
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu. PC je zpomalený zejména se seká chrome
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Ale čumím, jak z těch pro nic neříkajících logu toho tolik vyčtete..
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Nekolikaleta praxe, bystre oko a zkusenosti 

-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Poklona a díky. Jinak vyskytuje se v nich ještě nějaký závažný problém? nebo můžu být mít pocit bezpečí?
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Jeste tam je co opravovavat, pockam az dokoncite nahradu Office a budem pokracovat
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
ok. Dnes už musím, zítra ráno jsem to dodělám.
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Dobra dobra, zitra tu budu tez 

-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Tak office už odinstalovaný a zkouším openoffice. jaké jsou další kroky?
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom

- Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
- Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
- Zaskrtnete okenko Pro vsechny uzivatele
- Zaskrtnete okenko Kontrola na havet "LOP"
- Zaskrtnete okenko Kontrola na havet "Purity"
- Stari souboru zmente z 30 dnu na 7 dnu
- Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
Kód: Vybrat vše
CREATERESTOREPOINT netsvcs drivers32 savembr:0 /md5start atapi.sys autochk.exe cdrom.sys explorer.exe hal.dll scecli.dll services.exe svchost.exe tcpip.sys userinit.exe winlogon.exe /md5stop %systemroot%*.* /U /s %SYSTEMDRIVE%\*.exe %ALLUSERSPROFILE%\Application Data\*. %ALLUSERSPROFILE%\Application Data\*.exe /s %APPDATA%\*. %APPDATA%\*.exe /s %systemroot%\*. /mp /s %systemroot%\system32\*.dll /lockedfiles %systemroot%\Tasks\*.job %systemroot%\system32\drivers\*.sys /lockedfiles %systemroot%\System32\config\*.sav %systemroot%\system32\*.dll /lockedfiles %systemroot%\system32\drivers\*.sys /3 %systemroot%\system32\*.* /3 %SYSTEMDRIVE%\*.exe HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 %PROGRAMFILES%\Opera\opera.exe /md5 %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 %SystemDrive%\PhysicalMBR.bin /md5 *crack* /s *keygen* /s *loader* /s
- Kliknete na tlacitko Prohledat
- Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
- Pokud budou logy dlouhe (forum bude kricet o prekroceni maximalniho poctu znaku), tak je rozdelte do vice prispevku
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
OTL logfile created on: 10.7.2013 11:36:42 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\honza\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
7,95 Gb Total Physical Memory | 4,38 Gb Available Physical Memory | 55,08% Memory free
15,90 Gb Paging File | 11,38 Gb Available in Paging File | 71,58% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 445,38 Gb Total Space | 166,27 Gb Free Space | 37,33% Space Free | Partition Type: NTFS
Drive D: | 15,09 Gb Total Space | 2,25 Gb Free Space | 14,92% Space Free | Partition Type: NTFS
Drive E: | 4,99 Gb Total Space | 2,13 Gb Free Space | 42,64% Space Free | Partition Type: FAT32
Computer Name: B04-717B | User Name: honza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - File not found --
PRC - [2013.07.10 11:34:58 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
PRC - [2013.06.25 21:47:02 | 001,598,128 | ---- | M] (AVG Secure Search) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe
PRC - [2013.06.15 03:28:44 | 000,825,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013.06.05 01:01:52 | 004,489,472 | ---- | M] (Akamai Technologies, Inc.) -- C:\Users\honza\AppData\Local\Akamai\netsession_win.exe
PRC - [2013.05.10 09:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013.04.23 06:48:16 | 000,311,152 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
PRC - [2013.04.23 06:48:12 | 001,561,968 | ---- | M] (Samsung) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
PRC - [2013.02.01 14:50:22 | 001,641,368 | ---- | M] (Autodesk, Inc.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe
PRC - [2012.10.06 12:20:13 | 001,044,816 | ---- | M] (Flexera Software, Inc.) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
PRC - [2012.09.12 17:15:30 | 000,523,680 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
PRC - [2012.09.06 10:32:12 | 000,197,536 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2012.06.28 17:40:52 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe
PRC - [2012.02.29 17:57:26 | 002,306,048 | ---- | M] (Nemetschek SCIA) -- C:\Program Files (x86)\Common Files\Scia\LicenceServer\FlexnetServer\scia\SCIA.exe
PRC - [2012.01.31 10:46:56 | 000,019,232 | ---- | M] (Autodesk, Inc.) -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
PRC - [2011.08.18 15:47:48 | 000,819,976 | ---- | M] (ABBYY) -- C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe
PRC - [2011.08.05 18:11:40 | 006,587,728 | ---- | M] (Flexera Software, Inc.) -- C:\Program Files (x86)\Common Files\Scia\LicenceServer\FlexnetServer\lmadmin.exe
PRC - [2011.04.05 11:13:46 | 001,094,712 | ---- | M] (Hewlett-Packard Development Company L.P.) -- c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
PRC - [2011.04.05 00:46:48 | 000,030,776 | ---- | M] (Hewlett-Packard Development Company, L.P) -- c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
PRC - [2011.04.01 22:45:50 | 000,821,584 | R--- | M] (DigitalPersona, Inc.) -- c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
PRC - [2011.03.31 01:57:28 | 000,076,344 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
PRC - [2011.03.29 15:24:52 | 000,200,704 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
PRC - [2011.03.29 15:00:24 | 001,318,912 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
PRC - [2011.03.16 20:26:42 | 000,070,256 | ---- | M] (Portrait Displays, Inc) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
PRC - [2011.03.16 20:26:40 | 000,113,264 | ---- | M] (Portrait Displays, Inc.) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
PRC - [2011.03.10 21:08:00 | 012,277,760 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
PRC - [2011.03.10 21:07:52 | 000,320,512 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
PRC - [2011.02.24 00:10:24 | 000,212,944 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
PRC - [2011.01.28 09:41:30 | 000,133,688 | ---- | M] (Hewlett-Packard Company) -- c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
PRC - [2011.01.26 19:00:32 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2011.01.26 19:00:00 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2011.01.20 07:55:18 | 001,125,728 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXSPMGT.exe
PRC - [2011.01.20 07:50:16 | 000,329,056 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\PSDrt.exe
PRC - [2011.01.20 07:43:00 | 000,203,104 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe
PRC - [2011.01.20 06:49:00 | 000,980,320 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXTCS.exe
PRC - [2011.01.17 21:42:04 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2011.01.17 21:42:02 | 000,326,168 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2011.01.12 20:48:48 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2010.11.17 19:53:16 | 000,113,288 | ---- | M] (Renesas Electronics Corporation) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
PRC - [2010.11.11 09:43:00 | 000,502,464 | ---- | M] (ArcSoft, Inc.) -- C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
PRC - [2010.11.09 15:20:36 | 000,586,296 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
PRC - [2010.11.09 15:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2010.03.18 11:19:26 | 000,207,360 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
PRC - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2009.10.13 08:39:04 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
PRC - [2009.06.26 09:26:42 | 000,258,048 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\TMMonitor.exe
PRC - [2008.05.28 04:39:45 | 000,401,408 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe
PRC - [2007.04.02 08:15:40 | 000,061,440 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe
========== Modules (No Company Name) ==========
MOD - [2013.06.16 22:30:47 | 000,771,584 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\3de1ebb1410ea7f72877f8c261e85531\System.Runtime.Remoting.ni.dll
MOD - [2013.06.16 19:47:49 | 011,914,240 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\ce6b7579fbb77330560e9122d1cf6526\System.Web.ni.dll
MOD - [2013.06.16 19:47:42 | 000,771,584 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b6eb138c3c9be780acb767c1bef572c1\System.Runtime.Remoting.ni.dll
MOD - [2013.06.15 03:28:42 | 000,393,168 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppgooglenaclpluginchrome.dll
MOD - [2013.06.15 03:28:41 | 013,140,432 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll
MOD - [2013.06.15 03:28:40 | 004,051,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll
MOD - [2013.06.15 03:27:51 | 000,599,504 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\libglesv2.dll
MOD - [2013.06.15 03:27:50 | 000,124,368 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\libegl.dll
MOD - [2013.06.15 03:27:48 | 001,597,392 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ffmpegsumo.dll
MOD - [2013.05.17 09:07:22 | 012,436,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\30e3a21202000677d0a9270572251477\System.Windows.Forms.ni.dll
MOD - [2013.05.17 09:07:02 | 003,347,968 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\716959df79685a1eae0fc14275a32b0f\WindowsBase.ni.dll
MOD - [2013.05.17 09:06:59 | 000,971,264 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\764f15e86c82662e977bd418bd6318c1\System.Configuration.ni.dll
MOD - [2013.05.17 08:37:36 | 018,022,400 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\1f0bb5336d1706c9b8ad2330f3642760\PresentationFramework.ni.dll
MOD - [2013.05.17 08:37:26 | 011,522,560 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\9b2940478ec555990b37af5448b8f509\PresentationCore.ni.dll
MOD - [2013.05.17 08:37:20 | 007,070,208 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Core\93a17ba6cb6753328f25466bc0bf1cb1\System.Core.ni.dll
MOD - [2013.05.17 08:37:16 | 003,883,008 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\a1949f57d2ec260e09768e98fecb0559\WindowsBase.ni.dll
MOD - [2013.05.17 08:37:14 | 000,982,528 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\ddc3e8c2774eaec614d6775983652980\System.Configuration.ni.dll
MOD - [2013.03.11 23:11:14 | 000,221,696 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\7d8f6866864f78cf83d3701641c46178\System.ServiceProcess.ni.dll
MOD - [2013.03.11 23:10:34 | 001,812,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\40c7a89fe2cbf3c12a2c39e034da54cf\System.Xaml.ni.dll
MOD - [2013.03.11 10:39:15 | 005,617,664 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\fc476bbac36944e352c2f547352ffa64\System.Xml.ni.dll
MOD - [2013.03.11 10:39:08 | 009,095,168 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System\f93dca0e4baa1dcb37cf75392b7c89da\System.ni.dll
MOD - [2013.03.11 10:39:03 | 014,416,896 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\6a1ccc1e1a79ce267d3d1808af382cd6\mscorlib.ni.dll
MOD - [2013.01.11 00:22:55 | 000,475,648 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\27649bdc3da750e2e072dedbff56cc0b\IAStorUtil.ni.dll
MOD - [2013.01.11 00:22:55 | 000,014,336 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\09a468fb987e5a5f345346b0910c89ca\IAStorCommon.ni.dll
MOD - [2013.01.10 23:16:00 | 001,592,832 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
MOD - [2013.01.10 23:15:27 | 005,453,312 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
MOD - [2013.01.10 23:15:19 | 007,989,760 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
MOD - [2013.01.10 23:14:46 | 011,493,376 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
MOD - [2011.04.30 21:33:43 | 000,032,768 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_cs_b77a5c561934e089\System.Runtime.Remoting.resources.dll
MOD - [2011.03.29 15:24:52 | 000,200,704 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
MOD - [2011.03.07 20:00:12 | 000,366,208 | ---- | M] () -- C:\Windows\SysWOW64\flcdlmsg.dll
MOD - [2011.01.12 20:48:48 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2010.11.25 07:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll
MOD - [2010.11.13 04:36:45 | 000,303,104 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
MOD - [2009.08.20 12:35:48 | 007,745,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
MOD - [2009.08.20 12:35:46 | 002,121,728 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
MOD - [2009.08.20 12:35:46 | 000,135,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
MOD - [2009.07.14 03:15:45 | 000,364,544 | ---- | M] () -- C:\Windows\SysWOW64\msjetoledb40.dll
MOD - [2007.04.19 09:39:08 | 000,436,992 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\FPXLIB.DLL
MOD - [2007.04.19 09:33:00 | 000,035,584 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\uPiApi.dll
MOD - [2007.04.19 09:29:42 | 000,273,216 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\magengin.dll
MOD - [2007.04.19 09:29:38 | 000,187,136 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\kgl.dll
========== Services (SafeList) ==========
SRV:64bit: - [2013.05.26 16:59:38 | 000,323,072 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2013.05.26 16:59:37 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2013.03.15 12:52:10 | 004,466,120 | ---- | M] (SafeNet Inc.) [Auto | Running] -- C:\Windows\SysNative\hasplms.exe -- (hasplms)
SRV:64bit: - [2013.01.27 12:34:32 | 000,379,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2013.01.27 12:34:32 | 000,022,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2012.10.05 23:36:29 | 001,432,400 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:64bit: - [2011.07.27 21:04:48 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:64bit: - [2011.07.27 20:44:18 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:64bit: - [2011.05.13 18:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2011.04.01 22:45:52 | 000,485,712 | R--- | M] (DigitalPersona, Inc.) [Auto | Running] -- c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe -- (DpHost)
SRV:64bit: - [2011.03.31 22:21:28 | 000,203,776 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011.03.29 15:00:24 | 001,318,912 | ---- | M] () [Auto | Running] -- C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe -- (McAfee Endpoint Encryption Agent)
SRV:64bit: - [2011.03.24 10:24:44 | 003,161,904 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysNative\vcsFPService.exe -- (vcsFPService)
SRV:64bit: - [2011.03.18 00:06:50 | 000,132,152 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe -- (HP Power Assistant Service)
SRV:64bit: - [2011.01.28 09:41:30 | 000,133,688 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe -- (HPDayStarterService)
SRV:64bit: - [2010.07.29 19:39:24 | 000,951,584 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
SRV:64bit: - [2009.12.04 01:27:24 | 000,028,672 | ---- | M] (LSI Corporation) [Auto | Running] -- C:\Program Files\LSI SoftModem\agr64svc.exe -- (AgereModemAudio)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2008.07.29 13:20:28 | 004,737,024 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe -- (msvsmon90)
SRV - [2013.06.25 21:47:02 | 001,598,128 | ---- | M] (AVG Secure Search) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe -- (vToolbarUpdater15.3.0)
SRV - [2013.06.12 09:46:08 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.06.03 16:21:54 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.05.10 09:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.10.06 12:20:13 | 001,044,816 | ---- | M] (Flexera Software, Inc.) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2012.09.27 12:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2012.09.12 17:15:30 | 000,523,680 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe -- (hpHotkeyMonitor)
SRV - [2012.09.06 10:32:12 | 000,197,536 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2012.08.27 13:32:34 | 001,039,360 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Users\honza\AppData\Local\Temp\7zS372D\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2012.08.01 16:07:16 | 000,724,888 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2012.01.31 10:46:56 | 000,019,232 | ---- | M] (Autodesk, Inc.) [Auto | Running] -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe -- (Autodesk Content Service)
SRV - [2011.08.18 15:47:48 | 000,819,976 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Professional.11.0)
SRV - [2011.08.05 18:11:40 | 006,587,728 | ---- | M] (Flexera Software, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Scia\LicenceServer\FlexnetServer\lmadmin.exe -- (lmadmin)
SRV - [2011.04.05 11:13:46 | 001,094,712 | ---- | M] (Hewlett-Packard Development Company L.P.) [On_Demand | Running] -- c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe -- (hpCMSrv)
SRV - [2011.04.05 00:46:48 | 000,030,776 | ---- | M] (Hewlett-Packard Development Company, L.P) [On_Demand | Running] -- c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe -- (HP ProtectTools Service)
SRV - [2011.03.24 10:13:02 | 002,762,032 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vcsFPService.exe -- (vcsFPService)
SRV - [2011.03.16 20:26:40 | 000,113,264 | ---- | M] (Portrait Displays, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe -- (PdiService)
SRV - [2011.03.10 21:07:52 | 000,320,512 | ---- | M] (Hewlett-Packard) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe -- (HPFSService)
SRV - [2011.03.07 20:00:18 | 000,464,512 | ---- | M] (Hewlett-Packard Company) [On_Demand | Stopped] -- c:\Windows\SysWOW64\flcdlock.exe -- (FLCDLOCK)
SRV - [2011.02.24 00:10:24 | 000,212,944 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe -- (jhi_service)
SRV - [2011.02.15 05:30:08 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
SRV - [2011.01.26 19:00:00 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2011.01.20 07:55:18 | 001,125,728 | ---- | M] (Infineon Technologies AG) [Auto | Running] -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXSPMGT.exe -- (IFXSpMgtSrv)
SRV - [2011.01.20 07:43:00 | 000,203,104 | ---- | M] (Infineon Technologies AG) [Auto | Running] -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe -- (PersonalSecureDriveService)
SRV - [2011.01.20 06:49:00 | 000,980,320 | ---- | M] (Infineon Technologies AG) [Auto | Running] -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXTCS.exe -- (IFXTCS)
SRV - [2011.01.17 21:42:04 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2011.01.17 21:42:02 | 000,326,168 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010.11.11 09:43:00 | 000,502,464 | ---- | M] (ArcSoft, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe -- (uArcCapture)
SRV - [2010.11.09 15:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2010.03.18 22:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2009.10.13 08:39:04 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008.05.21 13:42:56 | 000,064,000 | ---- | M] (Creative Technology Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\Creative\Creative Centrale\CTUPnPSv.exe -- (CTUPnPSv)
SRV - [2007.04.02 08:15:40 | 000,061,440 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe -- (CTDevice_Srv)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013.07.08 22:37:00 | 000,165,504 | ---- | M] (ITE ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IT9135BDA.sys -- (IT9135BDA)
DRV:64bit: - [2013.07.01 19:45:22 | 000,468,720 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2013.06.25 21:47:03 | 000,045,856 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:64bit: - [2013.06.03 13:02:41 | 000,175,928 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR)
DRV:64bit: - [2013.06.03 13:02:41 | 000,026,208 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\johci.sys -- (johci)
DRV:64bit: - [2013.05.26 16:59:40 | 000,543,744 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2013.05.26 16:38:10 | 008,604,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
DRV:64bit: - [2013.04.03 09:58:18 | 000,203,672 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2013.04.03 09:58:18 | 000,103,064 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2013.03.15 12:52:08 | 000,303,368 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aksusb.sys -- (aksusb)
DRV:64bit: - [2013.03.15 12:52:08 | 000,063,944 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\akshhl.sys -- (akshhl)
DRV:64bit: - [2013.03.15 12:52:08 | 000,060,488 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\akshasp.sys -- (akshasp)
DRV:64bit: - [2013.03.06 23:00:28 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.01.20 16:59:04 | 000,130,008 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012.11.28 11:17:26 | 000,482,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1c62x64.sys -- (e1cexpress)
DRV:64bit: - [2012.06.27 15:18:52 | 000,026,112 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:64bit: - [2012.06.01 07:31:54 | 001,863,720 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:64bit: - [2012.03.15 06:02:46 | 000,198,144 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.15 15:16:48 | 000,011,576 | ---- | M] (Samsung Electronics) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\SSPORT.sys -- (SSPORT)
DRV:64bit: - [2012.01.09 17:28:20 | 000,171,008 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64)
DRV:64bit: - [2012.01.09 17:28:20 | 000,019,968 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcd)
DRV:64bit: - [2012.01.09 17:28:20 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys -- (nmwcdnsucx64)
DRV:64bit: - [2012.01.09 17:28:20 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltjx64.sys -- (UsbserFilt)
DRV:64bit: - [2012.01.09 17:28:20 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:64bit: - [2012.01.09 17:28:18 | 000,027,136 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdc)
DRV:64bit: - [2011.05.13 18:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011.05.13 18:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011.03.31 23:10:24 | 009,090,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011.03.31 21:46:10 | 000,299,520 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011.03.29 15:33:06 | 000,168,008 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\MfeEpePc.sys -- (MfeEpePc)
DRV:64bit: - [2011.03.22 02:57:04 | 000,025,912 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.03.03 19:48:38 | 000,063,336 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DAMDrv64.sys -- (DAMDrv)
DRV:64bit: - [2011.01.13 03:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010.12.10 23:50:36 | 000,181,248 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2010.12.10 23:50:36 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2010.11.20 15:34:02 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2010.11.20 15:34:02 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:35:32 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2010.11.20 13:35:20 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 12:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010.11.20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010.11.17 18:04:32 | 000,115,216 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2010.11.11 09:46:00 | 000,032,192 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ArcSoftVCapture.sys -- (ARCVCAM)
DRV:64bit: - [2010.10.20 03:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010.09.27 14:26:04 | 000,131,072 | ---- | M] (SafeNet Inc.) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aksfridge.sys -- (aksfridge)
DRV:64bit: - [2010.07.27 10:36:22 | 000,075,648 | ---- | M] (SafeNet Inc.) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aksdf.sys -- (aksdf)
DRV:64bit: - [2010.07.20 23:26:42 | 000,102,952 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:64bit: - [2010.07.20 23:26:38 | 000,135,720 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2010.07.20 23:26:34 | 000,021,544 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2010.07.14 16:25:38 | 000,344,616 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)
DRV:64bit: - [2010.03.19 12:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2010.03.03 00:37:40 | 000,039,464 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)
DRV:64bit: - [2010.01.26 22:52:22 | 001,212,416 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2010.01.26 07:31:08 | 000,044,576 | ---- | M] (Infineon Technologies AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\psd.sys -- (PersonalSecureDrive)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 01:21:48 | 000,038,400 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.03.13 11:55:38 | 000,318,464 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hardlock.sys -- (hardlock)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\SysWOW64\Adobe\Director\np32dsw_1167637.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@graphisoft.com/GDL Web Plug-in: C:\Program Files (x86)\GRAPHISOFT\GDLWebControl\npGDLMozilla.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\honza\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\otis@digitalpersona.com: c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ [2011.04.30 21:28:39 | 000,000,000 | ---D | M]
[2012.10.17 21:35:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\honza\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions
[2012.10.17 21:35:10 | 000,214,909 | ---- | M] () (No name found) -- C:\Users\honza\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions\onlinehdtv@onlinehd.tv.xpi
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.79\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - Extension: Disk Google = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Kontrola e-mailu Google = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_0\
CHR - Extension: Gmail = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (File Sanitizer for HP ProtectTools) - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O4:64bit: - HKLM..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (Autodesk, Inc.)
O4:64bit: - HKLM..\Run: [CDAServer] C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe ()
O4:64bit: - HKLM..\Run: [HPPowerAssistant] C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe ()
O4:64bit: - HKLM..\Run: [MfeEpePcMonitor] C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe ()
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ADSK DLMSession] C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe (Autodesk, Inc.)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [Bonus.SSR.FR11] C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe (ABBYY.)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [HPConnectionManager] c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe (Hewlett-Packard Development Company L.P.)
O4 - HKLM..\Run: [HPQuickWebProxy] c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [IFXSPMGTx] c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\ifxspmgt.exe (Infineon Technologies AG)
O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKLM..\Run: [NUSB3MON] c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [Akamai NetSession Interface] C:\Users\honza\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [Facebook Update] C:\Users\honza\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [SoftAuto.exe] C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe (Creative Technology Ltd)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: =
O8:64bit: - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O8:64bit: - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..Trusted Domains: samsungsetup.com ([www] http in Důvěryhodné weby)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.24.2 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{03F5D26D-C270-4191-8633-A178C07C14B5}: DhcpNameServer = 192.168.24.2 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{736B7E08-D63A-44D3-A1DB-B9BC565D959B}: DhcpNameServer = 192.168.24.2 213.46.172.37
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll File not found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe) - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (DigitalPersona, Inc.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\DeviceNP: DllName - (DeviceNP.dll) - C:\windows\SysWow64\DeviceNP.dll (Hewlett-Packard Company)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013.06.22 10:36:21 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\honza\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
7,95 Gb Total Physical Memory | 4,38 Gb Available Physical Memory | 55,08% Memory free
15,90 Gb Paging File | 11,38 Gb Available in Paging File | 71,58% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 445,38 Gb Total Space | 166,27 Gb Free Space | 37,33% Space Free | Partition Type: NTFS
Drive D: | 15,09 Gb Total Space | 2,25 Gb Free Space | 14,92% Space Free | Partition Type: NTFS
Drive E: | 4,99 Gb Total Space | 2,13 Gb Free Space | 42,64% Space Free | Partition Type: FAT32
Computer Name: B04-717B | User Name: honza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - File not found --
PRC - [2013.07.10 11:34:58 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
PRC - [2013.06.25 21:47:02 | 001,598,128 | ---- | M] (AVG Secure Search) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe
PRC - [2013.06.15 03:28:44 | 000,825,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013.06.05 01:01:52 | 004,489,472 | ---- | M] (Akamai Technologies, Inc.) -- C:\Users\honza\AppData\Local\Akamai\netsession_win.exe
PRC - [2013.05.10 09:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013.04.23 06:48:16 | 000,311,152 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
PRC - [2013.04.23 06:48:12 | 001,561,968 | ---- | M] (Samsung) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
PRC - [2013.02.01 14:50:22 | 001,641,368 | ---- | M] (Autodesk, Inc.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe
PRC - [2012.10.06 12:20:13 | 001,044,816 | ---- | M] (Flexera Software, Inc.) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
PRC - [2012.09.12 17:15:30 | 000,523,680 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
PRC - [2012.09.06 10:32:12 | 000,197,536 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2012.06.28 17:40:52 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe
PRC - [2012.02.29 17:57:26 | 002,306,048 | ---- | M] (Nemetschek SCIA) -- C:\Program Files (x86)\Common Files\Scia\LicenceServer\FlexnetServer\scia\SCIA.exe
PRC - [2012.01.31 10:46:56 | 000,019,232 | ---- | M] (Autodesk, Inc.) -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
PRC - [2011.08.18 15:47:48 | 000,819,976 | ---- | M] (ABBYY) -- C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe
PRC - [2011.08.05 18:11:40 | 006,587,728 | ---- | M] (Flexera Software, Inc.) -- C:\Program Files (x86)\Common Files\Scia\LicenceServer\FlexnetServer\lmadmin.exe
PRC - [2011.04.05 11:13:46 | 001,094,712 | ---- | M] (Hewlett-Packard Development Company L.P.) -- c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
PRC - [2011.04.05 00:46:48 | 000,030,776 | ---- | M] (Hewlett-Packard Development Company, L.P) -- c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
PRC - [2011.04.01 22:45:50 | 000,821,584 | R--- | M] (DigitalPersona, Inc.) -- c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
PRC - [2011.03.31 01:57:28 | 000,076,344 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
PRC - [2011.03.29 15:24:52 | 000,200,704 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
PRC - [2011.03.29 15:00:24 | 001,318,912 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
PRC - [2011.03.16 20:26:42 | 000,070,256 | ---- | M] (Portrait Displays, Inc) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
PRC - [2011.03.16 20:26:40 | 000,113,264 | ---- | M] (Portrait Displays, Inc.) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
PRC - [2011.03.10 21:08:00 | 012,277,760 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
PRC - [2011.03.10 21:07:52 | 000,320,512 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
PRC - [2011.02.24 00:10:24 | 000,212,944 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
PRC - [2011.01.28 09:41:30 | 000,133,688 | ---- | M] (Hewlett-Packard Company) -- c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
PRC - [2011.01.26 19:00:32 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2011.01.26 19:00:00 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2011.01.20 07:55:18 | 001,125,728 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXSPMGT.exe
PRC - [2011.01.20 07:50:16 | 000,329,056 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\PSDrt.exe
PRC - [2011.01.20 07:43:00 | 000,203,104 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe
PRC - [2011.01.20 06:49:00 | 000,980,320 | ---- | M] (Infineon Technologies AG) -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXTCS.exe
PRC - [2011.01.17 21:42:04 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2011.01.17 21:42:02 | 000,326,168 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2011.01.12 20:48:48 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2010.11.17 19:53:16 | 000,113,288 | ---- | M] (Renesas Electronics Corporation) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
PRC - [2010.11.11 09:43:00 | 000,502,464 | ---- | M] (ArcSoft, Inc.) -- C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
PRC - [2010.11.09 15:20:36 | 000,586,296 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
PRC - [2010.11.09 15:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2010.03.18 11:19:26 | 000,207,360 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
PRC - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2009.10.13 08:39:04 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
PRC - [2009.06.26 09:26:42 | 000,258,048 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\TMMonitor.exe
PRC - [2008.05.28 04:39:45 | 000,401,408 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe
PRC - [2007.04.02 08:15:40 | 000,061,440 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe
========== Modules (No Company Name) ==========
MOD - [2013.06.16 22:30:47 | 000,771,584 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\3de1ebb1410ea7f72877f8c261e85531\System.Runtime.Remoting.ni.dll
MOD - [2013.06.16 19:47:49 | 011,914,240 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\ce6b7579fbb77330560e9122d1cf6526\System.Web.ni.dll
MOD - [2013.06.16 19:47:42 | 000,771,584 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b6eb138c3c9be780acb767c1bef572c1\System.Runtime.Remoting.ni.dll
MOD - [2013.06.15 03:28:42 | 000,393,168 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppgooglenaclpluginchrome.dll
MOD - [2013.06.15 03:28:41 | 013,140,432 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll
MOD - [2013.06.15 03:28:40 | 004,051,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll
MOD - [2013.06.15 03:27:51 | 000,599,504 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\libglesv2.dll
MOD - [2013.06.15 03:27:50 | 000,124,368 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\libegl.dll
MOD - [2013.06.15 03:27:48 | 001,597,392 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ffmpegsumo.dll
MOD - [2013.05.17 09:07:22 | 012,436,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\30e3a21202000677d0a9270572251477\System.Windows.Forms.ni.dll
MOD - [2013.05.17 09:07:02 | 003,347,968 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\716959df79685a1eae0fc14275a32b0f\WindowsBase.ni.dll
MOD - [2013.05.17 09:06:59 | 000,971,264 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\764f15e86c82662e977bd418bd6318c1\System.Configuration.ni.dll
MOD - [2013.05.17 08:37:36 | 018,022,400 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\1f0bb5336d1706c9b8ad2330f3642760\PresentationFramework.ni.dll
MOD - [2013.05.17 08:37:26 | 011,522,560 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\9b2940478ec555990b37af5448b8f509\PresentationCore.ni.dll
MOD - [2013.05.17 08:37:20 | 007,070,208 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Core\93a17ba6cb6753328f25466bc0bf1cb1\System.Core.ni.dll
MOD - [2013.05.17 08:37:16 | 003,883,008 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\a1949f57d2ec260e09768e98fecb0559\WindowsBase.ni.dll
MOD - [2013.05.17 08:37:14 | 000,982,528 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\ddc3e8c2774eaec614d6775983652980\System.Configuration.ni.dll
MOD - [2013.03.11 23:11:14 | 000,221,696 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\7d8f6866864f78cf83d3701641c46178\System.ServiceProcess.ni.dll
MOD - [2013.03.11 23:10:34 | 001,812,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\40c7a89fe2cbf3c12a2c39e034da54cf\System.Xaml.ni.dll
MOD - [2013.03.11 10:39:15 | 005,617,664 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\fc476bbac36944e352c2f547352ffa64\System.Xml.ni.dll
MOD - [2013.03.11 10:39:08 | 009,095,168 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System\f93dca0e4baa1dcb37cf75392b7c89da\System.ni.dll
MOD - [2013.03.11 10:39:03 | 014,416,896 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\6a1ccc1e1a79ce267d3d1808af382cd6\mscorlib.ni.dll
MOD - [2013.01.11 00:22:55 | 000,475,648 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\27649bdc3da750e2e072dedbff56cc0b\IAStorUtil.ni.dll
MOD - [2013.01.11 00:22:55 | 000,014,336 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\09a468fb987e5a5f345346b0910c89ca\IAStorCommon.ni.dll
MOD - [2013.01.10 23:16:00 | 001,592,832 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
MOD - [2013.01.10 23:15:27 | 005,453,312 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
MOD - [2013.01.10 23:15:19 | 007,989,760 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
MOD - [2013.01.10 23:14:46 | 011,493,376 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
MOD - [2011.04.30 21:33:43 | 000,032,768 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_cs_b77a5c561934e089\System.Runtime.Remoting.resources.dll
MOD - [2011.03.29 15:24:52 | 000,200,704 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
MOD - [2011.03.07 20:00:12 | 000,366,208 | ---- | M] () -- C:\Windows\SysWOW64\flcdlmsg.dll
MOD - [2011.01.12 20:48:48 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2010.11.25 07:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll
MOD - [2010.11.13 04:36:45 | 000,303,104 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
MOD - [2009.08.20 12:35:48 | 007,745,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
MOD - [2009.08.20 12:35:46 | 002,121,728 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
MOD - [2009.08.20 12:35:46 | 000,135,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
MOD - [2009.07.14 03:15:45 | 000,364,544 | ---- | M] () -- C:\Windows\SysWOW64\msjetoledb40.dll
MOD - [2007.04.19 09:39:08 | 000,436,992 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\FPXLIB.DLL
MOD - [2007.04.19 09:33:00 | 000,035,584 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\uPiApi.dll
MOD - [2007.04.19 09:29:42 | 000,273,216 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\magengin.dll
MOD - [2007.04.19 09:29:38 | 000,187,136 | ---- | M] () -- C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\kgl.dll
========== Services (SafeList) ==========
SRV:64bit: - [2013.05.26 16:59:38 | 000,323,072 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2013.05.26 16:59:37 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2013.03.15 12:52:10 | 004,466,120 | ---- | M] (SafeNet Inc.) [Auto | Running] -- C:\Windows\SysNative\hasplms.exe -- (hasplms)
SRV:64bit: - [2013.01.27 12:34:32 | 000,379,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2013.01.27 12:34:32 | 000,022,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2012.10.05 23:36:29 | 001,432,400 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:64bit: - [2011.07.27 21:04:48 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:64bit: - [2011.07.27 20:44:18 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:64bit: - [2011.05.13 18:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2011.04.01 22:45:52 | 000,485,712 | R--- | M] (DigitalPersona, Inc.) [Auto | Running] -- c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe -- (DpHost)
SRV:64bit: - [2011.03.31 22:21:28 | 000,203,776 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011.03.29 15:00:24 | 001,318,912 | ---- | M] () [Auto | Running] -- C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe -- (McAfee Endpoint Encryption Agent)
SRV:64bit: - [2011.03.24 10:24:44 | 003,161,904 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysNative\vcsFPService.exe -- (vcsFPService)
SRV:64bit: - [2011.03.18 00:06:50 | 000,132,152 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe -- (HP Power Assistant Service)
SRV:64bit: - [2011.01.28 09:41:30 | 000,133,688 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe -- (HPDayStarterService)
SRV:64bit: - [2010.07.29 19:39:24 | 000,951,584 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
SRV:64bit: - [2009.12.04 01:27:24 | 000,028,672 | ---- | M] (LSI Corporation) [Auto | Running] -- C:\Program Files\LSI SoftModem\agr64svc.exe -- (AgereModemAudio)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2008.07.29 13:20:28 | 004,737,024 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe -- (msvsmon90)
SRV - [2013.06.25 21:47:02 | 001,598,128 | ---- | M] (AVG Secure Search) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe -- (vToolbarUpdater15.3.0)
SRV - [2013.06.12 09:46:08 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.06.03 16:21:54 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.05.10 09:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.10.06 12:20:13 | 001,044,816 | ---- | M] (Flexera Software, Inc.) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2012.09.27 12:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2012.09.12 17:15:30 | 000,523,680 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe -- (hpHotkeyMonitor)
SRV - [2012.09.06 10:32:12 | 000,197,536 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2012.08.27 13:32:34 | 001,039,360 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Users\honza\AppData\Local\Temp\7zS372D\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2012.08.01 16:07:16 | 000,724,888 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2012.01.31 10:46:56 | 000,019,232 | ---- | M] (Autodesk, Inc.) [Auto | Running] -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe -- (Autodesk Content Service)
SRV - [2011.08.18 15:47:48 | 000,819,976 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Professional.11.0)
SRV - [2011.08.05 18:11:40 | 006,587,728 | ---- | M] (Flexera Software, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Scia\LicenceServer\FlexnetServer\lmadmin.exe -- (lmadmin)
SRV - [2011.04.05 11:13:46 | 001,094,712 | ---- | M] (Hewlett-Packard Development Company L.P.) [On_Demand | Running] -- c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe -- (hpCMSrv)
SRV - [2011.04.05 00:46:48 | 000,030,776 | ---- | M] (Hewlett-Packard Development Company, L.P) [On_Demand | Running] -- c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe -- (HP ProtectTools Service)
SRV - [2011.03.24 10:13:02 | 002,762,032 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vcsFPService.exe -- (vcsFPService)
SRV - [2011.03.16 20:26:40 | 000,113,264 | ---- | M] (Portrait Displays, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe -- (PdiService)
SRV - [2011.03.10 21:07:52 | 000,320,512 | ---- | M] (Hewlett-Packard) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe -- (HPFSService)
SRV - [2011.03.07 20:00:18 | 000,464,512 | ---- | M] (Hewlett-Packard Company) [On_Demand | Stopped] -- c:\Windows\SysWOW64\flcdlock.exe -- (FLCDLOCK)
SRV - [2011.02.24 00:10:24 | 000,212,944 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe -- (jhi_service)
SRV - [2011.02.15 05:30:08 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
SRV - [2011.01.26 19:00:00 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2011.01.20 07:55:18 | 001,125,728 | ---- | M] (Infineon Technologies AG) [Auto | Running] -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXSPMGT.exe -- (IFXSpMgtSrv)
SRV - [2011.01.20 07:43:00 | 000,203,104 | ---- | M] (Infineon Technologies AG) [Auto | Running] -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe -- (PersonalSecureDriveService)
SRV - [2011.01.20 06:49:00 | 000,980,320 | ---- | M] (Infineon Technologies AG) [Auto | Running] -- c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\IFXTCS.exe -- (IFXTCS)
SRV - [2011.01.17 21:42:04 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2011.01.17 21:42:02 | 000,326,168 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010.11.11 09:43:00 | 000,502,464 | ---- | M] (ArcSoft, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe -- (uArcCapture)
SRV - [2010.11.09 15:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2010.03.18 22:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2009.10.13 08:39:04 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008.05.21 13:42:56 | 000,064,000 | ---- | M] (Creative Technology Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\Creative\Creative Centrale\CTUPnPSv.exe -- (CTUPnPSv)
SRV - [2007.04.02 08:15:40 | 000,061,440 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe -- (CTDevice_Srv)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013.07.08 22:37:00 | 000,165,504 | ---- | M] (ITE ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IT9135BDA.sys -- (IT9135BDA)
DRV:64bit: - [2013.07.01 19:45:22 | 000,468,720 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2013.06.25 21:47:03 | 000,045,856 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:64bit: - [2013.06.03 13:02:41 | 000,175,928 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR)
DRV:64bit: - [2013.06.03 13:02:41 | 000,026,208 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\johci.sys -- (johci)
DRV:64bit: - [2013.05.26 16:59:40 | 000,543,744 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2013.05.26 16:38:10 | 008,604,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
DRV:64bit: - [2013.04.03 09:58:18 | 000,203,672 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2013.04.03 09:58:18 | 000,103,064 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2013.03.15 12:52:08 | 000,303,368 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aksusb.sys -- (aksusb)
DRV:64bit: - [2013.03.15 12:52:08 | 000,063,944 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\akshhl.sys -- (akshhl)
DRV:64bit: - [2013.03.15 12:52:08 | 000,060,488 | ---- | M] (SafeNet Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\akshasp.sys -- (akshasp)
DRV:64bit: - [2013.03.06 23:00:28 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.01.20 16:59:04 | 000,130,008 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012.11.28 11:17:26 | 000,482,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1c62x64.sys -- (e1cexpress)
DRV:64bit: - [2012.06.27 15:18:52 | 000,026,112 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:64bit: - [2012.06.01 07:31:54 | 001,863,720 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:64bit: - [2012.03.15 06:02:46 | 000,198,144 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.15 15:16:48 | 000,011,576 | ---- | M] (Samsung Electronics) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\SSPORT.sys -- (SSPORT)
DRV:64bit: - [2012.01.09 17:28:20 | 000,171,008 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64)
DRV:64bit: - [2012.01.09 17:28:20 | 000,019,968 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcd)
DRV:64bit: - [2012.01.09 17:28:20 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys -- (nmwcdnsucx64)
DRV:64bit: - [2012.01.09 17:28:20 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltjx64.sys -- (UsbserFilt)
DRV:64bit: - [2012.01.09 17:28:20 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:64bit: - [2012.01.09 17:28:18 | 000,027,136 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdc)
DRV:64bit: - [2011.05.13 18:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011.05.13 18:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011.03.31 23:10:24 | 009,090,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011.03.31 21:46:10 | 000,299,520 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011.03.29 15:33:06 | 000,168,008 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\MfeEpePc.sys -- (MfeEpePc)
DRV:64bit: - [2011.03.22 02:57:04 | 000,025,912 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.03.03 19:48:38 | 000,063,336 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DAMDrv64.sys -- (DAMDrv)
DRV:64bit: - [2011.01.13 03:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010.12.10 23:50:36 | 000,181,248 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2010.12.10 23:50:36 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2010.11.20 15:34:02 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2010.11.20 15:34:02 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:35:32 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2010.11.20 13:35:20 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 12:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010.11.20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010.11.17 18:04:32 | 000,115,216 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2010.11.11 09:46:00 | 000,032,192 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ArcSoftVCapture.sys -- (ARCVCAM)
DRV:64bit: - [2010.10.20 03:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010.09.27 14:26:04 | 000,131,072 | ---- | M] (SafeNet Inc.) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aksfridge.sys -- (aksfridge)
DRV:64bit: - [2010.07.27 10:36:22 | 000,075,648 | ---- | M] (SafeNet Inc.) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aksdf.sys -- (aksdf)
DRV:64bit: - [2010.07.20 23:26:42 | 000,102,952 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:64bit: - [2010.07.20 23:26:38 | 000,135,720 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2010.07.20 23:26:34 | 000,021,544 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2010.07.14 16:25:38 | 000,344,616 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)
DRV:64bit: - [2010.03.19 12:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2010.03.03 00:37:40 | 000,039,464 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)
DRV:64bit: - [2010.01.26 22:52:22 | 001,212,416 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2010.01.26 07:31:08 | 000,044,576 | ---- | M] (Infineon Technologies AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\psd.sys -- (PersonalSecureDrive)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 01:21:48 | 000,038,400 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.03.13 11:55:38 | 000,318,464 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hardlock.sys -- (hardlock)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\SysWOW64\Adobe\Director\np32dsw_1167637.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@graphisoft.com/GDL Web Plug-in: C:\Program Files (x86)\GRAPHISOFT\GDLWebControl\npGDLMozilla.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\honza\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\otis@digitalpersona.com: c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ [2011.04.30 21:28:39 | 000,000,000 | ---D | M]
[2012.10.17 21:35:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\honza\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions
[2012.10.17 21:35:10 | 000,214,909 | ---- | M] () (No name found) -- C:\Users\honza\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions\onlinehdtv@onlinehd.tv.xpi
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.79\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - Extension: Disk Google = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Kontrola e-mailu Google = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_0\
CHR - Extension: Gmail = C:\Users\honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (File Sanitizer for HP ProtectTools) - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O4:64bit: - HKLM..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (Autodesk, Inc.)
O4:64bit: - HKLM..\Run: [CDAServer] C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe ()
O4:64bit: - HKLM..\Run: [HPPowerAssistant] C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe ()
O4:64bit: - HKLM..\Run: [MfeEpePcMonitor] C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe ()
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ADSK DLMSession] C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe (Autodesk, Inc.)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [Bonus.SSR.FR11] C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe (ABBYY.)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [HPConnectionManager] c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe (Hewlett-Packard Development Company L.P.)
O4 - HKLM..\Run: [HPQuickWebProxy] c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [IFXSPMGTx] c:\Program Files (x86)\Hewlett-Packard\Embedded Security Software\ifxspmgt.exe (Infineon Technologies AG)
O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKLM..\Run: [NUSB3MON] c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [Akamai NetSession Interface] C:\Users\honza\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [Facebook Update] C:\Users\honza\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung)
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found
O4 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001..\Run: [SoftAuto.exe] C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe (Creative Technology Ltd)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: =
O8:64bit: - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O8:64bit: - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1540756361-137140237-4202776258-1001\..Trusted Domains: samsungsetup.com ([www] http in Důvěryhodné weby)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.24.2 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{03F5D26D-C270-4191-8633-A178C07C14B5}: DhcpNameServer = 192.168.24.2 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{736B7E08-D63A-44D3-A1DB-B9BC565D959B}: DhcpNameServer = 192.168.24.2 213.46.172.37
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll File not found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe) - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (DigitalPersona, Inc.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\DeviceNP: DllName - (DeviceNP.dll) - C:\windows\SysWow64\DeviceNP.dll (Hewlett-Packard Company)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013.06.22 10:36:21 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\windows\SysWow64\ff_vfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2013.07.10 11:34:55 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:29:08 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.07.10 10:28:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.0
[2013.07.10 10:27:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LibreOffice 4.0
[2013.07.09 16:20:03 | 000,000,000 | ---D | C] -- C:\windows\ERUNT
[2013.07.09 10:39:34 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ElevatedDiagnostics
[2013.07.08 23:04:51 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ArcSoft
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2013.07.08 23:03:27 | 000,000,000 | ---D | C] -- C:\Users\honza\Documents\ArcSoft ToGo
[2013.07.08 23:02:28 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2013.07.08 23:02:19 | 000,022,784 | ---- | C] (Arcsoft, Inc.) -- C:\windows\SysWow64\drivers\afc.sys
[2013.07.08 23:02:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft TotalMedia 3.5
[2013.07.08 23:01:19 | 000,245,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\unicows.dll
[2013.07.08 23:01:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2013.07.08 22:37:00 | 000,165,504 | ---- | C] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 14:44:11 | 000,000,000 | ---D | C] -- C:\rsit
[2013.07.08 08:32:42 | 000,482,128 | ---- | C] (Intel Corporation) -- C:\windows\SysNative\drivers\e1c62x64.sys
[2011.02.24 00:10:36 | 000,020,432 | ---- | C] (Intel Corporation) -- C:\Users\honza\AppData\Roaming\JomCap.dll
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:39:34 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.07.10 11:34:58 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:46:00 | 000,000,950 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.10 10:46:00 | 000,000,914 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013.07.10 10:28:45 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:26:40 | 001,585,238 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2013.07.10 10:26:40 | 000,671,528 | ---- | M] () -- C:\windows\SysNative\perfh005.dat
[2013.07.10 10:26:40 | 000,655,648 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2013.07.10 10:26:40 | 000,142,080 | ---- | M] () -- C:\windows\SysNative\perfc005.dat
[2013.07.10 10:26:40 | 000,122,520 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2013.07.10 10:21:07 | 000,000,946 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.07.10 10:20:35 | 000,000,218 | ---- | M] () -- C:\windows\tasks\AutoKMSDaily.job
[2013.07.10 10:20:35 | 000,000,216 | ---- | M] () -- C:\windows\tasks\AutoKMS.job
[2013.07.10 10:20:29 | 000,151,552 | ---- | M] () -- C:\windows\KMSEmulator.exe
[2013.07.10 10:20:22 | 005,152,896 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2013.07.10 10:19:36 | 000,000,153 | ---- | M] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.10 10:18:17 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2013.07.10 10:17:09 | 4242,915,327 | -HS- | M] () -- C:\hiberfil.sys
[2013.07.10 10:07:00 | 000,000,928 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
[2013.07.09 17:30:13 | 000,000,121 | ---- | M] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | M] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:45:06 | 000,000,906 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.07.08 22:37:00 | 000,165,504 | ---- | M] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 09:26:22 | 000,000,342 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForB04-717B$.job
[2013.07.08 09:26:22 | 000,000,332 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForhonza.job
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.07.10 11:39:34 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.07.10 10:28:45 | 000,001,096 | ---- | C] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:19:36 | 000,000,153 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.09 17:29:53 | 000,000,121 | ---- | C] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | C] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:37:02 | 000,000,238 | ---- | C] () -- C:\windows\SysNative\AF15IRTBL.bin
[2013.06.13 23:41:25 | 000,073,216 | ---- | C] () -- C:\windows\SysWow64\ff_vfw.dll
[2013.05.20 19:33:56 | 000,038,472 | ---- | C] () -- C:\Users\honza\AppData\Roaming\Microsoft Excel 97-2003.ADR
[2013.03.10 11:01:30 | 000,000,168 | ---- | C] () -- C:\windows\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 11:01:30 | 000,000,000 | ---- | C] () -- C:\windows\SysWow64\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 10:50:34 | 000,000,168 | ---- | C] () -- C:\windows\{6C8526E3-3298-4A73-9DCF-A89890499520}.ini
[2013.02.05 18:52:54 | 000,030,568 | ---- | C] () -- C:\windows\MusiccityDownload.exe
[2013.02.05 18:52:50 | 000,974,848 | ---- | C] () -- C:\windows\SysWow64\cis-2.4.dll
[2013.02.05 18:52:50 | 000,081,920 | ---- | C] () -- C:\windows\SysWow64\issacapi_bs-2.3.dll
[2013.02.05 18:52:50 | 000,065,536 | ---- | C] () -- C:\windows\SysWow64\issacapi_pe-2.3.dll
[2013.02.05 18:52:50 | 000,057,344 | ---- | C] () -- C:\windows\SysWow64\issacapi_se-2.3.dll
[2013.01.31 20:08:25 | 000,003,584 | ---- | C] () -- C:\Users\honza\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.10.09 23:00:52 | 000,000,189 | ---- | C] () -- C:\Users\honza\AppData\Roaming\default.rss
[2012.10.05 22:56:19 | 000,151,552 | ---- | C] () -- C:\windows\KMSEmulator.exe
[2012.10.01 02:49:18 | 000,000,000 | ---- | C] () -- C:\windows\ativpsrm.bin
[2012.09.30 18:46:45 | 000,015,497 | ---- | C] () -- C:\windows\snp2uvc.ini
[2012.06.01 07:31:34 | 000,026,024 | ---- | C] () -- C:\windows\snuvcdsm.exe
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.02.27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.02.27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,026,328 | ---- | C] () -- C:\windows\Tasks\SCHEDLGU.TXT
[2012.10.05 22:40:06 | 000,000,946 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.10.05 22:40:07 | 000,000,950 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.10.05 22:49:41 | 000,000,914 | ---- | C] () -- C:\windows\Tasks\Adobe Flash Player Updater.job
[2012.10.05 22:56:39 | 000,000,218 | ---- | C] () -- C:\windows\Tasks\AutoKMSDaily.job
[2012.10.05 22:56:40 | 000,000,216 | ---- | C] () -- C:\windows\Tasks\AutoKMS.job
[2012.10.07 21:26:05 | 000,000,332 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForhonza.job
[2012.12.03 20:35:17 | 000,000,342 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForB04-717B$.job
[2013.01.30 23:02:01 | 000,000,906 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.01.30 23:02:01 | 000,000,928 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
< >
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.20776_none_39c28c74544f69e8\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2009.10.01 09:17:00 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=2632B7125E0730E019532CFCFFFFBFC0 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_e28cf2983c0715a1\autochk.exe
[2009.10.01 09:42:15 | 000,777,216 | ---- | M] (Microsoft Corporation) MD5=3AE12EC776AB9830462E8197FB5C88CF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_3eab8e1bf46486d7\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 08:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
< MD5 for: HAL.DLL >
[2009.09.01 08:34:28 | 000,263,256 | ---- | M] (Microsoft Corporation) MD5=01B586A0B8C8D860457892F80B85A5CD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16416_none_076a95ef732190e3\hal.dll
[2009.09.01 09:03:17 | 000,263,240 | ---- | M] (Microsoft Corporation) MD5=514D418248FECD24D96E7219162BDFDD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.20519_none_07f733988c3c7cb2\hal.dll
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SERVICES.EXE >
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\windows\SysNative\services.exe
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.05.08 08:14:42 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2010.10.29 05:09:15 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2013.01.04 07:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_0f6a6af57fd59de6\tcpip.sys
[2012.03.30 12:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012.03.30 13:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2013.01.03 07:57:12 | 001,876,824 | ---- | M] (Microsoft Corporation) MD5=692969AB90BDA19F56E27BF89A9260E2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_0fe8397098fc3d71\tcpip.sys
[2012.08.22 20:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2010.04.09 13:06:28 | 001,898,376 | ---- | M] (Microsoft Corporation) MD5=7FC877A25796D8ADF539E64703FCA7E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16569_none_0f2ca8c580036f65\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.10.29 05:09:15 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\windows\SysNative\drivers\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2010.04.09 09:56:29 | 001,892,232 | ---- | M] (Microsoft Corporation) MD5=A9C0F786AC1F736891D05CE0A1D29DEB -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20687_none_0f9ea52499331463\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
< >
< %systemroot%*.* /U /s >
[4 C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[6 C:\windows\Installer\*.tmp files -> C:\windows\Installer\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp files -> C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp files -> C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.05.24 12:15:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ABBYY
[2012.10.06 17:53:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Adobe
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2012.10.06 10:33:10 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Apple Computer
[2013.07.08 23:04:50 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Aspell
[2012.09.30 20:31:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ATI
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.01.31 20:08:11 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Creative
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2013.03.10 10:50:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\FLEXnet
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2013.06.13 09:12:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Google
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.10.07 21:17:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Hewlett-Packard
[2013.07.08 09:44:15 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\hpqLog
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 20:30:18 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Identities
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2012.09.30 18:46:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\InstallShield
[2013.06.03 13:12:56 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel
[2012.09.30 20:30:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel Corporation
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2012.10.05 22:47:09 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Macromedia
[2012.10.07 12:17:02 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Malwarebytes
[2013.04.08 22:05:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Media Player Classic
[2013.05.06 19:23:21 | 000,000,000 | --SD | M] -- C:\Users\honza\AppData\Roaming\Microsoft
[2012.10.05 22:08:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Mozilla
[2012.10.07 15:41:58 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nero
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2012.10.07 15:20:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio
[2012.10.05 23:04:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio Burn
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.07.10 10:14:59 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Skype
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 18:59:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Symantec
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
[2013.06.29 23:55:22 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\vlc
[2013.07.09 16:22:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Winamp
[2012.10.06 12:18:48 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\WinRAR
Restore point Set: OTL Restore Point
NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\windows\SysWow64\ff_vfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2013.07.10 11:34:55 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:29:08 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.07.10 10:28:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.0
[2013.07.10 10:27:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LibreOffice 4.0
[2013.07.09 16:20:03 | 000,000,000 | ---D | C] -- C:\windows\ERUNT
[2013.07.09 10:39:34 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ElevatedDiagnostics
[2013.07.08 23:04:51 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ArcSoft
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2013.07.08 23:03:27 | 000,000,000 | ---D | C] -- C:\Users\honza\Documents\ArcSoft ToGo
[2013.07.08 23:02:28 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2013.07.08 23:02:19 | 000,022,784 | ---- | C] (Arcsoft, Inc.) -- C:\windows\SysWow64\drivers\afc.sys
[2013.07.08 23:02:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft TotalMedia 3.5
[2013.07.08 23:01:19 | 000,245,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\unicows.dll
[2013.07.08 23:01:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2013.07.08 22:37:00 | 000,165,504 | ---- | C] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 14:44:11 | 000,000,000 | ---D | C] -- C:\rsit
[2013.07.08 08:32:42 | 000,482,128 | ---- | C] (Intel Corporation) -- C:\windows\SysNative\drivers\e1c62x64.sys
[2011.02.24 00:10:36 | 000,020,432 | ---- | C] (Intel Corporation) -- C:\Users\honza\AppData\Roaming\JomCap.dll
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:39:34 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.07.10 11:34:58 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:46:00 | 000,000,950 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.10 10:46:00 | 000,000,914 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013.07.10 10:28:45 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:26:40 | 001,585,238 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2013.07.10 10:26:40 | 000,671,528 | ---- | M] () -- C:\windows\SysNative\perfh005.dat
[2013.07.10 10:26:40 | 000,655,648 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2013.07.10 10:26:40 | 000,142,080 | ---- | M] () -- C:\windows\SysNative\perfc005.dat
[2013.07.10 10:26:40 | 000,122,520 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2013.07.10 10:21:07 | 000,000,946 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.07.10 10:20:35 | 000,000,218 | ---- | M] () -- C:\windows\tasks\AutoKMSDaily.job
[2013.07.10 10:20:35 | 000,000,216 | ---- | M] () -- C:\windows\tasks\AutoKMS.job
[2013.07.10 10:20:29 | 000,151,552 | ---- | M] () -- C:\windows\KMSEmulator.exe
[2013.07.10 10:20:22 | 005,152,896 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2013.07.10 10:19:36 | 000,000,153 | ---- | M] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.10 10:18:17 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2013.07.10 10:17:09 | 4242,915,327 | -HS- | M] () -- C:\hiberfil.sys
[2013.07.10 10:07:00 | 000,000,928 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
[2013.07.09 17:30:13 | 000,000,121 | ---- | M] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | M] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:45:06 | 000,000,906 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.07.08 22:37:00 | 000,165,504 | ---- | M] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 09:26:22 | 000,000,342 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForB04-717B$.job
[2013.07.08 09:26:22 | 000,000,332 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForhonza.job
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.07.10 11:39:34 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.07.10 10:28:45 | 000,001,096 | ---- | C] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:19:36 | 000,000,153 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.09 17:29:53 | 000,000,121 | ---- | C] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | C] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:37:02 | 000,000,238 | ---- | C] () -- C:\windows\SysNative\AF15IRTBL.bin
[2013.06.13 23:41:25 | 000,073,216 | ---- | C] () -- C:\windows\SysWow64\ff_vfw.dll
[2013.05.20 19:33:56 | 000,038,472 | ---- | C] () -- C:\Users\honza\AppData\Roaming\Microsoft Excel 97-2003.ADR
[2013.03.10 11:01:30 | 000,000,168 | ---- | C] () -- C:\windows\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 11:01:30 | 000,000,000 | ---- | C] () -- C:\windows\SysWow64\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 10:50:34 | 000,000,168 | ---- | C] () -- C:\windows\{6C8526E3-3298-4A73-9DCF-A89890499520}.ini
[2013.02.05 18:52:54 | 000,030,568 | ---- | C] () -- C:\windows\MusiccityDownload.exe
[2013.02.05 18:52:50 | 000,974,848 | ---- | C] () -- C:\windows\SysWow64\cis-2.4.dll
[2013.02.05 18:52:50 | 000,081,920 | ---- | C] () -- C:\windows\SysWow64\issacapi_bs-2.3.dll
[2013.02.05 18:52:50 | 000,065,536 | ---- | C] () -- C:\windows\SysWow64\issacapi_pe-2.3.dll
[2013.02.05 18:52:50 | 000,057,344 | ---- | C] () -- C:\windows\SysWow64\issacapi_se-2.3.dll
[2013.01.31 20:08:25 | 000,003,584 | ---- | C] () -- C:\Users\honza\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.10.09 23:00:52 | 000,000,189 | ---- | C] () -- C:\Users\honza\AppData\Roaming\default.rss
[2012.10.05 22:56:19 | 000,151,552 | ---- | C] () -- C:\windows\KMSEmulator.exe
[2012.10.01 02:49:18 | 000,000,000 | ---- | C] () -- C:\windows\ativpsrm.bin
[2012.09.30 18:46:45 | 000,015,497 | ---- | C] () -- C:\windows\snp2uvc.ini
[2012.06.01 07:31:34 | 000,026,024 | ---- | C] () -- C:\windows\snuvcdsm.exe
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.02.27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.02.27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,026,328 | ---- | C] () -- C:\windows\Tasks\SCHEDLGU.TXT
[2012.10.05 22:40:06 | 000,000,946 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.10.05 22:40:07 | 000,000,950 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.10.05 22:49:41 | 000,000,914 | ---- | C] () -- C:\windows\Tasks\Adobe Flash Player Updater.job
[2012.10.05 22:56:39 | 000,000,218 | ---- | C] () -- C:\windows\Tasks\AutoKMSDaily.job
[2012.10.05 22:56:40 | 000,000,216 | ---- | C] () -- C:\windows\Tasks\AutoKMS.job
[2012.10.07 21:26:05 | 000,000,332 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForhonza.job
[2012.12.03 20:35:17 | 000,000,342 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForB04-717B$.job
[2013.01.30 23:02:01 | 000,000,906 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.01.30 23:02:01 | 000,000,928 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
< >
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.20776_none_39c28c74544f69e8\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2009.10.01 09:17:00 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=2632B7125E0730E019532CFCFFFFBFC0 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_e28cf2983c0715a1\autochk.exe
[2009.10.01 09:42:15 | 000,777,216 | ---- | M] (Microsoft Corporation) MD5=3AE12EC776AB9830462E8197FB5C88CF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_3eab8e1bf46486d7\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 08:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
< MD5 for: HAL.DLL >
[2009.09.01 08:34:28 | 000,263,256 | ---- | M] (Microsoft Corporation) MD5=01B586A0B8C8D860457892F80B85A5CD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16416_none_076a95ef732190e3\hal.dll
[2009.09.01 09:03:17 | 000,263,240 | ---- | M] (Microsoft Corporation) MD5=514D418248FECD24D96E7219162BDFDD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.20519_none_07f733988c3c7cb2\hal.dll
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SERVICES.EXE >
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\windows\SysNative\services.exe
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.05.08 08:14:42 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2010.10.29 05:09:15 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2013.01.04 07:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_0f6a6af57fd59de6\tcpip.sys
[2012.03.30 12:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012.03.30 13:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2013.01.03 07:57:12 | 001,876,824 | ---- | M] (Microsoft Corporation) MD5=692969AB90BDA19F56E27BF89A9260E2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_0fe8397098fc3d71\tcpip.sys
[2012.08.22 20:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2010.04.09 13:06:28 | 001,898,376 | ---- | M] (Microsoft Corporation) MD5=7FC877A25796D8ADF539E64703FCA7E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16569_none_0f2ca8c580036f65\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.10.29 05:09:15 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\windows\SysNative\drivers\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2010.04.09 09:56:29 | 001,892,232 | ---- | M] (Microsoft Corporation) MD5=A9C0F786AC1F736891D05CE0A1D29DEB -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20687_none_0f9ea52499331463\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
< >
< %systemroot%*.* /U /s >
[4 C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[6 C:\windows\Installer\*.tmp files -> C:\windows\Installer\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp files -> C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp files -> C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.05.24 12:15:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ABBYY
[2012.10.06 17:53:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Adobe
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2012.10.06 10:33:10 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Apple Computer
[2013.07.08 23:04:50 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Aspell
[2012.09.30 20:31:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ATI
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.01.31 20:08:11 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Creative
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2013.03.10 10:50:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\FLEXnet
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2013.06.13 09:12:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Google
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.10.07 21:17:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Hewlett-Packard
[2013.07.08 09:44:15 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\hpqLog
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 20:30:18 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Identities
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2012.09.30 18:46:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\InstallShield
[2013.06.03 13:12:56 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel
[2012.09.30 20:30:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel Corporation
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2012.10.05 22:47:09 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Macromedia
[2012.10.07 12:17:02 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Malwarebytes
[2013.04.08 22:05:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Media Player Classic
[2013.05.06 19:23:21 | 000,000,000 | --SD | M] -- C:\Users\honza\AppData\Roaming\Microsoft
[2012.10.05 22:08:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Mozilla
[2012.10.07 15:41:58 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nero
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2012.10.07 15:20:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio
[2012.10.05 23:04:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio Burn
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.07.10 10:14:59 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Skype
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 18:59:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Symantec
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
[2013.06.29 23:55:22 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\vlc
[2013.07.09 16:22:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Winamp
[2012.10.06 12:18:48 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\WinRAR
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\windows\SysWow64\ff_vfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2013.07.10 11:34:55 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:29:08 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.07.10 10:28:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.0
[2013.07.10 10:27:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LibreOffice 4.0
[2013.07.09 16:20:03 | 000,000,000 | ---D | C] -- C:\windows\ERUNT
[2013.07.09 10:39:34 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ElevatedDiagnostics
[2013.07.08 23:04:51 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ArcSoft
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2013.07.08 23:03:27 | 000,000,000 | ---D | C] -- C:\Users\honza\Documents\ArcSoft ToGo
[2013.07.08 23:02:28 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2013.07.08 23:02:19 | 000,022,784 | ---- | C] (Arcsoft, Inc.) -- C:\windows\SysWow64\drivers\afc.sys
[2013.07.08 23:02:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft TotalMedia 3.5
[2013.07.08 23:01:19 | 000,245,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\unicows.dll
[2013.07.08 23:01:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2013.07.08 22:37:00 | 000,165,504 | ---- | C] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 14:44:11 | 000,000,000 | ---D | C] -- C:\rsit
[2013.07.08 08:32:42 | 000,482,128 | ---- | C] (Intel Corporation) -- C:\windows\SysNative\drivers\e1c62x64.sys
[2011.02.24 00:10:36 | 000,020,432 | ---- | C] (Intel Corporation) -- C:\Users\honza\AppData\Roaming\JomCap.dll
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:39:34 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.07.10 11:34:58 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:46:00 | 000,000,950 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.10 10:46:00 | 000,000,914 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013.07.10 10:28:45 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:26:40 | 001,585,238 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2013.07.10 10:26:40 | 000,671,528 | ---- | M] () -- C:\windows\SysNative\perfh005.dat
[2013.07.10 10:26:40 | 000,655,648 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2013.07.10 10:26:40 | 000,142,080 | ---- | M] () -- C:\windows\SysNative\perfc005.dat
[2013.07.10 10:26:40 | 000,122,520 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2013.07.10 10:21:07 | 000,000,946 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.07.10 10:20:35 | 000,000,218 | ---- | M] () -- C:\windows\tasks\AutoKMSDaily.job
[2013.07.10 10:20:35 | 000,000,216 | ---- | M] () -- C:\windows\tasks\AutoKMS.job
[2013.07.10 10:20:29 | 000,151,552 | ---- | M] () -- C:\windows\KMSEmulator.exe
[2013.07.10 10:20:22 | 005,152,896 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2013.07.10 10:19:36 | 000,000,153 | ---- | M] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.10 10:18:17 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2013.07.10 10:17:09 | 4242,915,327 | -HS- | M] () -- C:\hiberfil.sys
[2013.07.10 10:07:00 | 000,000,928 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
[2013.07.09 17:30:13 | 000,000,121 | ---- | M] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | M] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:45:06 | 000,000,906 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.07.08 22:37:00 | 000,165,504 | ---- | M] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 09:26:22 | 000,000,342 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForB04-717B$.job
[2013.07.08 09:26:22 | 000,000,332 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForhonza.job
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.07.10 11:39:34 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.07.10 10:28:45 | 000,001,096 | ---- | C] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:19:36 | 000,000,153 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.09 17:29:53 | 000,000,121 | ---- | C] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | C] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:37:02 | 000,000,238 | ---- | C] () -- C:\windows\SysNative\AF15IRTBL.bin
[2013.06.13 23:41:25 | 000,073,216 | ---- | C] () -- C:\windows\SysWow64\ff_vfw.dll
[2013.05.20 19:33:56 | 000,038,472 | ---- | C] () -- C:\Users\honza\AppData\Roaming\Microsoft Excel 97-2003.ADR
[2013.03.10 11:01:30 | 000,000,168 | ---- | C] () -- C:\windows\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 11:01:30 | 000,000,000 | ---- | C] () -- C:\windows\SysWow64\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 10:50:34 | 000,000,168 | ---- | C] () -- C:\windows\{6C8526E3-3298-4A73-9DCF-A89890499520}.ini
[2013.02.05 18:52:54 | 000,030,568 | ---- | C] () -- C:\windows\MusiccityDownload.exe
[2013.02.05 18:52:50 | 000,974,848 | ---- | C] () -- C:\windows\SysWow64\cis-2.4.dll
[2013.02.05 18:52:50 | 000,081,920 | ---- | C] () -- C:\windows\SysWow64\issacapi_bs-2.3.dll
[2013.02.05 18:52:50 | 000,065,536 | ---- | C] () -- C:\windows\SysWow64\issacapi_pe-2.3.dll
[2013.02.05 18:52:50 | 000,057,344 | ---- | C] () -- C:\windows\SysWow64\issacapi_se-2.3.dll
[2013.01.31 20:08:25 | 000,003,584 | ---- | C] () -- C:\Users\honza\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.10.09 23:00:52 | 000,000,189 | ---- | C] () -- C:\Users\honza\AppData\Roaming\default.rss
[2012.10.05 22:56:19 | 000,151,552 | ---- | C] () -- C:\windows\KMSEmulator.exe
[2012.10.01 02:49:18 | 000,000,000 | ---- | C] () -- C:\windows\ativpsrm.bin
[2012.09.30 18:46:45 | 000,015,497 | ---- | C] () -- C:\windows\snp2uvc.ini
[2012.06.01 07:31:34 | 000,026,024 | ---- | C] () -- C:\windows\snuvcdsm.exe
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.02.27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.02.27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,026,328 | ---- | C] () -- C:\windows\Tasks\SCHEDLGU.TXT
[2012.10.05 22:40:06 | 000,000,946 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.10.05 22:40:07 | 000,000,950 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.10.05 22:49:41 | 000,000,914 | ---- | C] () -- C:\windows\Tasks\Adobe Flash Player Updater.job
[2012.10.05 22:56:39 | 000,000,218 | ---- | C] () -- C:\windows\Tasks\AutoKMSDaily.job
[2012.10.05 22:56:40 | 000,000,216 | ---- | C] () -- C:\windows\Tasks\AutoKMS.job
[2012.10.07 21:26:05 | 000,000,332 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForhonza.job
[2012.12.03 20:35:17 | 000,000,342 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForB04-717B$.job
[2013.01.30 23:02:01 | 000,000,906 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.01.30 23:02:01 | 000,000,928 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
< >
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.20776_none_39c28c74544f69e8\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2009.10.01 09:17:00 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=2632B7125E0730E019532CFCFFFFBFC0 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_e28cf2983c0715a1\autochk.exe
[2009.10.01 09:42:15 | 000,777,216 | ---- | M] (Microsoft Corporation) MD5=3AE12EC776AB9830462E8197FB5C88CF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_3eab8e1bf46486d7\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 08:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
< MD5 for: HAL.DLL >
[2009.09.01 08:34:28 | 000,263,256 | ---- | M] (Microsoft Corporation) MD5=01B586A0B8C8D860457892F80B85A5CD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16416_none_076a95ef732190e3\hal.dll
[2009.09.01 09:03:17 | 000,263,240 | ---- | M] (Microsoft Corporation) MD5=514D418248FECD24D96E7219162BDFDD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.20519_none_07f733988c3c7cb2\hal.dll
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SERVICES.EXE >
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\windows\SysNative\services.exe
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.05.08 08:14:42 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2010.10.29 05:09:15 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2013.01.04 07:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_0f6a6af57fd59de6\tcpip.sys
[2012.03.30 12:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012.03.30 13:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2013.01.03 07:57:12 | 001,876,824 | ---- | M] (Microsoft Corporation) MD5=692969AB90BDA19F56E27BF89A9260E2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_0fe8397098fc3d71\tcpip.sys
[2012.08.22 20:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2010.04.09 13:06:28 | 001,898,376 | ---- | M] (Microsoft Corporation) MD5=7FC877A25796D8ADF539E64703FCA7E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16569_none_0f2ca8c580036f65\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.10.29 05:09:15 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\windows\SysNative\drivers\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2010.04.09 09:56:29 | 001,892,232 | ---- | M] (Microsoft Corporation) MD5=A9C0F786AC1F736891D05CE0A1D29DEB -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20687_none_0f9ea52499331463\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
< >
< %systemroot%*.* /U /s >
[4 C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[6 C:\windows\Installer\*.tmp files -> C:\windows\Installer\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp files -> C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp files -> C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.05.24 12:15:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ABBYY
[2012.10.06 17:53:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Adobe
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2012.10.06 10:33:10 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Apple Computer
[2013.07.08 23:04:50 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Aspell
[2012.09.30 20:31:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ATI
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.01.31 20:08:11 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Creative
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2013.03.10 10:50:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\FLEXnet
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2013.06.13 09:12:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Google
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.10.07 21:17:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Hewlett-Packard
[2013.07.08 09:44:15 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\hpqLog
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 20:30:18 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Identities
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2012.09.30 18:46:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\InstallShield
[2013.06.03 13:12:56 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel
[2012.09.30 20:30:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel Corporation
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2012.10.05 22:47:09 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Macromedia
[2012.10.07 12:17:02 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Malwarebytes
[2013.04.08 22:05:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Media Player Classic
[2013.05.06 19:23:21 | 000,000,000 | --SD | M] -- C:\Users\honza\AppData\Roaming\Microsoft
[2012.10.05 22:08:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Mozilla
[2012.10.07 15:41:58 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nero
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2012.10.07 15:20:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio
[2012.10.05 23:04:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio Burn
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.07.10 10:14:59 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Skype
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 18:59:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Symantec
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
[2013.06.29 23:55:22 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\vlc
[2013.07.09 16:22:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Winamp
[2012.10.06 12:18:48 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\WinRAR
Restore point Set: OTL Restore Point
NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\windows\SysWow64\ff_vfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2013.07.10 11:34:55 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:29:08 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.07.10 10:28:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.0
[2013.07.10 10:27:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LibreOffice 4.0
[2013.07.09 16:20:03 | 000,000,000 | ---D | C] -- C:\windows\ERUNT
[2013.07.09 10:39:34 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ElevatedDiagnostics
[2013.07.08 23:04:51 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Local\ArcSoft
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
[2013.07.08 23:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2013.07.08 23:03:27 | 000,000,000 | ---D | C] -- C:\Users\honza\Documents\ArcSoft ToGo
[2013.07.08 23:02:28 | 000,000,000 | ---D | C] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2013.07.08 23:02:19 | 000,022,784 | ---- | C] (Arcsoft, Inc.) -- C:\windows\SysWow64\drivers\afc.sys
[2013.07.08 23:02:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft TotalMedia 3.5
[2013.07.08 23:01:19 | 000,245,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\unicows.dll
[2013.07.08 23:01:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2013.07.08 22:37:00 | 000,165,504 | ---- | C] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 14:44:11 | 000,000,000 | ---D | C] -- C:\rsit
[2013.07.08 08:32:42 | 000,482,128 | ---- | C] (Intel Corporation) -- C:\windows\SysNative\drivers\e1c62x64.sys
[2011.02.24 00:10:36 | 000,020,432 | ---- | C] (Intel Corporation) -- C:\Users\honza\AppData\Roaming\JomCap.dll
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:42:56 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.07.10 11:39:34 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.07.10 11:34:58 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\honza\Desktop\OTL.exe
[2013.07.10 10:46:00 | 000,000,950 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.10 10:46:00 | 000,000,914 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013.07.10 10:28:45 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:26:40 | 001,585,238 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2013.07.10 10:26:40 | 000,671,528 | ---- | M] () -- C:\windows\SysNative\perfh005.dat
[2013.07.10 10:26:40 | 000,655,648 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2013.07.10 10:26:40 | 000,142,080 | ---- | M] () -- C:\windows\SysNative\perfc005.dat
[2013.07.10 10:26:40 | 000,122,520 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2013.07.10 10:21:07 | 000,000,946 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.07.10 10:20:35 | 000,000,218 | ---- | M] () -- C:\windows\tasks\AutoKMSDaily.job
[2013.07.10 10:20:35 | 000,000,216 | ---- | M] () -- C:\windows\tasks\AutoKMS.job
[2013.07.10 10:20:29 | 000,151,552 | ---- | M] () -- C:\windows\KMSEmulator.exe
[2013.07.10 10:20:22 | 005,152,896 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2013.07.10 10:19:36 | 000,000,153 | ---- | M] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.10 10:18:17 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2013.07.10 10:17:09 | 4242,915,327 | -HS- | M] () -- C:\hiberfil.sys
[2013.07.10 10:07:00 | 000,000,928 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
[2013.07.09 17:30:13 | 000,000,121 | ---- | M] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | M] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:45:06 | 000,000,906 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.07.08 22:37:00 | 000,165,504 | ---- | M] (ITE ) -- C:\windows\SysNative\drivers\IT9135BDA.sys
[2013.07.08 09:26:22 | 000,000,342 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForB04-717B$.job
[2013.07.08 09:26:22 | 000,000,332 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForhonza.job
[3 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.07.10 11:39:34 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.07.10 10:28:45 | 000,001,096 | ---- | C] () -- C:\Users\Public\Desktop\LibreOffice 4.0.lnk
[2013.07.10 10:19:36 | 000,000,153 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2013.07.09 17:29:53 | 000,000,121 | ---- | C] () -- C:\windows\DeleteOnReboot.bat
[2013.07.08 23:02:10 | 000,002,012 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TMMonitor.lnk
[2013.07.08 23:02:10 | 000,002,001 | ---- | C] () -- C:\Users\Public\Desktop\TotalMedia 3.5.lnk
[2013.07.08 22:37:02 | 000,000,238 | ---- | C] () -- C:\windows\SysNative\AF15IRTBL.bin
[2013.06.13 23:41:25 | 000,073,216 | ---- | C] () -- C:\windows\SysWow64\ff_vfw.dll
[2013.05.20 19:33:56 | 000,038,472 | ---- | C] () -- C:\Users\honza\AppData\Roaming\Microsoft Excel 97-2003.ADR
[2013.03.10 11:01:30 | 000,000,168 | ---- | C] () -- C:\windows\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 11:01:30 | 000,000,000 | ---- | C] () -- C:\windows\SysWow64\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}.ini
[2013.03.10 10:50:34 | 000,000,168 | ---- | C] () -- C:\windows\{6C8526E3-3298-4A73-9DCF-A89890499520}.ini
[2013.02.05 18:52:54 | 000,030,568 | ---- | C] () -- C:\windows\MusiccityDownload.exe
[2013.02.05 18:52:50 | 000,974,848 | ---- | C] () -- C:\windows\SysWow64\cis-2.4.dll
[2013.02.05 18:52:50 | 000,081,920 | ---- | C] () -- C:\windows\SysWow64\issacapi_bs-2.3.dll
[2013.02.05 18:52:50 | 000,065,536 | ---- | C] () -- C:\windows\SysWow64\issacapi_pe-2.3.dll
[2013.02.05 18:52:50 | 000,057,344 | ---- | C] () -- C:\windows\SysWow64\issacapi_se-2.3.dll
[2013.01.31 20:08:25 | 000,003,584 | ---- | C] () -- C:\Users\honza\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.10.09 23:00:52 | 000,000,189 | ---- | C] () -- C:\Users\honza\AppData\Roaming\default.rss
[2012.10.05 22:56:19 | 000,151,552 | ---- | C] () -- C:\windows\KMSEmulator.exe
[2012.10.01 02:49:18 | 000,000,000 | ---- | C] () -- C:\windows\ativpsrm.bin
[2012.09.30 18:46:45 | 000,015,497 | ---- | C] () -- C:\windows\snp2uvc.ini
[2012.06.01 07:31:34 | 000,026,024 | ---- | C] () -- C:\windows\snuvcdsm.exe
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.02.27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.02.27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,026,328 | ---- | C] () -- C:\windows\Tasks\SCHEDLGU.TXT
[2012.10.05 22:40:06 | 000,000,946 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.10.05 22:40:07 | 000,000,950 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.10.05 22:49:41 | 000,000,914 | ---- | C] () -- C:\windows\Tasks\Adobe Flash Player Updater.job
[2012.10.05 22:56:39 | 000,000,218 | ---- | C] () -- C:\windows\Tasks\AutoKMSDaily.job
[2012.10.05 22:56:40 | 000,000,216 | ---- | C] () -- C:\windows\Tasks\AutoKMS.job
[2012.10.07 21:26:05 | 000,000,332 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForhonza.job
[2012.12.03 20:35:17 | 000,000,342 | ---- | C] () -- C:\windows\Tasks\HPCeeScheduleForB04-717B$.job
[2013.01.30 23:02:01 | 000,000,906 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.01.30 23:02:01 | 000,000,928 | ---- | C] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
< >
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.20776_none_39c28c74544f69e8\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2009.10.01 09:17:00 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=2632B7125E0730E019532CFCFFFFBFC0 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_e28cf2983c0715a1\autochk.exe
[2009.10.01 09:42:15 | 000,777,216 | ---- | M] (Microsoft Corporation) MD5=3AE12EC776AB9830462E8197FB5C88CF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_3eab8e1bf46486d7\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2010.10.29 05:06:46 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2010.10.29 05:03:01 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2010.10.29 05:06:46 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 08:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2010.10.29 05:03:01 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
< MD5 for: HAL.DLL >
[2009.09.01 08:34:28 | 000,263,256 | ---- | M] (Microsoft Corporation) MD5=01B586A0B8C8D860457892F80B85A5CD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16416_none_076a95ef732190e3\hal.dll
[2009.09.01 09:03:17 | 000,263,240 | ---- | M] (Microsoft Corporation) MD5=514D418248FECD24D96E7219162BDFDD -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.20519_none_07f733988c3c7cb2\hal.dll
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SERVICES.EXE >
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\windows\SysNative\services.exe
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.05.08 08:14:42 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2010.10.29 05:09:15 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2013.01.04 07:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_0f6a6af57fd59de6\tcpip.sys
[2012.03.30 12:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012.03.30 13:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2013.01.03 07:57:12 | 001,876,824 | ---- | M] (Microsoft Corporation) MD5=692969AB90BDA19F56E27BF89A9260E2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_0fe8397098fc3d71\tcpip.sys
[2012.08.22 20:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2010.04.09 13:06:28 | 001,898,376 | ---- | M] (Microsoft Corporation) MD5=7FC877A25796D8ADF539E64703FCA7E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16569_none_0f2ca8c580036f65\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.10.29 05:09:15 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\windows\SysNative\drivers\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2010.04.09 09:56:29 | 001,892,232 | ---- | M] (Microsoft Corporation) MD5=A9C0F786AC1F736891D05CE0A1D29DEB -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20687_none_0f9ea52499331463\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2010.10.29 05:06:46 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
< >
< %systemroot%*.* /U /s >
[4 C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[6 C:\windows\Installer\*.tmp files -> C:\windows\Installer\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp files -> C:\windows\SoftwareDistribution\Download\72d65dc904aca7efd9f2fa0b09caa07d\*.tmp -> ]
[1 C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp files -> C:\windows\SoftwareDistribution\Download\df6e6b26f8274a881e6bf6a55a2af433\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.05.24 12:15:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ABBYY
[2012.10.06 17:53:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Adobe
[2013.02.11 09:46:49 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Alpen 3D Online
[2012.10.06 10:33:10 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Apple Computer
[2013.07.08 23:04:50 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ArcSoft
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Aspell
[2012.09.30 20:31:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ATI
[2013.03.06 23:06:01 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Autodesk
[2012.10.06 13:44:57 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\cadline
[2012.10.28 16:13:53 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Canon
[2012.10.06 10:58:19 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013.01.31 20:08:11 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Creative
[2013.04.08 22:05:06 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DAEMON Tools Lite
[2012.09.30 18:35:31 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\DigitalPersona
[2013.03.10 10:50:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\FLEXnet
[2012.11.10 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\GHISLER
[2013.06.13 09:12:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Google
[2012.10.15 23:34:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Graphisoft
[2012.10.07 21:17:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Hewlett-Packard
[2013.07.08 09:44:15 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\hpqLog
[2012.12.08 00:08:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Iceni
[2013.07.10 10:16:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ
[2013.05.14 10:46:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\ICQ-Profile
[2012.09.30 20:30:18 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Identities
[2012.09.30 18:53:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Infineon
[2012.10.15 23:40:26 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Install.GS
[2012.09.30 18:46:38 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\InstallShield
[2013.06.03 13:12:56 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel
[2012.09.30 20:30:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Intel Corporation
[2013.07.10 10:29:08 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\LibreOffice
[2012.10.05 22:47:09 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Macromedia
[2012.10.07 12:17:02 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Malwarebytes
[2013.04.08 22:05:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Media Player Classic
[2013.05.06 19:23:21 | 000,000,000 | --SD | M] -- C:\Users\honza\AppData\Roaming\Microsoft
[2012.10.05 22:08:46 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Mozilla
[2012.10.07 15:41:58 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nero
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia
[2013.06.11 14:09:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Nokia Suite
[2012.11.02 10:11:05 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PC Suite
[2013.06.12 10:17:36 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\PROTECH
[2012.10.07 15:20:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio
[2012.10.05 23:04:43 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Roxio Burn
[2013.03.29 11:19:42 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Samsung
[2013.03.25 20:33:24 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Schöck Bauteile GmbH
[2012.09.30 18:43:29 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Sierra Wireless
[2013.06.12 14:34:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\SketchUp
[2013.07.10 10:14:59 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Skype
[2013.06.13 23:40:07 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Stereoscopic Player
[2012.09.30 18:59:03 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Symantec
[2012.09.30 20:30:35 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Synaptics
[2013.06.29 23:55:22 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\vlc
[2013.07.09 16:22:41 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\Winamp
[2012.10.06 12:18:48 | 000,000,000 | ---D | M] -- C:\Users\honza\AppData\Roaming\WinRAR
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
< %APPDATA%\*.exe /s >
[2012.10.06 13:49:29 | 048,814,615 | ---- | M] (Cadline Ltd. (Eng) ) -- C:\Users\honza\AppData\Roaming\cadline\ARCHlineXP2012\Updates\423\Multilang_XP 2012_Update_Build423_setup.exe
[2012.07.11 08:25:20 | 000,310,784 | ---- | M] (CADLine Ltd.) -- C:\Users\honza\AppData\Roaming\cadline\ARCHlineXP2012\Updates\423\SetupLauncher401.exe
[2012.10.06 10:57:57 | 000,053,664 | ---- | M] (Adobe Systems Inc.) -- C:\Users\honza\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2013.07.09 10:26:47 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{0DA17D2A-887F-422E-9190-8961FF91B3B4}\_2c34bc2.exe
[2013.03.10 11:01:28 | 000,007,406 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\ARPPRODUCTICON.exe
[2013.03.10 11:01:28 | 000,007,406 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\NewShortcut1_889D28AD3F0C48CDB9BA95B89A848DD6.exe
[2013.03.10 11:01:28 | 000,007,406 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\NewShortcut2_889D28AD3F0C48CDB9BA95B89A848DD6.exe
[2013.03.10 11:01:28 | 000,000,318 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\NewShortcut5_889D28AD3F0C48CDB9BA95B89A848DD6.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_14e838d9.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_2b8a2b1e.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_37b21faf.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_3d334830.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_50d8609d.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_5be3c6a.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_5be63667.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_b0f29e.exe
[2012.09.30 18:53:47 | 000,010,134 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}\ARPPRODUCTICON.exe
[2013.05.22 23:14:44 | 000,061,328 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AdminDelegator.exe
[2013.05.22 23:14:44 | 000,088,464 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AgentInstaller.exe
[2013.05.22 23:14:48 | 000,077,704 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AgentUpdate.exe
[2013.05.22 23:14:53 | 000,844,168 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\KiesPDLR.exe
[2013.03.28 11:32:32 | 001,511,792 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Kies.exe
[2013.03.28 11:32:32 | 000,540,528 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesAgent.exe
[2013.03.28 11:32:36 | 000,277,872 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesDriverInstaller.exe
[2013.03.28 11:32:34 | 000,310,640 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesTrayAgent.exe
[2013.03.28 11:18:10 | 000,173,568 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\ConnectionManager.exe
[2013.03.28 11:21:06 | 000,343,040 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceDataService.exe
[2013.03.28 11:18:58 | 000,690,688 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceManager.exe
[2013.03.28 11:32:38 | 000,067,952 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\Kies_Tutorial.exe
[2013.03.28 11:32:42 | 000,065,904 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\RegisterCOM.exe
[2013.03.20 10:06:46 | 000,077,712 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AdminDelegator.exe
[2013.03.20 10:06:46 | 000,088,464 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentInstaller.exe
[2013.03.20 10:06:46 | 000,077,704 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentUpdate.exe
[2013.03.28 11:32:38 | 001,106,288 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\KiesPDLR.exe
[2013.03.28 11:32:40 | 003,768,240 | ---- | M] (Freeware) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\MediaModules\MyFreeCodecPack.exe
[2013.03.28 11:32:42 | 000,602,480 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Updater\Kies.Update.exe
[2013.02.22 09:37:44 | 015,359,776 | ---- | M] (SAMSUNG Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
[2013.04.23 06:48:12 | 001,561,968 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Kies.exe
[2013.04.23 06:48:14 | 000,559,984 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesAgent.exe
[2013.04.18 12:10:38 | 000,578,560 | ---- | M] (Samsung Electronics) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesAirMessage.exe
[2013.04.23 06:48:16 | 000,277,872 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesDriverInstaller.exe
[2013.04.23 06:48:16 | 000,311,152 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesTrayAgent.exe
[2013.04.23 06:36:02 | 000,173,568 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\ConnectionManager.exe
[2013.04.23 06:38:58 | 000,344,576 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\DeviceDataService.exe
[2013.04.23 06:36:54 | 000,692,224 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\DeviceManager.exe
[2013.04.23 06:48:18 | 000,067,952 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\Kies_Tutorial.exe
[2013.04.23 06:48:24 | 000,065,904 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\RegisterCOM.exe
[2013.04.18 12:08:48 | 000,061,328 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AdminDelegator.exe
[2013.04.18 12:08:48 | 000,088,464 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AgentInstaller.exe
[2013.04.18 12:08:48 | 000,077,704 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AgentUpdate.exe
[2013.04.23 06:48:20 | 000,844,144 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\KiesPDLR.exe
[2013.04.23 06:48:22 | 003,768,712 | ---- | M] (Freeware) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\MediaModules\MyFreeCodecPack.exe
[2013.04.18 12:05:34 | 021,538,088 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\StoryAlbumViewer\StoryAlbumViewer_setup.exe
[2013.04.23 06:48:22 | 000,602,992 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Updater\Kies.Update.exe
[2013.04.03 10:16:34 | 015,359,912 | ---- | M] (SAMSUNG Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
[2013.03.28 11:32:42 | 000,602,480 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Temp\Kies.Update.exe
[2013.04.23 06:48:22 | 000,602,992 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Updater\Kies.Update.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job >
[2013.07.10 11:46:00 | 000,000,914 | ---- | M] () -- C:\windows\Tasks\Adobe Flash Player Updater.job
[2013.07.10 10:20:35 | 000,000,216 | ---- | M] () -- C:\windows\Tasks\AutoKMS.job
[2013.07.10 10:20:35 | 000,000,218 | ---- | M] () -- C:\windows\Tasks\AutoKMSDaily.job
[2013.07.08 22:45:06 | 000,000,906 | ---- | M] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.07.10 10:07:00 | 000,000,928 | ---- | M] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
[2013.07.10 10:21:07 | 000,000,946 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013.07.10 11:46:00 | 000,000,950 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013.07.08 09:26:22 | 000,000,342 | ---- | M] () -- C:\windows\Tasks\HPCeeScheduleForB04-717B$.job
[2013.07.08 09:26:22 | 000,000,332 | ---- | M] () -- C:\windows\Tasks\HPCeeScheduleForhonza.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2013.07.08 08:33:46 | 000,000,052 | ---- | M] () -- C:\windows\system32\DOErrors.log
[2013.07.10 10:22:30 | 000,000,044 | ---- | M] () -- C:\windows\system32\log.txt
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2010.11.20 15:25:17 | 001,475,584 | ---- | M] (Microsoft Corporation)
"AdobeBridge" =
"LightScribe Control Panel" = C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden -- [2009.08.20 13:25:58 | 002,363,392 | ---- | M] (Hewlett-Packard Company)
"Facebook Update" = "C:\Users\honza\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver -- [2013.01.30 23:01:56 | 000,138,096 | ---- | M] (Facebook Inc.)
"SoftAuto.exe" = "C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe" -- [2008.05.28 04:39:45 | 000,401,408 | ---- | M] (Creative Technology Ltd)
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2013.01.08 10:41:08 | 003,674,320 | ---- | M] (DT Soft Ltd)
"ISUSPM Startup" = C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup -- [2004.06.14 18:18:48 | 000,221,184 | ---- | M] (InstallShield Software Corporation)
"KiesPreload" = C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload -- [2013.04.23 06:48:12 | 001,561,968 | ---- | M] (Samsung)
"RESTART_STICKY_NOTES" = C:\Windows\System32\StikyNot.exe
"Akamai NetSession Interface" = "C:\Users\honza\AppData\Local\Akamai\netsession_win.exe" -- [2013.06.05 01:01:52 | 004,489,472 | ---- | M] (Akamai Technologies, Inc.)
< >
< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2013.05.17 04:32:12 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=07DFD28E57879554D054464EE4A5662D -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
< %PROGRAMFILES%\Opera\opera.exe /md5 >
< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2013.06.15 03:28:44 | 000,825,808 | ---- | M] (Google Inc.) MD5=5521928AA79079565B7CB8FCE6806131 -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
< >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.07.10 11:39:34 | 000,000,512 | ---- | M] () MD5=E4BEA9335FB6284D8D62E891B464C0E5 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2001.08.14 10:31:08 | 000,030,054 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\Inventor Server\Textures\surfaces\Cracks.bmp
[2001.08.14 10:31:08 | 000,030,054 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\InventorFusion\CommAppDat\Autodesk\Inventor Fusion 2013\Design Data\surfaces\Cracks.bmp
[2012.02.23 19:56:24 | 000,001,746 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\BasicResults-EP_PropertyConcretePrestressStupenBezpecnostiCrack [default].otx
[2012.02.23 19:56:24 | 000,001,746 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\BasicResults-EP_ResPropertyMacro2DCrack [default].otx
[2012.02.23 19:56:24 | 000,001,782 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\BasicResults-EP_ResPropertyMacro2DReinforcement2D_CrackProof [default].otx
[2012.02.23 19:56:24 | 000,001,780 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete calc crack proof [cb-crack-short-NEN].otx
[2012.02.23 19:56:24 | 000,003,109 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete calc crack proof [default].otx
[2012.02.23 19:56:24 | 000,001,746 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete calc prestress crack proof [default].otx
[2012.02.23 19:56:24 | 000,008,483 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack As [brief].otx
[2012.02.23 19:56:24 | 000,009,882 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack As [default].otx
[2012.02.23 19:56:24 | 000,004,634 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack distance [Brief].otx
[2012.02.23 19:56:24 | 000,002,509 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack distance [cb-872b-short].otx
[2012.02.23 19:56:24 | 000,009,270 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack distance [default].otx
[2012.02.23 19:56:24 | 000,007,175 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack profile [Brief].otx
[2012.02.23 19:56:24 | 000,005,407 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack profile [cb-872a].otx
[2012.02.23 19:56:24 | 000,012,188 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack profile [default].otx
[2012.02.23 19:56:24 | 000,006,496 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack shear [default].otx
[2012.02.23 19:56:24 | 000,012,529 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack width [brief].otx
[2012.02.23 19:56:24 | 000,014,223 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack width [default].otx
[2012.02.23 19:56:24 | 000,005,110 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack resistance check [default].otx
[2012.02.23 19:56:24 | 000,005,482 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack resistance [default].otx
[2012.02.23 19:56:24 | 000,004,733 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack width Ast [default].otx
[2012.02.23 19:56:24 | 000,005,964 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack width check [default].otx
[2012.02.23 19:56:24 | 000,005,749 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack width wr [default].otx
[2012.02.23 19:56:24 | 000,005,480 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack As [brief].otx
[2012.02.23 19:56:24 | 000,006,751 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack As [default].otx
[2012.02.23 19:56:24 | 000,005,349 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack checkline [default].otx
[2012.02.23 19:56:24 | 000,004,114 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack distance [brief].otx
[2012.02.23 19:56:24 | 000,007,252 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack distance [default].otx
[2012.02.23 19:56:24 | 000,004,739 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack distance [detailed].otx
[2012.02.23 19:56:24 | 000,005,813 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack profile [brief].otx
[2012.02.23 19:56:24 | 000,008,910 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack profile [default].otx
[2012.02.23 19:56:24 | 000,005,806 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack profile [detailed].otx
[2012.02.23 19:56:24 | 000,005,661 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack width [brief].otx
[2012.02.23 19:56:24 | 000,007,501 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack width [default].otx
[2012.02.23 19:56:24 | 000,003,258 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\ConcreteSetup_CrackProof_ECEN [default].otx
[2012.02.23 19:56:24 | 000,005,001 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\DataAddConcrete.MemberDataConcrete [Crack coefficients].otx
[2012.02.23 19:56:24 | 000,008,522 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\EP_Results-EP_ResMacro2DConcreteCrack2D [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower 1 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower 2 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower 3 [default].otx
[2012.02.23 19:56:24 | 000,012,498 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper 1 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper 2 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper 3 [default].otx
[2012.02.23 19:56:24 | 000,012,498 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper [default].otx
[2012.02.23 19:56:24 | 000,006,436 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member2D - CrackCHECK LINE [default].otx
[2012.06.04 17:43:26 | 000,009,503 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member2D - CrackLOWER [default].otx
[2012.02.23 19:56:24 | 000,009,185 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member2D - CrackUPPER [default].otx
[2001.08.14 16:31:08 | 000,030,054 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\Inventor Server\Textures\surfaces\Cracks.bmp
[2001.08.14 11:31:08 | 000,030,054 | ---- | M] () -- \ProgramData\Autodesk\Inventor Fusion 2013\Design Data\surfaces\Cracks.bmp
[2001.08.14 11:31:08 | 000,030,054 | ---- | M] () -- \Users\All Users\Autodesk\Inventor Fusion 2013\Design Data\surfaces\Cracks.bmp
[2012.10.06 16:04:57 | 019,798,517 | ---- | M] () -- \Users\honza\Desktop\Honza\programy na výpočty\AUTODESK programy\Autocad architecture 2013 + crack\crack.rar
[2012.06.20 14:56:11 | 000,398,476 | ---- | M] () -- \Users\honza\Desktop\Honza\programy na výpočty\INSTALAČKY\AutoCAD-2012-Crack.zip
[2009.12.25 03:01:14 | 009,936,269 | ---- | M] () -- \Users\honza\Downloads\ACAD.13.CZ.by.WarezBoss\Crack.rar
< *keygen* /s >
[2012.12.17 11:45:44 | 002,949,064 | ---- | M] () -- \Users\honza\Desktop\Honza\programy na výpočty\revit\AUTODESK 2013 PRODUCTS KEYGEN-XFORCE.rar
< *loader* /s >
[2012.03.13 09:47:55 | 000,012,912 | ---- | M] () -- \Autodesk\AutoCAD_2013_Czech_Language_Pack_Win_64bit\Acad\Program Files\Root\AcAutoLoaderRes.dll
[2012.02.06 20:39:48 | 000,193,960 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\AcAutoLoader.arx
[2012.02.06 20:38:06 | 002,342,312 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\AdDownloaderCore.dll
[2012.02.20 09:09:18 | 000,026,024 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\AecLoader.arx
[2012.02.20 09:09:16 | 000,070,568 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXBaseLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDcContentLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDisplayPropsDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDtlLoader.dll
[2012.02.20 09:09:18 | 000,068,520 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDynPropsLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXExtendedDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXGuiArchLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXGuiBaseLoader.dll
[2012.02.20 09:09:36 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXGuiUtilitiesLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXProjectLoader.dll
[2012.02.20 09:09:12 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXScheduleLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXToolClassLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXUIArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXUIBaseLoader.dll
[2012.01.13 16:22:20 | 000,063,648 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\Inventor Server\Bin\ClrAddinLoader.dll
[2012.03.13 00:47:55 | 000,012,912 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\cs-CZ\ACA\Acad\Program Files\Root\AcAutoLoaderRes.dll
[2010.06.23 09:08:48 | 000,034,500 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\InventorFusion\CommAppDat\Autodesk\Inventor Fusion 2013\Design Data\Loader2.ani
[2010.06.23 09:08:48 | 000,034,500 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\InventorFusion\ProgFiles\Autodesk\Inventor Fusion 2013\BusyLoader.ani
[2012.01.30 13:24:26 | 000,041,472 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x64\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.dll
[2011.07.26 22:31:38 | 000,012,604 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x64\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.tlb
[2012.01.30 13:24:26 | 000,041,472 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x86\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.dll
[2011.07.26 22:31:38 | 000,012,604 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x86\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.tlb
[2011.03.03 19:36:44 | 000,040,960 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x64\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.dll
[2011.02.17 13:20:52 | 000,012,600 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x64\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.tlb
[2011.03.03 19:36:44 | 000,040,960 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x86\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.dll
[2011.02.17 13:20:52 | 000,012,600 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x86\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.tlb
[2013.06.25 21:47:00 | 000,019,497 | ---- | M] () -- \Program Files (x86)\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2008.07.30 10:06:58 | 000,072,192 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.dll
[2008.07.29 03:43:16 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.tlb
[2011.02.15 01:21:00 | 000,053,511 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Generic\Images\themeloader_default_chapter.jpg
[2011.02.15 01:21:00 | 000,053,511 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Generic\Images\themeloader_default_menu.jpg
[2011.02.24 05:48:20 | 000,007,990 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1028\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:20 | 000,008,029 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1030\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:24 | 000,008,063 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1031\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:24 | 000,008,026 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1033\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:26 | 000,008,158 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1035\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:26 | 000,008,038 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1036\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:28 | 000,008,052 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1040\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:28 | 000,008,654 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1041\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:30 | 000,008,187 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1042\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:30 | 000,008,164 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1043\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:30 | 000,008,076 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1044\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:32 | 000,008,283 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1046\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:32 | 000,008,694 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1049\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:34 | 000,008,032 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1053\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:34 | 000,007,967 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\2052\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:36 | 000,008,350 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\2070\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:36 | 000,008,413 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\3082\Strings\RCMFormatLoaderStrings.xml
[2011.03.23 13:47:08 | 000,231,920 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFileLoader.dll
[2011.02.15 05:22:44 | 000,084,464 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderBMP.dll
[2011.02.15 05:22:58 | 000,072,176 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderECDC.dll
[2011.02.15 05:23:20 | 000,092,656 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderGIF.dll
[2011.02.15 05:23:36 | 000,207,344 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderJPG2.dll
[2011.02.15 05:34:22 | 000,072,176 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderMDC.dll
[2011.02.15 05:23:52 | 000,133,616 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderPNG.dll
[2011.02.15 05:24:06 | 000,104,944 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderTIFF.dll
[2011.02.15 05:29:02 | 000,150,000 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\LeResourceLoader.dll
[2010.12.23 14:47:46 | 000,004,176 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Resources\en-US\searching\ajax-loader.gif
[2010.12.23 14:47:48 | 000,000,500 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\DynamicComponents\ruby\dcloader.rb
[2010.12.23 14:47:48 | 000,001,871 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\ShadowStringsFix\shadowstringsfix_loader.rb
[2010.12.23 14:47:48 | 000,003,949 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\SolarNorth\solarnorth_loader.rb
[2010.12.23 14:47:48 | 000,029,565 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\WebTextures\webtextures_loader.rb
[2011.01.25 12:16:44 | 000,053,248 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe
[2011.01.25 12:11:12 | 000,005,974 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe.config
[2012.10.05 23:01:14 | 000,005,795 | ---- | M] () -- \Program Files (x86)\ICQ7M\imApp\theme\IMAGES\XtraPreloader\loader.jpg
[2012.10.05 23:01:15 | 000,004,180 | ---- | M] () -- \Program Files (x86)\ICQ7M\imApp\theme\IMAGES\XtraPreloader\zlango-preloader.png
[2012.10.05 23:01:14 | 000,005,520 | ---- | M] () -- \Program Files (x86)\ICQ7M\imApp\theme\MUICoreLib\xtraLoader.swf
[2012.10.05 23:02:31 | 000,000,402 | ---- | M] () -- \Program Files (x86)\ICQ7M\Xtraz\icq\content\profile_lightboxs\preloader.html
[2013.06.11 23:36:40 | 000,006,852 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\pythonloader.py
[2013.06.11 23:28:16 | 000,033,968 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\pythonloader.uno.dll
[2013.06.11 23:39:44 | 000,000,171 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\pythonloader.uno.ini
[2013.06.11 06:09:46 | 000,013,850 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\python-core-3.3.0\lib\unittest\loader.py
[2013.06.11 06:09:46 | 000,049,593 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\python-core-3.3.0\lib\unittest\test\test_loader.py
[2013.06.11 13:54:50 | 000,124,234 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\share\extensions\report-builder\libloader-1.1.6.jar
[2013.06.11 23:28:12 | 000,078,512 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\URE\bin\javaloader.uno.dll
[2013.06.11 07:31:36 | 000,004,314 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\URE\java\unoloader.jar
[2011.02.23 03:11:04 | 000,141,808 | ---- | M] () -- \Program Files (x86)\Roxio\OEM\VideoCore 12\VOBLoader.ax
[2011.02.24 09:26:12 | 000,170,480 | ---- | M] () -- \Program Files (x86)\Roxio\OEM\VideoUI 12\DSThemeLoader.dll
[2011.02.24 09:27:00 | 000,113,136 | ---- | M] () -- \Program Files (x86)\Roxio\OEM\VideoUI 12\DVDFormatLoaderPlugIn.dll
[2011.02.24 08:56:04 | 000,040,000 | R--- | M] () -- \Program Files (x86)\Roxio\OEM\VideoUI 12\Skins\Default\Generic\Images\themeloader_hourglass.jpg
[2013.04.19 06:36:58 | 000,069,120 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2013.05.29 23:49:41 | 000,927,704 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\GT-I8160P\BinaryLoaderMgr.exe
[2013.05.29 23:49:57 | 000,935,384 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\GT-I8160P\DeviceDownloader.dll
[2012.02.06 20:39:48 | 000,193,960 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\AcAutoLoader.arx
[2012.02.06 20:38:06 | 002,342,312 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\AdDownloaderCore.dll
[2012.02.20 09:09:18 | 000,026,024 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\AecLoader.arx
[2012.02.20 09:09:16 | 000,070,568 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXBaseLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDcContentLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDisplayPropsDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDtlLoader.dll
[2012.02.20 09:09:18 | 000,068,520 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDynPropsLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXExtendedDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXGuiArchLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXGuiBaseLoader.dll
[2012.02.20 09:09:36 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXGuiUtilitiesLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXProjectLoader.dll
[2012.02.20 09:09:12 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXScheduleLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXToolClassLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXUIArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXUIBaseLoader.dll
[2012.03.13 00:47:55 | 000,012,912 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\cs-CZ\AcAutoLoaderRes.dll
[2012.02.06 20:41:07 | 000,010,664 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\en-US\AcAutoLoaderRes.dll
[2012.01.13 16:22:20 | 000,063,648 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\Inventor Server\Bin\ClrAddinLoader.dll
[2010.06.23 10:08:48 | 000,034,500 | ---- | M] () -- \Program Files\Autodesk\Inventor Fusion 2013\BusyLoader.ani
[2012.01.30 13:24:26 | 000,041,472 | ---- | M] () -- \Program Files\Common Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.dll
[2011.07.26 22:31:38 | 000,012,604 | ---- | M] () -- \Program Files\Common Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.tlb
[2012.09.14 16:00:00 | 000,000,459 | ---- | M] () -- \Program Files\GRAPHISOFT\ArchiCAD 16\Doplnky ArchiCADu\Speciality\AYC_html\dynamicloader.css
[2012.09.14 16:00:00 | 000,000,971 | ---- | M] () -- \Program Files\GRAPHISOFT\ArchiCAD 16\Doplnky ArchiCADu\Speciality\AYC_html\dynamicloader.html
[2012.09.14 16:00:00 | 000,002,456 | ---- | M] () -- \Program Files\GRAPHISOFT\ArchiCAD 16\Doplnky ArchiCADu\Speciality\AYC_html\dynamicloader.js
[2012.06.09 19:19:38 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2010.06.23 10:08:48 | 000,034,500 | ---- | M] () -- \ProgramData\Autodesk\Inventor Fusion 2013\Design Data\Loader2.ani
[2009.10.13 08:40:34 | 000,000,232 | ---- | M] () -- \ProgramData\Nero\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2012.12.04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012.12.04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2012.12.04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2010.06.23 10:08:48 | 000,034,500 | ---- | M] () -- \Users\All Users\Autodesk\Inventor Fusion 2013\Design Data\Loader2.ani
[2009.10.13 08:40:34 | 000,000,232 | ---- | M] () -- \Users\All Users\Nero\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2012.12.04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012.12.04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2012.12.04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2013.07.09 16:00:51 | 000,109,448 | ---- | M] () -- \Users\honza\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4KRMDWWP\AdLoader-b3e321cab5fbc3c4ed10b513bb467bae.min[1].js
[2013.07.09 16:00:50 | 000,001,511 | ---- | M] () -- \Users\honza\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TGVFKPPX\AdLoader[1].htm
[2013.03.28 11:29:08 | 000,069,120 | ---- | M] () -- \Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2013.04.19 06:36:58 | 000,069,120 | ---- | M] () -- \Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2012\03. ZMP3 rock\31. AToploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2012\rock\Toploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2013\02. mix pohoda\1 Toploader_-_Dancing_in_the_Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2013\04. ZMP3 rock\31. AToploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Rock\Toploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Výběry CD\mix pohoda\1 Toploader_-_Dancing_in_the_Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Výběry CD\vypálit\lancer mix\2. mix pohoda\01. Toploader_-_Dancing_in_the_Moonlight.mp3
[2012.01.25 05:10:54 | 000,026,024 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\7D2F3875100B0000102000060BECB6AB\19.0.55\RDF_COMP_AecLoader.arx.8909A8D4_60AC_4F11_A304_FE07
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2012.08.08 20:08:02 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2012.08.08 20:08:02 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:04:54 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 17:22:27 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_66ff46fd953e6c5c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:28:57 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_66dcd6a595588d81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:41:11 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_66b5981d957562a1\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:26:58 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_66fe4899953f502c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:46:36 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_6787e564ae5ceff6\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:26:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_67667556ae762a72\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:36:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_67316604ae9dcf7e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 16:12:39 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_677d175eae65090e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:38:32 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_68c05c919281774d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:38:48 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:09:47 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_6907efc6abd0db81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.04.30 21:34:00 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2011.04.30 21:34:00 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2011.04.30 21:34:00 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2011.04.30 21:34:00 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2011.04.30 21:34:00 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2012.10.07 01:06:01 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2012.10.07 01:06:01 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2012.10.07 01:06:02 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2012.10.07 01:06:02 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2012.10.07 01:06:02 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2011.04.30 21:31:58 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 04:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 15:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 15:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 06:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 13:09:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_0ae0ab79dce0fb26\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:56:23 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:53 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:42:56 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_0b6949e0f5ff7ec0\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:32:13 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_0ca1c10dda240617\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:23:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_0ce95442f3736a4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:A1EDB939
< End of report >
[2012.10.06 13:49:29 | 048,814,615 | ---- | M] (Cadline Ltd. (Eng) ) -- C:\Users\honza\AppData\Roaming\cadline\ARCHlineXP2012\Updates\423\Multilang_XP 2012_Update_Build423_setup.exe
[2012.07.11 08:25:20 | 000,310,784 | ---- | M] (CADLine Ltd.) -- C:\Users\honza\AppData\Roaming\cadline\ARCHlineXP2012\Updates\423\SetupLauncher401.exe
[2012.10.06 10:57:57 | 000,053,664 | ---- | M] (Adobe Systems Inc.) -- C:\Users\honza\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2013.07.09 10:26:47 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{0DA17D2A-887F-422E-9190-8961FF91B3B4}\_2c34bc2.exe
[2013.03.10 11:01:28 | 000,007,406 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\ARPPRODUCTICON.exe
[2013.03.10 11:01:28 | 000,007,406 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\NewShortcut1_889D28AD3F0C48CDB9BA95B89A848DD6.exe
[2013.03.10 11:01:28 | 000,007,406 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\NewShortcut2_889D28AD3F0C48CDB9BA95B89A848DD6.exe
[2013.03.10 11:01:28 | 000,000,318 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}\NewShortcut5_889D28AD3F0C48CDB9BA95B89A848DD6.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_14e838d9.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_2b8a2b1e.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_37b21faf.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_3d334830.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_50d8609d.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_5be3c6a.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_5be63667.exe
[2013.06.11 12:47:38 | 000,003,262 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{91CA3F48-5DAD-4147-AECE-C7219C4B2562}\_b0f29e.exe
[2012.09.30 18:53:47 | 000,010,134 | R--- | M] () -- C:\Users\honza\AppData\Roaming\Microsoft\Installer\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}\ARPPRODUCTICON.exe
[2013.05.22 23:14:44 | 000,061,328 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AdminDelegator.exe
[2013.05.22 23:14:44 | 000,088,464 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AgentInstaller.exe
[2013.05.22 23:14:48 | 000,077,704 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\AgentUpdate.exe
[2013.05.22 23:14:53 | 000,844,168 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\FirmwareUpdateTemp\AGENT\KiesPDLR.exe
[2013.03.28 11:32:32 | 001,511,792 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Kies.exe
[2013.03.28 11:32:32 | 000,540,528 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesAgent.exe
[2013.03.28 11:32:36 | 000,277,872 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesDriverInstaller.exe
[2013.03.28 11:32:34 | 000,310,640 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesTrayAgent.exe
[2013.03.28 11:18:10 | 000,173,568 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\ConnectionManager.exe
[2013.03.28 11:21:06 | 000,343,040 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceDataService.exe
[2013.03.28 11:18:58 | 000,690,688 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceManager.exe
[2013.03.28 11:32:38 | 000,067,952 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\Kies_Tutorial.exe
[2013.03.28 11:32:42 | 000,065,904 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\RegisterCOM.exe
[2013.03.20 10:06:46 | 000,077,712 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AdminDelegator.exe
[2013.03.20 10:06:46 | 000,088,464 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentInstaller.exe
[2013.03.20 10:06:46 | 000,077,704 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentUpdate.exe
[2013.03.28 11:32:38 | 001,106,288 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\KiesPDLR.exe
[2013.03.28 11:32:40 | 003,768,240 | ---- | M] (Freeware) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\MediaModules\MyFreeCodecPack.exe
[2013.03.28 11:32:42 | 000,602,480 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Updater\Kies.Update.exe
[2013.02.22 09:37:44 | 015,359,776 | ---- | M] (SAMSUNG Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
[2013.04.23 06:48:12 | 001,561,968 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Kies.exe
[2013.04.23 06:48:14 | 000,559,984 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesAgent.exe
[2013.04.18 12:10:38 | 000,578,560 | ---- | M] (Samsung Electronics) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesAirMessage.exe
[2013.04.23 06:48:16 | 000,277,872 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesDriverInstaller.exe
[2013.04.23 06:48:16 | 000,311,152 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesTrayAgent.exe
[2013.04.23 06:36:02 | 000,173,568 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\ConnectionManager.exe
[2013.04.23 06:38:58 | 000,344,576 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\DeviceDataService.exe
[2013.04.23 06:36:54 | 000,692,224 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\DeviceManager.exe
[2013.04.23 06:48:18 | 000,067,952 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\Kies_Tutorial.exe
[2013.04.23 06:48:24 | 000,065,904 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\RegisterCOM.exe
[2013.04.18 12:08:48 | 000,061,328 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AdminDelegator.exe
[2013.04.18 12:08:48 | 000,088,464 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AgentInstaller.exe
[2013.04.18 12:08:48 | 000,077,704 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AgentUpdate.exe
[2013.04.23 06:48:20 | 000,844,144 | ---- | M] (Samsung) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\KiesPDLR.exe
[2013.04.23 06:48:22 | 003,768,712 | ---- | M] (Freeware) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\MediaModules\MyFreeCodecPack.exe
[2013.04.18 12:05:34 | 021,538,088 | ---- | M] () -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\StoryAlbumViewer\StoryAlbumViewer_setup.exe
[2013.04.23 06:48:22 | 000,602,992 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Updater\Kies.Update.exe
[2013.04.03 10:16:34 | 015,359,912 | ---- | M] (SAMSUNG Electronics Co., Ltd.) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
[2013.03.28 11:32:42 | 000,602,480 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Temp\Kies.Update.exe
[2013.04.23 06:48:22 | 000,602,992 | ---- | M] (ml) -- C:\Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Updater\Kies.Update.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job >
[2013.07.10 11:46:00 | 000,000,914 | ---- | M] () -- C:\windows\Tasks\Adobe Flash Player Updater.job
[2013.07.10 10:20:35 | 000,000,216 | ---- | M] () -- C:\windows\Tasks\AutoKMS.job
[2013.07.10 10:20:35 | 000,000,218 | ---- | M] () -- C:\windows\Tasks\AutoKMSDaily.job
[2013.07.08 22:45:06 | 000,000,906 | ---- | M] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001Core.job
[2013.07.10 10:07:00 | 000,000,928 | ---- | M] () -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1540756361-137140237-4202776258-1001UA.job
[2013.07.10 10:21:07 | 000,000,946 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013.07.10 11:46:00 | 000,000,950 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013.07.08 09:26:22 | 000,000,342 | ---- | M] () -- C:\windows\Tasks\HPCeeScheduleForB04-717B$.job
[2013.07.08 09:26:22 | 000,000,332 | ---- | M] () -- C:\windows\Tasks\HPCeeScheduleForhonza.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2013.07.08 08:33:46 | 000,000,052 | ---- | M] () -- C:\windows\system32\DOErrors.log
[2013.07.10 10:22:30 | 000,000,044 | ---- | M] () -- C:\windows\system32\log.txt
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2010.11.20 15:25:17 | 001,475,584 | ---- | M] (Microsoft Corporation)
"AdobeBridge" =
"LightScribe Control Panel" = C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden -- [2009.08.20 13:25:58 | 002,363,392 | ---- | M] (Hewlett-Packard Company)
"Facebook Update" = "C:\Users\honza\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver -- [2013.01.30 23:01:56 | 000,138,096 | ---- | M] (Facebook Inc.)
"SoftAuto.exe" = "C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe" -- [2008.05.28 04:39:45 | 000,401,408 | ---- | M] (Creative Technology Ltd)
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2013.01.08 10:41:08 | 003,674,320 | ---- | M] (DT Soft Ltd)
"ISUSPM Startup" = C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup -- [2004.06.14 18:18:48 | 000,221,184 | ---- | M] (InstallShield Software Corporation)
"KiesPreload" = C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload -- [2013.04.23 06:48:12 | 001,561,968 | ---- | M] (Samsung)
"RESTART_STICKY_NOTES" = C:\Windows\System32\StikyNot.exe
"Akamai NetSession Interface" = "C:\Users\honza\AppData\Local\Akamai\netsession_win.exe" -- [2013.06.05 01:01:52 | 004,489,472 | ---- | M] (Akamai Technologies, Inc.)
< >
< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2013.05.17 04:32:12 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=07DFD28E57879554D054464EE4A5662D -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
< %PROGRAMFILES%\Opera\opera.exe /md5 >
< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2013.06.15 03:28:44 | 000,825,808 | ---- | M] (Google Inc.) MD5=5521928AA79079565B7CB8FCE6806131 -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
< >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.07.10 11:39:34 | 000,000,512 | ---- | M] () MD5=E4BEA9335FB6284D8D62E891B464C0E5 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2001.08.14 10:31:08 | 000,030,054 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\Inventor Server\Textures\surfaces\Cracks.bmp
[2001.08.14 10:31:08 | 000,030,054 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\InventorFusion\CommAppDat\Autodesk\Inventor Fusion 2013\Design Data\surfaces\Cracks.bmp
[2012.02.23 19:56:24 | 000,001,746 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\BasicResults-EP_PropertyConcretePrestressStupenBezpecnostiCrack [default].otx
[2012.02.23 19:56:24 | 000,001,746 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\BasicResults-EP_ResPropertyMacro2DCrack [default].otx
[2012.02.23 19:56:24 | 000,001,782 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\BasicResults-EP_ResPropertyMacro2DReinforcement2D_CrackProof [default].otx
[2012.02.23 19:56:24 | 000,001,780 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete calc crack proof [cb-crack-short-NEN].otx
[2012.02.23 19:56:24 | 000,003,109 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete calc crack proof [default].otx
[2012.02.23 19:56:24 | 000,001,746 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete calc prestress crack proof [default].otx
[2012.02.23 19:56:24 | 000,008,483 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack As [brief].otx
[2012.02.23 19:56:24 | 000,009,882 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack As [default].otx
[2012.02.23 19:56:24 | 000,004,634 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack distance [Brief].otx
[2012.02.23 19:56:24 | 000,002,509 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack distance [cb-872b-short].otx
[2012.02.23 19:56:24 | 000,009,270 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack distance [default].otx
[2012.02.23 19:56:24 | 000,007,175 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack profile [Brief].otx
[2012.02.23 19:56:24 | 000,005,407 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack profile [cb-872a].otx
[2012.02.23 19:56:24 | 000,012,188 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack profile [default].otx
[2012.02.23 19:56:24 | 000,006,496 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack shear [default].otx
[2012.02.23 19:56:24 | 000,012,529 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack width [brief].otx
[2012.02.23 19:56:24 | 000,014,223 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete crack width [default].otx
[2012.02.23 19:56:24 | 000,005,110 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack resistance check [default].otx
[2012.02.23 19:56:24 | 000,005,482 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack resistance [default].otx
[2012.02.23 19:56:24 | 000,004,733 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack width Ast [default].otx
[2012.02.23 19:56:24 | 000,005,964 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack width check [default].otx
[2012.02.23 19:56:24 | 000,005,749 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress checks crack width wr [default].otx
[2012.02.23 19:56:24 | 000,005,480 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack As [brief].otx
[2012.02.23 19:56:24 | 000,006,751 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack As [default].otx
[2012.02.23 19:56:24 | 000,005,349 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack checkline [default].otx
[2012.02.23 19:56:24 | 000,004,114 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack distance [brief].otx
[2012.02.23 19:56:24 | 000,007,252 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack distance [default].otx
[2012.02.23 19:56:24 | 000,004,739 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack distance [detailed].otx
[2012.02.23 19:56:24 | 000,005,813 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack profile [brief].otx
[2012.02.23 19:56:24 | 000,008,910 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack profile [default].otx
[2012.02.23 19:56:24 | 000,005,806 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack profile [detailed].otx
[2012.02.23 19:56:24 | 000,005,661 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack width [brief].otx
[2012.02.23 19:56:24 | 000,007,501 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Concrete prestress crack width [default].otx
[2012.02.23 19:56:24 | 000,003,258 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\ConcreteSetup_CrackProof_ECEN [default].otx
[2012.02.23 19:56:24 | 000,005,001 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\DataAddConcrete.MemberDataConcrete [Crack coefficients].otx
[2012.02.23 19:56:24 | 000,008,522 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\EP_Results-EP_ResMacro2DConcreteCrack2D [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower 1 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower 2 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower 3 [default].otx
[2012.02.23 19:56:24 | 000,012,498 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack lower [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper 1 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper 2 [default].otx
[2012.02.23 19:56:24 | 000,006,118 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper 3 [default].otx
[2012.02.23 19:56:24 | 000,012,498 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member 2D - check cracks - required areas detail crack upper [default].otx
[2012.02.23 19:56:24 | 000,006,436 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member2D - CrackCHECK LINE [default].otx
[2012.06.04 17:43:26 | 000,009,503 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member2D - CrackLOWER [default].otx
[2012.02.23 19:56:24 | 000,009,185 | ---- | M] () -- \Program Files (x86)\Scia\Engineer2012.0\DocumentTemplates\Member2D - CrackUPPER [default].otx
[2001.08.14 16:31:08 | 000,030,054 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\Inventor Server\Textures\surfaces\Cracks.bmp
[2001.08.14 11:31:08 | 000,030,054 | ---- | M] () -- \ProgramData\Autodesk\Inventor Fusion 2013\Design Data\surfaces\Cracks.bmp
[2001.08.14 11:31:08 | 000,030,054 | ---- | M] () -- \Users\All Users\Autodesk\Inventor Fusion 2013\Design Data\surfaces\Cracks.bmp
[2012.10.06 16:04:57 | 019,798,517 | ---- | M] () -- \Users\honza\Desktop\Honza\programy na výpočty\AUTODESK programy\Autocad architecture 2013 + crack\crack.rar
[2012.06.20 14:56:11 | 000,398,476 | ---- | M] () -- \Users\honza\Desktop\Honza\programy na výpočty\INSTALAČKY\AutoCAD-2012-Crack.zip
[2009.12.25 03:01:14 | 009,936,269 | ---- | M] () -- \Users\honza\Downloads\ACAD.13.CZ.by.WarezBoss\Crack.rar
< *keygen* /s >
[2012.12.17 11:45:44 | 002,949,064 | ---- | M] () -- \Users\honza\Desktop\Honza\programy na výpočty\revit\AUTODESK 2013 PRODUCTS KEYGEN-XFORCE.rar
< *loader* /s >
[2012.03.13 09:47:55 | 000,012,912 | ---- | M] () -- \Autodesk\AutoCAD_2013_Czech_Language_Pack_Win_64bit\Acad\Program Files\Root\AcAutoLoaderRes.dll
[2012.02.06 20:39:48 | 000,193,960 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\AcAutoLoader.arx
[2012.02.06 20:38:06 | 002,342,312 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\AdDownloaderCore.dll
[2012.02.20 09:09:18 | 000,026,024 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\AecLoader.arx
[2012.02.20 09:09:16 | 000,070,568 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXBaseLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDcContentLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDisplayPropsDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDtlLoader.dll
[2012.02.20 09:09:18 | 000,068,520 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXDynPropsLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXExtendedDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXGuiArchLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXGuiBaseLoader.dll
[2012.02.20 09:09:36 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXGuiUtilitiesLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXProjectLoader.dll
[2012.02.20 09:09:12 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXScheduleLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXToolClassLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXUIArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\ACA\AecXUIBaseLoader.dll
[2012.01.13 16:22:20 | 000,063,648 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\ACA\Program Files\Root\Inventor Server\Bin\ClrAddinLoader.dll
[2012.03.13 00:47:55 | 000,012,912 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\cs-CZ\ACA\Acad\Program Files\Root\AcAutoLoaderRes.dll
[2010.06.23 09:08:48 | 000,034,500 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\InventorFusion\CommAppDat\Autodesk\Inventor Fusion 2013\Design Data\Loader2.ani
[2010.06.23 09:08:48 | 000,034,500 | ---- | M] () -- \Autodesk\AutoCAD_ACA_2013_Czech_Win_64bit\x64\InventorFusion\ProgFiles\Autodesk\Inventor Fusion 2013\BusyLoader.ani
[2012.01.30 13:24:26 | 000,041,472 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x64\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.dll
[2011.07.26 22:31:38 | 000,012,604 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x64\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.tlb
[2012.01.30 13:24:26 | 000,041,472 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x86\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.dll
[2011.07.26 22:31:38 | 000,012,604 | ---- | M] () -- \Autodesk\Autodesk_Revit_2013_Czech_Win_32-64bit\x86\RVT2013\Program Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.tlb
[2011.03.03 19:36:44 | 000,040,960 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x64\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.dll
[2011.02.17 13:20:52 | 000,012,600 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x64\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.tlb
[2011.03.03 19:36:44 | 000,040,960 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x86\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.dll
[2011.02.17 13:20:52 | 000,012,600 | ---- | M] () -- \Autodesk\Autodesk_Revit_Architecture_2012_CSY_Win_32-64bit\x86\RAC2012\Program Files\Autodesk Shared\Extensions 2012\Loader\Autodesk.REX.Loader.tlb
[2013.06.25 21:47:00 | 000,019,497 | ---- | M] () -- \Program Files (x86)\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2008.07.30 10:06:58 | 000,072,192 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.dll
[2008.07.29 03:43:16 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.tlb
[2011.02.15 01:21:00 | 000,053,511 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Generic\Images\themeloader_default_chapter.jpg
[2011.02.15 01:21:00 | 000,053,511 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Generic\Images\themeloader_default_menu.jpg
[2011.02.24 05:48:20 | 000,007,990 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1028\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:20 | 000,008,029 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1030\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:24 | 000,008,063 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1031\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:24 | 000,008,026 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1033\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:26 | 000,008,158 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1035\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:26 | 000,008,038 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1036\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:28 | 000,008,052 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1040\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:28 | 000,008,654 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1041\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:30 | 000,008,187 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1042\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:30 | 000,008,164 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1043\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:30 | 000,008,076 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1044\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:32 | 000,008,283 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1046\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:32 | 000,008,694 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1049\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:34 | 000,008,032 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\1053\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:34 | 000,007,967 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\2052\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:36 | 000,008,350 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\2070\Strings\RCMFormatLoaderStrings.xml
[2011.02.24 05:48:36 | 000,008,413 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\Common Resources\Shared\Locale\3082\Strings\RCMFormatLoaderStrings.xml
[2011.03.23 13:47:08 | 000,231,920 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFileLoader.dll
[2011.02.15 05:22:44 | 000,084,464 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderBMP.dll
[2011.02.15 05:22:58 | 000,072,176 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderECDC.dll
[2011.02.15 05:23:20 | 000,092,656 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderGIF.dll
[2011.02.15 05:23:36 | 000,207,344 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderJPG2.dll
[2011.02.15 05:34:22 | 000,072,176 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderMDC.dll
[2011.02.15 05:23:52 | 000,133,616 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderPNG.dll
[2011.02.15 05:24:06 | 000,104,944 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSFormatLoaderTIFF.dll
[2011.02.15 05:29:02 | 000,150,000 | ---- | M] () -- \Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\LeResourceLoader.dll
[2010.12.23 14:47:46 | 000,004,176 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Resources\en-US\searching\ajax-loader.gif
[2010.12.23 14:47:48 | 000,000,500 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\DynamicComponents\ruby\dcloader.rb
[2010.12.23 14:47:48 | 000,001,871 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\ShadowStringsFix\shadowstringsfix_loader.rb
[2010.12.23 14:47:48 | 000,003,949 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\SolarNorth\solarnorth_loader.rb
[2010.12.23 14:47:48 | 000,029,565 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\WebTextures\webtextures_loader.rb
[2011.01.25 12:16:44 | 000,053,248 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe
[2011.01.25 12:11:12 | 000,005,974 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe.config
[2012.10.05 23:01:14 | 000,005,795 | ---- | M] () -- \Program Files (x86)\ICQ7M\imApp\theme\IMAGES\XtraPreloader\loader.jpg
[2012.10.05 23:01:15 | 000,004,180 | ---- | M] () -- \Program Files (x86)\ICQ7M\imApp\theme\IMAGES\XtraPreloader\zlango-preloader.png
[2012.10.05 23:01:14 | 000,005,520 | ---- | M] () -- \Program Files (x86)\ICQ7M\imApp\theme\MUICoreLib\xtraLoader.swf
[2012.10.05 23:02:31 | 000,000,402 | ---- | M] () -- \Program Files (x86)\ICQ7M\Xtraz\icq\content\profile_lightboxs\preloader.html
[2013.06.11 23:36:40 | 000,006,852 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\pythonloader.py
[2013.06.11 23:28:16 | 000,033,968 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\pythonloader.uno.dll
[2013.06.11 23:39:44 | 000,000,171 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\pythonloader.uno.ini
[2013.06.11 06:09:46 | 000,013,850 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\python-core-3.3.0\lib\unittest\loader.py
[2013.06.11 06:09:46 | 000,049,593 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\program\python-core-3.3.0\lib\unittest\test\test_loader.py
[2013.06.11 13:54:50 | 000,124,234 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\share\extensions\report-builder\libloader-1.1.6.jar
[2013.06.11 23:28:12 | 000,078,512 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\URE\bin\javaloader.uno.dll
[2013.06.11 07:31:36 | 000,004,314 | ---- | M] () -- \Program Files (x86)\LibreOffice 4.0\URE\java\unoloader.jar
[2011.02.23 03:11:04 | 000,141,808 | ---- | M] () -- \Program Files (x86)\Roxio\OEM\VideoCore 12\VOBLoader.ax
[2011.02.24 09:26:12 | 000,170,480 | ---- | M] () -- \Program Files (x86)\Roxio\OEM\VideoUI 12\DSThemeLoader.dll
[2011.02.24 09:27:00 | 000,113,136 | ---- | M] () -- \Program Files (x86)\Roxio\OEM\VideoUI 12\DVDFormatLoaderPlugIn.dll
[2011.02.24 08:56:04 | 000,040,000 | R--- | M] () -- \Program Files (x86)\Roxio\OEM\VideoUI 12\Skins\Default\Generic\Images\themeloader_hourglass.jpg
[2013.04.19 06:36:58 | 000,069,120 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2013.05.29 23:49:41 | 000,927,704 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\GT-I8160P\BinaryLoaderMgr.exe
[2013.05.29 23:49:57 | 000,935,384 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\GT-I8160P\DeviceDownloader.dll
[2012.02.06 20:39:48 | 000,193,960 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\AcAutoLoader.arx
[2012.02.06 20:38:06 | 002,342,312 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\AdDownloaderCore.dll
[2012.02.20 09:09:18 | 000,026,024 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\AecLoader.arx
[2012.02.20 09:09:16 | 000,070,568 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXBaseLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDcContentLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDisplayPropsDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDtlLoader.dll
[2012.02.20 09:09:18 | 000,068,520 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXDynPropsLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXExtendedDataLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXGuiArchLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXGuiBaseLoader.dll
[2012.02.20 09:09:36 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXGuiUtilitiesLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXProjectLoader.dll
[2012.02.20 09:09:12 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXScheduleLoader.dll
[2012.02.20 09:09:14 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXToolClassLoader.dll
[2012.02.20 09:09:16 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXUIArchBaseLoader.dll
[2012.02.20 09:09:18 | 000,070,056 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\ACA\AecXUIBaseLoader.dll
[2012.03.13 00:47:55 | 000,012,912 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\cs-CZ\AcAutoLoaderRes.dll
[2012.02.06 20:41:07 | 000,010,664 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\en-US\AcAutoLoaderRes.dll
[2012.01.13 16:22:20 | 000,063,648 | ---- | M] () -- \Program Files\Autodesk\AutoCAD 2013\Inventor Server\Bin\ClrAddinLoader.dll
[2010.06.23 10:08:48 | 000,034,500 | ---- | M] () -- \Program Files\Autodesk\Inventor Fusion 2013\BusyLoader.ani
[2012.01.30 13:24:26 | 000,041,472 | ---- | M] () -- \Program Files\Common Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.dll
[2011.07.26 22:31:38 | 000,012,604 | ---- | M] () -- \Program Files\Common Files\Autodesk Shared\Extensions 2013\Loader\Autodesk.REX.Loader.tlb
[2012.09.14 16:00:00 | 000,000,459 | ---- | M] () -- \Program Files\GRAPHISOFT\ArchiCAD 16\Doplnky ArchiCADu\Speciality\AYC_html\dynamicloader.css
[2012.09.14 16:00:00 | 000,000,971 | ---- | M] () -- \Program Files\GRAPHISOFT\ArchiCAD 16\Doplnky ArchiCADu\Speciality\AYC_html\dynamicloader.html
[2012.09.14 16:00:00 | 000,002,456 | ---- | M] () -- \Program Files\GRAPHISOFT\ArchiCAD 16\Doplnky ArchiCADu\Speciality\AYC_html\dynamicloader.js
[2012.06.09 19:19:38 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2010.06.23 10:08:48 | 000,034,500 | ---- | M] () -- \ProgramData\Autodesk\Inventor Fusion 2013\Design Data\Loader2.ani
[2009.10.13 08:40:34 | 000,000,232 | ---- | M] () -- \ProgramData\Nero\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2012.12.04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012.12.04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2012.12.04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2010.06.23 10:08:48 | 000,034,500 | ---- | M] () -- \Users\All Users\Autodesk\Inventor Fusion 2013\Design Data\Loader2.ani
[2009.10.13 08:40:34 | 000,000,232 | ---- | M] () -- \Users\All Users\Nero\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2012.12.04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012.12.04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2012.12.04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2013.07.09 16:00:51 | 000,109,448 | ---- | M] () -- \Users\honza\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4KRMDWWP\AdLoader-b3e321cab5fbc3c4ed10b513bb467bae.min[1].js
[2013.07.09 16:00:50 | 000,001,511 | ---- | M] () -- \Users\honza\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TGVFKPPX\AdLoader[1].htm
[2013.03.28 11:29:08 | 000,069,120 | ---- | M] () -- \Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2013.04.19 06:36:58 | 000,069,120 | ---- | M] () -- \Users\honza\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2012\03. ZMP3 rock\31. AToploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2012\rock\Toploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2013\02. mix pohoda\1 Toploader_-_Dancing_in_the_Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Lancer mix 2013\04. ZMP3 rock\31. AToploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Rock\Toploader-Dancing in the Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Výběry CD\mix pohoda\1 Toploader_-_Dancing_in_the_Moonlight.mp3
[2009.07.06 19:28:42 | 005,573,939 | ---- | M] () -- \Users\honza\Desktop\Music\Výběry CD\vypálit\lancer mix\2. mix pohoda\01. Toploader_-_Dancing_in_the_Moonlight.mp3
[2012.01.25 05:10:54 | 000,026,024 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\7D2F3875100B0000102000060BECB6AB\19.0.55\RDF_COMP_AecLoader.arx.8909A8D4_60AC_4F11_A304_FE07
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2012.08.08 20:08:02 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2012.08.08 20:08:02 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:04:54 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 17:22:27 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_66ff46fd953e6c5c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:28:57 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_66dcd6a595588d81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:41:11 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_66b5981d957562a1\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:26:58 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_66fe4899953f502c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:46:36 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_6787e564ae5ceff6\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:26:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_67667556ae762a72\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:36:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_67316604ae9dcf7e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 16:12:39 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_677d175eae65090e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:38:32 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_68c05c919281774d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:38:48 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:09:47 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_6907efc6abd0db81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.04.30 21:34:00 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2011.04.30 21:34:00 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2011.04.30 21:34:00 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2011.04.30 21:34:00 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2011.04.30 21:34:00 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2012.10.07 01:06:01 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2012.10.07 01:06:01 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2012.10.07 01:06:02 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2012.10.07 01:06:02 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2012.10.07 01:06:02 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2011.04.30 21:31:58 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 04:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 15:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 15:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 06:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 13:09:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_0ae0ab79dce0fb26\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:56:23 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:53 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:42:56 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_0b6949e0f5ff7ec0\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:32:13 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_0ca1c10dda240617\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:23:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_0ce95442f3736a4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:A1EDB939
< End of report >
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
OTL Extras logfile created on: 10.7.2013 11:36:42 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\honza\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
7,95 Gb Total Physical Memory | 4,38 Gb Available Physical Memory | 55,08% Memory free
15,90 Gb Paging File | 11,38 Gb Available in Paging File | 71,58% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 445,38 Gb Total Space | 166,27 Gb Free Space | 37,33% Space Free | Partition Type: NTFS
Drive D: | 15,09 Gb Total Space | 2,25 Gb Free Space | 14,92% Space Free | Partition Type: NTFS
Drive E: | 4,99 Gb Total Space | 2,13 Gb Free Space | 42,64% Space Free | Partition Type: FAT32
Computer Name: B04-717B | User Name: honza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
.js[@ = JSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.jse[@ = JSEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbe[@ = VBEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbs[@ = VBSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.wsf[@ = WSFFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
jsefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
vbefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
wsffile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
jsefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
vbefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
wsffile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0F625C2A-9578-4655-A423-2FEF9AAA2A94}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{17E16974-C7F6-4D27-8C76-351C8AB23C13}" = rport=139 | protocol=6 | dir=out | app=system |
"{1E83807C-FDFB-477F-BEE7-AFB108F248C8}" = lport=10243 | protocol=6 | dir=in | app=system |
"{28A7C73A-4215-43A2-9D08-8444F8CC1E6F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{5756CDA0-2139-4240-9D80-CF908A19BC13}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{57B85461-BAF7-41D0-AFFE-58A01BAB0FA6}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{58D4A051-FAFA-4CC1-B38C-EC50D126750A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{5969773C-7399-4583-A537-1781D27F3334}" = rport=445 | protocol=6 | dir=out | app=system |
"{5B999085-15B4-44E6-BCAF-C1A03B6BC106}" = lport=137 | protocol=17 | dir=in | app=system |
"{5F2410E0-FEF3-4F68-9B8F-A25F242ED51D}" = lport=58418 | protocol=6 | dir=in | name=akamai netsession interface |
"{6C2CDCED-A7C8-48E6-9EB0-6D07577339EC}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{709D6CB7-CE09-4000-A553-DAF3670D2D84}" = rport=138 | protocol=17 | dir=out | app=system |
"{75B9D597-F286-4CD9-A5BE-49E39533B69C}" = lport=139 | protocol=6 | dir=in | app=system |
"{7CCFA24B-BCD3-4C73-BAC7-D7611B512E5C}" = rport=10243 | protocol=6 | dir=out | app=system |
"{8E4B56CC-3A55-478C-A6C3-E6D38A3870FA}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{90E9B424-9D1E-4CCE-8308-1613D0BB116A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A65763E0-469A-42AF-8420-9F95600C2CA4}" = lport=2869 | protocol=6 | dir=in | app=system |
"{ABE7FC43-A577-4864-AD0B-8A9EEB6EB936}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B25AE924-35CA-4072-9695-A8D4E4263DA5}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{B7DAA5E2-A71D-461F-BC8B-35A6B14A828E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C0D9CE9E-5336-471A-B206-D94EA742DBAD}" = lport=445 | protocol=6 | dir=in | app=system |
"{C1218889-64B7-41CD-B6DC-CB73BBEE54A5}" = lport=50248 | protocol=6 | dir=in | name=autodesk content service |
"{DA912A22-7641-4532-B0A1-93642C7C0659}" = lport=138 | protocol=17 | dir=in | app=system |
"{DAF50D93-DEDD-4316-AEEF-DF6E61632D63}" = rport=137 | protocol=17 | dir=out | app=system |
"{EA4AA9E5-288D-48D2-96AC-887678E5DD85}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F99E06B8-38EC-4A85-AE46-2CAFA3B99E98}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04C25D94-1276-4857-A5F4-3B2402A93B30}" = protocol=17 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe |
"{14991C27-A05F-4E95-9355-B15034F974FA}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{18F907E4-6F75-4748-A32B-AE6A15AA4577}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{29F47B20-833C-4A74-A3FB-9745782C3C0A}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe |
"{328547BC-2BE4-4674-8BC7-2FE6C9BC2AF4}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{41F70FFD-B3A1-493F-8A26-E0B86734491B}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{520D43C7-EC7C-4AA6-9485-C68A181FF2EE}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{56833AF5-ECCF-42C6-BBA0-52B8FB46C59B}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe |
"{5732F0AB-76F9-4B26-AA98-5A0F78D3E6A3}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe |
"{57B2D22E-2827-4141-B582-3B38AD3F8A07}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe |
"{5E355634-770B-482C-934A-A097C0777A19}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe |
"{668F7181-CBC8-433D-82A9-8BAD5151A9AC}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe |
"{67ADFBC1-995F-40A6-A37A-1A7556158AA2}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{695352E4-0A38-4F34-82FE-F38D7E64FCF1}" = dir=in | app=c:\windows\system32\hasplms.exe |
"{6E1708B1-1DAB-44A5-BC4A-6D2DEFC219F5}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{73E40052-92AA-431A-B329-DE4892857939}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{73E6F603-4E21-42C5-BDFF-AB402C1648DD}" = protocol=6 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe |
"{751B21A7-A592-45BC-929C-61177258DF63}" = dir=in | app=c:\users\honza\appdata\local\facebook\video\skype\facebookvideocalling.exe |
"{7E0D8547-36A0-464F-B625-6CCC29E8EA64}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{867530E8-0290-4CA8-9C0E-828F5C7C5413}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{92BC6C40-4EE3-4CAA-B899-EDDA5AB4CA52}" = protocol=6 | dir=in | app=c:\program files (x86)\arcsoft\totalmedia 3.5\totalmedia.exe |
"{942D2CB9-B6F4-4474-A5AF-AFC46AF6E88B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9771EDED-AFFA-4B92-AB2E-77D102D9E0BA}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{97A75C6A-B60D-4AD8-B179-EE9E34605BB0}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{9E73840F-B25A-43BA-A6BB-24D6219E9A2B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A3170C5C-A832-4826-BECA-1889E751C005}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{A3BE9968-0DB8-4BEC-AD01-22E67ADC74E2}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe |
"{B69A8865-9B06-4857-9A00-A0B96EE44EF2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BB426ED7-0F97-4973-8154-B2D56E74A55A}" = protocol=17 | dir=in | app=c:\program files (x86)\arcsoft\totalmedia 3.5\totalmedia.exe |
"{BF6D173D-5116-4448-B65A-89480CE8856D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C1992DFB-DF42-4A8B-8C8E-1C2E441EC5EA}" = protocol=6 | dir=out | app=system |
"{D2ADCC25-BE4D-4D78-A3C7-6E6197F0405D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{D3053050-95D2-414F-83BF-1794B3EB73A2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{DA5397D1-BD8C-451C-B7FF-E1458E0ACF78}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe |
"{DC5C4241-5BE9-4CDE-8777-C52FC059E62D}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EA3287E9-DE9A-4647-87B0-0E483F2542BF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{EFA26791-E878-4DDE-B90F-A204D57EC333}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{F22A9E6D-805B-42B6-A883-95C082C61498}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F4C38211-A545-4EA4-A442-D8CBBF594FB4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F729B2D3-114C-417F-8597-71C2E5196595}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FD1500E2-A4C5-41A9-BD45-3F91D3D56B57}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"TCP Query User{14828D1E-8E21-4B1E-BA2E-ED75499466D1}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"TCP Query User{150B45E7-707C-4F3D-89FE-2C7F16FE4171}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{37456DB6-1A20-4546-AC61-9585D80E2426}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"TCP Query User{43F90202-7FE6-4840-802B-CCEFE643B5D9}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe" = protocol=6 | dir=in | app=c:\program files\graphisoft\archicad 16\licensefilegenerator.exe |
"TCP Query User{623447C8-86D9-480C-B856-750EBC13F5A9}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"TCP Query User{7651A700-ED06-4665-9E2D-DC13CDE039C0}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"TCP Query User{8C6904E9-6979-4D96-B686-88702925D901}C:\windows\kmsemulator.exe" = protocol=6 | dir=in | app=c:\windows\kmsemulator.exe |
"TCP Query User{B422AB91-593F-4B00-B80E-B5B38013434B}C:\program files (x86)\icq7m\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"TCP Query User{F6E1896E-7189-414C-B59D-41142CC62CD0}C:\program files\strongdc++\strongdc.exe" = protocol=6 | dir=in | app=c:\program files\strongdc++\strongdc.exe |
"UDP Query User{14F5CBE3-E4FD-418D-A0CB-3AF1407FA853}C:\program files\strongdc++\strongdc.exe" = protocol=17 | dir=in | app=c:\program files\strongdc++\strongdc.exe |
"UDP Query User{1BCA3564-000B-4EA5-B4DC-1AB02210DF53}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"UDP Query User{37665546-4677-4C33-B41A-E06C433CF7D1}C:\program files (x86)\icq7m\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"UDP Query User{58FE123E-6F8C-4BA6-AD4A-2E67C16CCBDF}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe" = protocol=17 | dir=in | app=c:\program files\graphisoft\archicad 16\licensefilegenerator.exe |
"UDP Query User{5E5F624C-1A33-47D6-A6AD-64443D70186C}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{677153A5-4674-427A-848A-24D3493752EE}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"UDP Query User{8ECED487-A98D-41E9-945E-5992F862F37C}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"UDP Query User{9C07C5F8-1B2D-43B4-963D-E0DD9C0DB2A3}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"UDP Query User{F199E524-0E45-44AE-B5C6-8437B004A377}C:\windows\kmsemulator.exe" = protocol=17 | dir=in | app=c:\windows\kmsemulator.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{031A0E14-0413-4C97-9772-2639B782F46F}" = Common Desktop Agent
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0AD30331-44E7-4E05-87F1-77168316DE81}" = AutoCAD Falcon Flow Simulation
"{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Prostředí Windows XP Mode
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{25FBDA9A-E868-4B3B-B9FF-D923818511A1}" = Software Intel(R) PROSet/Wireless WiFi
"{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = Broadcom 2070 Bluetooth 3.0
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10
"{55B52830-024A-443E-AF61-61E1E71AFA1B}" = Device Access Manager for HP ProtectTools
"{5783F2D7-B001-0000-0102-0060B0CE6BBA}" = AutoCAD 2013 - English
"{5783F2D7-B001-0405-1102-0060B0CE6BBA}" = AutoCAD 2013 Language Pack – Čeština (Czech)
"{5783F2D7-B001-0405-2102-0060B0CE6BBA}" = AutoCAD 2013 – Čeština (Czech)
"{5783F2D7-B001-0409-1102-0060B0CE6BBA}" = AutoCAD 2013 Language Pack - English
"{5783F2D7-B001-0409-2102-0060B0CE6BBA}" = AutoCAD 2013 - English
"{5783F2D7-B004-0000-0102-0060B0CE6BBA}" = AutoCAD Architecture 2013 – Čeština (Czech)
"{5783F2D7-B004-0405-1102-0060B0CE6BBA}" = AutoCAD Architecture 2013 Language Pack – Čeština (Czech)
"{5783F2D7-B004-0405-2102-0060B0CE6BBA}" = AutoCAD Architecture 2013 – Čeština (Czech)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{61D3AB5C-02B5-47FC-906A-C49A0954C7C6}" = Validity Fingerprint Sensor Driver
"{680EDA59-9266-44B4-949E-0C24F65DFF82}" = Microsoft_VC100_CRT_SP1_x64
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{7346B4A0-1300-0510-0405-705C0D862004}" = Revit 2013
"{7346B4A0-1300-0511-0405-705C0D862004}" = Jazykový balíček aplikace Revit 2013 – čeština
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{82C1E6E4-6718-4EFD-9DCC-E276D690EF46}" = Autodesk Inventor Fusion plug-in for AutoCAD 2013
"{87821717-5688-4AE6-887A-6B11571D0CD7}" = Embedded Security for HP ProtectTools
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A0041CD-277C-4C1F-BFE4-7AC508B20B4C}" = Drive Encryption For HP ProtectTools
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90A80D89-A0E4-33C1-B13D-B93CB3496867}" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU
"{92854529-C54B-70AF-40DD-2EE512824623}" = ccc-utility64
"{94E6981F-ECB3-4458-8EFC-0E96BC540E9D}" = HP DayStarter
"{9D6DFAD6-09E5-445E-A4B5-A388FEEBD90D}" = RBVirtualFolder64Inst
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{ACA53F68-B003-4D0E-9C3D-0C4EE09D08A8}" = Privacy Manager for HP ProtectTools
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B7940A01-C32C-463E-B2C2-8B41403787B9}" = Falcon For Revit 2013
"{C7AE4EC3-9C13-4213-8457-74D16B353F91}" = HP Web Camera
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{CF9ACC81-C8C3-4BD1-BD1F-FE13CF344E20}" = HP Power Assistant
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{D3A775F2-2674-4452-8D80-1FC1446052EE}" = Face Recognition for HP ProtectTools
"{D856C86A-6D49-4A32-BBC2-54714EAF2CA0}" = HP ProtectTools Security Manager
"{D954C6C2-544B-4091-A47F-11E77162883E}" = Microsoft Security Client
"{EC748951-CB19-C4CE-FDFC-A17B5F5E1F8E}" = ATI Catalyst Install Manager
"{EE5F74BC-5CD5-4EF2-86BA-81E6CF46A18F}" = Autodesk Sync
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FB62AEDD-1AA7-479C-9805-E6EEDDE06AEB}" = HP 3D DriveGuard
"{FDF42E5F-B254-4A31-BE0E-B423580B03B2}_is1" = 1.99+
"{FE2F4875-095C-427C-9A97-4F8DE05ACF22}" = Autodesk Inventor Fusion plug-in language pack for AutoCAD 2013
"{FFF5619F-2013-0064-A85E-9994F70A9E5D}" = Autodesk Inventor Fusion 2013
"001FFF2FFF16FF00FF1101F01F02F000-R1" = ArchiCAD 16 CZE
"62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F" = Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0)
"AutoCAD 2013 - English" = AutoCAD 2013 - English
"AutoCAD 2013 - English SP1.1" = AutoCAD 2013 - English SP1.1
"AutoCAD 2013 Language Pack – Čeština (Czech)" = AutoCAD 2013 Language Pack – Čeština (Czech)
"AutoCAD Architecture 2013 – Čeština (Czech)" = AutoCAD Architecture 2013 – Čeština (Czech)
"Autodesk Inventor Fusion 2013" = Autodesk Inventor Fusion 2013
"Autodesk Inventor Fusion plug-in for AutoCAD 2013" = Autodesk Inventor Fusion plug-in for AutoCAD 2013
"Autodesk Revit 2013" = Autodesk Revit 2013
"CCleaner" = CCleaner
"HPProtectTools" = HP ProtectTools Security Manager
"LSI Soft Modem" = LSI HDA Modem
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"Microsoft Security Client" = Microsoft Security Essentials
"Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU
"ProInst" = Intel PROSet Wireless
"PROSet" = Intel(R) Network Connections Drivers
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{02627EE5-EACA-4742-A9CC-E687631773E4}" = Nero ShowTime
"{03046EBB-CB7C-4B98-BEFB-690EB955DA22}" = HP Setup
"{03619AEC-00EE-43CB-9F4F-25BE4C8C90D2}" = HP Software Framework
"{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}" = Microsoft Visual C++ 2008 x86 ATL Runtime 9.0.30729
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0DA17D2A-887F-422E-9190-8961FF91B3B4}" = Energie 2013.3
"{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK
"{0E2C9424-C415-FFE0-4D2D-DCAAC474E027}" = CCC Help Greek
"{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime
"{117EBEEB-5DB0-43C8-9FD6-DD583DB152DD}" = Autodesk Material Library 2013
"{11C9A461-DD9D-4C71-85A4-6DCE7F99CC44}" = HP Wallpaper
"{13C96625-28E4-4c58-ADE0-CDAFC64752EB}" = JMicron 1394 Filter Driver
"{14866AAD-1F23-39AC-A62B-7091ED1ADE64}" = Microsoft Visual C++ 2008 x86 CRT Runtime 9.0.30729
"{14A478A5-7FC3-63AC-565D-320175286A74}" = CCC Help Finnish
"{14DC0059-00F1-4F62-BD1A-AB23CD51A95E}" = Adobe AIR
"{153DB567-6FF3-49AD-AC4F-86F8A3CCFDFB}" = Autodesk Design Review 2013
"{190A7D93-3823-439C-91B9-ADCE3EC2A6A2}" = ArcSoft Webcam Sharing Manager
"{1D61E881-43CD-447B-9E6B-D2C6138B2862}" = HP Webcam
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}" = Nero InfoTool Help
"{2295E360-A4C8-5B51-B3D7-7025B5DDECF7}" = CCC Help Turkish
"{2348B586-C9AE-46CE-936C-A68E9426E214}" = Nero StartSmart Help
"{24FF088D-CDCF-480C-8A4B-98F14A54CAA8}" = Autodesk Material Library Low Resolution Image Library 2012
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
"{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25
"{27C6C0A2-2EC9-4FEA-BE2B-659EAAC2C68C}" = Autodesk Material Library Low Resolution Image Library 2013
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{29E44E9D-ACB2-4D2D-849F-5361C941B7E1}" = ArcSoft TotalMedia 3.5
"{2B711728-FC76-E614-ED80-1F3FF4311934}" = ccc-core-static
"{2e0bbc99-c190-4278-affa-8af947ddb719}" = Nero 9 Essentials
"{2F48C80C-3A76-495A-A4B5-C0CC946FEEBD}" = Autodesk Download Manager
"{31F5B107-3EEB-F07A-DD27-4F5E246F9302}" = CCC Help Polish
"{33CF58F5-48D8-4575-83D6-96F574E4D83A}" = Nero DriveSpeed
"{34B32B70-8081-11E2-89AF-B8AC6F98CCE3}" = Google Earth Plug-in
"{368BA326-73AD-4351-84ED-3C0A7A52CC53}" = Nero Rescue Agent
"{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = HP Webcam Driver
"{3D268D24-25DB-D16B-F499-CAC29F21642D}" = CCC Help Swedish
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{3FC1DFEF-366E-E7F4-18FE-C1D710779955}" = CCC Help Spanish
"{43E39830-1826-415D-8BAE-86845787B54B}" = Nero Vision
"{4442AB48-DEC4-4B39-B067-1F75BF8017E7}" = Creative Centrale
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B21E4B2-89B8-499D-803A-34ABF929401E}" = HP Connection Manager
"{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}" = Microsoft Visual C++ 2008 x86 OpenMP Runtime 9.0.30729
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.5
"{4F86F581-2922-D5C2-222A-793FF5B98ADE}" = CCC Help Norwegian
"{50B9686F-92B7-A791-8E68-B4ECE42EA847}" = CCC Help Chinese Standard
"{510FFF75-5CA7-0A90-5300-868BAF45DD81}" = CCC Help Czech
"{51C7223C-7DF3-4D4B-3E56-7B0429559970}" = CCC Help Chinese Traditional
"{52B18ABC-AD5F-4C3C-B391-04F57B380449}" = HP Client Automation Agent Preload
"{531000B3-DBEE-4115-BBF3-DA48B67C053F}" = HP Software Setup
"{53E17609-DE26-4DD2-889E-A8F37E784907}" = ARCHline.XP 2012 Release 1
"{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{58760EEC-8B6A-43F4-81AA-696E381DFADD}" = Autodesk Material Library Medium Resolution Image Library 2013
"{595A3116-40BB-4E0F-A2E8-D7951DA56270}" = NeroExpress
"{59AC6E0D-CBBE-7402-CDFF-67A021AEA2C7}" = CCC Help Portuguese
"{5C2D96B7-0468-4450-8BD9-63AB796D72CF}" = HP SoftPaq Download Manager
"{5D9BE3C1-8BA4-4E7E-82FD-9F74FA6815D1}" = Nero Vision Help
"{5E08ECD1-C98E-4711-BF65-8FD736B3F969}" = Nero RescueAgent Help
"{606E12B9-641F-4644-A22A-FF38AE980AFD}" = Autodesk Material Library Base Resolution Image Library 2013
"{60C731FB-C951-41CE-AD41-8E54C8594609}" = Nero Disc Copy Gadget Help
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{61DD9052-B7CC-45ED-A610-824D2C25B0C0}" = Scia Engineer 2012
"{62272D4E-78E9-4BAD-B7AA-63072D06AAA9}" = HP Documentation
"{62AC81F6-BDD3-4110-9D36-3E9EAAB40999}" = Nero CoverDesigner
"{62F029AB-85F2-0000-866A-9FC0DD99DDBC}" = Autodesk Content Service
"{62F029AB-85F2-0001-866A-9FC0DD99DDBC}" = Autodesk Content Service Language Pack
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{65420DC9-306E-4371-905F-F4DC3B418E52}" = Autodesk Material Library Base Resolution Image Library 2012
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6D6ADF03-B257-4EA5-BBC1-1D145AF8D514}" = File Sanitizer For HP ProtectTools
"{6DA2B636-698A-3294-BF4A-B5E11B238CDD}" = Microsoft Visual C++ 2008 x64 MFC Runtime 9.0.30729
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{72CD20B8-55F3-4B4F-A44F-E381232E84ED}" = HP QuickWeb
"{7390478C-8581-415E-92E9-2997D9306B81}" = PC Connectivity Solution
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart
"{781B39EC-2E18-41FC-9B00-B84E4FFCA85F}" = ICQ7M
"{7829DB6F-A066-4E40-8912-CB07887C20BB}" = Nero BurnRights
"{823AD051-414A-EB16-D138-7080429900FB}" = CCC Help Japanese
"{83202942-84B3-4C50-8622-B8C0AA2D2885}" = Nero Express Help
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{840021F2-FFC0-467A-BF85-29B8B7803717}" = HP ESU for Microsoft Windows 7
"{86604C06-DA30-425E-AECE-47304FE81C45}" = Creative Software Update
"{869200DB-287A-4DC0-B02B-2B6787FBCD4C}" = Nero DiscSpeed
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}" = RAUCAD-TechCON (5.2)
"{8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}" = Microsoft Visual C++ 2008 x64 OpenMP Runtime 9.0.30729
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}" = Autodesk Material Library 2012
"{90562AAD-AB0B-6186-E77E-BD8FDE1E5B4C}" = CCC Help English
"{91221AAC-F2A0-4028-8016-C7DAF63CB6CC}" = FARO LS 1.1.408.2
"{91CA3F48-5DAD-4147-AECE-C7219C4B2562}" = Balík TT 2010
"{92C56FF3-1F90-1A5B-3C61-FFF0596F8FCA}" = CCC Help Italian
"{93139A49-0360-4718-8B93-C1F9EB12E3D8}" = Roxio Secure Burn
"{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}" = FARO LS 1.1.406.58
"{954079D6-28E0-417D-AC43-F728E3CB7CE5}" = HP System Default Settings
"{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
"{989FB5FD-9B00-4B32-8663-849CB1370DD1}" = Google Drive
"{9A0083F0-B9CF-CF1D-A5F2-6EA43877D22A}" = CCC Help Russian
"{9A00EC4E-27E1-42C4-98DD-662F32AC8870}" = Roxio CinePlayer Decoder Pack
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9CB4FBA9-45C0-41AA-97CC-283B42E1A21E}" = Roxio MyDVD Business 2010
"{A02CC476-1273-995E-FDAD-0AFF27BC4532}" = CCC Help Danish
"{A121EEDE-C68F-461D-91AA-D48BA226AF1C}" = Roxio Activation Module
"{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver
"{A6D1D54B-10A9-03F7-9457-0049B0A839B9}" = CCC Help Dutch
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AB98B0B6-E273-1FDD-C4C9-98EF234B78B7}" = CCC Help German
"{AC76BA86-7AD7-1029-7B44-AA1000000001}" = Adobe Reader X (10.1.7) - Czech
"{ACDFF698-BA12-1377-B995-76BE790F6F82}" = CCC Help Hungarian
"{ADC70B7A-530B-46E3-8384-48D22681A41E}" = Theft Recovery for HP ProtectTools
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B162BC01-9334-5F04-CDB1-C46B435C97F0}" = CCC Help Korean
"{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}" = Roxio Secure Burn
"{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
"{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
"{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}" = Microsoft Visual C++ 2008 x86 MFC Runtime 9.0.30729
"{B5751715-EC10-43D9-8C95-62E1368433EF}" = Autodesk Material Library Medium Resolution Image Library 2012
"{B78120A0-CF84-4366-A393-4D0A59BC546C}" = Menu Templates - Starter Kit
"{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
"{BACE8BFA-8F39-421D-BEF1-6E78632BDC90}" = Roxio MyDVD Business 2010
"{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
"{BFA251DC-A83C-0279-9DB0-34B198854F52}" = CCC Help French
"{C01A86F5-56E7-101F-9BC9-E3F1025EB779}" = Intel(R) Identity Protection Technology 1.1.2.0
"{C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}" = Microsoft Visual C++ 2008 x64 ATL Runtime 9.0.30729
"{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}" = Nero Online Upgrade
"{C97CC14E-4789-4FC5-BC75-79191F7CE009}" = HP Hotkey Support
"{CA1E963D-F8B7-7819-8EDC-1681AF11515C}" = Catalyst Control Center InstallProxy
"{CC019E3F-59D2-4486-8D4B-878105B62A71}" = Nero DiscSpeed Help
"{CC8E94A2-55C7-4460-953C-2A790180578C}" = LightScribe System Software
"{CE96F5A5-584D-4F8F-AA3E-9BAED413DB72}" = Nero CoverDesigner Help
"{CF02802D-27D8-45D5-812B-A9F7238CB71D}" = Stereoscopic Player
"{D22002ED-EE2A-4CB1-A63D-430E62A2E8D8}" = Google SketchUp 8
"{D9DCF92E-72EB-412D-AC71-3B01276E5F8B}" = Nero ShowTime
"{DA9660B6-F1DD-41D3-BA3C-E7F7BF9921B2}" = Catalyst Control Center - Branding
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{E498385E-1C51-459A-B45F-1721E37AA1A0}" = Movie Templates - Starter Kit
"{E592B693-81BE-42D9-B4E4-CABC11C7B101}" = Scia Licence Server
"{E5C7D048-F9B4-4219-B323-8BDB01A2563D}" = Nero DriveSpeed Help
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
"{EB58480C-0721-483C-B354-9D35A147999F}" = HP Quick Launch
"{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant
"{EE599F43-8086-7A2C-D40D-1B8E49239D89}" = Catalyst Control Center Localization All
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F1100000-0008-0000-0001-074957833700}" = ABBYY FineReader 11
"{F1861F30-3419-44DB-B2A1-C274825698B3}" = Nero Disc Copy Gadget
"{F24F876B-7D71-4BD6-88E9-614D3BB84231}" = Alcor Micro Smart Card Reader Driver
"{F2BAF0DF-63ED-4BFC-ACA8-21355B235D7F}" = PROTECH CD 507
"{F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}" = Nero ControlCenter
"{F4BD3FE3-8907-4B80-2DA6-0ADB267C1D79}" = CCC Help Thai
"{F6BDD7C5-89ED-4569-9318-469AA9732572}" = Nero BurnRights Help
"{F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}" = Microsoft Visual C++ 2008 x64 CRT Runtime 9.0.30729
"{F7389B98-C100-4562-8F6C-3AF5908F5905}_is1" = Schöck Isokorb
"{FBCDFD61-7DCF-4E71-9226-873BA0053139}" = Nero InfoTool
"{FE88323B-9F0E-4596-8F56-37757C6918E9}" = LibreOffice 4.0.4.2
"063FFFFFFF15FF00FF0701F00F02F000-R1" = 3DStudio In 15 INT
"43442AE9-6512-4392-B5DD-9167BECD1114_is1" = Infix 4.29
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Any PDF to DWG Converter_is1" = Any PDF to DWG Converter 2010
"Autodesk Content Service" = Autodesk Content Service
"Autodesk Design Review 2013" = Autodesk Design Review 2013
"Creative Centrale" = Creative Centrale
"DAEMON Tools Lite" = DAEMON Tools Lite
"FARO LS_is1" = FARO LS 4.8.2.25521
"ffdshow_is1" = ffdshow v1.1.3892 [2011-06-20]
"Google Chrome" = Google Chrome
"InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"InstallShield_{ADC70B7A-530B-46E3-8384-48D22681A41E}" = Theft Recovery for HP ProtectTools
"IT9130 DriverInstaller_12.2.3.1" = IT9130 Driver v12.2.3.1
"MP Navigator EX 2.0" = Canon MP Navigator EX 2.0
"ProInst" = Intel PROSet Wireless
"Samsung CLP-320 Series" = Údržba Samsung CLP-320 Series
"Samsung Easy Printer Manager" = Samsung Easy Printer Manager
"StrongDC++" = StrongDC++ 2.41
"SZCCID" = Alcor Micro Smart Card Reader Driver
"VIP Access SDK" = VIP Access SDK (1.0.0.55)
"VLC media player" = VLC media player 2.0.3
"Winamp" = Winamp
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Akamai" = Akamai NetSession Interface
"MyFreeCodec" = MyFreeCodec
"Winamp Detect" = Winamp Detector Plug-in
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 9.7.2013 10:42:51 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SDKCOMServer.exe, verze: 1.0.0.1, časové
razítko: 0x4d8100a3 Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.17725,
časové razítko: 0x4ec49b8f Kód výjimky: 0xc0000005 Posun chyby: 0x0002dfe4 ID chybujícího
procesu: 0x1f38 Čas spuštění chybující aplikace: 0x01ce7cb2832c8b77 Cesta k chybující
aplikaci: C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
Cesta
k chybujícímu modulu: C:\windows\SysWOW64\ntdll.dll ID zprávy: d43768b2-e8a5-11e2-aa45-101f744bae51
Error - 9.7.2013 11:30:28 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: HPDayStarterService.exe, verze: 2.0.0.12,
časové razítko: 0x4d42d67a Název chybujícího modulu: mfc90u.dll, verze: 9.0.30729.6161,
časové razítko: 0x4dad06e1 Kód výjimky: 0x40000015 Posun chyby: 0x0005d37c ID chybujícího
procesu: 0xb1c Čas spuštění chybující aplikace: 0x01ce7cb207cacbbd Cesta k chybující
aplikaci: c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
Cesta
k chybujícímu modulu: C:\windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
ID
zprávy: 7b719c26-e8ac-11e2-aa45-101f744bae51
Error - 9.7.2013 11:37:42 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SDKCOMServer.exe, verze: 1.0.0.1, časové
razítko: 0x4d8100a3 Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.17725,
časové razítko: 0x4ec49b8f Kód výjimky: 0xc0000005 Posun chyby: 0x0002dfe4 ID chybujícího
procesu: 0x1998 Čas spuštění chybující aplikace: 0x01ce7cba2988ac94 Cesta k chybující
aplikaci: C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
Cesta
k chybujícímu modulu: C:\windows\SysWOW64\ntdll.dll ID zprávy: 7e18a042-e8ad-11e2-aea4-101f744bae51
Error - 9.7.2013 11:53:22 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: TotalMedia.exe, verze: 3.5.7.282, časové
razítko: 0x497432f8 Název chybujícího modulu: Flash32_11_7_700_224.ocx, verze: 11.7.700.224,
časové razítko: 0x51a673ec Kód výjimky: 0x80000003 Posun chyby: 0x0047aae9 ID chybujícího
procesu: 0x1608 Čas spuštění chybující aplikace: 0x01ce7cbbbec08fce Cesta k chybující
aplikaci: C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\TotalMedia.exe Cesta k chybujícímu
modulu: C:\windows\SysWOW64\Macromed\Flash\Flash32_11_7_700_224.ocx ID zprávy: ae6f17f7-e8af-11e2-aea4-101f744bae51
Error - 10.7.2013 4:00:09 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: OUTLOOK.EXE, verze: 14.0.6131.5000, časové
razítko: 0x509b0fb4 Název chybujícího modulu: mspst32.dll, verze: 14.0.6131.5000,
časové razítko: 0x509b0f03 Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000096368
ID
chybujícího procesu: 0x17c0 Čas spuštění chybující aplikace: 0x01ce7d437515fba2 Cesta
k chybující aplikaci: C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE Cesta
k chybujícímu modulu: C:\Program Files\Microsoft Office\Office14\mspst32.dll ID
zprávy: bd3dd875-e936-11e2-aea4-101f744bae51
Error - 10.7.2013 4:16:16 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: HPDayStarterService.exe, verze: 2.0.0.12,
časové razítko: 0x4d42d67a Název chybujícího modulu: mfc90u.dll, verze: 9.0.30729.6161,
časové razítko: 0x4dad06e1 Kód výjimky: 0x40000015 Posun chyby: 0x0005d37c ID chybujícího
procesu: 0x5d0 Čas spuštění chybující aplikace: 0x01ce7cb9ad5ad766 Cesta k chybující
aplikaci: c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
Cesta
k chybujícímu modulu: C:\windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
ID
zprávy: fda83fdf-e938-11e2-aea4-101f744bae51
Error - 10.7.2013 4:23:47 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SDKCOMServer.exe, verze: 1.0.0.1, časové
razítko: 0x4d8100a3 Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.17725,
časové razítko: 0x4ec49b8f Kód výjimky: 0xc0000005 Posun chyby: 0x0002dfe4 ID chybujícího
procesu: 0x1e38 Čas spuštění chybující aplikace: 0x01ce7d46baaec133 Cesta k chybující
aplikaci: C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
Cesta
k chybujícímu modulu: C:\windows\SysWOW64\ntdll.dll ID zprávy: 0a8259d5-e93a-11e2-a5d6-101f744bae51
[ Hewlett-Packard Events ]
Error - 5.11.2012 14:31:21 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 6.11.2012 3:31:23 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 6.11.2012 15:21:39 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 6.11.2012 16:21:45 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 2:41:58 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 7:06:00 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 16:11:58 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 16:18:30 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 40 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 3.6.2013 7:29:17 | Computer Name = B04-717b | Source = hpsa_service.exe | ID = 2000
Description =
[ HP Connection Manager Events ]
Error - 10.7.2013 3:17:14 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:17:14.151|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:17:17 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:17:17.474|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:20:05 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:20:05.032|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:20:08 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:20:08.912|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:25:05 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:25:05.660|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 4:16:18 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:18.947|00001C4C|Error |CWLAN::StateChanged|Fire_StateChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:16:18 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:18.963|00001C4C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:16:18 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:18.963|00001C4C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:16:20 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:20.445|00001C4C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:23:37 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 10:23:37.526|0000137C|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
[ HP Power Assistant Events ]
Error - 19.5.2013 9:22:28 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Level value needs to be an integer between 0 and 100, got 103UpdateBatteryPredictions()
has bad values. Check PMCCapabilities.XML and PMCData.XML if in emulation mode
Error - 19.5.2013 9:23:27 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Level value needs to be an integer between 0 and 100, got 102UpdateBatteryPredictions()
has bad values. Check PMCCapabilities.XML and PMCData.XML if in emulation mode
Error - 28.6.2013 9:48:51 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Level value needs to be an integer between 0 and 100, got 101UpdateBatteryPredictions()
has bad values. Check PMCCapabilities.XML and PMCData.XML if in emulation mode
Error - 1.7.2013 17:49:09 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 1.7.2013 17:49:09 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 1.7.2013 17:49:09 | Computer Name = B04-717b | Source = HP PA Service | ID = 1006
Description = The Power Assistant service has crashed due to an unhandled exception.
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Cíl vyvolání způsobil výjimku.ServiceWorkerMethod ABORTED!
-
Error - 1.7.2013 17:49:34 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 8.7.2013 3:30:48 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 8.7.2013 3:30:48 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 8.7.2013 3:30:51 | Computer Name = B04-717b | Source = HP PA Service | ID = 1006
Description = The Power Assistant service has crashed due to an unhandled exception.
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Cíl vyvolání způsobil výjimku.ServiceWorkerMethod ABORTED!
-
[ HP Software Framework Events ]
Error - 29.11.2012 11:58:32 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.11.29 16:58:32.799|000015DC|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
Error - 7.12.2012 14:15:13 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.12.07 19:15:12.575|00001DD4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 12.12.2012 4:38:06 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.12.12 09:38:06.311|000003D4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 12.12.2012 4:38:06 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.12.12 09:38:06.358|000003D4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
Error - 24.3.2013 14:30:25 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.03.24 19:30:21.335|00000DD8|Error |EventHandlers::UpdateDockStateAndTabletMode{void()}|HpCasl
Read Dock.State error. Return Code : 597
Error - 29.3.2013 17:56:23 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.03.29 22:56:22.354|000018B4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 30.4.2013 18:54:46 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.01 00:54:46.457|000017B0|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 30.4.2013 18:54:47 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.01 00:54:47.221|000017B0|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
Error - 11.5.2013 17:42:58 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.11 23:42:57.451|00001808|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 11.5.2013 17:42:58 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.11 23:42:58.122|00001808|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
[ System Events ]
Error - 9.7.2013 10:38:39 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba aksdf neuspěla při spuštění v důsledku následující chyby: %%577
Error - 9.7.2013 10:38:39 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba Sentinel Fridge neuspěla při spuštění v důsledku následující
chyby: %%577
Error - 9.7.2013 11:33:23 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba aksdf neuspěla při spuštění v důsledku následující chyby: %%577
Error - 9.7.2013 11:33:24 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba Sentinel Fridge neuspěla při spuštění v důsledku následující
chyby: %%577
Error - 10.7.2013 4:19:29 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba aksdf neuspěla při spuštění v důsledku následující chyby: %%577
Error - 10.7.2013 4:19:30 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba Sentinel Fridge neuspěla při spuštění v důsledku následující
chyby: %%577
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\honza\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
7,95 Gb Total Physical Memory | 4,38 Gb Available Physical Memory | 55,08% Memory free
15,90 Gb Paging File | 11,38 Gb Available in Paging File | 71,58% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 445,38 Gb Total Space | 166,27 Gb Free Space | 37,33% Space Free | Partition Type: NTFS
Drive D: | 15,09 Gb Total Space | 2,25 Gb Free Space | 14,92% Space Free | Partition Type: NTFS
Drive E: | 4,99 Gb Total Space | 2,13 Gb Free Space | 42,64% Space Free | Partition Type: FAT32
Computer Name: B04-717B | User Name: honza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
.js[@ = JSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.jse[@ = JSEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbe[@ = VBEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbs[@ = VBSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.wsf[@ = WSFFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\windows\SysWow64\CScript.exe (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
jsefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
vbefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
wsffile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
jsefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
vbefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
wsffile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0F625C2A-9578-4655-A423-2FEF9AAA2A94}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{17E16974-C7F6-4D27-8C76-351C8AB23C13}" = rport=139 | protocol=6 | dir=out | app=system |
"{1E83807C-FDFB-477F-BEE7-AFB108F248C8}" = lport=10243 | protocol=6 | dir=in | app=system |
"{28A7C73A-4215-43A2-9D08-8444F8CC1E6F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{5756CDA0-2139-4240-9D80-CF908A19BC13}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{57B85461-BAF7-41D0-AFFE-58A01BAB0FA6}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{58D4A051-FAFA-4CC1-B38C-EC50D126750A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{5969773C-7399-4583-A537-1781D27F3334}" = rport=445 | protocol=6 | dir=out | app=system |
"{5B999085-15B4-44E6-BCAF-C1A03B6BC106}" = lport=137 | protocol=17 | dir=in | app=system |
"{5F2410E0-FEF3-4F68-9B8F-A25F242ED51D}" = lport=58418 | protocol=6 | dir=in | name=akamai netsession interface |
"{6C2CDCED-A7C8-48E6-9EB0-6D07577339EC}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{709D6CB7-CE09-4000-A553-DAF3670D2D84}" = rport=138 | protocol=17 | dir=out | app=system |
"{75B9D597-F286-4CD9-A5BE-49E39533B69C}" = lport=139 | protocol=6 | dir=in | app=system |
"{7CCFA24B-BCD3-4C73-BAC7-D7611B512E5C}" = rport=10243 | protocol=6 | dir=out | app=system |
"{8E4B56CC-3A55-478C-A6C3-E6D38A3870FA}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{90E9B424-9D1E-4CCE-8308-1613D0BB116A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A65763E0-469A-42AF-8420-9F95600C2CA4}" = lport=2869 | protocol=6 | dir=in | app=system |
"{ABE7FC43-A577-4864-AD0B-8A9EEB6EB936}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B25AE924-35CA-4072-9695-A8D4E4263DA5}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{B7DAA5E2-A71D-461F-BC8B-35A6B14A828E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C0D9CE9E-5336-471A-B206-D94EA742DBAD}" = lport=445 | protocol=6 | dir=in | app=system |
"{C1218889-64B7-41CD-B6DC-CB73BBEE54A5}" = lport=50248 | protocol=6 | dir=in | name=autodesk content service |
"{DA912A22-7641-4532-B0A1-93642C7C0659}" = lport=138 | protocol=17 | dir=in | app=system |
"{DAF50D93-DEDD-4316-AEEF-DF6E61632D63}" = rport=137 | protocol=17 | dir=out | app=system |
"{EA4AA9E5-288D-48D2-96AC-887678E5DD85}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F99E06B8-38EC-4A85-AE46-2CAFA3B99E98}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04C25D94-1276-4857-A5F4-3B2402A93B30}" = protocol=17 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe |
"{14991C27-A05F-4E95-9355-B15034F974FA}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{18F907E4-6F75-4748-A32B-AE6A15AA4577}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{29F47B20-833C-4A74-A3FB-9745782C3C0A}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe |
"{328547BC-2BE4-4674-8BC7-2FE6C9BC2AF4}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{41F70FFD-B3A1-493F-8A26-E0B86734491B}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{520D43C7-EC7C-4AA6-9485-C68A181FF2EE}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{56833AF5-ECCF-42C6-BBA0-52B8FB46C59B}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe |
"{5732F0AB-76F9-4B26-AA98-5A0F78D3E6A3}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe |
"{57B2D22E-2827-4141-B582-3B38AD3F8A07}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe |
"{5E355634-770B-482C-934A-A097C0777A19}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe |
"{668F7181-CBC8-433D-82A9-8BAD5151A9AC}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe |
"{67ADFBC1-995F-40A6-A37A-1A7556158AA2}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{695352E4-0A38-4F34-82FE-F38D7E64FCF1}" = dir=in | app=c:\windows\system32\hasplms.exe |
"{6E1708B1-1DAB-44A5-BC4A-6D2DEFC219F5}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{73E40052-92AA-431A-B329-DE4892857939}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{73E6F603-4E21-42C5-BDFF-AB402C1648DD}" = protocol=6 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe |
"{751B21A7-A592-45BC-929C-61177258DF63}" = dir=in | app=c:\users\honza\appdata\local\facebook\video\skype\facebookvideocalling.exe |
"{7E0D8547-36A0-464F-B625-6CCC29E8EA64}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{867530E8-0290-4CA8-9C0E-828F5C7C5413}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{92BC6C40-4EE3-4CAA-B899-EDDA5AB4CA52}" = protocol=6 | dir=in | app=c:\program files (x86)\arcsoft\totalmedia 3.5\totalmedia.exe |
"{942D2CB9-B6F4-4474-A5AF-AFC46AF6E88B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9771EDED-AFFA-4B92-AB2E-77D102D9E0BA}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{97A75C6A-B60D-4AD8-B179-EE9E34605BB0}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{9E73840F-B25A-43BA-A6BB-24D6219E9A2B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A3170C5C-A832-4826-BECA-1889E751C005}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{A3BE9968-0DB8-4BEC-AD01-22E67ADC74E2}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe |
"{B69A8865-9B06-4857-9A00-A0B96EE44EF2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BB426ED7-0F97-4973-8154-B2D56E74A55A}" = protocol=17 | dir=in | app=c:\program files (x86)\arcsoft\totalmedia 3.5\totalmedia.exe |
"{BF6D173D-5116-4448-B65A-89480CE8856D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C1992DFB-DF42-4A8B-8C8E-1C2E441EC5EA}" = protocol=6 | dir=out | app=system |
"{D2ADCC25-BE4D-4D78-A3C7-6E6197F0405D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{D3053050-95D2-414F-83BF-1794B3EB73A2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{DA5397D1-BD8C-451C-B7FF-E1458E0ACF78}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe |
"{DC5C4241-5BE9-4CDE-8777-C52FC059E62D}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EA3287E9-DE9A-4647-87B0-0E483F2542BF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{EFA26791-E878-4DDE-B90F-A204D57EC333}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{F22A9E6D-805B-42B6-A883-95C082C61498}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F4C38211-A545-4EA4-A442-D8CBBF594FB4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F729B2D3-114C-417F-8597-71C2E5196595}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FD1500E2-A4C5-41A9-BD45-3F91D3D56B57}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"TCP Query User{14828D1E-8E21-4B1E-BA2E-ED75499466D1}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"TCP Query User{150B45E7-707C-4F3D-89FE-2C7F16FE4171}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{37456DB6-1A20-4546-AC61-9585D80E2426}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"TCP Query User{43F90202-7FE6-4840-802B-CCEFE643B5D9}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe" = protocol=6 | dir=in | app=c:\program files\graphisoft\archicad 16\licensefilegenerator.exe |
"TCP Query User{623447C8-86D9-480C-B856-750EBC13F5A9}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"TCP Query User{7651A700-ED06-4665-9E2D-DC13CDE039C0}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"TCP Query User{8C6904E9-6979-4D96-B686-88702925D901}C:\windows\kmsemulator.exe" = protocol=6 | dir=in | app=c:\windows\kmsemulator.exe |
"TCP Query User{B422AB91-593F-4B00-B80E-B5B38013434B}C:\program files (x86)\icq7m\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"TCP Query User{F6E1896E-7189-414C-B59D-41142CC62CD0}C:\program files\strongdc++\strongdc.exe" = protocol=6 | dir=in | app=c:\program files\strongdc++\strongdc.exe |
"UDP Query User{14F5CBE3-E4FD-418D-A0CB-3AF1407FA853}C:\program files\strongdc++\strongdc.exe" = protocol=17 | dir=in | app=c:\program files\strongdc++\strongdc.exe |
"UDP Query User{1BCA3564-000B-4EA5-B4DC-1AB02210DF53}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"UDP Query User{37665546-4677-4C33-B41A-E06C433CF7D1}C:\program files (x86)\icq7m\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"UDP Query User{58FE123E-6F8C-4BA6-AD4A-2E67C16CCBDF}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe" = protocol=17 | dir=in | app=c:\program files\graphisoft\archicad 16\licensefilegenerator.exe |
"UDP Query User{5E5F624C-1A33-47D6-A6AD-64443D70186C}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{677153A5-4674-427A-848A-24D3493752EE}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"UDP Query User{8ECED487-A98D-41E9-945E-5992F862F37C}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"UDP Query User{9C07C5F8-1B2D-43B4-963D-E0DD9C0DB2A3}C:\users\honza\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\local\akamai\netsession_win.exe |
"UDP Query User{F199E524-0E45-44AE-B5C6-8437B004A377}C:\windows\kmsemulator.exe" = protocol=17 | dir=in | app=c:\windows\kmsemulator.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{031A0E14-0413-4C97-9772-2639B782F46F}" = Common Desktop Agent
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0AD30331-44E7-4E05-87F1-77168316DE81}" = AutoCAD Falcon Flow Simulation
"{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Prostředí Windows XP Mode
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{25FBDA9A-E868-4B3B-B9FF-D923818511A1}" = Software Intel(R) PROSet/Wireless WiFi
"{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = Broadcom 2070 Bluetooth 3.0
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10
"{55B52830-024A-443E-AF61-61E1E71AFA1B}" = Device Access Manager for HP ProtectTools
"{5783F2D7-B001-0000-0102-0060B0CE6BBA}" = AutoCAD 2013 - English
"{5783F2D7-B001-0405-1102-0060B0CE6BBA}" = AutoCAD 2013 Language Pack – Čeština (Czech)
"{5783F2D7-B001-0405-2102-0060B0CE6BBA}" = AutoCAD 2013 – Čeština (Czech)
"{5783F2D7-B001-0409-1102-0060B0CE6BBA}" = AutoCAD 2013 Language Pack - English
"{5783F2D7-B001-0409-2102-0060B0CE6BBA}" = AutoCAD 2013 - English
"{5783F2D7-B004-0000-0102-0060B0CE6BBA}" = AutoCAD Architecture 2013 – Čeština (Czech)
"{5783F2D7-B004-0405-1102-0060B0CE6BBA}" = AutoCAD Architecture 2013 Language Pack – Čeština (Czech)
"{5783F2D7-B004-0405-2102-0060B0CE6BBA}" = AutoCAD Architecture 2013 – Čeština (Czech)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{61D3AB5C-02B5-47FC-906A-C49A0954C7C6}" = Validity Fingerprint Sensor Driver
"{680EDA59-9266-44B4-949E-0C24F65DFF82}" = Microsoft_VC100_CRT_SP1_x64
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{7346B4A0-1300-0510-0405-705C0D862004}" = Revit 2013
"{7346B4A0-1300-0511-0405-705C0D862004}" = Jazykový balíček aplikace Revit 2013 – čeština
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{82C1E6E4-6718-4EFD-9DCC-E276D690EF46}" = Autodesk Inventor Fusion plug-in for AutoCAD 2013
"{87821717-5688-4AE6-887A-6B11571D0CD7}" = Embedded Security for HP ProtectTools
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A0041CD-277C-4C1F-BFE4-7AC508B20B4C}" = Drive Encryption For HP ProtectTools
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90A80D89-A0E4-33C1-B13D-B93CB3496867}" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU
"{92854529-C54B-70AF-40DD-2EE512824623}" = ccc-utility64
"{94E6981F-ECB3-4458-8EFC-0E96BC540E9D}" = HP DayStarter
"{9D6DFAD6-09E5-445E-A4B5-A388FEEBD90D}" = RBVirtualFolder64Inst
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{ACA53F68-B003-4D0E-9C3D-0C4EE09D08A8}" = Privacy Manager for HP ProtectTools
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B7940A01-C32C-463E-B2C2-8B41403787B9}" = Falcon For Revit 2013
"{C7AE4EC3-9C13-4213-8457-74D16B353F91}" = HP Web Camera
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{CF9ACC81-C8C3-4BD1-BD1F-FE13CF344E20}" = HP Power Assistant
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{D3A775F2-2674-4452-8D80-1FC1446052EE}" = Face Recognition for HP ProtectTools
"{D856C86A-6D49-4A32-BBC2-54714EAF2CA0}" = HP ProtectTools Security Manager
"{D954C6C2-544B-4091-A47F-11E77162883E}" = Microsoft Security Client
"{EC748951-CB19-C4CE-FDFC-A17B5F5E1F8E}" = ATI Catalyst Install Manager
"{EE5F74BC-5CD5-4EF2-86BA-81E6CF46A18F}" = Autodesk Sync
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FB62AEDD-1AA7-479C-9805-E6EEDDE06AEB}" = HP 3D DriveGuard
"{FDF42E5F-B254-4A31-BE0E-B423580B03B2}_is1" = 1.99+
"{FE2F4875-095C-427C-9A97-4F8DE05ACF22}" = Autodesk Inventor Fusion plug-in language pack for AutoCAD 2013
"{FFF5619F-2013-0064-A85E-9994F70A9E5D}" = Autodesk Inventor Fusion 2013
"001FFF2FFF16FF00FF1101F01F02F000-R1" = ArchiCAD 16 CZE
"62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F" = Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0)
"AutoCAD 2013 - English" = AutoCAD 2013 - English
"AutoCAD 2013 - English SP1.1" = AutoCAD 2013 - English SP1.1
"AutoCAD 2013 Language Pack – Čeština (Czech)" = AutoCAD 2013 Language Pack – Čeština (Czech)
"AutoCAD Architecture 2013 – Čeština (Czech)" = AutoCAD Architecture 2013 – Čeština (Czech)
"Autodesk Inventor Fusion 2013" = Autodesk Inventor Fusion 2013
"Autodesk Inventor Fusion plug-in for AutoCAD 2013" = Autodesk Inventor Fusion plug-in for AutoCAD 2013
"Autodesk Revit 2013" = Autodesk Revit 2013
"CCleaner" = CCleaner
"HPProtectTools" = HP ProtectTools Security Manager
"LSI Soft Modem" = LSI HDA Modem
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"Microsoft Security Client" = Microsoft Security Essentials
"Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU
"ProInst" = Intel PROSet Wireless
"PROSet" = Intel(R) Network Connections Drivers
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{02627EE5-EACA-4742-A9CC-E687631773E4}" = Nero ShowTime
"{03046EBB-CB7C-4B98-BEFB-690EB955DA22}" = HP Setup
"{03619AEC-00EE-43CB-9F4F-25BE4C8C90D2}" = HP Software Framework
"{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}" = Microsoft Visual C++ 2008 x86 ATL Runtime 9.0.30729
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0DA17D2A-887F-422E-9190-8961FF91B3B4}" = Energie 2013.3
"{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK
"{0E2C9424-C415-FFE0-4D2D-DCAAC474E027}" = CCC Help Greek
"{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime
"{117EBEEB-5DB0-43C8-9FD6-DD583DB152DD}" = Autodesk Material Library 2013
"{11C9A461-DD9D-4C71-85A4-6DCE7F99CC44}" = HP Wallpaper
"{13C96625-28E4-4c58-ADE0-CDAFC64752EB}" = JMicron 1394 Filter Driver
"{14866AAD-1F23-39AC-A62B-7091ED1ADE64}" = Microsoft Visual C++ 2008 x86 CRT Runtime 9.0.30729
"{14A478A5-7FC3-63AC-565D-320175286A74}" = CCC Help Finnish
"{14DC0059-00F1-4F62-BD1A-AB23CD51A95E}" = Adobe AIR
"{153DB567-6FF3-49AD-AC4F-86F8A3CCFDFB}" = Autodesk Design Review 2013
"{190A7D93-3823-439C-91B9-ADCE3EC2A6A2}" = ArcSoft Webcam Sharing Manager
"{1D61E881-43CD-447B-9E6B-D2C6138B2862}" = HP Webcam
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}" = Nero InfoTool Help
"{2295E360-A4C8-5B51-B3D7-7025B5DDECF7}" = CCC Help Turkish
"{2348B586-C9AE-46CE-936C-A68E9426E214}" = Nero StartSmart Help
"{24FF088D-CDCF-480C-8A4B-98F14A54CAA8}" = Autodesk Material Library Low Resolution Image Library 2012
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
"{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25
"{27C6C0A2-2EC9-4FEA-BE2B-659EAAC2C68C}" = Autodesk Material Library Low Resolution Image Library 2013
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{29E44E9D-ACB2-4D2D-849F-5361C941B7E1}" = ArcSoft TotalMedia 3.5
"{2B711728-FC76-E614-ED80-1F3FF4311934}" = ccc-core-static
"{2e0bbc99-c190-4278-affa-8af947ddb719}" = Nero 9 Essentials
"{2F48C80C-3A76-495A-A4B5-C0CC946FEEBD}" = Autodesk Download Manager
"{31F5B107-3EEB-F07A-DD27-4F5E246F9302}" = CCC Help Polish
"{33CF58F5-48D8-4575-83D6-96F574E4D83A}" = Nero DriveSpeed
"{34B32B70-8081-11E2-89AF-B8AC6F98CCE3}" = Google Earth Plug-in
"{368BA326-73AD-4351-84ED-3C0A7A52CC53}" = Nero Rescue Agent
"{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = HP Webcam Driver
"{3D268D24-25DB-D16B-F499-CAC29F21642D}" = CCC Help Swedish
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{3FC1DFEF-366E-E7F4-18FE-C1D710779955}" = CCC Help Spanish
"{43E39830-1826-415D-8BAE-86845787B54B}" = Nero Vision
"{4442AB48-DEC4-4B39-B067-1F75BF8017E7}" = Creative Centrale
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B21E4B2-89B8-499D-803A-34ABF929401E}" = HP Connection Manager
"{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}" = Microsoft Visual C++ 2008 x86 OpenMP Runtime 9.0.30729
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.5
"{4F86F581-2922-D5C2-222A-793FF5B98ADE}" = CCC Help Norwegian
"{50B9686F-92B7-A791-8E68-B4ECE42EA847}" = CCC Help Chinese Standard
"{510FFF75-5CA7-0A90-5300-868BAF45DD81}" = CCC Help Czech
"{51C7223C-7DF3-4D4B-3E56-7B0429559970}" = CCC Help Chinese Traditional
"{52B18ABC-AD5F-4C3C-B391-04F57B380449}" = HP Client Automation Agent Preload
"{531000B3-DBEE-4115-BBF3-DA48B67C053F}" = HP Software Setup
"{53E17609-DE26-4DD2-889E-A8F37E784907}" = ARCHline.XP 2012 Release 1
"{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{58760EEC-8B6A-43F4-81AA-696E381DFADD}" = Autodesk Material Library Medium Resolution Image Library 2013
"{595A3116-40BB-4E0F-A2E8-D7951DA56270}" = NeroExpress
"{59AC6E0D-CBBE-7402-CDFF-67A021AEA2C7}" = CCC Help Portuguese
"{5C2D96B7-0468-4450-8BD9-63AB796D72CF}" = HP SoftPaq Download Manager
"{5D9BE3C1-8BA4-4E7E-82FD-9F74FA6815D1}" = Nero Vision Help
"{5E08ECD1-C98E-4711-BF65-8FD736B3F969}" = Nero RescueAgent Help
"{606E12B9-641F-4644-A22A-FF38AE980AFD}" = Autodesk Material Library Base Resolution Image Library 2013
"{60C731FB-C951-41CE-AD41-8E54C8594609}" = Nero Disc Copy Gadget Help
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{61DD9052-B7CC-45ED-A610-824D2C25B0C0}" = Scia Engineer 2012
"{62272D4E-78E9-4BAD-B7AA-63072D06AAA9}" = HP Documentation
"{62AC81F6-BDD3-4110-9D36-3E9EAAB40999}" = Nero CoverDesigner
"{62F029AB-85F2-0000-866A-9FC0DD99DDBC}" = Autodesk Content Service
"{62F029AB-85F2-0001-866A-9FC0DD99DDBC}" = Autodesk Content Service Language Pack
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{65420DC9-306E-4371-905F-F4DC3B418E52}" = Autodesk Material Library Base Resolution Image Library 2012
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6D6ADF03-B257-4EA5-BBC1-1D145AF8D514}" = File Sanitizer For HP ProtectTools
"{6DA2B636-698A-3294-BF4A-B5E11B238CDD}" = Microsoft Visual C++ 2008 x64 MFC Runtime 9.0.30729
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{72CD20B8-55F3-4B4F-A44F-E381232E84ED}" = HP QuickWeb
"{7390478C-8581-415E-92E9-2997D9306B81}" = PC Connectivity Solution
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart
"{781B39EC-2E18-41FC-9B00-B84E4FFCA85F}" = ICQ7M
"{7829DB6F-A066-4E40-8912-CB07887C20BB}" = Nero BurnRights
"{823AD051-414A-EB16-D138-7080429900FB}" = CCC Help Japanese
"{83202942-84B3-4C50-8622-B8C0AA2D2885}" = Nero Express Help
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{840021F2-FFC0-467A-BF85-29B8B7803717}" = HP ESU for Microsoft Windows 7
"{86604C06-DA30-425E-AECE-47304FE81C45}" = Creative Software Update
"{869200DB-287A-4DC0-B02B-2B6787FBCD4C}" = Nero DiscSpeed
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{889D28AD-3F0C-48CD-B9BA-95B89A848DD6}" = RAUCAD-TechCON (5.2)
"{8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}" = Microsoft Visual C++ 2008 x64 OpenMP Runtime 9.0.30729
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}" = Autodesk Material Library 2012
"{90562AAD-AB0B-6186-E77E-BD8FDE1E5B4C}" = CCC Help English
"{91221AAC-F2A0-4028-8016-C7DAF63CB6CC}" = FARO LS 1.1.408.2
"{91CA3F48-5DAD-4147-AECE-C7219C4B2562}" = Balík TT 2010
"{92C56FF3-1F90-1A5B-3C61-FFF0596F8FCA}" = CCC Help Italian
"{93139A49-0360-4718-8B93-C1F9EB12E3D8}" = Roxio Secure Burn
"{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}" = FARO LS 1.1.406.58
"{954079D6-28E0-417D-AC43-F728E3CB7CE5}" = HP System Default Settings
"{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
"{989FB5FD-9B00-4B32-8663-849CB1370DD1}" = Google Drive
"{9A0083F0-B9CF-CF1D-A5F2-6EA43877D22A}" = CCC Help Russian
"{9A00EC4E-27E1-42C4-98DD-662F32AC8870}" = Roxio CinePlayer Decoder Pack
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9CB4FBA9-45C0-41AA-97CC-283B42E1A21E}" = Roxio MyDVD Business 2010
"{A02CC476-1273-995E-FDAD-0AFF27BC4532}" = CCC Help Danish
"{A121EEDE-C68F-461D-91AA-D48BA226AF1C}" = Roxio Activation Module
"{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver
"{A6D1D54B-10A9-03F7-9457-0049B0A839B9}" = CCC Help Dutch
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AB98B0B6-E273-1FDD-C4C9-98EF234B78B7}" = CCC Help German
"{AC76BA86-7AD7-1029-7B44-AA1000000001}" = Adobe Reader X (10.1.7) - Czech
"{ACDFF698-BA12-1377-B995-76BE790F6F82}" = CCC Help Hungarian
"{ADC70B7A-530B-46E3-8384-48D22681A41E}" = Theft Recovery for HP ProtectTools
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B162BC01-9334-5F04-CDB1-C46B435C97F0}" = CCC Help Korean
"{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}" = Roxio Secure Burn
"{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
"{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
"{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}" = Microsoft Visual C++ 2008 x86 MFC Runtime 9.0.30729
"{B5751715-EC10-43D9-8C95-62E1368433EF}" = Autodesk Material Library Medium Resolution Image Library 2012
"{B78120A0-CF84-4366-A393-4D0A59BC546C}" = Menu Templates - Starter Kit
"{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
"{BACE8BFA-8F39-421D-BEF1-6E78632BDC90}" = Roxio MyDVD Business 2010
"{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
"{BFA251DC-A83C-0279-9DB0-34B198854F52}" = CCC Help French
"{C01A86F5-56E7-101F-9BC9-E3F1025EB779}" = Intel(R) Identity Protection Technology 1.1.2.0
"{C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}" = Microsoft Visual C++ 2008 x64 ATL Runtime 9.0.30729
"{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}" = Nero Online Upgrade
"{C97CC14E-4789-4FC5-BC75-79191F7CE009}" = HP Hotkey Support
"{CA1E963D-F8B7-7819-8EDC-1681AF11515C}" = Catalyst Control Center InstallProxy
"{CC019E3F-59D2-4486-8D4B-878105B62A71}" = Nero DiscSpeed Help
"{CC8E94A2-55C7-4460-953C-2A790180578C}" = LightScribe System Software
"{CE96F5A5-584D-4F8F-AA3E-9BAED413DB72}" = Nero CoverDesigner Help
"{CF02802D-27D8-45D5-812B-A9F7238CB71D}" = Stereoscopic Player
"{D22002ED-EE2A-4CB1-A63D-430E62A2E8D8}" = Google SketchUp 8
"{D9DCF92E-72EB-412D-AC71-3B01276E5F8B}" = Nero ShowTime
"{DA9660B6-F1DD-41D3-BA3C-E7F7BF9921B2}" = Catalyst Control Center - Branding
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{E498385E-1C51-459A-B45F-1721E37AA1A0}" = Movie Templates - Starter Kit
"{E592B693-81BE-42D9-B4E4-CABC11C7B101}" = Scia Licence Server
"{E5C7D048-F9B4-4219-B323-8BDB01A2563D}" = Nero DriveSpeed Help
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
"{EB58480C-0721-483C-B354-9D35A147999F}" = HP Quick Launch
"{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant
"{EE599F43-8086-7A2C-D40D-1B8E49239D89}" = Catalyst Control Center Localization All
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F1100000-0008-0000-0001-074957833700}" = ABBYY FineReader 11
"{F1861F30-3419-44DB-B2A1-C274825698B3}" = Nero Disc Copy Gadget
"{F24F876B-7D71-4BD6-88E9-614D3BB84231}" = Alcor Micro Smart Card Reader Driver
"{F2BAF0DF-63ED-4BFC-ACA8-21355B235D7F}" = PROTECH CD 507
"{F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}" = Nero ControlCenter
"{F4BD3FE3-8907-4B80-2DA6-0ADB267C1D79}" = CCC Help Thai
"{F6BDD7C5-89ED-4569-9318-469AA9732572}" = Nero BurnRights Help
"{F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}" = Microsoft Visual C++ 2008 x64 CRT Runtime 9.0.30729
"{F7389B98-C100-4562-8F6C-3AF5908F5905}_is1" = Schöck Isokorb
"{FBCDFD61-7DCF-4E71-9226-873BA0053139}" = Nero InfoTool
"{FE88323B-9F0E-4596-8F56-37757C6918E9}" = LibreOffice 4.0.4.2
"063FFFFFFF15FF00FF0701F00F02F000-R1" = 3DStudio In 15 INT
"43442AE9-6512-4392-B5DD-9167BECD1114_is1" = Infix 4.29
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Any PDF to DWG Converter_is1" = Any PDF to DWG Converter 2010
"Autodesk Content Service" = Autodesk Content Service
"Autodesk Design Review 2013" = Autodesk Design Review 2013
"Creative Centrale" = Creative Centrale
"DAEMON Tools Lite" = DAEMON Tools Lite
"FARO LS_is1" = FARO LS 4.8.2.25521
"ffdshow_is1" = ffdshow v1.1.3892 [2011-06-20]
"Google Chrome" = Google Chrome
"InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"InstallShield_{ADC70B7A-530B-46E3-8384-48D22681A41E}" = Theft Recovery for HP ProtectTools
"IT9130 DriverInstaller_12.2.3.1" = IT9130 Driver v12.2.3.1
"MP Navigator EX 2.0" = Canon MP Navigator EX 2.0
"ProInst" = Intel PROSet Wireless
"Samsung CLP-320 Series" = Údržba Samsung CLP-320 Series
"Samsung Easy Printer Manager" = Samsung Easy Printer Manager
"StrongDC++" = StrongDC++ 2.41
"SZCCID" = Alcor Micro Smart Card Reader Driver
"VIP Access SDK" = VIP Access SDK (1.0.0.55)
"VLC media player" = VLC media player 2.0.3
"Winamp" = Winamp
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1540756361-137140237-4202776258-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Akamai" = Akamai NetSession Interface
"MyFreeCodec" = MyFreeCodec
"Winamp Detect" = Winamp Detector Plug-in
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 9.7.2013 10:42:51 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SDKCOMServer.exe, verze: 1.0.0.1, časové
razítko: 0x4d8100a3 Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.17725,
časové razítko: 0x4ec49b8f Kód výjimky: 0xc0000005 Posun chyby: 0x0002dfe4 ID chybujícího
procesu: 0x1f38 Čas spuštění chybující aplikace: 0x01ce7cb2832c8b77 Cesta k chybující
aplikaci: C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
Cesta
k chybujícímu modulu: C:\windows\SysWOW64\ntdll.dll ID zprávy: d43768b2-e8a5-11e2-aa45-101f744bae51
Error - 9.7.2013 11:30:28 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: HPDayStarterService.exe, verze: 2.0.0.12,
časové razítko: 0x4d42d67a Název chybujícího modulu: mfc90u.dll, verze: 9.0.30729.6161,
časové razítko: 0x4dad06e1 Kód výjimky: 0x40000015 Posun chyby: 0x0005d37c ID chybujícího
procesu: 0xb1c Čas spuštění chybující aplikace: 0x01ce7cb207cacbbd Cesta k chybující
aplikaci: c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
Cesta
k chybujícímu modulu: C:\windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
ID
zprávy: 7b719c26-e8ac-11e2-aa45-101f744bae51
Error - 9.7.2013 11:37:42 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SDKCOMServer.exe, verze: 1.0.0.1, časové
razítko: 0x4d8100a3 Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.17725,
časové razítko: 0x4ec49b8f Kód výjimky: 0xc0000005 Posun chyby: 0x0002dfe4 ID chybujícího
procesu: 0x1998 Čas spuštění chybující aplikace: 0x01ce7cba2988ac94 Cesta k chybující
aplikaci: C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
Cesta
k chybujícímu modulu: C:\windows\SysWOW64\ntdll.dll ID zprávy: 7e18a042-e8ad-11e2-aea4-101f744bae51
Error - 9.7.2013 11:53:22 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: TotalMedia.exe, verze: 3.5.7.282, časové
razítko: 0x497432f8 Název chybujícího modulu: Flash32_11_7_700_224.ocx, verze: 11.7.700.224,
časové razítko: 0x51a673ec Kód výjimky: 0x80000003 Posun chyby: 0x0047aae9 ID chybujícího
procesu: 0x1608 Čas spuštění chybující aplikace: 0x01ce7cbbbec08fce Cesta k chybující
aplikaci: C:\Program Files (x86)\Arcsoft\TotalMedia 3.5\TotalMedia.exe Cesta k chybujícímu
modulu: C:\windows\SysWOW64\Macromed\Flash\Flash32_11_7_700_224.ocx ID zprávy: ae6f17f7-e8af-11e2-aea4-101f744bae51
Error - 10.7.2013 4:00:09 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: OUTLOOK.EXE, verze: 14.0.6131.5000, časové
razítko: 0x509b0fb4 Název chybujícího modulu: mspst32.dll, verze: 14.0.6131.5000,
časové razítko: 0x509b0f03 Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000096368
ID
chybujícího procesu: 0x17c0 Čas spuštění chybující aplikace: 0x01ce7d437515fba2 Cesta
k chybující aplikaci: C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE Cesta
k chybujícímu modulu: C:\Program Files\Microsoft Office\Office14\mspst32.dll ID
zprávy: bd3dd875-e936-11e2-aea4-101f744bae51
Error - 10.7.2013 4:16:16 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: HPDayStarterService.exe, verze: 2.0.0.12,
časové razítko: 0x4d42d67a Název chybujícího modulu: mfc90u.dll, verze: 9.0.30729.6161,
časové razítko: 0x4dad06e1 Kód výjimky: 0x40000015 Posun chyby: 0x0005d37c ID chybujícího
procesu: 0x5d0 Čas spuštění chybující aplikace: 0x01ce7cb9ad5ad766 Cesta k chybující
aplikaci: c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
Cesta
k chybujícímu modulu: C:\windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
ID
zprávy: fda83fdf-e938-11e2-aea4-101f744bae51
Error - 10.7.2013 4:23:47 | Computer Name = B04-717b | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SDKCOMServer.exe, verze: 1.0.0.1, časové
razítko: 0x4d8100a3 Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.17725,
časové razítko: 0x4ec49b8f Kód výjimky: 0xc0000005 Posun chyby: 0x0002dfe4 ID chybujícího
procesu: 0x1e38 Čas spuštění chybující aplikace: 0x01ce7d46baaec133 Cesta k chybující
aplikaci: C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
Cesta
k chybujícímu modulu: C:\windows\SysWOW64\ntdll.dll ID zprávy: 0a8259d5-e93a-11e2-a5d6-101f744bae51
[ Hewlett-Packard Events ]
Error - 5.11.2012 14:31:21 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 6.11.2012 3:31:23 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 6.11.2012 15:21:39 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 6.11.2012 16:21:45 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 2:41:58 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 7:06:00 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 16:11:58 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 60 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 7.11.2012 16:18:30 | Computer Name = B04-717b | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261 v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Odkaz na objekt není nastaven na instanci objektu. StackTrace: v HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: cs-CZ RAM: 8142
Ram
Utilization: 40 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 3.6.2013 7:29:17 | Computer Name = B04-717b | Source = hpsa_service.exe | ID = 2000
Description =
[ HP Connection Manager Events ]
Error - 10.7.2013 3:17:14 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:17:14.151|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:17:17 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:17:17.474|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:20:05 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:20:05.032|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:20:08 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:20:08.912|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 3:25:05 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 09:25:05.660|00001458|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
Error - 10.7.2013 4:16:18 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:18.947|00001C4C|Error |CWLAN::StateChanged|Fire_StateChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:16:18 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:18.963|00001C4C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:16:18 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:18.963|00001C4C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:16:20 | Computer Name = B04-717b | Source = hpCMSrv | ID = 5
Description = 2013/07/10 10:16:20.445|00001C4C|Error |CWLAN::SignalStrengthChanged|Fire_SignalStrengthChanged
failed [hr:0x800706BA]
Error - 10.7.2013 4:23:37 | Computer Name = B04-717b | Source = hpMobile | ID = 5
Description = 2013.07.10 10:23:37.526|0000137C|Error |[HP.Mobile]Notifications::a{bool(HP.Mobile.Presentation.Notifications+c,string,string,string,string,string)}|HP
Software framework Failed from popup: e_INVALID_HP_SIGNATURE
[ HP Power Assistant Events ]
Error - 19.5.2013 9:22:28 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Level value needs to be an integer between 0 and 100, got 103UpdateBatteryPredictions()
has bad values. Check PMCCapabilities.XML and PMCData.XML if in emulation mode
Error - 19.5.2013 9:23:27 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Level value needs to be an integer between 0 and 100, got 102UpdateBatteryPredictions()
has bad values. Check PMCCapabilities.XML and PMCData.XML if in emulation mode
Error - 28.6.2013 9:48:51 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Level value needs to be an integer between 0 and 100, got 101UpdateBatteryPredictions()
has bad values. Check PMCCapabilities.XML and PMCData.XML if in emulation mode
Error - 1.7.2013 17:49:09 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 1.7.2013 17:49:09 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 1.7.2013 17:49:09 | Computer Name = B04-717b | Source = HP PA Service | ID = 1006
Description = The Power Assistant service has crashed due to an unhandled exception.
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Cíl vyvolání způsobil výjimku.ServiceWorkerMethod ABORTED!
-
Error - 1.7.2013 17:49:34 | Computer Name = B04-717b | Source = HP PA Application | ID = 1001
Description = An error occurred in HP Power Assistant application. Please restart
HP Power Assistant application. Additional details may be available in the Details
section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 8.7.2013 3:30:48 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 8.7.2013 3:30:48 | Computer Name = B04-717b | Source = HP PA Service | ID = 1027
Description = An error occured in HP Power Assistant application, module [HPPA_Service].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Nelze načíst soubor nebo sestavení CaslShared, Version=3.5.1.1,
Culture=neutral, PublicKeyToken=9c6f83d5b7f3d097 nebo jeden z jejich závislých
prvků. Systém nemůže nalézt uvedený soubor.
Error - 8.7.2013 3:30:51 | Computer Name = B04-717b | Source = HP PA Service | ID = 1006
Description = The Power Assistant service has crashed due to an unhandled exception.
Please
restart HP Power Assistant application. Additional details may be available in the
Details section. DETAILS Cíl vyvolání způsobil výjimku.ServiceWorkerMethod ABORTED!
-
[ HP Software Framework Events ]
Error - 29.11.2012 11:58:32 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.11.29 16:58:32.799|000015DC|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
Error - 7.12.2012 14:15:13 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.12.07 19:15:12.575|00001DD4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 12.12.2012 4:38:06 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.12.12 09:38:06.311|000003D4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 12.12.2012 4:38:06 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2012.12.12 09:38:06.358|000003D4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
Error - 24.3.2013 14:30:25 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.03.24 19:30:21.335|00000DD8|Error |EventHandlers::UpdateDockStateAndTabletMode{void()}|HpCasl
Read Dock.State error. Return Code : 597
Error - 29.3.2013 17:56:23 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.03.29 22:56:22.354|000018B4|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 30.4.2013 18:54:46 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.01 00:54:46.457|000017B0|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 30.4.2013 18:54:47 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.01 00:54:47.221|000017B0|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
Error - 11.5.2013 17:42:58 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.11 23:42:57.451|00001808|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the PMC.Data event. Exception: Odkaz na objekt není nastaven na instanci
objektu.
Error - 11.5.2013 17:42:58 | Computer Name = B04-717b | Source = Casl | ID = 5
Description = 2013.05.11 23:42:58.122|00001808|Error |[CaslWmi]A::Unregister{hpCasl.enReturnCode(string)}|Error
unregistering the Wireless.GlobalChanged event. Exception: Odkaz na objekt není
nastaven na instanci objektu.
[ System Events ]
Error - 9.7.2013 10:38:39 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba aksdf neuspěla při spuštění v důsledku následující chyby: %%577
Error - 9.7.2013 10:38:39 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba Sentinel Fridge neuspěla při spuštění v důsledku následující
chyby: %%577
Error - 9.7.2013 11:33:23 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba aksdf neuspěla při spuštění v důsledku následující chyby: %%577
Error - 9.7.2013 11:33:24 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba Sentinel Fridge neuspěla při spuštění v důsledku následující
chyby: %%577
Error - 10.7.2013 4:19:29 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba aksdf neuspěla při spuštění v důsledku následující chyby: %%577
Error - 10.7.2013 4:19:30 | Computer Name = B04-717b | Source = Service Control Manager | ID = 7000
Description = Služba Sentinel Fridge neuspěla při spuštění v důsledku následující
chyby: %%577
< End of report >
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Jeste se zeptam, studujete??
-
- Návštěvník
- Příspěvky: 53
- Registrován: 17 říj 2006 17:41
Re: Prosím o kontrolu. PC je zpomalený zejména se seká chrom
Ano VUT v Brně - Stavebku.