:59 | 309,935,705 | ---- | M] () -- C:\Users\tomas\Desktop\The Hobbit Trailer @ 48fps - Medium Quality.mov
[2012.11.24 15:49:09 | 000,060,571 | ---- | M] () -- C:\Users\tomas\Desktop\198224_379612495456780_1768271830_n.jpg
[2012.11.24 15:06:04 | 105,512,768 | ---- | M] () -- C:\Users\tomas\Desktop\WA_23597.part3.rar
[2012.11.24 13:08:15 | 006,103,167 | ---- | M] () -- C:\Users\tomas\Desktop\Ainol catalog.zip
[2012.11.24 12:13:17 | 000,467,389 | ---- | M] () -- C:\Users\tomas\Desktop\703936_448672351859498_1536152395_o.jpg
[2012.11.24 05:30:29 | 969,713,068 | ---- | M] () -- C:\Users\tomas\Desktop\WA_23597.part1.rar
[2012.11.24 02:34:08 | 997,195,776 | ---- | M] () -- C:\Users\tomas\Desktop\WA_23597.part2.rar
[2012.11.23 19:21:47 | 000,371,127 | ---- | M] () -- C:\Users\tomas\Desktop\f13.jpg
[2012.11.23 16:29:07 | 000,002,297 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk
[6 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
Re: preventivní kontrola logu
část 2:
========== Files Created - No Company Name ==========
[2012.11.28 13:28:23 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.11.27 17:03:48 | 000,000,618 | ---- | C] () -- C:\Windows\SysWow64\runrefog.lnk
[2012.11.27 17:03:48 | 000,000,618 | ---- | C] () -- C:\Windows\SysWow64\runkgb.lnk
[2012.11.27 10:19:18 | 000,092,997 | ---- | C] () -- C:\Users\tomas\Desktop\30822830.jpg
[2012.11.25 20:35:04 | 000,939,320 | ---- | C] () -- C:\Users\tomas\Desktop\Bondbarrel.gif
[2012.11.25 20:21:56 | 000,049,501 | ---- | C] () -- C:\Users\tomas\Desktop\486211_560360807322670_1064310643_n.jpg
[2012.11.25 20:17:25 | 000,480,125 | ---- | C] () -- C:\Users\tomas\Desktop\adwcleaner.exe
[2012.11.25 15:00:40 | 000,266,449 | ---- | C] () -- C:\Users\tomas\Desktop\w9y53b.jpg
[2012.11.25 02:29:08 | 309,935,705 | ---- | C] () -- C:\Users\tomas\Desktop\The Hobbit Trailer @ 48fps - Medium Quality.mov
[2012.11.24 15:49:07 | 000,060,571 | ---- | C] () -- C:\Users\tomas\Desktop\198224_379612495456780_1768271830_n.jpg
[2012.11.24 13:07:47 | 006,103,167 | ---- | C] () -- C:\Users\tomas\Desktop\Ainol catalog.zip
[2012.11.24 12:54:31 | 105,512,768 | ---- | C] () -- C:\Users\tomas\Desktop\WA_23597.part3.rar
[2012.11.24 12:13:15 | 000,467,389 | ---- | C] () -- C:\Users\tomas\Desktop\703936_448672351859498_1536152395_o.jpg
[2012.11.23 20:43:32 | 997,195,776 | ---- | C] () -- C:\Users\tomas\Desktop\WA_23597.part2.rar
[2012.11.23 20:43:03 | 969,713,068 | ---- | C] () -- C:\Users\tomas\Desktop\WA_23597.part1.rar
[2012.11.23 19:21:46 | 000,371,127 | ---- | C] () -- C:\Users\tomas\Desktop\f13.jpg
[2012.11.23 16:29:07 | 000,002,297 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk
[2012.11.23 16:27:37 | 000,027,040 | ---- | C] () -- C:\Windows\SysNative\netathurx.inf
[2012.11.23 16:27:37 | 000,008,820 | ---- | C] () -- C:\Windows\SysNative\athurextx.cat
[2012.11.17 10:29:55 | 000,015,432 | ---- | C] () -- C:\Windows\Launcher.exe
[2012.11.05 20:13:15 | 000,000,751 | ---- | C] () -- C:\Windows\Rtcwplat.INI
[2012.09.30 18:14:36 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\manual
[2012.09.30 18:14:36 | 000,000,268 | RH-- | C] () -- C:\ProgramData\AccountTypes
[2012.09.30 18:14:36 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLck.DAT
[2012.09.30 18:14:32 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\programs
[2012.09.30 18:14:32 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Action
[2012.09.30 17:27:59 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLbx.DAT
[2012.09.16 18:03:16 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012.09.16 18:03:16 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012.09.16 18:03:16 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012.09.16 18:03:16 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012.09.16 18:03:16 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012.09.13 17:17:07 | 000,000,132 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\Adobe PNG Format CS6 Prefs
[2012.09.06 15:30:15 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012.07.28 02:39:50 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012.07.28 02:39:50 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012.04.20 13:10:11 | 000,000,058 | ---- | C] () -- C:\Windows\SysWow64\DonationCoder_ScreenshotCaptor_InstallInfo.dat
[2012.04.20 13:10:11 | 000,000,058 | ---- | C] () -- C:\Users\tomas\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
[2012.04.08 16:06:45 | 000,650,752 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2012.04.08 16:06:45 | 000,243,200 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2012.04.08 16:06:44 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012.04.08 16:06:43 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2012.02.15 11:58:37 | 000,000,154 | ---- | C] () -- C:\Windows\SOF.INI
[2012.01.09 20:29:01 | 000,000,000 | ---- | C] () -- C:\Users\tomas\AppData\Local\{C85B155B-5433-4FF4-96A7-DAF3386D6359}
[2011.12.31 14:47:43 | 000,234,768 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011.12.31 14:47:10 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011.12.10 16:58:52 | 000,007,600 | ---- | C] () -- C:\Users\tomas\AppData\Local\Resmon.ResmonCfg
[2011.10.10 10:29:26 | 000,000,064 | ---- | C] () -- C:\ProgramData\sandra.ldb
[2011.10.10 10:28:06 | 012,824,576 | ---- | C] () -- C:\ProgramData\sandra.mda
[2011.09.20 21:47:57 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2011.09.15 10:06:50 | 000,086,528 | ---- | C] () -- C:\Windows\bnetunin.exe
[2011.09.14 22:33:15 | 000,000,000 | ---- | C] () -- C:\Windows\PowerReg.dat
[2011.09.12 23:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.09.11 12:21:58 | 000,000,091 | ---- | C] () -- C:\Windows\CIV.INI
[2011.06.02 06:19:46 | 000,000,008 | RHS- | C] () -- C:\Users\tomas\ntuser.pol
[2011.04.02 12:45:48 | 000,000,132 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011.03.04 21:00:14 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\vxdblock.exe
[2011.02.13 16:16:57 | 000,005,632 | ---- | C] () -- C:\Users\tomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.01.31 14:47:58 | 000,000,000 | ---- | C] () -- C:\Windows\ViewNX2.INI
[2011.01.31 14:34:22 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Solid Colors
[2011.01.31 14:34:22 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\Scripts Menu
[2011.01.31 14:34:22 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLev.DAT
[2011.01.31 14:34:22 | 000,000,012 | RH-- | C] () -- C:\ProgramData\String Comparison
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Smooth Strings
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\ProgramData\SingleFiles
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\Screen Savers
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\Screen Saver
[2011.01.31 14:34:21 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLet.DAT
[2011.01.31 14:34:21 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLes.DAT
[2011.01.31 14:34:21 | 000,000,012 | RH-- | C] () -- C:\ProgramData\StatusSheet
[2011.01.31 14:34:21 | 000,000,012 | RH-- | C] () -- C:\ProgramData\StartupItems
[2011.01.10 13:49:16 | 000,035,840 | ---- | C] () -- C:\Windows\SysWow64\dokan.dll
[2010.09.06 21:39:05 | 000,000,132 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\Adobe BMP Format CS5 Prefs
[2010.08.10 12:28:20 | 000,000,565 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\myMPQ.ini
========== ZeroAccess Check ==========
[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\SysWow64\wbem\wbemess.dll
========== LOP Check ==========
[2012.10.20 15:12:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\.minecraft
[2010.10.11 17:51:01 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Broad Intelligence
[2012.09.28 20:23:04 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer
[2010.01.30 22:18:32 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer Pro
[2011.03.30 00:19:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011.09.16 17:14:43 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\CodeLite
[2012.06.21 08:03:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DAEMON Tools Lite
[2012.04.20 13:10:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DonationCoder
[2011.10.08 18:16:55 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\GHISLER
[2011.04.05 21:41:05 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\HDRsoft
[2011.03.02 10:04:23 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\IrfanView
[2012.01.02 12:56:14 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Keyboard Drivers For Windows 7 Utility
[2012.02.15 10:22:54 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\LolClient
[2010.08.31 12:53:20 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Moyea
[2011.06.14 19:40:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\MPEG Streamclip
[2011.09.19 01:35:44 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\My Games
[2012.09.30 18:14:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nikon
[2011.04.19 08:33:59 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nokia
[2010.09.06 07:38:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Opera
[2010.03.02 01:11:51 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PC Suite
[2012.06.23 17:10:38 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PDAppFlex
[2012.07.07 14:23:48 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Petroglyph
[2011.10.11 07:53:39 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PunkBuster
[2010.08.04 21:23:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012.11.23 16:37:30 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\TP-LINK
[2011.03.28 15:29:08 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Two Pilots
[2012.06.04 11:40:41 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\uTorrent
[2010.06.08 06:21:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\VitySoft
[2012.09.05 16:03:56 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\wargaming.net
[2012.06.04 08:15:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Wireshark
[2010.12.01 09:13:28 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\yang
[2011.01.15 18:03:34 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Zoner
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 06:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 06:08:49 | 000,032,582 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012.07.30 08:07:03 | 000,000,948 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.07.30 08:07:05 | 000,000,952 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.07.30 08:13:15 | 000,000,910 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
[2012.07.30 08:13:15 | 000,000,962 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
< >
< MD5 for: ATAPI.SYS >
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\erdnt\cache64\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010.11.20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 02:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 02:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2009.07.14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2010.11.20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\SysWOW64\explorer.exe
[2010.11.20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.08.03 07:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 06:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\erdnt\cache86\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 07:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 06:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 07:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2009.08.03 07:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
< MD5 for: HAL.DLL >
[2009.07.14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: SCECLI.DLL >
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\erdnt\cache86\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\erdnt\cache64\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SERVICES.EXE >
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\erdnt\cache64\services.exe
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2010.11.20 14:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2010.06.14 07:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2012.03.30 11:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012.03.30 12:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2012.08.22 19:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2012.03.30 11:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.06.14 07:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 02:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2012.03.30 12:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2012.08.22 19:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\erdnt\cache64\tcpip.sys
[2012.08.22 19:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\SysNative\drivers\tcpip.sys
[2012.08.22 19:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\erdnt\cache64\winlogon.exe
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
< >
< %systemroot%*.* /U /s >
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2012.10.20 15:12:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\.minecraft
[2012.05.21 18:55:15 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Adobe
[2011.01.21 18:11:08 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Adobe Mini Bridge CS5
[2011.01.28 00:54:18 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\AdobeLensProfileDownloader
[2012.02.04 21:17:43 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Ahead
[2012.09.06 15:30:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\ATI
[2010.10.11 17:51:01 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Broad Intelligence
[2012.09.28 20:23:04 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer
[2010.01.30 22:18:32 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer Pro
[2011.03.30 00:19:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011.11.03 23:48:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\codeblocks
[2011.09.16 17:14:43 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\CodeLite
[2011.11.04 16:37:07 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Corel
[2012.06.21 08:03:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DAEMON Tools Lite
[2012.04.20 13:10:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DonationCoder
[2011.10.08 18:16:55 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\GHISLER
[2011.05.23 14:12:29 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Hamachi
[2011.04.05 21:41:05 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\HDRsoft
[2009.10.03 10:05:29 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Identities
[2012.03.28 14:06:05 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\InstallShield
[2011.03.02 10:04:23 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\IrfanView
[2012.01.02 12:56:14 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Keyboard Drivers For Windows 7 Utility
[2012.02.15 10:22:54 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\LolClient
[2009.10.21 07:03:23 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Macromedia
[2011.12.11 23:14:33 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Malwarebytes
[2011.11.25 06:11:28 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Mathematica
[2009.07.14 16:36:58 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Media Center Programs
[2012.06.24 15:05:47 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Media Player Classic
[2012.06.25 09:45:37 | 000,000,000 | --SD | M] -- C:\Users\tomas\AppData\Roaming\Microsoft
[2010.08.31 12:53:20 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Moyea
[2009.12.14 00:22:25 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Mozilla
[2011.06.14 19:40:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\MPEG Streamclip
[2011.09.19 01:35:44 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\My Games
[2011.11.03 21:02:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nero
[2012.09.30 18:14:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nikon
[2011.04.19 08:33:59 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nokia
[2011.09.12 22:44:03 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\NVIDIA
[2010.09.06 07:38:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Opera
[2010.03.02 01:11:51 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PC Suite
[2012.06.23 17:10:38 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PDAppFlex
[2012.07.07 14:23:48 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Petroglyph
[2011.03.22 21:32:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PSpad
[2011.10.11 07:53:39 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PunkBuster
[2012.10.14 10:47:26 | 000,000,000 | RH-D | M] -- C:\Users\tomas\AppData\Roaming\SecuROM
[2012.10.21 15:59:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Skype
[2010.08.04 21:23:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012.11.23 16:37:30 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\TP-LINK
[2011.03.28 15:29:08 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Two Pilots
[2012.06.04 11:40:41 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\uTorrent
[2010.06.08 06:21:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\VitySoft
[2012.03.25 18:01:02 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\vlc
[2012.09.05 16:03:56 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\wargaming.net
[2012.06.05 12:07:47 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Winamp
[2009.12.13 16:43:51 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\WinRAR
[2012.06.04 08:15:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Wireshark
[2010.12.01 09:13:28 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\yang
[2011.01.15 18:03:34 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Zoner
< %APPDATA%\*.exe /s >
[2011.03.01 14:26:14 | 000,270,848 | ---- | M] (Teckda) -- C:\Users\tomas\AppData\Roaming\.minecraft\Minecraft Cracked.exe
[2010.10.21 02:00:02 | 000,695,296 | ---- | M] (AnjoCaido) -- C:\Users\tomas\AppData\Roaming\.minecraft\Minecraft Updater.exe
[2012.08.01 14:53:52 | 000,263,186 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\.minecraft\Minecraft.exe
[2012.08.05 15:45:43 | 000,300,563 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\.minecraft\Uninstall.exe
[2009.08.11 20:21:26 | 000,087,552 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 20:21:30 | 000,090,112 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 13:52:04 | 000,697,690 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\AC3 Filter\unins000.exe
[2010.02.23 16:01:52 | 001,185,871 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\FFDShow\unins000.exe
[2010.08.14 09:42:54 | 000,113,152 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 09:45:10 | 000,358,400 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 09:42:06 | 000,137,728 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 14:30:22 | 000,042,305 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\uninstall.exe
[2012.09.30 17:29:24 | 000,061,440 | R--- | M] (Acresso Software Inc.) -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}\ARPPRODUCTICON.exe
[2010.08.31 11:49:47 | 000,029,926 | R--- | M] () -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2011.01.31 14:35:15 | 000,057,344 | R--- | M] (InstallShield Software Corp.) -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{87441A59-5E64-4096-A170-14EFE67200C3}\ARPPRODUCTICON.exe
[2009.11.17 17:02:49 | 000,010,134 | R--- | M] () -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}\ARPPRODUCTICON.exe
[2011.09.23 13:07:18 | 001,005,512 | ---- | M] (EA Digital Illusions CE AB) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\battlefieldplay4free@ea.com\plugins\BP4FUpdater.exe
[2011.02.24 16:07:45 | 000,835,440 | R--- | M] () -- C:\Users\tomas\AppData\Roaming\PunkBuster\pbsetup\pbsvc.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job >
[2012.11.27 21:22:00 | 000,000,948 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.11.28 13:22:00 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.11.28 08:26:01 | 000,000,910 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
[2012.11.28 13:26:00 | 000,000,962 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\system32\runkgb.lnk
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\system32\runrefog.lnk
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
< >
< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2011.04.14 17:38:52 | 000,924,632 | ---- | M] (Mozilla Corporation) MD5=E83508D9A0F0D0D8449317DC6A4C5E02 -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2012.06.29 02:00:47 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=93569D46D79F9756ED077156496AFE23 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
< %PROGRAMFILES%\Opera\opera.exe /md5 >
[2012.11.23 16:35:48 | 000,878,480 | ---- | M] (Opera Software) MD5=E96462DD021F65D61D3F97056C3EF236 -- C:\Program Files (x86)\Opera\opera.exe
< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
< >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.11.28 13:28:23 | 000,000,512 | ---- | M] () MD5=7A19F347945A77EB3C295ECA78F70BF8 -- C:\PhysicalMBR.bin
< >
========== Files Created - No Company Name ==========
[2012.11.28 13:28:23 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.11.27 17:03:48 | 000,000,618 | ---- | C] () -- C:\Windows\SysWow64\runrefog.lnk
[2012.11.27 17:03:48 | 000,000,618 | ---- | C] () -- C:\Windows\SysWow64\runkgb.lnk
[2012.11.27 10:19:18 | 000,092,997 | ---- | C] () -- C:\Users\tomas\Desktop\30822830.jpg
[2012.11.25 20:35:04 | 000,939,320 | ---- | C] () -- C:\Users\tomas\Desktop\Bondbarrel.gif
[2012.11.25 20:21:56 | 000,049,501 | ---- | C] () -- C:\Users\tomas\Desktop\486211_560360807322670_1064310643_n.jpg
[2012.11.25 20:17:25 | 000,480,125 | ---- | C] () -- C:\Users\tomas\Desktop\adwcleaner.exe
[2012.11.25 15:00:40 | 000,266,449 | ---- | C] () -- C:\Users\tomas\Desktop\w9y53b.jpg
[2012.11.25 02:29:08 | 309,935,705 | ---- | C] () -- C:\Users\tomas\Desktop\The Hobbit Trailer @ 48fps - Medium Quality.mov
[2012.11.24 15:49:07 | 000,060,571 | ---- | C] () -- C:\Users\tomas\Desktop\198224_379612495456780_1768271830_n.jpg
[2012.11.24 13:07:47 | 006,103,167 | ---- | C] () -- C:\Users\tomas\Desktop\Ainol catalog.zip
[2012.11.24 12:54:31 | 105,512,768 | ---- | C] () -- C:\Users\tomas\Desktop\WA_23597.part3.rar
[2012.11.24 12:13:15 | 000,467,389 | ---- | C] () -- C:\Users\tomas\Desktop\703936_448672351859498_1536152395_o.jpg
[2012.11.23 20:43:32 | 997,195,776 | ---- | C] () -- C:\Users\tomas\Desktop\WA_23597.part2.rar
[2012.11.23 20:43:03 | 969,713,068 | ---- | C] () -- C:\Users\tomas\Desktop\WA_23597.part1.rar
[2012.11.23 19:21:46 | 000,371,127 | ---- | C] () -- C:\Users\tomas\Desktop\f13.jpg
[2012.11.23 16:29:07 | 000,002,297 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk
[2012.11.23 16:27:37 | 000,027,040 | ---- | C] () -- C:\Windows\SysNative\netathurx.inf
[2012.11.23 16:27:37 | 000,008,820 | ---- | C] () -- C:\Windows\SysNative\athurextx.cat
[2012.11.17 10:29:55 | 000,015,432 | ---- | C] () -- C:\Windows\Launcher.exe
[2012.11.05 20:13:15 | 000,000,751 | ---- | C] () -- C:\Windows\Rtcwplat.INI
[2012.09.30 18:14:36 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\manual
[2012.09.30 18:14:36 | 000,000,268 | RH-- | C] () -- C:\ProgramData\AccountTypes
[2012.09.30 18:14:36 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLck.DAT
[2012.09.30 18:14:32 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\programs
[2012.09.30 18:14:32 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Action
[2012.09.30 17:27:59 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLbx.DAT
[2012.09.16 18:03:16 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012.09.16 18:03:16 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012.09.16 18:03:16 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012.09.16 18:03:16 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012.09.16 18:03:16 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012.09.13 17:17:07 | 000,000,132 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\Adobe PNG Format CS6 Prefs
[2012.09.06 15:30:15 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012.07.28 02:39:50 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012.07.28 02:39:50 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012.04.20 13:10:11 | 000,000,058 | ---- | C] () -- C:\Windows\SysWow64\DonationCoder_ScreenshotCaptor_InstallInfo.dat
[2012.04.20 13:10:11 | 000,000,058 | ---- | C] () -- C:\Users\tomas\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
[2012.04.08 16:06:45 | 000,650,752 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2012.04.08 16:06:45 | 000,243,200 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2012.04.08 16:06:44 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012.04.08 16:06:43 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2012.02.15 11:58:37 | 000,000,154 | ---- | C] () -- C:\Windows\SOF.INI
[2012.01.09 20:29:01 | 000,000,000 | ---- | C] () -- C:\Users\tomas\AppData\Local\{C85B155B-5433-4FF4-96A7-DAF3386D6359}
[2011.12.31 14:47:43 | 000,234,768 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011.12.31 14:47:10 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011.12.10 16:58:52 | 000,007,600 | ---- | C] () -- C:\Users\tomas\AppData\Local\Resmon.ResmonCfg
[2011.10.10 10:29:26 | 000,000,064 | ---- | C] () -- C:\ProgramData\sandra.ldb
[2011.10.10 10:28:06 | 012,824,576 | ---- | C] () -- C:\ProgramData\sandra.mda
[2011.09.20 21:47:57 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2011.09.15 10:06:50 | 000,086,528 | ---- | C] () -- C:\Windows\bnetunin.exe
[2011.09.14 22:33:15 | 000,000,000 | ---- | C] () -- C:\Windows\PowerReg.dat
[2011.09.12 23:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.09.11 12:21:58 | 000,000,091 | ---- | C] () -- C:\Windows\CIV.INI
[2011.06.02 06:19:46 | 000,000,008 | RHS- | C] () -- C:\Users\tomas\ntuser.pol
[2011.04.02 12:45:48 | 000,000,132 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011.03.04 21:00:14 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\vxdblock.exe
[2011.02.13 16:16:57 | 000,005,632 | ---- | C] () -- C:\Users\tomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.01.31 14:47:58 | 000,000,000 | ---- | C] () -- C:\Windows\ViewNX2.INI
[2011.01.31 14:34:22 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Solid Colors
[2011.01.31 14:34:22 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\Scripts Menu
[2011.01.31 14:34:22 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLev.DAT
[2011.01.31 14:34:22 | 000,000,012 | RH-- | C] () -- C:\ProgramData\String Comparison
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Smooth Strings
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\ProgramData\SingleFiles
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\Screen Savers
[2011.01.31 14:34:21 | 000,000,268 | RH-- | C] () -- C:\Users\tomas\AppData\Roaming\Screen Saver
[2011.01.31 14:34:21 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLet.DAT
[2011.01.31 14:34:21 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLes.DAT
[2011.01.31 14:34:21 | 000,000,012 | RH-- | C] () -- C:\ProgramData\StatusSheet
[2011.01.31 14:34:21 | 000,000,012 | RH-- | C] () -- C:\ProgramData\StartupItems
[2011.01.10 13:49:16 | 000,035,840 | ---- | C] () -- C:\Windows\SysWow64\dokan.dll
[2010.09.06 21:39:05 | 000,000,132 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\Adobe BMP Format CS5 Prefs
[2010.08.10 12:28:20 | 000,000,565 | ---- | C] () -- C:\Users\tomas\AppData\Roaming\myMPQ.ini
========== ZeroAccess Check ==========
[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\SysWow64\wbem\wbemess.dll
========== LOP Check ==========
[2012.10.20 15:12:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\.minecraft
[2010.10.11 17:51:01 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Broad Intelligence
[2012.09.28 20:23:04 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer
[2010.01.30 22:18:32 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer Pro
[2011.03.30 00:19:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011.09.16 17:14:43 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\CodeLite
[2012.06.21 08:03:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DAEMON Tools Lite
[2012.04.20 13:10:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DonationCoder
[2011.10.08 18:16:55 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\GHISLER
[2011.04.05 21:41:05 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\HDRsoft
[2011.03.02 10:04:23 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\IrfanView
[2012.01.02 12:56:14 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Keyboard Drivers For Windows 7 Utility
[2012.02.15 10:22:54 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\LolClient
[2010.08.31 12:53:20 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Moyea
[2011.06.14 19:40:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\MPEG Streamclip
[2011.09.19 01:35:44 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\My Games
[2012.09.30 18:14:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nikon
[2011.04.19 08:33:59 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nokia
[2010.09.06 07:38:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Opera
[2010.03.02 01:11:51 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PC Suite
[2012.06.23 17:10:38 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PDAppFlex
[2012.07.07 14:23:48 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Petroglyph
[2011.10.11 07:53:39 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PunkBuster
[2010.08.04 21:23:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012.11.23 16:37:30 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\TP-LINK
[2011.03.28 15:29:08 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Two Pilots
[2012.06.04 11:40:41 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\uTorrent
[2010.06.08 06:21:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\VitySoft
[2012.09.05 16:03:56 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\wargaming.net
[2012.06.04 08:15:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Wireshark
[2010.12.01 09:13:28 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\yang
[2011.01.15 18:03:34 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Zoner
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 06:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 06:08:49 | 000,032,582 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012.07.30 08:07:03 | 000,000,948 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.07.30 08:07:05 | 000,000,952 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.07.30 08:13:15 | 000,000,910 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
[2012.07.30 08:13:15 | 000,000,962 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
< >
< MD5 for: ATAPI.SYS >
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\erdnt\cache64\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010.11.20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 02:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 02:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2009.07.14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2010.11.20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\SysWOW64\explorer.exe
[2010.11.20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.08.03 07:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 06:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\erdnt\cache86\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 07:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 06:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 07:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2009.08.03 07:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
< MD5 for: HAL.DLL >
[2009.07.14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: SCECLI.DLL >
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\erdnt\cache86\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\erdnt\cache64\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SERVICES.EXE >
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\erdnt\cache64\services.exe
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2010.11.20 14:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2010.06.14 07:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2012.03.30 11:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012.03.30 12:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2012.08.22 19:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2012.03.30 11:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.06.14 07:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 02:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2012.03.30 12:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2012.08.22 19:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\erdnt\cache64\tcpip.sys
[2012.08.22 19:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\SysNative\drivers\tcpip.sys
[2012.08.22 19:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\erdnt\cache64\winlogon.exe
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
< >
< %systemroot%*.* /U /s >
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2012.10.20 15:12:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\.minecraft
[2012.05.21 18:55:15 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Adobe
[2011.01.21 18:11:08 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Adobe Mini Bridge CS5
[2011.01.28 00:54:18 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\AdobeLensProfileDownloader
[2012.02.04 21:17:43 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Ahead
[2012.09.06 15:30:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\ATI
[2010.10.11 17:51:01 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Broad Intelligence
[2012.09.28 20:23:04 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer
[2010.01.30 22:18:32 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\BSplayer Pro
[2011.03.30 00:19:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011.11.03 23:48:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\codeblocks
[2011.09.16 17:14:43 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\CodeLite
[2011.11.04 16:37:07 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Corel
[2012.06.21 08:03:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DAEMON Tools Lite
[2012.04.20 13:10:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\DonationCoder
[2011.10.08 18:16:55 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\GHISLER
[2011.05.23 14:12:29 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Hamachi
[2011.04.05 21:41:05 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\HDRsoft
[2009.10.03 10:05:29 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Identities
[2012.03.28 14:06:05 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\InstallShield
[2011.03.02 10:04:23 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\IrfanView
[2012.01.02 12:56:14 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Keyboard Drivers For Windows 7 Utility
[2012.02.15 10:22:54 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\LolClient
[2009.10.21 07:03:23 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Macromedia
[2011.12.11 23:14:33 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Malwarebytes
[2011.11.25 06:11:28 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Mathematica
[2009.07.14 16:36:58 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Media Center Programs
[2012.06.24 15:05:47 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Media Player Classic
[2012.06.25 09:45:37 | 000,000,000 | --SD | M] -- C:\Users\tomas\AppData\Roaming\Microsoft
[2010.08.31 12:53:20 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Moyea
[2009.12.14 00:22:25 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Mozilla
[2011.06.14 19:40:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\MPEG Streamclip
[2011.09.19 01:35:44 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\My Games
[2011.11.03 21:02:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nero
[2012.09.30 18:14:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nikon
[2011.04.19 08:33:59 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Nokia
[2011.09.12 22:44:03 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\NVIDIA
[2010.09.06 07:38:17 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Opera
[2010.03.02 01:11:51 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PC Suite
[2012.06.23 17:10:38 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PDAppFlex
[2012.07.07 14:23:48 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Petroglyph
[2011.03.22 21:32:42 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PSpad
[2011.10.11 07:53:39 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\PunkBuster
[2012.10.14 10:47:26 | 000,000,000 | RH-D | M] -- C:\Users\tomas\AppData\Roaming\SecuROM
[2012.10.21 15:59:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Skype
[2010.08.04 21:23:11 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012.11.23 16:37:30 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\TP-LINK
[2011.03.28 15:29:08 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Two Pilots
[2012.06.04 11:40:41 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\uTorrent
[2010.06.08 06:21:16 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\VitySoft
[2012.03.25 18:01:02 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\vlc
[2012.09.05 16:03:56 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\wargaming.net
[2012.06.05 12:07:47 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Winamp
[2009.12.13 16:43:51 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\WinRAR
[2012.06.04 08:15:52 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Wireshark
[2010.12.01 09:13:28 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\yang
[2011.01.15 18:03:34 | 000,000,000 | ---D | M] -- C:\Users\tomas\AppData\Roaming\Zoner
< %APPDATA%\*.exe /s >
[2011.03.01 14:26:14 | 000,270,848 | ---- | M] (Teckda) -- C:\Users\tomas\AppData\Roaming\.minecraft\Minecraft Cracked.exe
[2010.10.21 02:00:02 | 000,695,296 | ---- | M] (AnjoCaido) -- C:\Users\tomas\AppData\Roaming\.minecraft\Minecraft Updater.exe
[2012.08.01 14:53:52 | 000,263,186 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\.minecraft\Minecraft.exe
[2012.08.05 15:45:43 | 000,300,563 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\.minecraft\Uninstall.exe
[2009.08.11 20:21:26 | 000,087,552 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 20:21:30 | 000,090,112 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 13:52:04 | 000,697,690 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\AC3 Filter\unins000.exe
[2010.02.23 16:01:52 | 001,185,871 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\FFDShow\unins000.exe
[2010.08.14 09:42:54 | 000,113,152 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 09:45:10 | 000,358,400 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 09:42:06 | 000,137,728 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 14:30:22 | 000,042,305 | ---- | M] () -- C:\Users\tomas\AppData\Roaming\BSplayer\Haali media splitter\uninstall.exe
[2012.09.30 17:29:24 | 000,061,440 | R--- | M] (Acresso Software Inc.) -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}\ARPPRODUCTICON.exe
[2010.08.31 11:49:47 | 000,029,926 | R--- | M] () -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2011.01.31 14:35:15 | 000,057,344 | R--- | M] (InstallShield Software Corp.) -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{87441A59-5E64-4096-A170-14EFE67200C3}\ARPPRODUCTICON.exe
[2009.11.17 17:02:49 | 000,010,134 | R--- | M] () -- C:\Users\tomas\AppData\Roaming\Microsoft\Installer\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}\ARPPRODUCTICON.exe
[2011.09.23 13:07:18 | 001,005,512 | ---- | M] (EA Digital Illusions CE AB) -- C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\y653rw9z.default\extensions\battlefieldplay4free@ea.com\plugins\BP4FUpdater.exe
[2011.02.24 16:07:45 | 000,835,440 | R--- | M] () -- C:\Users\tomas\AppData\Roaming\PunkBuster\pbsetup\pbsvc.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job >
[2012.11.27 21:22:00 | 000,000,948 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.11.28 13:22:00 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.11.28 08:26:01 | 000,000,910 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001Core.job
[2012.11.28 13:26:00 | 000,000,962 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1766859715-2553107473-3108573422-1001UA.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\system32\runkgb.lnk
[2012.11.27 17:03:48 | 000,000,618 | ---- | M] () -- C:\Windows\system32\runrefog.lnk
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
< >
< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2011.04.14 17:38:52 | 000,924,632 | ---- | M] (Mozilla Corporation) MD5=E83508D9A0F0D0D8449317DC6A4C5E02 -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2012.06.29 02:00:47 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=93569D46D79F9756ED077156496AFE23 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
< %PROGRAMFILES%\Opera\opera.exe /md5 >
[2012.11.23 16:35:48 | 000,878,480 | ---- | M] (Opera Software) MD5=E96462DD021F65D61D3F97056C3EF236 -- C:\Program Files (x86)\Opera\opera.exe
< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
< >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.11.28 13:28:23 | 000,000,512 | ---- | M] () MD5=7A19F347945A77EB3C295ECA78F70BF8 -- C:\PhysicalMBR.bin
< >
Re: preventivní kontrola logu
a část 3:
< *crack* /s >
[2012.02.16 01:42:39 | 000,189,005 | ---- | M] () -- \_filmy\_xyz\_fap folder pics 3\Crack_The_Whip_by_Miss_Tschirhart.jpg
[2012.09.30 16:09:10 | 733,757,924 | ---- | M] () -- \_filmy\Cracks[2009]DvDrip[Eng]-FXG\Cracks[2009]DvDrip[Eng]-FXG.avi
[2012.09.30 15:29:37 | 000,125,838 | ---- | M] () -- \_filmy\Cracks[2009]DvDrip[Eng]-FXG\Cracks[2009]DvDrip[Eng][Subs].srt
[2005.05.31 23:00:00 | 000,174,904 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_crackedplaster00.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_ma_crackedearth.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_ma_crackedearth01.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_ma_crackedearth03.dds
[2010.09.12 00:56:42 | 000,067,756 | ---- | M] () -- \_hry\CS\cstrike\sound\misc\cracker1.wav
[2010.10.24 04:18:37 | 000,023,012 | ---- | M] () -- \_hry\CS\cstrike\sound\misc\cracker1.wav.ztmp
[2003.04.23 17:09:10 | 000,459,150 | ---- | M] () -- \_hry\Morrowind\Data Files\Sound\Fx\icecracking.wav
[2005.05.31 23:00:00 | 000,174,904 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_crackedplaster00.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_ma_crackedearth.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_ma_crackedearth01.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_ma_crackedearth03.dds
[2010.07.04 19:46:05 | 000,000,146 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack2.vmt
[2010.07.04 19:46:06 | 000,174,944 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack2.vtf
[2010.07.04 19:46:06 | 000,000,146 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack3.vmt
[2010.07.04 19:46:06 | 000,087,616 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack3.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack1.vmt
[2010.07.04 19:46:05 | 000,699,232 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack1.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack2.vmt
[2010.07.04 19:46:05 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack2.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack3.vmt
[2010.07.04 19:46:06 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack3.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack4.vmt
[2010.07.04 19:46:06 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack4.vtf
[2010.07.04 19:46:06 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack5.vmt
[2010.07.04 19:46:06 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack5.vtf
[2010.07.04 19:46:05 | 000,000,143 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Floorcrack2.vmt
[2010.07.04 19:46:06 | 000,087,616 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Floorcrack2.vtf
[2010.07.04 19:43:24 | 000,000,151 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_01.vmt
[2010.07.04 19:43:24 | 000,087,588 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_01.vtf
[2010.07.04 19:43:24 | 000,000,151 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_03.vmt
[2010.07.04 19:43:24 | 001,398,308 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_03.vtf
[2010.07.04 19:43:24 | 000,000,150 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_04.vmt
[2010.07.04 19:43:24 | 000,087,532 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_04.vtf
[2010.07.04 19:43:24 | 000,000,151 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_05.vmt
[2010.07.04 19:43:24 | 000,174,908 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_05.vtf
[2010.07.04 20:50:42 | 000,150,012 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.dx80.vtx
[2010.07.04 20:50:42 | 000,149,958 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.dx90.vtx
[2010.07.04 20:50:42 | 000,109,264 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.mdl
[2010.07.04 20:50:42 | 000,149,443 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.sw.vtx
[2010.07.04 20:50:42 | 000,658,880 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.vvd
[2010.07.04 22:09:58 | 001,129,094 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\sound\BMS_scripted\app\wood_crack.wav
[2009.12.27 17:31:55 | 000,114,356 | ---- | M] () -- \_mobil\nové\Aplikace\FingerPrint\ThinkChange.FingerPrint.v1.20.S60v5.SymbianOS9.4..Cracked-TgSPDA_signed.sis
[2008.10.13 05:13:26 | 000,429,144 | ---- | M] () -- \_mobil\nové\Aplikace\Guardian\FuzzyByte.Guardian.v1.03.S60v3.SymbianOS9.1.Unsigned.Cracked-illusion.sis
[2009.03.27 04:05:06 | 000,180,116 | ---- | M] () -- \_mobil\nové\Aplikace\Mumcode.MumSMS.Plus.v5.05.S60v3.S60v5.Symbia\Mumcode.MumSMS.Plus.v5.05.S60v3.S60v5.SymbianOS9.x.Cracked.Read.NFO-illusion.sis
[2005.03.08 11:30:56 | 000,092,827 | ---- | M] () -- \_programy\CorelDRAW Graphics Suite X5\Custom Data\Bumpmap\Cracks.cpt
[2008.07.14 10:02:56 | 000,017,870 | ---- | M] () -- \_programy\CorelDRAW Graphics Suite X5\Custom Data\Canvas\cracks2c.bmp
[2007.10.21 18:51:16 | 007,843,797 | ---- | M] () -- \_věci\personal\old personal\Users\317827138\RcvdFiles\301956196_AiMounty\flt-cnc3-crack.rar
[2009.12.23 11:34:27 | 000,004,654 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\bt_metadata\Dragon Age Origins 1.01 Patch + Crack.zip.dat
[2012.05.16 08:51:50 | 000,000,696 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fcdn.crackberry.com%2Fthemes%2Fcrackberry3%2Ffavicon.png
[2012.04.03 23:05:39 | 000,000,319 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fi.crackedcdn.com%2Ffavicon.png
[2012.05.16 08:51:54 | 000,000,314 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fsoftware.crackberry.com%2Ffavicon.png
[2012.06.11 22:01:14 | 000,000,156 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\pleasecrackerswithcheese.tumblr.com.idx
[2012.11.02 14:13:22 | 000,000,663 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\www.cracked.com.idx
[2011.03.01 14:26:14 | 000,270,848 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\.minecraft\Minecraft Cracked.exe
[2011.09.22 11:22:07 | 000,001,009 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Start Minecraft Beta Cracked.lnk
[2011.09.22 11:22:07 | 000,000,944 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Uninstall Minecraft Beta Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Start Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Uninstall Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,952 | ---- | M] () -- \Documents and Settings\tomas\Desktop\hry\Start Minecraft Cracked.lnk
[2011.09.10 09:37:14 | 000,015,488 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,476 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,015,896 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:16 | 000,016,392 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,015,972 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,015,908 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.09.10 09:37:14 | 000,016,404 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:14 | 000,015,984 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.09.10 09:37:14 | 000,015,708 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,696 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,016,116 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:17 | 000,016,612 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,016,192 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,016,128 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.09.10 09:37:15 | 000,016,624 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:15 | 000,016,204 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,488 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.12.31 14:53:31 | 000,015,476 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:31 | 000,015,896 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,392 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,015,972 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,015,908 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.12.31 14:53:30 | 000,016,404 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,015,984 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,708 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.12.31 14:53:32 | 000,015,696 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:32 | 000,016,116 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,612 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,016,192 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,016,128 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.12.31 14:53:31 | 000,016,624 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,016,204 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2012.08.09 11:24:12 | 000,004,412 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\CrackedCom.class
[2012.10.14 10:26:15 | 000,005,592 | ---- | M] () -- \Program Files (x86)\uTorrent\BioshockCrack.torrent
[2012.09.30 15:24:05 | 000,224,234 | ---- | M] () -- \Program Files (x86)\uTorrent\Cracks[2009]DvDrip[Eng]-FXG.torrent
[2010.12.19 19:24:35 | 000,126,824 | ---- | M] () -- \Program Files (x86)\uTorrent\Dragon Age 1.04 Update + Crack.torrent
[2010.10.14 09:02:36 | 000,006,025 | ---- | M] () -- \Program Files (x86)\uTorrent\Dragon Age Origins 1.01 Patch + Crack.zip.torrent
[2011.06.04 13:04:55 | 000,002,279 | ---- | M] () -- \Program Files (x86)\uTorrent\Duke.Nukem.Forever.Demo-RELOADED(Crack Only).torrent
[2011.09.22 11:20:17 | 000,014,538 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Beta_Cracked_v1.8.1.zip.1.torrent
[2011.09.16 22:05:08 | 000,014,538 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Beta_Cracked_v1.8.1.zip.torrent
[2011.11.26 23:06:39 | 000,014,713 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.0.0.zip.torrent
[2012.02.26 18:31:10 | 000,015,468 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.1.0.zip.torrent
[2012.06.13 14:05:45 | 000,015,721 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.2.5.zip.torrent
[2012.08.05 15:41:24 | 000,014,741 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.3.1.zip.torrent
[2011.11.07 21:52:49 | 000,020,813 | ---- | M] () -- \Program Files (x86)\uTorrent\Nik Software Color Efex Pro 4.00 REV 15202 Complete Edition (x86-x64) with CRACK.torrent
[2011.10.24 19:05:07 | 000,004,070 | ---- | M] () -- \Program Files (x86)\uTorrent\Portal.2.Update.1.to.15.incl.DLC.Cracked-NoGrp.torrent
[2010.08.03 00:23:32 | 000,019,092 | ---- | M] () -- \Program Files (x86)\uTorrent\StarCraft II Wings of Liberty-RELOADED Crack Only.torrent
[2012.07.07 14:20:34 | 000,003,391 | ---- | M] () -- \Program Files (x86)\uTorrent\SWEAWFOC Cracks.rar.torrent
[2010.12.19 19:24:56 | 000,011,572 | ---- | M] () -- \Program Files (x86)\uTorrent\The.Ball.v1.0.multi9.cracked-THETA.torrent
[2009.12.23 11:34:27 | 000,004,654 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\bt_metadata\Dragon Age Origins 1.01 Patch + Crack.zip.dat
[2012.05.16 08:51:50 | 000,000,696 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fcdn.crackberry.com%2Fthemes%2Fcrackberry3%2Ffavicon.png
[2012.04.03 23:05:39 | 000,000,319 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fi.crackedcdn.com%2Ffavicon.png
[2012.05.16 08:51:54 | 000,000,314 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fsoftware.crackberry.com%2Ffavicon.png
[2012.06.11 22:01:14 | 000,000,156 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\pleasecrackerswithcheese.tumblr.com.idx
[2012.11.02 14:13:22 | 000,000,663 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\www.cracked.com.idx
[2011.03.01 14:26:14 | 000,270,848 | ---- | M] () -- \Users\tomas\AppData\Roaming\.minecraft\Minecraft Cracked.exe
[2011.09.22 11:22:07 | 000,001,009 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Start Minecraft Beta Cracked.lnk
[2011.09.22 11:22:07 | 000,000,944 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Uninstall Minecraft Beta Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Start Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Uninstall Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,952 | ---- | M] () -- \Users\tomas\Desktop\hry\Start Minecraft Cracked.lnk
[2011.09.10 09:37:14 | 000,015,488 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,476 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,015,896 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:16 | 000,016,392 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,015,972 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,015,908 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.09.10 09:37:14 | 000,016,404 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:14 | 000,015,984 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.09.10 09:37:14 | 000,015,708 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,696 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,016,116 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:17 | 000,016,612 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,016,192 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,016,128 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.09.10 09:37:15 | 000,016,624 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:15 | 000,016,204 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,488 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.12.31 14:53:31 | 000,015,476 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:31 | 000,015,896 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,392 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,015,972 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,015,908 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.12.31 14:53:30 | 000,016,404 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,015,984 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,708 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.12.31 14:53:32 | 000,015,696 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:32 | 000,016,116 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,612 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,016,192 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,016,128 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.12.31 14:53:31 | 000,016,624 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,016,204 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
< *keygen* /s >
[2012.08.13 16:36:59 | 000,016,384 | ---- | M] () -- \_download\Corel Draw X5 with Keygen\Keygen.exe
[2000.07.17 04:22:04 | 000,049,664 | ---- | M] () -- \_hry\_iso\Diablo 2 věci\CRACK\keygen.exe
[2006.12.08 10:58:30 | 000,034,816 | ---- | M] () -- \_mobil\nové\Aplikace\best keygen.exe
[2011.11.11 08:28:32 | 000,042,853 | ---- | M] () -- \_programy\_iso\3D Studio Max 9 + Tutorials and Keygen\3dsmax9-keygen.zip
[2010.03.21 14:37:05 | 000,043,287 | ---- | M] () -- \_programy\_iso\Adobe Lightroom v2.2+Keygen+E-books[h33t][MAMBO04]\keygen.exe
[2010.10.07 05:14:12 | 000,305,302 | ---- | M] () -- \_programy\_iso\Adobe.Photoshop.Elements.v9.0.Multilingual.ESD.ISO-CORE\cr-psew9\CORE\core_keygen.exe
[2011.10.14 06:39:02 | 000,016,384 | ---- | M] () -- \_programy\_iso\Corel Draw X5 with Keygen\Keygen.exe
[2011.12.26 18:49:52 | 000,071,680 | ---- | M] () -- \_programy\_iso\Nero 7.10.1.0 By M3ZKAL\Nero 7.10.1.0 Keygen.exe
[2011.11.07 21:52:39 | 000,076,288 | ---- | M] () -- \_programy\_iso\Nik Software Viveza\keygen.exe
[2011.10.21 15:27:02 | 000,114,688 | ---- | M] () -- \_programy\_iso\Wolfram Mathematica 8.0.1 for Windows + Keygen\Mathematica 8 + Keygen\keygen.exe
[2010.10.07 16:07:50 | 000,153,315 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Java\WolframSSHKeyGen.jar
[2000.07.17 04:22:04 | 000,049,664 | ---- | M] () -- \Documents and Settings\tomas\Desktop\záloha notebook\BGT\CRACK\keygen.exe
[2011.11.10 01:38:39 | 000,031,914 | ---- | M] () -- \Program Files (x86)\uTorrent\3D Studio Max 9 + Tutorials and Keygen.torrent
[2012.08.13 16:36:04 | 000,040,229 | ---- | M] () -- \Program Files (x86)\uTorrent\Corel Draw X5 with Keygen.1.torrent
[2011.10.14 06:35:52 | 000,040,753 | ---- | M] () -- \Program Files (x86)\uTorrent\Corel Draw X5 with Keygen.torrent
[2010.03.01 11:02:37 | 000,000,606 | ---- | M] () -- \Program Files (x86)\uTorrent\Windows 7 Keygen.torrent
[2011.10.21 15:25:24 | 000,017,448 | ---- | M] () -- \Program Files (x86)\uTorrent\Wolfram Mathematica 8.0.1 for Windows + Keygen.torrent
[2000.07.17 04:22:04 | 000,049,664 | ---- | M] () -- \Users\tomas\Desktop\záloha notebook\BGT\CRACK\keygen.exe
< *loader* /s >
[2009.04.24 23:27:30 | 000,001,122 | ---- | M] () -- \_download\_done xxx\_good\manga\Tosh, Menkui (www.hentairules.net) (English)\notes and info from the uploader.txt
[2012.07.04 21:05:13 | 000,228,864 | ---- | M] () -- \_hry\ACR\Assassin's Creed Revelations\ubiorbitapi_r2_loader.dll
[2011.10.30 07:10:24 | 000,169,080 | ---- | M] () -- \_hry\ACR\Assassin's Creed Revelations\uplay_r1_loader.dll
[2012.07.04 19:35:08 | 000,329,056 | ---- | M] () -- \_hry\ACR\Assassin's Creed Revelations\orbit\ubiorbitapi_r2_loader.dll
[2004.12.28 17:40:02 | 000,169,384 | ---- | M] () -- \_hry\Counter Strike\cstrike\models\qloader.mdl
[2003.09.15 13:55:50 | 000,352,548 | ---- | M] () -- \_hry\Counter Strike\valve\models\loader.mdl
[2003.09.15 13:56:04 | 000,012,764 | ---- | M] () -- \_hry\Counter Strike\valve\sound\ambience\loader_hydra1.wav
[2003.09.15 13:56:04 | 000,012,164 | ---- | M] () -- \_hry\Counter Strike\valve\sound\ambience\loader_step1.wav
[2004.12.28 17:40:02 | 000,169,384 | ---- | M] () -- \_hry\CS\cstrike\models\qloader.mdl
[2003.09.15 13:55:50 | 000,352,548 | ---- | M] () -- \_hry\CS\valve\models\loader.mdl
[2003.09.15 13:56:04 | 000,012,764 | ---- | M] () -- \_hry\CS\valve\sound\ambience\loader_hydra1.wav
[2003.09.15 13:56:04 | 000,012,164 | ---- | M] () -- \_hry\CS\valve\sound\ambience\loader_step1.wav
[2012.02.06 17:45:23 | 000,000,726 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_body.vmt
[2010.07.04 20:09:08 | 000,699,272 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_body.vtf
[2010.07.04 20:09:08 | 001,398,336 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_body_normal.vtf
[2012.02.06 17:45:23 | 000,000,724 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_leg.vmt
[2010.07.04 20:09:08 | 000,699,272 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_leg.vtf
[2010.07.04 20:09:08 | 001,398,336 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_leg_normal.vtf
[2010.07.04 20:51:41 | 000,178,888 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.dx80.vtx
[2010.07.04 20:51:41 | 000,178,861 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.dx90.vtx
[2010.07.04 20:51:41 | 000,012,873 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.jpg
[2010.07.04 20:51:41 | 000,349,716 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.mdl
[2010.07.04 20:51:41 | 000,269,969 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.phy
[2010.07.04 20:51:41 | 000,178,517 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.sw.vtx
[2010.07.04 20:51:41 | 000,797,056 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.vvd
[2011.05.17 22:22:21 | 000,098,816 | ---- | M] () -- \_hry\Warcraft III install\euroloader.exe
[2011.05.06 17:47:43 | 000,000,046 | ---- | M] () -- \_hry\Warcraft III install\euroloader.txt
[2010.07.05 14:30:50 | 000,071,208 | ---- | M] () -- \_hry\World_of_Tanks\PhysXLoader.dll
[2012.06.15 10:10:23 | 000,005,679 | ---- | M] () -- \_hry\World_of_Tanks\res\scripts\client\tutorial\TutorialLoader.pyc
[2009.10.02 23:28:33 | 000,421,888 | ---- | M] () -- \_programy\_iso\_MSDNAA\Downloader_for_Windows_7_Pro_RTM_x64_cs.exe
[2009.09.25 22:27:15 | 000,421,888 | ---- | M] () -- \_programy\_iso\_MSDNAA\downloader_of_Vista_DVD_SP1_cz.exe
[2010.03.09 03:28:40 | 005,297,608 | ---- | M] () -- \_programy\Adobe Bridge CS5\Photodownloader.exe
[2011.01.28 00:53:42 | 000,095,232 | ---- | M] () -- \_programy\Adobe Bridge CS5\Adobe Lens Profile Downloader\Adobe Lens Profile Downloader.exe
[2011.01.28 00:53:18 | 001,005,939 | ---- | M] () -- \_programy\Adobe Bridge CS5\Adobe Lens Profile Downloader\LensProfileDownloader.swf
[2010.03.09 00:38:58 | 000,011,161 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 00:38:58 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,308 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2010.01.26 04:04:28 | 000,012,648 | ---- | M] () -- \_programy\CorelDRAW Graphics Suite X5\Programs\ReflectionLoader.dll
[2012.03.13 11:10:54 | 003,297,128 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012.03.13 09:42:26 | 000,011,161 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:28 | 000,011,161 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 09:42:30 | 000,000,324 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 09:42:30 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2012.03.13 11:18:28 | 003,297,128 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\Photodownloader.exe
[2012.03.13 09:41:34 | 000,000,860 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\Photodownloader.exe.manifest
[2012.03.13 09:41:58 | 000,011,161 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:00 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 09:42:06 | 000,000,324 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 09:42:06 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011.02.23 18:34:10 | 000,002,612 | ---- | M] () -- \_programy\Wolfram\AddOns\Packages\GUIKit\src\java\com\wolfram\bsf\util\JLink2ClassLoaderHandler.java
[2011.02.23 18:34:10 | 000,000,867 | ---- | M] () -- \_programy\Wolfram\AddOns\Packages\GUIKit\src\java\com\wolfram\bsf\util\JLink3ClassLoaderHandler.java
[2011.02.23 18:34:10 | 000,000,463 | ---- | M] () -- \_programy\Wolfram\AddOns\Packages\GUIKit\src\java\com\wolfram\bsf\util\LinkClassLoaderHandler.java
[2011.02.23 18:40:04 | 000,028,688 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Documentation\JavaDoc\com\wolfram\jlink\JLinkClassLoader.html
[2011.02.23 18:40:04 | 000,009,816 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Documentation\JavaDoc\com\wolfram\jlink\class-use\JLinkClassLoader.html
[2011.02.23 18:40:04 | 000,015,181 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Source\Java\com\wolfram\jlink\JLinkClassLoader.java
[2011.02.23 18:40:04 | 000,004,509 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Source\Java\com\wolfram\jlink\JLinkClassLoaderHelper.java
[2011.02.23 18:40:04 | 000,004,219 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Source\Java\com\wolfram\jlink\JLinkSystemClassLoader.java
[2011.02.23 19:06:46 | 000,002,475 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overloads.html
[2011.02.23 19:06:46 | 000,003,410 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overload_1.html
[2011.02.23 19:06:46 | 000,004,172 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overload_2.html
[2011.02.23 19:06:46 | 000,003,870 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overload_3.html
[2011.02.23 19:06:46 | 000,003,436 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.html
[2011.02.23 19:06:46 | 000,002,004 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.LoadAssembly_overloads.html
[2011.02.23 19:06:46 | 000,003,224 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.LoadAssembly_overload_1.html
[2011.02.23 19:06:46 | 000,004,058 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.LoadAssembly_overload_2.html
[2011.02.23 19:06:46 | 000,001,934 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoaderConstructor.html
[2011.02.23 19:06:46 | 000,005,965 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoaderMembers.html
[2011.02.23 19:06:46 | 000,005,374 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoaderMethods.html
[2011.02.23 19:06:48 | 000,020,873 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Source\TypeLoader.cs
[2011.02.23 19:06:48 | 000,006,625 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Source\Internal\COM\COMTypeLibraryLoader.cs
[2010.03.09 03:28:40 | 005,297,608 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\Photodownloader.exe
[2010.03.09 00:38:58 | 000,011,161 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 00:38:58 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,308 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011.01.28 00:53:46 | 000,001,075 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\Adobe Lens Profile Downloader.lnk
[2010.10.02 10:05:44 | 000,001,731 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\euroloader.lnk
[2011.02.09 17:45:17 | 000,000,362 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2011.02.09 17:45:16 | 000,001,140 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader.lnk
[2011.02.09 17:45:21 | 000,001,115 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2010.04.28 12:45:50 | 000,835,952 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Flash Video Downloader 2.0\Flash Video Downloader 2.0.exe
[2010.09.06 07:36:22 | 000,008,238 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Flash Video Downloader 2.0\images\ajax-loader.gif
[2010.09.06 07:36:22 | 000,010,819 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Flash Video Downloader 2.0\images\progress-loader.gif
[2011.01.28 00:59:29 | 000,000,064 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\AdobeLensProfileDownloader\Local Store\#SharedObjects\LensProfileDownloader.swf\AdobeLensProfileDownloader.sol
[2011.02.09 17:45:17 | 000,001,040 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\JDownloader.lnk
[2010.09.06 07:36:22 | 000,002,200 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flash Video Downloader 2.0.lnk
[2011.07.06 13:09:58 | 000,001,783 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\Euroloader.lnk
[2012.11.17 10:28:30 | 000,683,048 | ---- | M] () -- \Documents and Settings\tomas\Desktop\Chip_Downloader_League_of_Legends_2%2f2012.exe
[2003.07.10 00:11:38 | 000,011,436 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\AutoLoader.pm
[2005.11.02 09:45:40 | 000,028,960 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\DynaLoader.pm
[2005.11.02 09:45:40 | 000,008,924 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\XSLoader.pm
[2005.11.02 09:46:10 | 000,000,000 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.bs
[2005.11.02 09:46:10 | 000,028,777 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.dll
[2005.11.02 09:46:10 | 000,000,817 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.exp
[2005.11.02 09:46:10 | 000,002,212 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.lib
[6 \Program Files (x86)\*.tmp files -> \Program Files (x86)\*.tmp -> ]
[2010.10.25 14:13:46 | 000,013,785 | ---- | M] () -- \Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\WebPublish\BootStrapLoader.swf
[2012.02.22 22:11:56 | 000,078,336 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.02.22 22:11:56 | 000,155,136 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.02.22 22:11:56 | 000,117,248 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2007.06.27 19:03:00 | 000,177,448 | ---- | M] () -- \Program Files (x86)\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2006.10.26 12:40:34 | 000,057,344 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader.dll
[2006.10.26 12:40:34 | 000,005,120 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader.tlb
[2008.07.30 10:06:58 | 000,072,192 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.dll
[2008.07.29 03:43:16 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.tlb
[2010.06.22 13:00:02 | 000,710,144 | ---- | M] () -- \Program Files (x86)\Common Files\Nikon\Nikon File Uploader 2\NkFileUploader2.exe
[2010.06.22 12:59:38 | 000,012,800 | ---- | M] () -- \Program Files (x86)\Common Files\Nikon\Nikon File Uploader 2\NkFileUploader2Lang.dll
[2011.02.09 17:46:34 | 000,214,528 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.exe
[2011.02.09 17:46:29 | 000,593,293 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.jar
[2011.02.09 17:46:18 | 000,000,536 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.log
[2010.12.15 12:35:18 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderBETA.exe
[2010.12.15 12:35:18 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderD3D.exe
[2011.02.09 17:59:25 | 000,000,105 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\img\hosterlogos\uploader.pl.png
[2012.01.03 09:41:53 | 000,007,073 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\UploaderPl.class
[2010.12.14 17:30:40 | 000,032,222 | ---- | M] () -- \Program Files (x86)\JDownloader\licenses\jdownloader.license
[2008.12.06 17:13:52 | 000,001,070 | ---- | M] () -- \Program Files (x86)\MediaCoder\extensions\_include\loader.html
[2009.01.21 14:30:04 | 000,003,072 | ---- | M] () -- \Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\MapLoader_cze.NLR
[2009.05.31 02:21:00 | 000,071,008 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2009.05.31 02:21:00 | 000,073,568 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2010.12.19 19:02:45 | 000,000,871 | ---- | M] () -- \Program Files (x86)\uTorrent\daoloader.r4-TiLL.torrent
[2010.03.15 10:27:18 | 000,054,784 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2010.02.08 00:44:00 | 000,000,543 | ---- | M] () -- \Program Files\Wireshark\etc\gtk-2.0\gdk-pixbuf.loaders
[2011.01.28 00:53:46 | 000,001,075 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lens Profile Downloader.lnk
[2010.10.02 10:05:44 | 000,001,731 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\euroloader.lnk
[2011.02.09 17:45:17 | 000,000,362 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2011.02.09 17:45:16 | 000,001,140 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader.lnk
[2011.02.09 17:45:21 | 000,001,115 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2011.01.28 00:53:46 | 000,001,075 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Adobe Lens Profile Downloader.lnk
[2010.10.02 10:05:44 | 000,001,731 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\euroloader.lnk
[2011.02.09 17:45:17 | 000,000,362 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2011.02.09 17:45:16 | 000,001,140 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader.lnk
[2011.02.09 17:45:21 | 000,001,115 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2010.04.28 12:45:50 | 000,835,952 | ---- | M] () -- \Users\tomas\AppData\Local\Flash Video Downloader 2.0\Flash Video Downloader 2.0.exe
[2010.09.06 07:36:22 | 000,008,238 | ---- | M] () -- \Users\tomas\AppData\Local\Flash Video Downloader 2.0\images\ajax-loader.gif
[2010.09.06 07:36:22 | 000,010,819 | ---- | M] () -- \Users\tomas\AppData\Local\Flash Video Downloader 2.0\images\progress-loader.gif
[2011.01.28 00:59:29 | 000,000,064 | ---- | M] () -- \Users\tomas\AppData\Roaming\AdobeLensProfileDownloader\Local Store\#SharedObjects\LensProfileDownloader.swf\AdobeLensProfileDownloader.sol
[2011.02.09 17:45:17 | 000,001,040 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\JDownloader.lnk
[2010.09.06 07:36:22 | 000,002,200 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flash Video Downloader 2.0.lnk
[2011.07.06 13:09:58 | 000,001,783 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\Euroloader.lnk
[2012.11.17 10:28:30 | 000,683,048 | ---- | M] () -- \Users\tomas\Desktop\Chip_Downloader_League_of_Legends_2%2f2012.exe
[2003.07.10 00:11:38 | 000,011,436 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\AutoLoader.pm
[2005.11.02 09:45:40 | 000,028,960 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\DynaLoader.pm
[2005.11.02 09:45:40 | 000,008,924 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\XSLoader.pm
[2005.11.02 09:46:10 | 000,000,000 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.bs
[2005.11.02 09:46:10 | 000,028,777 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.dll
[2005.11.02 09:46:10 | 000,000,817 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.exp
[2005.11.02 09:46:10 | 000,002,212 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.lib
[2010.08.17 11:06:36 | 000,082,784 | ---- | M] () -- \Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2009.07.29 03:00:56 | 000,000,338 | ---- | M] () -- \Windows\Downloaded Program Files\PhotoUploader55.inf
[2009.07.29 21:21:24 | 003,540,488 | ---- | M] () -- \Windows\Downloaded Program Files\PhotoUploader55.ocx
[2011.07.16 05:15:45 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2011.07.16 05:15:45 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009.07.14 02:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 02:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:04:54 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 16:17:49 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 16:17:49 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009.07.14 16:17:49 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009.07.14 16:17:49 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009.07.14 16:17:49 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2012.06.03 11:41:46 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2012.06.03 11:41:47 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2012.06.03 11:41:47 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2012.06.03 11:41:47 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2012.06.03 11:41:47 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 03:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009.07.14 16:15:51 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 03:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 14:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 14:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 05:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 18:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 14:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 03:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 02:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:7980A5DB
< End of report >
< *crack* /s >
[2012.02.16 01:42:39 | 000,189,005 | ---- | M] () -- \_filmy\_xyz\_fap folder pics 3\Crack_The_Whip_by_Miss_Tschirhart.jpg
[2012.09.30 16:09:10 | 733,757,924 | ---- | M] () -- \_filmy\Cracks[2009]DvDrip[Eng]-FXG\Cracks[2009]DvDrip[Eng]-FXG.avi
[2012.09.30 15:29:37 | 000,125,838 | ---- | M] () -- \_filmy\Cracks[2009]DvDrip[Eng]-FXG\Cracks[2009]DvDrip[Eng][Subs].srt
[2005.05.31 23:00:00 | 000,174,904 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_crackedplaster00.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_ma_crackedearth.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_ma_crackedearth01.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\_veci\morrowind mody\Installation Data\Data Files\Textures\tx_ma_crackedearth03.dds
[2010.09.12 00:56:42 | 000,067,756 | ---- | M] () -- \_hry\CS\cstrike\sound\misc\cracker1.wav
[2010.10.24 04:18:37 | 000,023,012 | ---- | M] () -- \_hry\CS\cstrike\sound\misc\cracker1.wav.ztmp
[2003.04.23 17:09:10 | 000,459,150 | ---- | M] () -- \_hry\Morrowind\Data Files\Sound\Fx\icecracking.wav
[2005.05.31 23:00:00 | 000,174,904 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_crackedplaster00.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_ma_crackedearth.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_ma_crackedearth01.dds
[2005.06.01 00:00:00 | 000,699,192 | ---- | M] () -- \_hry\Morrowind\Data Files\Textures\tx_ma_crackedearth03.dds
[2010.07.04 19:46:05 | 000,000,146 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack2.vmt
[2010.07.04 19:46:06 | 000,174,944 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack2.vtf
[2010.07.04 19:46:06 | 000,000,146 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack3.vmt
[2010.07.04 19:46:06 | 000,087,616 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\ConcreteCrack3.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack1.vmt
[2010.07.04 19:46:05 | 000,699,232 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack1.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack2.vmt
[2010.07.04 19:46:05 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack2.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack3.vmt
[2010.07.04 19:46:06 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack3.vtf
[2010.07.04 19:46:05 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack4.vmt
[2010.07.04 19:46:06 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack4.vtf
[2010.07.04 19:46:06 | 000,000,153 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack5.vmt
[2010.07.04 19:46:06 | 000,349,760 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete_Large_Crack5.vtf
[2010.07.04 19:46:05 | 000,000,143 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Floorcrack2.vmt
[2010.07.04 19:46:06 | 000,087,616 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Floorcrack2.vtf
[2010.07.04 19:43:24 | 000,000,151 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_01.vmt
[2010.07.04 19:43:24 | 000,087,588 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_01.vtf
[2010.07.04 19:43:24 | 000,000,151 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_03.vmt
[2010.07.04 19:43:24 | 001,398,308 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_03.vtf
[2010.07.04 19:43:24 | 000,000,150 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_04.vmt
[2010.07.04 19:43:24 | 000,087,532 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_04.vtf
[2010.07.04 19:43:24 | 000,000,151 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_05.vmt
[2010.07.04 19:43:24 | 000,174,908 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\decals\Concrete\crack_05.vtf
[2010.07.04 20:50:42 | 000,150,012 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.dx80.vtx
[2010.07.04 20:50:42 | 000,149,958 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.dx90.vtx
[2010.07.04 20:50:42 | 000,109,264 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.mdl
[2010.07.04 20:50:42 | 000,149,443 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.sw.vtx
[2010.07.04 20:50:42 | 000,658,880 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_powerup\cinephys_wallcrack.vvd
[2010.07.04 22:09:58 | 001,129,094 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\sound\BMS_scripted\app\wood_crack.wav
[2009.12.27 17:31:55 | 000,114,356 | ---- | M] () -- \_mobil\nové\Aplikace\FingerPrint\ThinkChange.FingerPrint.v1.20.S60v5.SymbianOS9.4..Cracked-TgSPDA_signed.sis
[2008.10.13 05:13:26 | 000,429,144 | ---- | M] () -- \_mobil\nové\Aplikace\Guardian\FuzzyByte.Guardian.v1.03.S60v3.SymbianOS9.1.Unsigned.Cracked-illusion.sis
[2009.03.27 04:05:06 | 000,180,116 | ---- | M] () -- \_mobil\nové\Aplikace\Mumcode.MumSMS.Plus.v5.05.S60v3.S60v5.Symbia\Mumcode.MumSMS.Plus.v5.05.S60v3.S60v5.SymbianOS9.x.Cracked.Read.NFO-illusion.sis
[2005.03.08 11:30:56 | 000,092,827 | ---- | M] () -- \_programy\CorelDRAW Graphics Suite X5\Custom Data\Bumpmap\Cracks.cpt
[2008.07.14 10:02:56 | 000,017,870 | ---- | M] () -- \_programy\CorelDRAW Graphics Suite X5\Custom Data\Canvas\cracks2c.bmp
[2007.10.21 18:51:16 | 007,843,797 | ---- | M] () -- \_věci\personal\old personal\Users\317827138\RcvdFiles\301956196_AiMounty\flt-cnc3-crack.rar
[2009.12.23 11:34:27 | 000,004,654 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\bt_metadata\Dragon Age Origins 1.01 Patch + Crack.zip.dat
[2012.05.16 08:51:50 | 000,000,696 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fcdn.crackberry.com%2Fthemes%2Fcrackberry3%2Ffavicon.png
[2012.04.03 23:05:39 | 000,000,319 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fi.crackedcdn.com%2Ffavicon.png
[2012.05.16 08:51:54 | 000,000,314 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fsoftware.crackberry.com%2Ffavicon.png
[2012.06.11 22:01:14 | 000,000,156 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\pleasecrackerswithcheese.tumblr.com.idx
[2012.11.02 14:13:22 | 000,000,663 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Opera\Opera\icons\www.cracked.com.idx
[2011.03.01 14:26:14 | 000,270,848 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\.minecraft\Minecraft Cracked.exe
[2011.09.22 11:22:07 | 000,001,009 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Start Minecraft Beta Cracked.lnk
[2011.09.22 11:22:07 | 000,000,944 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Uninstall Minecraft Beta Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Start Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Uninstall Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,952 | ---- | M] () -- \Documents and Settings\tomas\Desktop\hry\Start Minecraft Cracked.lnk
[2011.09.10 09:37:14 | 000,015,488 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,476 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,015,896 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:16 | 000,016,392 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,015,972 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,015,908 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.09.10 09:37:14 | 000,016,404 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:14 | 000,015,984 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.09.10 09:37:14 | 000,015,708 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,696 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,016,116 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:17 | 000,016,612 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,016,192 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,016,128 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.09.10 09:37:15 | 000,016,624 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:15 | 000,016,204 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,488 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.12.31 14:53:31 | 000,015,476 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:31 | 000,015,896 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,392 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,015,972 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,015,908 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.12.31 14:53:30 | 000,016,404 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,232 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,015,984 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,708 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.12.31 14:53:32 | 000,015,696 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:32 | 000,016,116 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,612 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,016,192 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,016,128 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.12.31 14:53:31 | 000,016,624 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,452 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,016,204 | ---- | M] () -- \Documents and Settings\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2012.08.09 11:24:12 | 000,004,412 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\CrackedCom.class
[2012.10.14 10:26:15 | 000,005,592 | ---- | M] () -- \Program Files (x86)\uTorrent\BioshockCrack.torrent
[2012.09.30 15:24:05 | 000,224,234 | ---- | M] () -- \Program Files (x86)\uTorrent\Cracks[2009]DvDrip[Eng]-FXG.torrent
[2010.12.19 19:24:35 | 000,126,824 | ---- | M] () -- \Program Files (x86)\uTorrent\Dragon Age 1.04 Update + Crack.torrent
[2010.10.14 09:02:36 | 000,006,025 | ---- | M] () -- \Program Files (x86)\uTorrent\Dragon Age Origins 1.01 Patch + Crack.zip.torrent
[2011.06.04 13:04:55 | 000,002,279 | ---- | M] () -- \Program Files (x86)\uTorrent\Duke.Nukem.Forever.Demo-RELOADED(Crack Only).torrent
[2011.09.22 11:20:17 | 000,014,538 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Beta_Cracked_v1.8.1.zip.1.torrent
[2011.09.16 22:05:08 | 000,014,538 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Beta_Cracked_v1.8.1.zip.torrent
[2011.11.26 23:06:39 | 000,014,713 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.0.0.zip.torrent
[2012.02.26 18:31:10 | 000,015,468 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.1.0.zip.torrent
[2012.06.13 14:05:45 | 000,015,721 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.2.5.zip.torrent
[2012.08.05 15:41:24 | 000,014,741 | ---- | M] () -- \Program Files (x86)\uTorrent\Minecraft_Cracked_v1.3.1.zip.torrent
[2011.11.07 21:52:49 | 000,020,813 | ---- | M] () -- \Program Files (x86)\uTorrent\Nik Software Color Efex Pro 4.00 REV 15202 Complete Edition (x86-x64) with CRACK.torrent
[2011.10.24 19:05:07 | 000,004,070 | ---- | M] () -- \Program Files (x86)\uTorrent\Portal.2.Update.1.to.15.incl.DLC.Cracked-NoGrp.torrent
[2010.08.03 00:23:32 | 000,019,092 | ---- | M] () -- \Program Files (x86)\uTorrent\StarCraft II Wings of Liberty-RELOADED Crack Only.torrent
[2012.07.07 14:20:34 | 000,003,391 | ---- | M] () -- \Program Files (x86)\uTorrent\SWEAWFOC Cracks.rar.torrent
[2010.12.19 19:24:56 | 000,011,572 | ---- | M] () -- \Program Files (x86)\uTorrent\The.Ball.v1.0.multi9.cracked-THETA.torrent
[2009.12.23 11:34:27 | 000,004,654 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\bt_metadata\Dragon Age Origins 1.01 Patch + Crack.zip.dat
[2012.05.16 08:51:50 | 000,000,696 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fcdn.crackberry.com%2Fthemes%2Fcrackberry3%2Ffavicon.png
[2012.04.03 23:05:39 | 000,000,319 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fi.crackedcdn.com%2Ffavicon.png
[2012.05.16 08:51:54 | 000,000,314 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fsoftware.crackberry.com%2Ffavicon.png
[2012.06.11 22:01:14 | 000,000,156 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\pleasecrackerswithcheese.tumblr.com.idx
[2012.11.02 14:13:22 | 000,000,663 | ---- | M] () -- \Users\tomas\AppData\Local\Opera\Opera\icons\www.cracked.com.idx
[2011.03.01 14:26:14 | 000,270,848 | ---- | M] () -- \Users\tomas\AppData\Roaming\.minecraft\Minecraft Cracked.exe
[2011.09.22 11:22:07 | 000,001,009 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Start Minecraft Beta Cracked.lnk
[2011.09.22 11:22:07 | 000,000,944 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Beta Cracked\Uninstall Minecraft Beta Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Start Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,944 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked\Uninstall Minecraft Cracked.lnk
[2012.08.05 15:45:43 | 000,000,952 | ---- | M] () -- \Users\tomas\Desktop\hry\Start Minecraft Cracked.lnk
[2011.09.10 09:37:14 | 000,015,488 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,476 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,015,896 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:16 | 000,016,392 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,015,972 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,015,908 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.09.10 09:37:14 | 000,016,404 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:14 | 000,015,984 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.09.10 09:37:14 | 000,015,708 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.09.10 09:37:16 | 000,015,696 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.09.10 09:37:16 | 000,016,116 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.09.10 09:37:17 | 000,016,612 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.09.10 09:37:17 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.09.10 09:37:16 | 000,016,192 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.09.10 09:37:14 | 000,016,128 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.09.10 09:37:15 | 000,016,624 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.09.10 09:37:15 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.09.10 09:37:15 | 000,016,204 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-D765-48B01CC2C535}_227411_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,488 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.12.31 14:53:31 | 000,015,476 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:31 | 000,015,896 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,392 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,015,972 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,015,908 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.12.31 14:53:30 | 000,016,404 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,232 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,015,984 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.12.31 14:53:30 | 000,015,708 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.12.31 14:53:32 | 000,015,696 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.12.31 14:53:32 | 000,016,116 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.12.31 14:53:32 | 000,016,612 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.12.31 14:53:33 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.12.31 14:53:32 | 000,016,192 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.12.31 14:53:30 | 000,016,128 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.12.31 14:53:31 | 000,016,624 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.12.31 14:53:31 | 000,015,452 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.12.31 14:53:30 | 000,016,204 | ---- | M] () -- \Users\tomas\Documents\Battlefield Play4Free\mods\main\cache\{D7B71E3E-4543-11CF-E067-48B01CC2C535}_231771_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
< *keygen* /s >
[2012.08.13 16:36:59 | 000,016,384 | ---- | M] () -- \_download\Corel Draw X5 with Keygen\Keygen.exe
[2000.07.17 04:22:04 | 000,049,664 | ---- | M] () -- \_hry\_iso\Diablo 2 věci\CRACK\keygen.exe
[2006.12.08 10:58:30 | 000,034,816 | ---- | M] () -- \_mobil\nové\Aplikace\best keygen.exe
[2011.11.11 08:28:32 | 000,042,853 | ---- | M] () -- \_programy\_iso\3D Studio Max 9 + Tutorials and Keygen\3dsmax9-keygen.zip
[2010.03.21 14:37:05 | 000,043,287 | ---- | M] () -- \_programy\_iso\Adobe Lightroom v2.2+Keygen+E-books[h33t][MAMBO04]\keygen.exe
[2010.10.07 05:14:12 | 000,305,302 | ---- | M] () -- \_programy\_iso\Adobe.Photoshop.Elements.v9.0.Multilingual.ESD.ISO-CORE\cr-psew9\CORE\core_keygen.exe
[2011.10.14 06:39:02 | 000,016,384 | ---- | M] () -- \_programy\_iso\Corel Draw X5 with Keygen\Keygen.exe
[2011.12.26 18:49:52 | 000,071,680 | ---- | M] () -- \_programy\_iso\Nero 7.10.1.0 By M3ZKAL\Nero 7.10.1.0 Keygen.exe
[2011.11.07 21:52:39 | 000,076,288 | ---- | M] () -- \_programy\_iso\Nik Software Viveza\keygen.exe
[2011.10.21 15:27:02 | 000,114,688 | ---- | M] () -- \_programy\_iso\Wolfram Mathematica 8.0.1 for Windows + Keygen\Mathematica 8 + Keygen\keygen.exe
[2010.10.07 16:07:50 | 000,153,315 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Java\WolframSSHKeyGen.jar
[2000.07.17 04:22:04 | 000,049,664 | ---- | M] () -- \Documents and Settings\tomas\Desktop\záloha notebook\BGT\CRACK\keygen.exe
[2011.11.10 01:38:39 | 000,031,914 | ---- | M] () -- \Program Files (x86)\uTorrent\3D Studio Max 9 + Tutorials and Keygen.torrent
[2012.08.13 16:36:04 | 000,040,229 | ---- | M] () -- \Program Files (x86)\uTorrent\Corel Draw X5 with Keygen.1.torrent
[2011.10.14 06:35:52 | 000,040,753 | ---- | M] () -- \Program Files (x86)\uTorrent\Corel Draw X5 with Keygen.torrent
[2010.03.01 11:02:37 | 000,000,606 | ---- | M] () -- \Program Files (x86)\uTorrent\Windows 7 Keygen.torrent
[2011.10.21 15:25:24 | 000,017,448 | ---- | M] () -- \Program Files (x86)\uTorrent\Wolfram Mathematica 8.0.1 for Windows + Keygen.torrent
[2000.07.17 04:22:04 | 000,049,664 | ---- | M] () -- \Users\tomas\Desktop\záloha notebook\BGT\CRACK\keygen.exe
< *loader* /s >
[2009.04.24 23:27:30 | 000,001,122 | ---- | M] () -- \_download\_done xxx\_good\manga\Tosh, Menkui (www.hentairules.net) (English)\notes and info from the uploader.txt
[2012.07.04 21:05:13 | 000,228,864 | ---- | M] () -- \_hry\ACR\Assassin's Creed Revelations\ubiorbitapi_r2_loader.dll
[2011.10.30 07:10:24 | 000,169,080 | ---- | M] () -- \_hry\ACR\Assassin's Creed Revelations\uplay_r1_loader.dll
[2012.07.04 19:35:08 | 000,329,056 | ---- | M] () -- \_hry\ACR\Assassin's Creed Revelations\orbit\ubiorbitapi_r2_loader.dll
[2004.12.28 17:40:02 | 000,169,384 | ---- | M] () -- \_hry\Counter Strike\cstrike\models\qloader.mdl
[2003.09.15 13:55:50 | 000,352,548 | ---- | M] () -- \_hry\Counter Strike\valve\models\loader.mdl
[2003.09.15 13:56:04 | 000,012,764 | ---- | M] () -- \_hry\Counter Strike\valve\sound\ambience\loader_hydra1.wav
[2003.09.15 13:56:04 | 000,012,164 | ---- | M] () -- \_hry\Counter Strike\valve\sound\ambience\loader_step1.wav
[2004.12.28 17:40:02 | 000,169,384 | ---- | M] () -- \_hry\CS\cstrike\models\qloader.mdl
[2003.09.15 13:55:50 | 000,352,548 | ---- | M] () -- \_hry\CS\valve\models\loader.mdl
[2003.09.15 13:56:04 | 000,012,764 | ---- | M] () -- \_hry\CS\valve\sound\ambience\loader_hydra1.wav
[2003.09.15 13:56:04 | 000,012,164 | ---- | M] () -- \_hry\CS\valve\sound\ambience\loader_step1.wav
[2012.02.06 17:45:23 | 000,000,726 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_body.vmt
[2010.07.04 20:09:08 | 000,699,272 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_body.vtf
[2010.07.04 20:09:08 | 001,398,336 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_body_normal.vtf
[2012.02.06 17:45:23 | 000,000,724 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_leg.vmt
[2010.07.04 20:09:08 | 000,699,272 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_leg.vtf
[2010.07.04 20:09:08 | 001,398,336 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\materials\models\props_vehicles\loader_leg_normal.vtf
[2010.07.04 20:51:41 | 000,178,888 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.dx80.vtx
[2010.07.04 20:51:41 | 000,178,861 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.dx90.vtx
[2010.07.04 20:51:41 | 000,012,873 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.jpg
[2010.07.04 20:51:41 | 000,349,716 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.mdl
[2010.07.04 20:51:41 | 000,269,969 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.phy
[2010.07.04 20:51:41 | 000,178,517 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.sw.vtx
[2010.07.04 20:51:41 | 000,797,056 | ---- | M] () -- \_hry\Orange Box\SteamApps\SourceMods\BMS\models\props_vehicles\loader.vvd
[2011.05.17 22:22:21 | 000,098,816 | ---- | M] () -- \_hry\Warcraft III install\euroloader.exe
[2011.05.06 17:47:43 | 000,000,046 | ---- | M] () -- \_hry\Warcraft III install\euroloader.txt
[2010.07.05 14:30:50 | 000,071,208 | ---- | M] () -- \_hry\World_of_Tanks\PhysXLoader.dll
[2012.06.15 10:10:23 | 000,005,679 | ---- | M] () -- \_hry\World_of_Tanks\res\scripts\client\tutorial\TutorialLoader.pyc
[2009.10.02 23:28:33 | 000,421,888 | ---- | M] () -- \_programy\_iso\_MSDNAA\Downloader_for_Windows_7_Pro_RTM_x64_cs.exe
[2009.09.25 22:27:15 | 000,421,888 | ---- | M] () -- \_programy\_iso\_MSDNAA\downloader_of_Vista_DVD_SP1_cz.exe
[2010.03.09 03:28:40 | 005,297,608 | ---- | M] () -- \_programy\Adobe Bridge CS5\Photodownloader.exe
[2011.01.28 00:53:42 | 000,095,232 | ---- | M] () -- \_programy\Adobe Bridge CS5\Adobe Lens Profile Downloader\Adobe Lens Profile Downloader.exe
[2011.01.28 00:53:18 | 001,005,939 | ---- | M] () -- \_programy\Adobe Bridge CS5\Adobe Lens Profile Downloader\LensProfileDownloader.swf
[2010.03.09 00:38:58 | 000,011,161 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 00:38:58 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,308 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_programy\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2010.01.26 04:04:28 | 000,012,648 | ---- | M] () -- \_programy\CorelDRAW Graphics Suite X5\Programs\ReflectionLoader.dll
[2012.03.13 11:10:54 | 003,297,128 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012.03.13 09:42:26 | 000,011,161 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:28 | 000,011,161 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 09:42:30 | 000,000,324 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 09:42:30 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2012.03.13 11:18:28 | 003,297,128 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\Photodownloader.exe
[2012.03.13 09:41:34 | 000,000,860 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\Photodownloader.exe.manifest
[2012.03.13 09:41:58 | 000,011,161 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:00 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 09:42:06 | 000,000,324 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 09:42:06 | 000,000,011 | ---- | M] () -- \_programy\Photoshop CS6\Adobe Bridge CS6\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011.02.23 18:34:10 | 000,002,612 | ---- | M] () -- \_programy\Wolfram\AddOns\Packages\GUIKit\src\java\com\wolfram\bsf\util\JLink2ClassLoaderHandler.java
[2011.02.23 18:34:10 | 000,000,867 | ---- | M] () -- \_programy\Wolfram\AddOns\Packages\GUIKit\src\java\com\wolfram\bsf\util\JLink3ClassLoaderHandler.java
[2011.02.23 18:34:10 | 000,000,463 | ---- | M] () -- \_programy\Wolfram\AddOns\Packages\GUIKit\src\java\com\wolfram\bsf\util\LinkClassLoaderHandler.java
[2011.02.23 18:40:04 | 000,028,688 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Documentation\JavaDoc\com\wolfram\jlink\JLinkClassLoader.html
[2011.02.23 18:40:04 | 000,009,816 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Documentation\JavaDoc\com\wolfram\jlink\class-use\JLinkClassLoader.html
[2011.02.23 18:40:04 | 000,015,181 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Source\Java\com\wolfram\jlink\JLinkClassLoader.java
[2011.02.23 18:40:04 | 000,004,509 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Source\Java\com\wolfram\jlink\JLinkClassLoaderHelper.java
[2011.02.23 18:40:04 | 000,004,219 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\JLink\Source\Java\com\wolfram\jlink\JLinkSystemClassLoader.java
[2011.02.23 19:06:46 | 000,002,475 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overloads.html
[2011.02.23 19:06:46 | 000,003,410 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overload_1.html
[2011.02.23 19:06:46 | 000,004,172 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overload_2.html
[2011.02.23 19:06:46 | 000,003,870 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.GetType_overload_3.html
[2011.02.23 19:06:46 | 000,003,436 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.html
[2011.02.23 19:06:46 | 000,002,004 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.LoadAssembly_overloads.html
[2011.02.23 19:06:46 | 000,003,224 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.LoadAssembly_overload_1.html
[2011.02.23 19:06:46 | 000,004,058 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoader.LoadAssembly_overload_2.html
[2011.02.23 19:06:46 | 000,001,934 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoaderConstructor.html
[2011.02.23 19:06:46 | 000,005,965 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoaderMembers.html
[2011.02.23 19:06:46 | 000,005,374 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Documentation\apidocs\Wolfram.NETLink.TypeLoaderMethods.html
[2011.02.23 19:06:48 | 000,020,873 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Source\TypeLoader.cs
[2011.02.23 19:06:48 | 000,006,625 | ---- | M] () -- \_programy\Wolfram\SystemFiles\Links\NETLink\Source\Internal\COM\COMTypeLibraryLoader.cs
[2010.03.09 03:28:40 | 005,297,608 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\Photodownloader.exe
[2010.03.09 00:38:58 | 000,011,161 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 00:38:58 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,308 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 00:39:00 | 000,000,011 | ---- | M] () -- \_věci\zaloha adobe bridge\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011.01.28 00:53:46 | 000,001,075 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\Adobe Lens Profile Downloader.lnk
[2010.10.02 10:05:44 | 000,001,731 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\euroloader.lnk
[2011.02.09 17:45:17 | 000,000,362 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2011.02.09 17:45:16 | 000,001,140 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader.lnk
[2011.02.09 17:45:21 | 000,001,115 | ---- | M] () -- \Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2010.04.28 12:45:50 | 000,835,952 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Flash Video Downloader 2.0\Flash Video Downloader 2.0.exe
[2010.09.06 07:36:22 | 000,008,238 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Flash Video Downloader 2.0\images\ajax-loader.gif
[2010.09.06 07:36:22 | 000,010,819 | ---- | M] () -- \Documents and Settings\tomas\AppData\Local\Flash Video Downloader 2.0\images\progress-loader.gif
[2011.01.28 00:59:29 | 000,000,064 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\AdobeLensProfileDownloader\Local Store\#SharedObjects\LensProfileDownloader.swf\AdobeLensProfileDownloader.sol
[2011.02.09 17:45:17 | 000,001,040 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\JDownloader.lnk
[2010.09.06 07:36:22 | 000,002,200 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flash Video Downloader 2.0.lnk
[2011.07.06 13:09:58 | 000,001,783 | ---- | M] () -- \Documents and Settings\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\Euroloader.lnk
[2012.11.17 10:28:30 | 000,683,048 | ---- | M] () -- \Documents and Settings\tomas\Desktop\Chip_Downloader_League_of_Legends_2%2f2012.exe
[2003.07.10 00:11:38 | 000,011,436 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\AutoLoader.pm
[2005.11.02 09:45:40 | 000,028,960 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\DynaLoader.pm
[2005.11.02 09:45:40 | 000,008,924 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\XSLoader.pm
[2005.11.02 09:46:10 | 000,000,000 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.bs
[2005.11.02 09:46:10 | 000,028,777 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.dll
[2005.11.02 09:46:10 | 000,000,817 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.exp
[2005.11.02 09:46:10 | 000,002,212 | R--- | M] () -- \Documents and Settings\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.lib
[6 \Program Files (x86)\*.tmp files -> \Program Files (x86)\*.tmp -> ]
[2010.10.25 14:13:46 | 000,013,785 | ---- | M] () -- \Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\WebPublish\BootStrapLoader.swf
[2012.02.22 22:11:56 | 000,078,336 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.02.22 22:11:56 | 000,155,136 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.02.22 22:11:56 | 000,117,248 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2007.06.27 19:03:00 | 000,177,448 | ---- | M] () -- \Program Files (x86)\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2006.10.26 12:40:34 | 000,057,344 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader.dll
[2006.10.26 12:40:34 | 000,005,120 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader.tlb
[2008.07.30 10:06:58 | 000,072,192 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.dll
[2008.07.29 03:43:16 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.tlb
[2010.06.22 13:00:02 | 000,710,144 | ---- | M] () -- \Program Files (x86)\Common Files\Nikon\Nikon File Uploader 2\NkFileUploader2.exe
[2010.06.22 12:59:38 | 000,012,800 | ---- | M] () -- \Program Files (x86)\Common Files\Nikon\Nikon File Uploader 2\NkFileUploader2Lang.dll
[2011.02.09 17:46:34 | 000,214,528 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.exe
[2011.02.09 17:46:29 | 000,593,293 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.jar
[2011.02.09 17:46:18 | 000,000,536 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.log
[2010.12.15 12:35:18 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderBETA.exe
[2010.12.15 12:35:18 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderD3D.exe
[2011.02.09 17:59:25 | 000,000,105 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\img\hosterlogos\uploader.pl.png
[2012.01.03 09:41:53 | 000,007,073 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\UploaderPl.class
[2010.12.14 17:30:40 | 000,032,222 | ---- | M] () -- \Program Files (x86)\JDownloader\licenses\jdownloader.license
[2008.12.06 17:13:52 | 000,001,070 | ---- | M] () -- \Program Files (x86)\MediaCoder\extensions\_include\loader.html
[2009.01.21 14:30:04 | 000,003,072 | ---- | M] () -- \Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\MapLoader_cze.NLR
[2009.05.31 02:21:00 | 000,071,008 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2009.05.31 02:21:00 | 000,073,568 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2010.12.19 19:02:45 | 000,000,871 | ---- | M] () -- \Program Files (x86)\uTorrent\daoloader.r4-TiLL.torrent
[2010.03.15 10:27:18 | 000,054,784 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2010.02.08 00:44:00 | 000,000,543 | ---- | M] () -- \Program Files\Wireshark\etc\gtk-2.0\gdk-pixbuf.loaders
[2011.01.28 00:53:46 | 000,001,075 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lens Profile Downloader.lnk
[2010.10.02 10:05:44 | 000,001,731 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\euroloader.lnk
[2011.02.09 17:45:17 | 000,000,362 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2011.02.09 17:45:16 | 000,001,140 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader.lnk
[2011.02.09 17:45:21 | 000,001,115 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2011.01.28 00:53:46 | 000,001,075 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Adobe Lens Profile Downloader.lnk
[2010.10.02 10:05:44 | 000,001,731 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\euroloader.lnk
[2011.02.09 17:45:17 | 000,000,362 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2011.02.09 17:45:16 | 000,001,140 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader.lnk
[2011.02.09 17:45:21 | 000,001,115 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2010.04.28 12:45:50 | 000,835,952 | ---- | M] () -- \Users\tomas\AppData\Local\Flash Video Downloader 2.0\Flash Video Downloader 2.0.exe
[2010.09.06 07:36:22 | 000,008,238 | ---- | M] () -- \Users\tomas\AppData\Local\Flash Video Downloader 2.0\images\ajax-loader.gif
[2010.09.06 07:36:22 | 000,010,819 | ---- | M] () -- \Users\tomas\AppData\Local\Flash Video Downloader 2.0\images\progress-loader.gif
[2011.01.28 00:59:29 | 000,000,064 | ---- | M] () -- \Users\tomas\AppData\Roaming\AdobeLensProfileDownloader\Local Store\#SharedObjects\LensProfileDownloader.swf\AdobeLensProfileDownloader.sol
[2011.02.09 17:45:17 | 000,001,040 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\JDownloader.lnk
[2010.09.06 07:36:22 | 000,002,200 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flash Video Downloader 2.0.lnk
[2011.07.06 13:09:58 | 000,001,783 | ---- | M] () -- \Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eurobattle.net\Euroloader.lnk
[2012.11.17 10:28:30 | 000,683,048 | ---- | M] () -- \Users\tomas\Desktop\Chip_Downloader_League_of_Legends_2%2f2012.exe
[2003.07.10 00:11:38 | 000,011,436 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\AutoLoader.pm
[2005.11.02 09:45:40 | 000,028,960 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\DynaLoader.pm
[2005.11.02 09:45:40 | 000,008,924 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\XSLoader.pm
[2005.11.02 09:46:10 | 000,000,000 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.bs
[2005.11.02 09:46:10 | 000,028,777 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.dll
[2005.11.02 09:46:10 | 000,000,817 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.exp
[2005.11.02 09:46:10 | 000,002,212 | R--- | M] () -- \Users\tomas\Desktop\Škola UTB\_old\databáze\Uniform Server3_5\udrive\usr\lib\auto\ByteLoader\ByteLoader.lib
[2010.08.17 11:06:36 | 000,082,784 | ---- | M] () -- \Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2009.07.29 03:00:56 | 000,000,338 | ---- | M] () -- \Windows\Downloaded Program Files\PhotoUploader55.inf
[2009.07.29 21:21:24 | 003,540,488 | ---- | M] () -- \Windows\Downloaded Program Files\PhotoUploader55.ocx
[2011.07.16 05:15:45 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2011.07.16 05:15:45 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009.07.14 02:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 02:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:04:54 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 16:17:49 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 16:17:49 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009.07.14 16:17:49 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009.07.14 16:17:49 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009.07.14 16:17:49 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2012.06.03 11:41:46 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2012.06.03 11:41:47 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2012.06.03 11:41:47 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2012.06.03 11:41:47 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2012.06.03 11:41:47 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 03:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009.07.14 16:15:51 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 03:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 14:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 14:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 05:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 18:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 14:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 03:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 02:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:7980A5DB
< End of report >
Re: preventivní kontrola logu
a log Extras:
OTL Extras logfile created on: 28.11.2012 13:22:07 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\tomas\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,67 Gb Available Physical Memory | 55,74% Memory free
4,95 Gb Paging File | 3,23 Gb Available in Paging File | 65,17% Paging File free
Paging file location(s): c:\pagefile.sys 2000 4000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,51 Gb Total Space | 36,89 Gb Free Space | 3,96% Space Free | Partition Type: NTFS
Drive D: | 146,00 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive H: | 465,76 Gb Total Space | 6,75 Gb Free Space | 1,45% Space Free | Partition Type: NTFS
Computer Name: TOMAS-PC | User Name: tomas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system |
"{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system |
"{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system |
"{10DBD9FD-DA13-4990-879E-31EEC6ED4AA0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{17E34A01-93E6-4719-B30E-F4B1F0F4619B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{25E7F4A3-D86D-43F0-87B3-CF42AC4250CC}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system |
"{2A096BBE-4E61-4110-9038-CB72F7CE1EFC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2C3B3057-1FEC-4C16-B098-A9D6A2C9233C}" = rport=138 | protocol=17 | dir=out | app=system |
"{2F83B4F3-1D80-4AEF-B869-A74326F11DBF}" = lport=2869 | protocol=6 | dir=in | app=system |
"{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{3052E858-A4DC-438B-A028-9BD2919C0B61}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{34D80807-CFC9-4AC9-9530-F43881AB2330}" = lport=445 | protocol=6 | dir=in | app=system |
"{3C62B425-81F9-4A8B-AFD4-10B2E50FE4F7}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{41A87024-7B6D-4D05-881F-A526B5C73B79}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{4241C66E-3021-4580-A27A-AE625E4DE714}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{48DE9395-096C-4EC2-82EA-62C03F7E0BE4}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{4A9CE9D6-26B8-4DCB-AE1A-4EC55138BB01}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4AB4340B-0820-44E0-99DE-E37492C3938A}" = lport=10243 | protocol=6 | dir=in | app=system |
"{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{53536B79-BDBD-4FD5-B5EE-9978CCA44AF1}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system |
"{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system |
"{657B421A-D2ED-4403-AB86-8816F32A1C38}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{6D477BF0-751B-42CE-B6C3-44685F08719A}" = rport=10243 | protocol=6 | dir=out | app=system |
"{6DC8EBCB-C895-4973-865C-DDA762C4F27F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system |
"{858BFB6A-5AD6-4E10-A325-722421432ECD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8A5A4B34-51BD-417D-9B3E-F332C8037782}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{9506A66E-F416-4DFE-8F64-859E5F213EBB}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\wnt500x64\rpcsandrasrv.exe |
"{A18DE572-2CEB-43F0-9179-1755D307F53C}" = rport=2869 | protocol=6 | dir=out | app=system |
"{A2B64E63-51E7-4A28-B637-598E317A9C8E}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\rpcagentsrv.exe |
"{A32BD4D3-E64E-4F2C-B12B-BFBE02114506}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A50E841E-D742-4823-9821-4363651E1DFD}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{B0E2CA0E-E79D-4B06-BC05-2ED99C249ED6}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{B1DE85B5-034A-411D-9EAA-612F9C09871B}" = lport=57616 | protocol=17 | dir=in | name=pando media booster |
"{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system |
"{C1A8FD84-939D-470E-8FD2-209228ED10A9}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system |
"{C397045E-EED2-436E-928C-027C60243688}" = lport=57616 | protocol=6 | dir=in | name=pando media booster |
"{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C8F40A18-D6A9-4943-BEFD-476AD0DA4868}" = lport=57616 | protocol=17 | dir=in | name=pando media booster |
"{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{CFBE581A-DBC7-4E8C-BA82-122E3C14AAD2}" = lport=57616 | protocol=6 | dir=in | name=pando media booster |
"{D20C36F8-B4F0-4772-AF89-BB00564331F3}" = lport=138 | protocol=17 | dir=in | app=system |
"{D7CE632E-D701-4894-9CE6-7CA7850F3CA6}" = lport=137 | protocol=17 | dir=in | app=system |
"{D8F97F18-204B-4B3B-9793-B4AE08DECBE6}" = lport=2869 | protocol=6 | dir=in | app=system |
"{DBD3FC96-5F1B-41F2-BB09-4E4930C1DB6C}" = rport=137 | protocol=17 | dir=out | app=system |
"{DE4947E0-09A8-43CA-A132-12A28D2332D6}" = rport=445 | protocol=6 | dir=out | app=system |
"{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system |
"{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FCE4C0D7-6854-4C9D-9160-9C35222DFDD1}" = rport=139 | protocol=6 | dir=out | app=system |
"{FDBA0AEE-9C69-4BC2-8964-283A88399FBE}" = lport=139 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{03C04156-3B50-4A14-82FB-1C33A7DDB831}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{068557E8-CA57-44CB-A297-24F047BC0B24}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{0B47AD45-7537-469C-87B6-11C724AD05D2}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{0BFE44B8-11FF-4F1D-8243-C54DEB35C166}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{0CBE4B80-E8D4-41ED-97C9-568B86CC3D64}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{0D6F2044-EFC4-499F-99EE-450590E08F07}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{0D827087-4C91-4E14-9955-EE7811F0BB8A}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{1B5032CB-67B1-4055-9BF8-7A756FD8B3E5}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{1BF82DD4-D7C1-4529-BB53-1E721CEAA2BF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{1C1310AD-1F59-4DA9-B083-6C73ABA844E4}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{1C414652-2C56-4A3B-9CA1-D8AC7D5127CB}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{23F813FA-25CA-4781-BDC2-28371DA3935B}" = protocol=17 | dir=in | app=c:\_hry\steam\steam.exe |
"{300DAB72-4911-41D9-BD5B-291F1A3C3620}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\rpcagentsrv.exe |
"{3746C739-FA71-4158-8DDA-3CAA183327F8}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe |
"{3F0CC5B6-04F6-42B7-9331-BC8CCBBF0260}" = protocol=58 | dir=in | app=system |
"{3F12E7F3-050C-4A17-A754-8FEE9AD455EC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{3F6E0351-5A87-418B-AE07-9FF3568200D2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{455C21C6-233A-4CB9-BF65-2D8876C6676A}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
"{466AF6A0-89FD-4B8F-AD9A-2FA3D3A1B9B8}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{48ABF35D-1690-467C-A5E9-B97F3CC5AEE7}" = protocol=6 | dir=out | app=system |
"{48E5D2D0-F61D-42A0-A3C7-28F57E3EE1F1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{51751D4D-EF1C-47FC-B9A2-D10DD35D7FA7}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{57B8C16E-95FE-4BC5-B169-3C9F0947B524}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{58623FAD-92EA-43E7-89DD-33B7C7D84C1C}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\wnt500x64\rpcsandrasrv.exe |
"{5C1FF3F3-C1FB-47F9-8357-5C45198ACA45}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{62E2818F-7E8B-4BDC-8ABF-B52635FF1CA7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{64A3ACB1-B4C1-4272-BFC7-076EDE9C3386}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7158B22F-BA34-4F3B-AE62-BB54F30274AF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{71B22414-D3DC-4225-BE77-E15EB4B98D70}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{7E3E7751-36D0-4DC5-B81F-8A264FE92752}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{830B1924-D41B-4896-B446-A6A81067316B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{85B78EF4-2989-451B-9226-26B23FAD8FB4}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe |
"{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8AF7388C-9BD9-4F0B-8502-DB647EE2E98E}" = protocol=17 | dir=in | app=c:\_programy\pinnacle studio 14\programs\studio.exe |
"{8EB4F264-751B-4112-831A-9A46064366B0}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{8F232B08-D206-472D-9096-BFC61E36891C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{976C2802-E854-498A-9D75-342E8C320B90}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{9956BFAD-77B2-4A62-84A8-348BD0B9AC56}" = protocol=6 | dir=in | app=c:\_programy\pinnacle studio 14\programs\rm.exe |
"{9AAA939D-546A-44E6-B7A2-51225C4947D7}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{A27A2A2A-D700-4A35-8670-BABCF5A3B4C3}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{A2E33AD5-BFC4-4CEA-8145-AE42120CEDD6}" = protocol=6 | dir=in | app=c:\_hry\steam\steam.exe |
"{A3FB56CD-E8E2-4A5E-81E3-E6E6AE17FAC7}" = protocol=6 | dir=in | app=c:\_programy\pinnacle studio 14\programs\studio.exe |
"{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A75F4DF3-56E1-4350-B7EA-085F16ADB052}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A83A2E1D-B028-4028-A29F-6DC5D57FFE04}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A89FA76D-F103-4917-88AB-B7AC08C0B136}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe |
"{A92849B2-81D2-4E4B-A238-B29518C143F8}" = protocol=17 | dir=in | app=c:\_programy\pinnacle studio 14\programs\rm.exe |
"{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system |
"{BE6DF0F2-28CF-4CF2-802D-E03969AF55FF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C634DC1F-F132-4DD0-B56C-701D6B8FF05E}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{CB97D678-D403-470E-9F3C-A1BBD42E476B}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{CD2CF26B-0C85-4247-B79D-33C0A0071F55}" = dir=in | app=c:\program files (x86)\protected search\protectedsearch.exe |
"{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{CF720F68-FEA3-4223-BB58-2FF0F5DA8DE5}" = dir=out | app=c:\program files (x86)\protected search\protectedsearch.exe |
"{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E087C560-DC10-4BB4-A93D-FB558CDE2F80}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{E38B3C8E-1D64-43C7-9251-8AE0B1C1FA5C}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{E5520C05-816C-49D0-A0C7-FBC919C75D39}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F081B957-39E0-41B1-A52E-1E693A32B299}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe |
"{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F8806B64-4A68-43AA-8832-5C6E54E0A3A3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"TCP Query User{11163EB9-B30E-4042-BC19-3E4E6D627AF5}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"TCP Query User{2AD5162D-BD11-4B35-B9F8-21EA4A9491AC}C:\program files (x86)\qip\qip.exe" = protocol=6 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"TCP Query User{3C4AE993-048B-4718-A305-597747056016}C:\_hry\cs\hl.exe" = protocol=6 | dir=in | app=c:\_hry\cs\hl.exe |
"TCP Query User{65F65732-9B47-49C5-808D-A1392AC3E842}C:\_hry\warcraft iii install\war3.exe" = protocol=6 | dir=in | app=c:\_hry\warcraft iii install\war3.exe |
"UDP Query User{5AAE045C-764C-4DA0-A4C6-80672AE71366}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"UDP Query User{ADCF0607-6E4E-4AC4-9FD3-17B616C6F9BA}C:\program files (x86)\qip\qip.exe" = protocol=17 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"UDP Query User{D23C712B-7656-443D-ABEF-427DA5009534}C:\_hry\warcraft iii install\war3.exe" = protocol=17 | dir=in | app=c:\_hry\warcraft iii install\war3.exe |
"UDP Query User{DA1EA74C-209F-463E-93AF-85048E5A227D}C:\_hry\cs\hl.exe" = protocol=17 | dir=in | app=c:\_hry\cs\hl.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{11953C65-BB4E-4CA4-B0F0-2600A4B20040}" = Picture Control Utility x64
"{1387BA33-3FAC-49E9-B545-0E8D3BBC550B}" = Adobe Photoshop Lightroom 3 64-bit
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{26A24AE4-039D-4CA4-87B4-2F86417002FF}" = Java(TM) 7 Update 2 (64-bit)
"{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = Media Player Classic - Home Cinema 1.6.0.4014 x64
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{66C10F29-31F0-4A9B-B2CF-465F488AE086}" = CorelDRAW Graphics Suite X5 - Windows Shell Extension 64 Bit
"{68660049-8D48-427C-9FF7-139D8340CDC0}" = MSVC80_x64
"{6C2E334F-37F5-C312-53BA-1482F9A6FD4D}" = ccc-utility64
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{81D00339-968D-15D1-3499-8431658E896F}" = AMD Catalyst Install Manager
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{9387E5ED-7D5D-A744-6BDC-8F6CB26DE09A}" = AMD Fuel
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{C3113E55-7BCB-4de3-8EBF-60E6CE6B2296}_is1" = SiSoftware Sandra Lite 2010.SP2
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{E6F5D8BE-0B00-6DD9-18F9-D4045798FCBE}" = AMD Media Foundation Decoders
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F3A7E92F-A426-49B4-86A6-5ADB152DCB6B}" = Microsoft Camera Codec Pack
"{F55458B0-DCA9-38C9-6C8D-829F22463A55}" = AMD Drag and Drop Transcoding
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"05B59228C7E1C21DFBE89260F879BD95880548D8" = Balíček ovladače systému Windows - Nokia Modem (10/05/2009 4.2)
"8CDCFB95BB84DD9C0F88F22266A0CA86035E55BA" = Balíček ovladače systému Windows - Nokia Modem (06/01/2009 7.01.0.4)
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
"A-WIN-Extras 8.0.1 2063897_is1" = Mathematica Extras 8.0 (2063897)
"Capture NX 2" = Capture NX 2
"FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"M-WIN-L 8.0.1 2063990_is1" = Wolfram Mathematica 8 (M-WIN-L 8.0.1 2063990)
"PhotomatixPro4.0x64_is1" = Photomatix Pro version 4.0
"WinRAR archiver" = WinRAR archiver
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{51DD370C-6690-424E-9674-5F14468B323F}" = Corel Graphics - Windows Shell Extension
"_{CE54DCE1-E00A-4D91-ACB9-A2D916C24051}" = CorelDRAW(R) Graphics Suite X5
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01496C89-6117-AD97-3CB3-98AF2026070C}" = CCC Help German
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0486991B-63F4-5106-06CE-404D7BA55041}" = CCC Help Italian
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{13453DAA-8424-4B9C-844F-FC44C621F9E3}" = OLYMPUS Master 2
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{177A3BC5-ECD3-BFF1-4D87-C4B417924DF2}" = CCC Help Russian
"{19D368B2-5601-007B-A296-535706E00D97}" = CCC Help English
"{19DC9559-9C20-4A46-A67D-7ECBA52A2788}" = Nokia PC Suite
"{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.7.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FDA5A37-B22D-43FF-B582-B8964050DC13}" = Microsoft Games for Windows - LIVE Redistributable
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{24D9A3E0-D086-4B62-AF93-63CF6B05CB48}" = CorelDRAW Graphics Suite X5 - Custom Data
"{260ED378-2B8C-4831-ADAE-D0712D119AC5}" = CorelDRAW Graphics Suite X5 - VSTA
"{26945917-E053-45F6-AF98-309730CFC318}" = Visual Basic for Applications (R) Core
"{278FA289-F502-D888-A3BA-5FA10308AAAD}" = CCC Help Danish
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{319D91C6-3D44-436C-9F79-36C0D22372DC}" = TP-LINK Wireless Configuration Utility
"{3472C84E-2FD0-439F-B27F-C290C1E4CD8B}" = CorelDRAW Graphics Suite X5 - Filters
"{38A1E3ED-D913-41D2-9953-A93D5ACE3ADF}" = TL-WN721N/TL-WN722N Driver
"{44F77218-4BBD-1B74-88B7-FC302868F2B3}" = CCC Help Japanese
"{489BC3B4-AEF9-E14A-11BC-B70FDE9D543D}" = CCC Help Chinese Traditional
"{4A85AE1B-9727-261D-9EAF-07C1AECCF977}" = CCC Help Turkish
"{502699FF-F586-54B1-91E8-E85D9FAE0D6D}" = CCC Help Greek
"{51DD370C-6690-424E-9674-5F14468B323F}" = Corel Graphics - Windows Shell Extension
"{53EF1C4D-0705-98F2-1889-A69BBF9F03F3}" = CCC Help Thai
"{548A4EF3-BD97-0813-B469-E1E2FC9DE487}" = CCC Help Korean
"{54B8F4A1-02B0-4D32-8F37-925526C0EEC6}" = CorelDRAW Graphics Suite X5 - Connect
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{55533224-CAD0-39B5-6297-E1B2D1D8F176}" = AMD VISION Engine Control Center
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57400C1E-BC51-4ECE-AD2A-A6096204DDEC}" = CorelDRAW Graphics Suite X5 - VBA
"{590828E0-9BA6-3E4D-8491-A1D9CC3EB8CE}" = CCC Help French
"{59123CCF-FED2-46FF-9293-D1DC80042219}" = CorelDRAW Graphics Suite X5 - Redist
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
"{62978C1C-FE2E-4A4E-851D-3EB406C9EBC2}" = CorelDRAW Graphics Suite X5 - Draw
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{6563FAF5-84F9-0A35-C032-182EBC4C3BDB}" = CCC Help Finnish
"{675DD1E6-637A-4F0E-B6DE-26F45CC26092}_is1" = AC2 server emulator 0.44 by Dormine
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6bd5b2e2-5ce2-4e33-bc9f-0201eccf5e64}_is1" = Certified Toolbar 1.9
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6D46F639-5F2F-90F3-4B60-EB2EF264B82E}" = CCC Help Spanish
"{6E0352EE-6F0D-4FBC-B1B8-4FF032C78BE0}" = PC Connectivity Solution
"{70210CF8-CAB1-8FEB-D964-C33AFE18730B}" = CCC Help Czech
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{86A4C6D9-29EE-4719-AFA1-BA3341862B83}" = Microsoft Games for Windows - LIVE
"{87441A59-5E64-4096-A170-14EFE67200C3}" = Picture Control Utility
"{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}" = Opera 10.63
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8B1AEC85-4507-28BD-F3BA-4A5D732752E7}" = CCC Help Hungarian
"{8C5ACED4-34D3-23BB-F90E-2F90420321BC}" = Catalyst Control Center Localization All
"{8F830B99-D142-4EC5-B122-EA0D95101290}" = AKVIS MakeUp
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0116-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{9244E956-5939-4B88-930C-0699D4AB2B95}" = CorelDRAW Graphics Suite X5 - WT
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{983F7145-CABF-4EDD-9F3D-E06B2F024BD3}" = CorelDRAW Graphics Suite X5 - FontNav
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A1B04B6B-25BB-48AD-8BD9-D31A86E89F3E}" = CorelDRAW Graphics Suite X5 - PHOTO-PAINT
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3DAD349-E48E-AE45-3F26-7B80A4FFCD26}" = Catalyst Control Center InstallProxy
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AADD1C8F-D59F-4D55-A726-768C71A205A8}" = Pinnacle Studio 14
"{AC76BA86-1033-F400-7760-000000000005}" = Adobe Acrobat X Pro - English, Français, Deutsch
"{AC76BA86-7AD7-1029-7B44-A92000000001}" = Adobe Reader 9.2 - Czech
"{B014EE44-9197-4513-9613-71E6EB1B514E}" = Nikon Message Center 2
"{B0B1A8A5-4711-BB6C-DD59-9794AD928368}" = CCC Help Dutch
"{B33D2348-2938-1A03-0CD3-E6F7101244E0}" = CCC Help Polish
"{B399C91E-96F2-4265-9884-1C9A10E9FCF4}" = CorelDRAW Graphics Suite X5
"{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6
"{B5FDA445-CAC4-4BA6-A8FB-A7212BD439DE}" = Microsoft XML Parser
"{B7C8D838-9C3A-1177-B80A-E3C512FD8AF5}" = CCC Help Swedish
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C325F588-D6B1-4A7F-B6A2-914C75DDA348}" = Morrowind
"{C50EF365-2898-489A-B6C7-30DAA466E9A2}" = Nokia Connectivity Cable Driver
"{C97D06C9-1A67-492B-26B1-72617062AB7E}" = Adobe Lens Profile Downloader
"{CA3861BA-1D96-4D66-B577-318E1602C4F3}" = CorelDRAW Graphics Suite X5 - Common
"{CE54DCE1-E00A-4D91-ACB9-A2D916C24051}" = CorelDRAW Graphics Suite X5 - Setup Files
"{CE7CB214-DB11-4B5D-A6AF-3B4ED47C68B7}" = Microsoft Game Studios Common Redistributables Pack 1
"{CF097717-F174-4144-954A-FBC4BF301029}" = Nero 7 Ultra Edition
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D1E7142C-6BC3-49EB-A71A-E5D7ADAC7599}" = Nikon File Uploader 2
"{D596EEA2-C6C8-45D3-89DF-FA2DBE99F829}" = Visual Basic for Applications (R) Core - English
"{D642FF8D-438D-4545-A1D5-2EDB4BCAE3BA}" = CorelDRAW Graphics Suite X5 - Photozoom Plugin
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB3C800B-081B-4146-B4E3-EFB5B77AA913}" = TES Construction Set
"{DDCB737A-EEC8-3815-42DA-69011A55E3E5}" = Catalyst Control Center Graphics Previews Common
"{DDD62492-32A7-412B-8AF1-2CF032AD42E3}" = ViewNX 2
"{DE6CBC04-8673-4DBA-BA81-07F1639CEB5F}" = CorelDRAW Graphics Suite X5 - IPM
"{E170E984-6B20-79C2-1E9F-0256EC5ADFB4}" = CCC Help Chinese Standard
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E34C6AA4-AE8E-4677-912A-92FC2E039DD9}" = CorelDRAW Graphics Suite X5 - EN
"{E866E52C-1F56-4CCF-0071-CA915F8CFEDA}" = CCC Help Norwegian
"{EDB98D5A-A6FB-425C-BFB7-51A0924B762D}" = CorelDRAW Graphics Suite X5 - Capture
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F5C372A1-40F3-49DA-A049-F75CDE9177DC}" = Pinnacle Studio Ultimate Collection Plugins
"{F5D245CC-C332-1E8E-CCB1-75E0C3C4D6F1}" = CCC Help Portuguese
"{FB8148DD-C575-4B0A-9F6C-0CFC46937930}" = Opera 10.10
"{FE4B83DE-85CF-4DE5-90CE-A2735A0E1F21}" = CorelDRAW Graphics Suite X5 - VideoBrowser
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"µTorrent CZ_is1" = µTorrent CZ 1.8.5 (build 17414)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"AdobeLensProfileDownloader" = Adobe Lens Profile Downloader
"Afterburner" = MSI Afterburner 2.1.0
"Age Of Empire-II The Conquerors" = Age Of Empire-II The Conquerors
"Battle.net" = Battle.net
"BSPlayerf" = BS.Player FREE
"CodeLite_is1" = CodeLite
"Counter-Strike 1.6" = Counter-Strike 1.6
"Crossfire" = Crossfire1.9 (remove only)
"DAEMON Tools Lite" = DAEMON Tools Lite
"DamageCopier 3.1" = DamageCopier 3.1
"Desura" = Desura
"D-Fend v2" = D-Fend v2
"DokanLibrary" = Dokan Library 0.6.0
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Eurobattle.net1.24b" = Eurobattle.net
"Eurobattle.net1.26" = Eurobattle.net
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50
"ExposurePlot_is1" = ExposurePlot 1.14
"Freelancer 1.0" = Freelancer
"Half-Life" = Half-Life
"Half-Life 2 Riot Act" = Half-Life 2 Riot Act 1.0
"Half-Life Uplink" = Half-Life Uplink
"Half-Life: Blue Shift" = Half-Life: Blue Shift
"Hamachi" = Hamachi 1.0.2.5
"HijackThis" = HijackThis 2.0.2
"Hugin" = Hugin 2011.4.0
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"IrfanView" = IrfanView (remove only)
"JDownloader" = JDownloader
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 8.6.0
"LastFM_is1" = Last.fm 1.5.4.27091
"MediaCoder" = MediaCoder 0.7.5.4730
"Minecraft Beta Cracked" = Minecraft Beta Cracked
"Minecraft Cracked" = Minecraft Cracked
"Morrowind AnimKit" = Morrowind AnimKit 2.1 (remove only)
"Mozilla Firefox 4.0.1 (x86 cs)" = Mozilla Firefox 4.0.1 (x86 cs)
"Nokia PC Suite" = Nokia PC Suite
"OpenAL" = OpenAL
"Opera 12.11.1661" = Opera 12.11
"Original War" = Original War
"Protected Search_is1" = Protected Search 1.1
"PSPad editor_is1" = PSPad editor
"PunkBusterSvc" = PunkBuster Services
"QuicktimeAlt_is1" = QuickTime Alternative 3.1.1
"rajče.net_is1" = rajče beta56 sestavení 134
"Scorpions WinCheater 2.07 (s databází 117)_is1" = Scorpions WinCheater
"Sierra Utilities" = Sierra Utilities
"SubtitleWorkshop" = Subtitle Workshop 2.51
"TeamViewer 6" = TeamViewer 6
"Torchlight II (c) Runic Games_is1" = Torchlight II (c) Runic Games version 1
"Totalcmd" = Total Commander (Remove or Repair)
"Trapcode 3DStroke Studio" = Trapcode 3DStroke Studio
"Trapcode Particular Studio" = Trapcode Particular Studio
"Trapcode Shine Studio" = Trapcode Shine Studio
"uTorrent" = µTorrent
"VLC media player" = VLC media player 1.1.8
"Warcraft II (modification Wargus 2.2.5.5 for engine Stratagus 2.2.5.5) for 64-bit Windows" = Warcraft II (modification Wargus 2.2.5.5 for engine Stratagus 2.2.5.5) for 64-bit Windows
"Warcraft III" = Warcraft III
"Winamp" = Winamp
"WinPcapInst" = WinPcap 4.1.2
"Wireshark" = Wireshark 1.4.3
"ZonerPhotoStudio12_CZ_is1" = Zoner Photo Studio 12
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"CodeBlocks" = CodeBlocks
"Crossfire 1.9" = Crossfire 1.9
"Flash Video Downloader 2.0" = Flash Video Downloader 2.0
"Google Chrome" = Google Chrome
"Google Translator" = Google Translator
"QIP 2005" = QIP 2005 8095
"UnityWebPlayer" = Unity Web Player
"Warcraft III" = Warcraft III: All Products
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 7.11.2012 8:29:05 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 288
Error - 7.11.2012 8:29:05 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 1
Error - 7.11.2012 8:29:07 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 288
Error - 7.11.2012 8:29:07 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 1
Error - 7.11.2012 8:29:55 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program CORELPP.EXE verze 15.0.0.489 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
420 Čas spuštění: 01cdbce3743127c8 Čas ukončení: 16 Cesta k aplikaci: c:\_programy\CorelDRAW
Graphics Suite X5\Programs\CORELPP.EXE ID hlášení: d03cdff9-28d6-11e2-857c-00161742757b
Error - 25.11.2012 3:37:10 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program bsplayer.exe verze 2.6.1.1065 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
3510 Čas spuštění: 01cdcadcf2aa8610 Čas ukončení: 79 Cesta k aplikaci: C:\Program
Files (x86)\Webteh\BSplayer\bsplayer.exe ID hlášení:
Error - 25.11.2012 16:47:51 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program bsplayer.exe verze 2.6.1.1065 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
2190 Čas spuštění: 01cdcb4e142d11b0 Čas ukončení: 32 Cesta k aplikaci: C:\Program
Files (x86)\Webteh\BSplayer\bsplayer.exe ID hlášení: 5eca8221-3741-11e2-b343-00161742757b
Error - 27.11.2012 7:27:29 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program NOTEPAD.EXE verze 6.1.7600.16385 přestal spolupracovat se
systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací
o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID
procesu: 2c8 Čas spuštění: 01cdcc9216854668 Čas ukončení: 4 Cesta k aplikaci: C:\Windows\system32\NOTEPAD.EXE
ID
hlášení: 6a11daa9-3885-11e2-bbcc-00161742757b
Error - 27.11.2012 7:27:53 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program NOTEPAD.EXE verze 6.1.7600.16385 přestal spolupracovat se
systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací
o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID
procesu: 304 Čas spuštění: 01cdcc9230988998 Čas ukončení: 3 Cesta k aplikaci: C:\Windows\system32\NOTEPAD.EXE
ID
hlášení: 7a22b549-3885-11e2-bbcc-00161742757b
Error - 28.11.2012 3:11:43 | Computer Name = tomas-PC | Source = VSS | ID = 8194
Description =
[ OSession Events ]
Error - 10.10.2010 4:28:22 | Computer Name = tomas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6423.1000, Microsoft Office Version: 12.0.6425.1000. This session lasted 2
seconds with 0 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 28.11.2012 6:42:45 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 6:59:41 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:18:44 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:35:40 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:37:47 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:52:36 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:56:51 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 8:13:46 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 8:32:49 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 9:06:42 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
< End of report >
OTL Extras logfile created on: 28.11.2012 13:22:07 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\tomas\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,67 Gb Available Physical Memory | 55,74% Memory free
4,95 Gb Paging File | 3,23 Gb Available in Paging File | 65,17% Paging File free
Paging file location(s): c:\pagefile.sys 2000 4000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,51 Gb Total Space | 36,89 Gb Free Space | 3,96% Space Free | Partition Type: NTFS
Drive D: | 146,00 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive H: | 465,76 Gb Total Space | 6,75 Gb Free Space | 1,45% Space Free | Partition Type: NTFS
Computer Name: TOMAS-PC | User Name: tomas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\_programy\Photoshop CS6\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system |
"{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system |
"{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system |
"{10DBD9FD-DA13-4990-879E-31EEC6ED4AA0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{17E34A01-93E6-4719-B30E-F4B1F0F4619B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{25E7F4A3-D86D-43F0-87B3-CF42AC4250CC}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system |
"{2A096BBE-4E61-4110-9038-CB72F7CE1EFC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2C3B3057-1FEC-4C16-B098-A9D6A2C9233C}" = rport=138 | protocol=17 | dir=out | app=system |
"{2F83B4F3-1D80-4AEF-B869-A74326F11DBF}" = lport=2869 | protocol=6 | dir=in | app=system |
"{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{3052E858-A4DC-438B-A028-9BD2919C0B61}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{34D80807-CFC9-4AC9-9530-F43881AB2330}" = lport=445 | protocol=6 | dir=in | app=system |
"{3C62B425-81F9-4A8B-AFD4-10B2E50FE4F7}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{41A87024-7B6D-4D05-881F-A526B5C73B79}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{4241C66E-3021-4580-A27A-AE625E4DE714}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{48DE9395-096C-4EC2-82EA-62C03F7E0BE4}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{4A9CE9D6-26B8-4DCB-AE1A-4EC55138BB01}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4AB4340B-0820-44E0-99DE-E37492C3938A}" = lport=10243 | protocol=6 | dir=in | app=system |
"{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{53536B79-BDBD-4FD5-B5EE-9978CCA44AF1}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system |
"{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system |
"{657B421A-D2ED-4403-AB86-8816F32A1C38}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{6D477BF0-751B-42CE-B6C3-44685F08719A}" = rport=10243 | protocol=6 | dir=out | app=system |
"{6DC8EBCB-C895-4973-865C-DDA762C4F27F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system |
"{858BFB6A-5AD6-4E10-A325-722421432ECD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8A5A4B34-51BD-417D-9B3E-F332C8037782}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{9506A66E-F416-4DFE-8F64-859E5F213EBB}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\wnt500x64\rpcsandrasrv.exe |
"{A18DE572-2CEB-43F0-9179-1755D307F53C}" = rport=2869 | protocol=6 | dir=out | app=system |
"{A2B64E63-51E7-4A28-B637-598E317A9C8E}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\rpcagentsrv.exe |
"{A32BD4D3-E64E-4F2C-B12B-BFBE02114506}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A50E841E-D742-4823-9821-4363651E1DFD}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{B0E2CA0E-E79D-4B06-BC05-2ED99C249ED6}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{B1DE85B5-034A-411D-9EAA-612F9C09871B}" = lport=57616 | protocol=17 | dir=in | name=pando media booster |
"{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system |
"{C1A8FD84-939D-470E-8FD2-209228ED10A9}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system |
"{C397045E-EED2-436E-928C-027C60243688}" = lport=57616 | protocol=6 | dir=in | name=pando media booster |
"{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C8F40A18-D6A9-4943-BEFD-476AD0DA4868}" = lport=57616 | protocol=17 | dir=in | name=pando media booster |
"{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{CFBE581A-DBC7-4E8C-BA82-122E3C14AAD2}" = lport=57616 | protocol=6 | dir=in | name=pando media booster |
"{D20C36F8-B4F0-4772-AF89-BB00564331F3}" = lport=138 | protocol=17 | dir=in | app=system |
"{D7CE632E-D701-4894-9CE6-7CA7850F3CA6}" = lport=137 | protocol=17 | dir=in | app=system |
"{D8F97F18-204B-4B3B-9793-B4AE08DECBE6}" = lport=2869 | protocol=6 | dir=in | app=system |
"{DBD3FC96-5F1B-41F2-BB09-4E4930C1DB6C}" = rport=137 | protocol=17 | dir=out | app=system |
"{DE4947E0-09A8-43CA-A132-12A28D2332D6}" = rport=445 | protocol=6 | dir=out | app=system |
"{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system |
"{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FCE4C0D7-6854-4C9D-9160-9C35222DFDD1}" = rport=139 | protocol=6 | dir=out | app=system |
"{FDBA0AEE-9C69-4BC2-8964-283A88399FBE}" = lport=139 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{03C04156-3B50-4A14-82FB-1C33A7DDB831}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{068557E8-CA57-44CB-A297-24F047BC0B24}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{0B47AD45-7537-469C-87B6-11C724AD05D2}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{0BFE44B8-11FF-4F1D-8243-C54DEB35C166}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{0CBE4B80-E8D4-41ED-97C9-568B86CC3D64}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{0D6F2044-EFC4-499F-99EE-450590E08F07}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{0D827087-4C91-4E14-9955-EE7811F0BB8A}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{1B5032CB-67B1-4055-9BF8-7A756FD8B3E5}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{1BF82DD4-D7C1-4529-BB53-1E721CEAA2BF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{1C1310AD-1F59-4DA9-B083-6C73ABA844E4}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{1C414652-2C56-4A3B-9CA1-D8AC7D5127CB}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{23F813FA-25CA-4781-BDC2-28371DA3935B}" = protocol=17 | dir=in | app=c:\_hry\steam\steam.exe |
"{300DAB72-4911-41D9-BD5B-291F1A3C3620}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\rpcagentsrv.exe |
"{3746C739-FA71-4158-8DDA-3CAA183327F8}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe |
"{3F0CC5B6-04F6-42B7-9331-BC8CCBBF0260}" = protocol=58 | dir=in | app=system |
"{3F12E7F3-050C-4A17-A754-8FEE9AD455EC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{3F6E0351-5A87-418B-AE07-9FF3568200D2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{455C21C6-233A-4CB9-BF65-2D8876C6676A}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
"{466AF6A0-89FD-4B8F-AD9A-2FA3D3A1B9B8}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{48ABF35D-1690-467C-A5E9-B97F3CC5AEE7}" = protocol=6 | dir=out | app=system |
"{48E5D2D0-F61D-42A0-A3C7-28F57E3EE1F1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{51751D4D-EF1C-47FC-B9A2-D10DD35D7FA7}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{57B8C16E-95FE-4BC5-B169-3C9F0947B524}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{58623FAD-92EA-43E7-89DD-33B7C7D84C1C}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010.sp2\wnt500x64\rpcsandrasrv.exe |
"{5C1FF3F3-C1FB-47F9-8357-5C45198ACA45}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{62E2818F-7E8B-4BDC-8ABF-B52635FF1CA7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{64A3ACB1-B4C1-4272-BFC7-076EDE9C3386}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7158B22F-BA34-4F3B-AE62-BB54F30274AF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{71B22414-D3DC-4225-BE77-E15EB4B98D70}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{7E3E7751-36D0-4DC5-B81F-8A264FE92752}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{830B1924-D41B-4896-B446-A6A81067316B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{85B78EF4-2989-451B-9226-26B23FAD8FB4}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe |
"{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8AF7388C-9BD9-4F0B-8502-DB647EE2E98E}" = protocol=17 | dir=in | app=c:\_programy\pinnacle studio 14\programs\studio.exe |
"{8EB4F264-751B-4112-831A-9A46064366B0}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{8F232B08-D206-472D-9096-BFC61E36891C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{976C2802-E854-498A-9D75-342E8C320B90}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{9956BFAD-77B2-4A62-84A8-348BD0B9AC56}" = protocol=6 | dir=in | app=c:\_programy\pinnacle studio 14\programs\rm.exe |
"{9AAA939D-546A-44E6-B7A2-51225C4947D7}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{A27A2A2A-D700-4A35-8670-BABCF5A3B4C3}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{A2E33AD5-BFC4-4CEA-8145-AE42120CEDD6}" = protocol=6 | dir=in | app=c:\_hry\steam\steam.exe |
"{A3FB56CD-E8E2-4A5E-81E3-E6E6AE17FAC7}" = protocol=6 | dir=in | app=c:\_programy\pinnacle studio 14\programs\studio.exe |
"{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A75F4DF3-56E1-4350-B7EA-085F16ADB052}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A83A2E1D-B028-4028-A29F-6DC5D57FFE04}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A89FA76D-F103-4917-88AB-B7AC08C0B136}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe |
"{A92849B2-81D2-4E4B-A238-B29518C143F8}" = protocol=17 | dir=in | app=c:\_programy\pinnacle studio 14\programs\rm.exe |
"{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system |
"{BE6DF0F2-28CF-4CF2-802D-E03969AF55FF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C634DC1F-F132-4DD0-B56C-701D6B8FF05E}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{CB97D678-D403-470E-9F3C-A1BBD42E476B}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{CD2CF26B-0C85-4247-B79D-33C0A0071F55}" = dir=in | app=c:\program files (x86)\protected search\protectedsearch.exe |
"{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{CF720F68-FEA3-4223-BB58-2FF0F5DA8DE5}" = dir=out | app=c:\program files (x86)\protected search\protectedsearch.exe |
"{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E087C560-DC10-4BB4-A93D-FB558CDE2F80}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{E38B3C8E-1D64-43C7-9251-8AE0B1C1FA5C}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{E5520C05-816C-49D0-A0C7-FBC919C75D39}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F081B957-39E0-41B1-A52E-1E693A32B299}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe |
"{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F8806B64-4A68-43AA-8832-5C6E54E0A3A3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"TCP Query User{11163EB9-B30E-4042-BC19-3E4E6D627AF5}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"TCP Query User{2AD5162D-BD11-4B35-B9F8-21EA4A9491AC}C:\program files (x86)\qip\qip.exe" = protocol=6 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"TCP Query User{3C4AE993-048B-4718-A305-597747056016}C:\_hry\cs\hl.exe" = protocol=6 | dir=in | app=c:\_hry\cs\hl.exe |
"TCP Query User{65F65732-9B47-49C5-808D-A1392AC3E842}C:\_hry\warcraft iii install\war3.exe" = protocol=6 | dir=in | app=c:\_hry\warcraft iii install\war3.exe |
"UDP Query User{5AAE045C-764C-4DA0-A4C6-80672AE71366}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"UDP Query User{ADCF0607-6E4E-4AC4-9FD3-17B616C6F9BA}C:\program files (x86)\qip\qip.exe" = protocol=17 | dir=in | app=c:\program files (x86)\qip\qip.exe |
"UDP Query User{D23C712B-7656-443D-ABEF-427DA5009534}C:\_hry\warcraft iii install\war3.exe" = protocol=17 | dir=in | app=c:\_hry\warcraft iii install\war3.exe |
"UDP Query User{DA1EA74C-209F-463E-93AF-85048E5A227D}C:\_hry\cs\hl.exe" = protocol=17 | dir=in | app=c:\_hry\cs\hl.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{11953C65-BB4E-4CA4-B0F0-2600A4B20040}" = Picture Control Utility x64
"{1387BA33-3FAC-49E9-B545-0E8D3BBC550B}" = Adobe Photoshop Lightroom 3 64-bit
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{26A24AE4-039D-4CA4-87B4-2F86417002FF}" = Java(TM) 7 Update 2 (64-bit)
"{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = Media Player Classic - Home Cinema 1.6.0.4014 x64
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{66C10F29-31F0-4A9B-B2CF-465F488AE086}" = CorelDRAW Graphics Suite X5 - Windows Shell Extension 64 Bit
"{68660049-8D48-427C-9FF7-139D8340CDC0}" = MSVC80_x64
"{6C2E334F-37F5-C312-53BA-1482F9A6FD4D}" = ccc-utility64
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{81D00339-968D-15D1-3499-8431658E896F}" = AMD Catalyst Install Manager
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{9387E5ED-7D5D-A744-6BDC-8F6CB26DE09A}" = AMD Fuel
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{C3113E55-7BCB-4de3-8EBF-60E6CE6B2296}_is1" = SiSoftware Sandra Lite 2010.SP2
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{E6F5D8BE-0B00-6DD9-18F9-D4045798FCBE}" = AMD Media Foundation Decoders
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F3A7E92F-A426-49B4-86A6-5ADB152DCB6B}" = Microsoft Camera Codec Pack
"{F55458B0-DCA9-38C9-6C8D-829F22463A55}" = AMD Drag and Drop Transcoding
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"05B59228C7E1C21DFBE89260F879BD95880548D8" = Balíček ovladače systému Windows - Nokia Modem (10/05/2009 4.2)
"8CDCFB95BB84DD9C0F88F22266A0CA86035E55BA" = Balíček ovladače systému Windows - Nokia Modem (06/01/2009 7.01.0.4)
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
"A-WIN-Extras 8.0.1 2063897_is1" = Mathematica Extras 8.0 (2063897)
"Capture NX 2" = Capture NX 2
"FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"M-WIN-L 8.0.1 2063990_is1" = Wolfram Mathematica 8 (M-WIN-L 8.0.1 2063990)
"PhotomatixPro4.0x64_is1" = Photomatix Pro version 4.0
"WinRAR archiver" = WinRAR archiver
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{51DD370C-6690-424E-9674-5F14468B323F}" = Corel Graphics - Windows Shell Extension
"_{CE54DCE1-E00A-4D91-ACB9-A2D916C24051}" = CorelDRAW(R) Graphics Suite X5
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01496C89-6117-AD97-3CB3-98AF2026070C}" = CCC Help German
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0486991B-63F4-5106-06CE-404D7BA55041}" = CCC Help Italian
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{13453DAA-8424-4B9C-844F-FC44C621F9E3}" = OLYMPUS Master 2
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{177A3BC5-ECD3-BFF1-4D87-C4B417924DF2}" = CCC Help Russian
"{19D368B2-5601-007B-A296-535706E00D97}" = CCC Help English
"{19DC9559-9C20-4A46-A67D-7ECBA52A2788}" = Nokia PC Suite
"{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.7.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FDA5A37-B22D-43FF-B582-B8964050DC13}" = Microsoft Games for Windows - LIVE Redistributable
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{24D9A3E0-D086-4B62-AF93-63CF6B05CB48}" = CorelDRAW Graphics Suite X5 - Custom Data
"{260ED378-2B8C-4831-ADAE-D0712D119AC5}" = CorelDRAW Graphics Suite X5 - VSTA
"{26945917-E053-45F6-AF98-309730CFC318}" = Visual Basic for Applications (R) Core
"{278FA289-F502-D888-A3BA-5FA10308AAAD}" = CCC Help Danish
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{319D91C6-3D44-436C-9F79-36C0D22372DC}" = TP-LINK Wireless Configuration Utility
"{3472C84E-2FD0-439F-B27F-C290C1E4CD8B}" = CorelDRAW Graphics Suite X5 - Filters
"{38A1E3ED-D913-41D2-9953-A93D5ACE3ADF}" = TL-WN721N/TL-WN722N Driver
"{44F77218-4BBD-1B74-88B7-FC302868F2B3}" = CCC Help Japanese
"{489BC3B4-AEF9-E14A-11BC-B70FDE9D543D}" = CCC Help Chinese Traditional
"{4A85AE1B-9727-261D-9EAF-07C1AECCF977}" = CCC Help Turkish
"{502699FF-F586-54B1-91E8-E85D9FAE0D6D}" = CCC Help Greek
"{51DD370C-6690-424E-9674-5F14468B323F}" = Corel Graphics - Windows Shell Extension
"{53EF1C4D-0705-98F2-1889-A69BBF9F03F3}" = CCC Help Thai
"{548A4EF3-BD97-0813-B469-E1E2FC9DE487}" = CCC Help Korean
"{54B8F4A1-02B0-4D32-8F37-925526C0EEC6}" = CorelDRAW Graphics Suite X5 - Connect
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{55533224-CAD0-39B5-6297-E1B2D1D8F176}" = AMD VISION Engine Control Center
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57400C1E-BC51-4ECE-AD2A-A6096204DDEC}" = CorelDRAW Graphics Suite X5 - VBA
"{590828E0-9BA6-3E4D-8491-A1D9CC3EB8CE}" = CCC Help French
"{59123CCF-FED2-46FF-9293-D1DC80042219}" = CorelDRAW Graphics Suite X5 - Redist
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
"{62978C1C-FE2E-4A4E-851D-3EB406C9EBC2}" = CorelDRAW Graphics Suite X5 - Draw
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{6563FAF5-84F9-0A35-C032-182EBC4C3BDB}" = CCC Help Finnish
"{675DD1E6-637A-4F0E-B6DE-26F45CC26092}_is1" = AC2 server emulator 0.44 by Dormine
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6bd5b2e2-5ce2-4e33-bc9f-0201eccf5e64}_is1" = Certified Toolbar 1.9
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6D46F639-5F2F-90F3-4B60-EB2EF264B82E}" = CCC Help Spanish
"{6E0352EE-6F0D-4FBC-B1B8-4FF032C78BE0}" = PC Connectivity Solution
"{70210CF8-CAB1-8FEB-D964-C33AFE18730B}" = CCC Help Czech
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{86A4C6D9-29EE-4719-AFA1-BA3341862B83}" = Microsoft Games for Windows - LIVE
"{87441A59-5E64-4096-A170-14EFE67200C3}" = Picture Control Utility
"{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}" = Opera 10.63
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8B1AEC85-4507-28BD-F3BA-4A5D732752E7}" = CCC Help Hungarian
"{8C5ACED4-34D3-23BB-F90E-2F90420321BC}" = Catalyst Control Center Localization All
"{8F830B99-D142-4EC5-B122-EA0D95101290}" = AKVIS MakeUp
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0116-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{9244E956-5939-4B88-930C-0699D4AB2B95}" = CorelDRAW Graphics Suite X5 - WT
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{983F7145-CABF-4EDD-9F3D-E06B2F024BD3}" = CorelDRAW Graphics Suite X5 - FontNav
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A1B04B6B-25BB-48AD-8BD9-D31A86E89F3E}" = CorelDRAW Graphics Suite X5 - PHOTO-PAINT
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3DAD349-E48E-AE45-3F26-7B80A4FFCD26}" = Catalyst Control Center InstallProxy
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AADD1C8F-D59F-4D55-A726-768C71A205A8}" = Pinnacle Studio 14
"{AC76BA86-1033-F400-7760-000000000005}" = Adobe Acrobat X Pro - English, Français, Deutsch
"{AC76BA86-7AD7-1029-7B44-A92000000001}" = Adobe Reader 9.2 - Czech
"{B014EE44-9197-4513-9613-71E6EB1B514E}" = Nikon Message Center 2
"{B0B1A8A5-4711-BB6C-DD59-9794AD928368}" = CCC Help Dutch
"{B33D2348-2938-1A03-0CD3-E6F7101244E0}" = CCC Help Polish
"{B399C91E-96F2-4265-9884-1C9A10E9FCF4}" = CorelDRAW Graphics Suite X5
"{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6
"{B5FDA445-CAC4-4BA6-A8FB-A7212BD439DE}" = Microsoft XML Parser
"{B7C8D838-9C3A-1177-B80A-E3C512FD8AF5}" = CCC Help Swedish
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C325F588-D6B1-4A7F-B6A2-914C75DDA348}" = Morrowind
"{C50EF365-2898-489A-B6C7-30DAA466E9A2}" = Nokia Connectivity Cable Driver
"{C97D06C9-1A67-492B-26B1-72617062AB7E}" = Adobe Lens Profile Downloader
"{CA3861BA-1D96-4D66-B577-318E1602C4F3}" = CorelDRAW Graphics Suite X5 - Common
"{CE54DCE1-E00A-4D91-ACB9-A2D916C24051}" = CorelDRAW Graphics Suite X5 - Setup Files
"{CE7CB214-DB11-4B5D-A6AF-3B4ED47C68B7}" = Microsoft Game Studios Common Redistributables Pack 1
"{CF097717-F174-4144-954A-FBC4BF301029}" = Nero 7 Ultra Edition
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D1E7142C-6BC3-49EB-A71A-E5D7ADAC7599}" = Nikon File Uploader 2
"{D596EEA2-C6C8-45D3-89DF-FA2DBE99F829}" = Visual Basic for Applications (R) Core - English
"{D642FF8D-438D-4545-A1D5-2EDB4BCAE3BA}" = CorelDRAW Graphics Suite X5 - Photozoom Plugin
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB3C800B-081B-4146-B4E3-EFB5B77AA913}" = TES Construction Set
"{DDCB737A-EEC8-3815-42DA-69011A55E3E5}" = Catalyst Control Center Graphics Previews Common
"{DDD62492-32A7-412B-8AF1-2CF032AD42E3}" = ViewNX 2
"{DE6CBC04-8673-4DBA-BA81-07F1639CEB5F}" = CorelDRAW Graphics Suite X5 - IPM
"{E170E984-6B20-79C2-1E9F-0256EC5ADFB4}" = CCC Help Chinese Standard
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E34C6AA4-AE8E-4677-912A-92FC2E039DD9}" = CorelDRAW Graphics Suite X5 - EN
"{E866E52C-1F56-4CCF-0071-CA915F8CFEDA}" = CCC Help Norwegian
"{EDB98D5A-A6FB-425C-BFB7-51A0924B762D}" = CorelDRAW Graphics Suite X5 - Capture
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F5C372A1-40F3-49DA-A049-F75CDE9177DC}" = Pinnacle Studio Ultimate Collection Plugins
"{F5D245CC-C332-1E8E-CCB1-75E0C3C4D6F1}" = CCC Help Portuguese
"{FB8148DD-C575-4B0A-9F6C-0CFC46937930}" = Opera 10.10
"{FE4B83DE-85CF-4DE5-90CE-A2735A0E1F21}" = CorelDRAW Graphics Suite X5 - VideoBrowser
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"µTorrent CZ_is1" = µTorrent CZ 1.8.5 (build 17414)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"AdobeLensProfileDownloader" = Adobe Lens Profile Downloader
"Afterburner" = MSI Afterburner 2.1.0
"Age Of Empire-II The Conquerors" = Age Of Empire-II The Conquerors
"Battle.net" = Battle.net
"BSPlayerf" = BS.Player FREE
"CodeLite_is1" = CodeLite
"Counter-Strike 1.6" = Counter-Strike 1.6
"Crossfire" = Crossfire1.9 (remove only)
"DAEMON Tools Lite" = DAEMON Tools Lite
"DamageCopier 3.1" = DamageCopier 3.1
"Desura" = Desura
"D-Fend v2" = D-Fend v2
"DokanLibrary" = Dokan Library 0.6.0
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Eurobattle.net1.24b" = Eurobattle.net
"Eurobattle.net1.26" = Eurobattle.net
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50
"ExposurePlot_is1" = ExposurePlot 1.14
"Freelancer 1.0" = Freelancer
"Half-Life" = Half-Life
"Half-Life 2 Riot Act" = Half-Life 2 Riot Act 1.0
"Half-Life Uplink" = Half-Life Uplink
"Half-Life: Blue Shift" = Half-Life: Blue Shift
"Hamachi" = Hamachi 1.0.2.5
"HijackThis" = HijackThis 2.0.2
"Hugin" = Hugin 2011.4.0
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"IrfanView" = IrfanView (remove only)
"JDownloader" = JDownloader
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 8.6.0
"LastFM_is1" = Last.fm 1.5.4.27091
"MediaCoder" = MediaCoder 0.7.5.4730
"Minecraft Beta Cracked" = Minecraft Beta Cracked
"Minecraft Cracked" = Minecraft Cracked
"Morrowind AnimKit" = Morrowind AnimKit 2.1 (remove only)
"Mozilla Firefox 4.0.1 (x86 cs)" = Mozilla Firefox 4.0.1 (x86 cs)
"Nokia PC Suite" = Nokia PC Suite
"OpenAL" = OpenAL
"Opera 12.11.1661" = Opera 12.11
"Original War" = Original War
"Protected Search_is1" = Protected Search 1.1
"PSPad editor_is1" = PSPad editor
"PunkBusterSvc" = PunkBuster Services
"QuicktimeAlt_is1" = QuickTime Alternative 3.1.1
"rajče.net_is1" = rajče beta56 sestavení 134
"Scorpions WinCheater 2.07 (s databází 117)_is1" = Scorpions WinCheater
"Sierra Utilities" = Sierra Utilities
"SubtitleWorkshop" = Subtitle Workshop 2.51
"TeamViewer 6" = TeamViewer 6
"Torchlight II (c) Runic Games_is1" = Torchlight II (c) Runic Games version 1
"Totalcmd" = Total Commander (Remove or Repair)
"Trapcode 3DStroke Studio" = Trapcode 3DStroke Studio
"Trapcode Particular Studio" = Trapcode Particular Studio
"Trapcode Shine Studio" = Trapcode Shine Studio
"uTorrent" = µTorrent
"VLC media player" = VLC media player 1.1.8
"Warcraft II (modification Wargus 2.2.5.5 for engine Stratagus 2.2.5.5) for 64-bit Windows" = Warcraft II (modification Wargus 2.2.5.5 for engine Stratagus 2.2.5.5) for 64-bit Windows
"Warcraft III" = Warcraft III
"Winamp" = Winamp
"WinPcapInst" = WinPcap 4.1.2
"Wireshark" = Wireshark 1.4.3
"ZonerPhotoStudio12_CZ_is1" = Zoner Photo Studio 12
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1766859715-2553107473-3108573422-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"CodeBlocks" = CodeBlocks
"Crossfire 1.9" = Crossfire 1.9
"Flash Video Downloader 2.0" = Flash Video Downloader 2.0
"Google Chrome" = Google Chrome
"Google Translator" = Google Translator
"QIP 2005" = QIP 2005 8095
"UnityWebPlayer" = Unity Web Player
"Warcraft III" = Warcraft III: All Products
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 7.11.2012 8:29:05 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 288
Error - 7.11.2012 8:29:05 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 1
Error - 7.11.2012 8:29:07 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 288
Error - 7.11.2012 8:29:07 | Computer Name = tomas-PC | Source = Protexis Licensing Service | ID = 49
Description = Failed to Release Mutex Error ID = Returned Error 1
Error - 7.11.2012 8:29:55 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program CORELPP.EXE verze 15.0.0.489 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
420 Čas spuštění: 01cdbce3743127c8 Čas ukončení: 16 Cesta k aplikaci: c:\_programy\CorelDRAW
Graphics Suite X5\Programs\CORELPP.EXE ID hlášení: d03cdff9-28d6-11e2-857c-00161742757b
Error - 25.11.2012 3:37:10 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program bsplayer.exe verze 2.6.1.1065 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
3510 Čas spuštění: 01cdcadcf2aa8610 Čas ukončení: 79 Cesta k aplikaci: C:\Program
Files (x86)\Webteh\BSplayer\bsplayer.exe ID hlášení:
Error - 25.11.2012 16:47:51 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program bsplayer.exe verze 2.6.1.1065 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
2190 Čas spuštění: 01cdcb4e142d11b0 Čas ukončení: 32 Cesta k aplikaci: C:\Program
Files (x86)\Webteh\BSplayer\bsplayer.exe ID hlášení: 5eca8221-3741-11e2-b343-00161742757b
Error - 27.11.2012 7:27:29 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program NOTEPAD.EXE verze 6.1.7600.16385 přestal spolupracovat se
systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací
o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID
procesu: 2c8 Čas spuštění: 01cdcc9216854668 Čas ukončení: 4 Cesta k aplikaci: C:\Windows\system32\NOTEPAD.EXE
ID
hlášení: 6a11daa9-3885-11e2-bbcc-00161742757b
Error - 27.11.2012 7:27:53 | Computer Name = tomas-PC | Source = Application Hang | ID = 1002
Description = Program NOTEPAD.EXE verze 6.1.7600.16385 přestal spolupracovat se
systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací
o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID
procesu: 304 Čas spuštění: 01cdcc9230988998 Čas ukončení: 3 Cesta k aplikaci: C:\Windows\system32\NOTEPAD.EXE
ID
hlášení: 7a22b549-3885-11e2-bbcc-00161742757b
Error - 28.11.2012 3:11:43 | Computer Name = tomas-PC | Source = VSS | ID = 8194
Description =
[ OSession Events ]
Error - 10.10.2010 4:28:22 | Computer Name = tomas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.6423.1000, Microsoft Office Version: 12.0.6425.1000. This session lasted 2
seconds with 0 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 28.11.2012 6:42:45 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 6:59:41 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:18:44 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:35:40 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:37:47 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:52:36 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 7:56:51 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 8:13:46 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 8:32:49 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
Error - 28.11.2012 9:06:42 | Computer Name = tomas-PC | Source = ipnathlp | ID = 31004
Description =
< End of report >
Re: preventivní kontrola logu
Zeptam se, pouzivate legalni operacni system 

Re: preventivní kontrola logu
Ano, mám studentskou licenci.
Re: preventivní kontrola logu
A ten keygen na W7 je tam zapomenuta vanocni ozdoba z lonskych Vanoc



Re: preventivní kontrola logu
vyosek: No idea, různých keygenů tam mám povíc, ale o tom že bych tam měl nějaký na W7 nevím.
Hmm, kdybych neměl legální Windows, tak by mi asi nefungovaly aktualizace a tak podobně, ne?
Hmm, kdybych neměl legální Windows, tak by mi asi nefungovaly aktualizace a tak podobně, ne?

Re: preventivní kontrola logu

