
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu - pomalý ntb
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu - pomalý ntb
Trvá to strašně dlouho.
Re: Prosím o kontrolu - pomalý ntb
A bezi to? Neseklo se to?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu - pomalý ntb
Zaseklo se to.
Re: Prosím o kontrolu - pomalý ntb
Zkuste to spustit v nouzovem rezimu.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu - pomalý ntb
OTL Extras logfile created on: 7.9.2013 9:15:57 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\JAKUB\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,75 Gb Total Physical Memory | 2,43 Gb Available Physical Memory | 64,91% Memory free
9,36 Gb Paging File | 8,05 Gb Available in Paging File | 85,98% Paging File free
Paging file location(s): C:\pagefile.sys 5751 5751 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 449,46 Gb Total Space | 88,23 Gb Free Space | 19,63% Space Free | Partition Type: NTFS
Drive D: | 16,01 Gb Total Space | 1,95 Gb Free Space | 12,15% Space Free | Partition Type: NTFS
Computer Name: JAKUB-HP | User Name: JAKUB | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
[HKEY_USERS\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe" = [String data over 1000 bytes]
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe" = [String data over 1000 bytes]
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{011D652F-9FA2-490D-A1E3-79A48047E920}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{04EBF300-F61E-4E74-809D-FA8ADB226E75}" = lport=137 | protocol=17 | dir=in | app=system |
"{0B6ABB5A-1A2E-4980-9F28-8147DC616C66}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{12711470-AC3A-413C-9AE0-740C79239DD3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{1F048509-D7A4-40FA-85BD-DF7F5C3D99B8}" = lport=11155 | protocol=6 | dir=in | name=tunngle |
"{21D3D8CA-7EF7-40AC-96A3-ED2C3DCE0590}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{26A2327A-AE55-46AD-8BB5-DA554173DF39}" = lport=138 | protocol=17 | dir=in | app=system |
"{2B42EF2B-ADD0-4CF8-A2C6-9135E1E1FAA7}" = rport=445 | protocol=6 | dir=out | app=system |
"{36F24395-8D72-44DE-BEE2-F17A91EDD4A4}" = lport=139 | protocol=6 | dir=in | app=system |
"{398AD266-7217-45CD-8108-93F7E9465542}" = rport=10243 | protocol=6 | dir=out | app=system |
"{425EF32E-8E66-4633-8865-B823ABDF76E3}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{47B81C66-E577-42B3-B114-5EB53AC3A893}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4A2C7C37-4351-4456-BC9B-4BBBA883D336}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{62EF82A8-124F-4914-A36C-388E400C1681}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe |
"{725BC0F8-A032-4152-A695-954CB9ED7FF0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7AFB1F74-1450-457B-83E6-DE2384195A12}" = rport=138 | protocol=17 | dir=out | app=system |
"{887A433C-9137-4B65-A4B6-7819C5581762}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8A97F7F3-D50E-45B2-9A03-7B767391650A}" = rport=137 | protocol=17 | dir=out | app=system |
"{A01E5AC7-E67F-4F12-AF6E-8743CBF08CD8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{A5E229A6-EA4B-4870-BB44-4D76F90D45D1}" = rport=139 | protocol=6 | dir=out | app=system |
"{B3291B93-7804-485D-9FD2-3E1E54319625}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{C6FE485D-2BC2-453D-96C4-4FF7B9EC248B}" = lport=10243 | protocol=6 | dir=in | app=system |
"{CD0FE5FA-C67E-4D72-8DCC-6363053FF1F6}" = lport=445 | protocol=6 | dir=in | app=system |
"{DAE06B4B-F84E-4DE7-A111-D05AE933396E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F1A731B7-F4CC-47AA-A505-4CD949525A99}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{004E93BC-966F-4A50-809C-51DA2194C638}" = protocol=6 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{03A07D3B-4CBB-4057-BB5F-3CEED0D76BFD}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\datapack\trialsfmx.exe |
"{0727ED4A-965A-4901-9003-B3B794444078}" = protocol=17 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\vivoxvoiceservice.exe |
"{07D3E0E2-8902-420D-A509-576DACA1D6D4}" = protocol=17 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\apb.exe |
"{0B1CDC14-D622-472B-98FE-EACD84AA1C45}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{0CF71B7F-CC25-4CC8-AAD1-4DF39F895A07}" = protocol=17 | dir=in | app=c:\program files (x86)\sega\virtua tennis 4\vt4.exe |
"{123CF7B2-9DB8-42C2-8D39-D501309ECABB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{1AAF9C32-4D5B-4488-9CF4-81CAF6132B9D}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe |
"{1E84A357-6CC6-4A49-831F-0EFF38032DE8}" = protocol=17 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\vivoxvoiceservice.exe |
"{1EDEEDEA-015F-41BF-8AB2-49AD754F90E5}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboarding.exe |
"{22350B20-5696-4EA0-A28D-F2A997B64F2A}" = protocol=6 | dir=in | app=c:\program files (x86)\heroes & generals\live\hng.exe |
"{2263D3B4-DA13-42CA-B9AD-A089DBDBE475}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\rm.exe |
"{22A0C53F-1474-44F3-B72E-13834526CDF9}" = protocol=6 | dir=in | app=c:\new folder\steam.exe |
"{24211B8D-AF2E-4CE6-90A8-A51505C273C4}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{26FB8104-3D1B-4800-9245-8774A6A47B38}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{2773FB83-2B25-4680-9496-47C6AC4BE354}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe |
"{290D073F-4EE6-407E-822C-6221FC8CE663}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{335E2096-9EF3-4C77-BB34-AC29D0FCF0A9}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{33B52DE5-FA33-4DF7-AC6D-B430CAE1268E}" = protocol=6 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"{3A05A4C0-C5C4-41B3-B99E-604C76431F7A}" = protocol=6 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\apb.exe |
"{3A4AB7F7-40F4-4735-9701-EE7BBFDD1DDD}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{3E00215A-4011-4417-9B7B-E83B46A09F19}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\icqm\icq.exe |
"{4597AAE1-D021-4CE5-8130-F5990B38AB00}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{45CC8890-8015-4BB1-B59E-93E0EA860555}" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{49BF9B0A-FEC2-480F-9DCE-68AFE68BE4E1}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{49FA8F88-0EC4-446C-945A-79A008352E2C}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{4E2A2825-7020-47F7-8978-5144ED569E45}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\trials_launcher.exe |
"{4FAE560F-B663-40E1-B3FF-D521CD53339F}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\icqm\icq.exe |
"{526DA60A-305E-40CA-B3D8-F34BC357950F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{53C8416A-D7AE-4622-96D4-AB237565C9FD}" = protocol=17 | dir=in | app=c:\program files (x86)\heroes & generals\live\hng.exe |
"{5495D2E8-F9B9-4FAA-9147-7BAC07DA72EE}" = protocol=17 | dir=in | app=c:\new folder\steam.exe |
"{55D9FB04-60BE-4F31-8DE7-9DAF6D25BF38}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\rm.exe |
"{5BD8DD1E-CCC8-410D-BE7C-AFE0C56B76C1}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{5D05039F-D6A9-4B10-B2CA-A0487078BC0E}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboardinggame.exe |
"{5DDB8071-542D-406A-8633-F6C57CD88666}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\datapack\trialsfmx.exe |
"{5E80D33B-72C5-4AD1-8056-FBAB7D6E0C9C}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{5E9FEF99-D4A6-4D16-A2E4-9977216C7DE9}" = protocol=17 | dir=in | app=c:\users\jakub\desktop\hry\fifa 13\game\fifa13.exe |
"{5F2F1F02-2B63-469E-8FE1-7777DB33965C}" = protocol=6 | dir=in | app=c:\users\jakub\desktop\hry\fifa 13\game\fifa13.exe |
"{62A5CBB1-CA91-44FD-A424-D6D664678F2C}" = protocol=6 | dir=in | app=c:\program files (x86)\sega\virtua tennis 4\vt4.exe |
"{644B5071-241D-469A-82C7-462AAAD4ACBB}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{6858C997-5F44-4609-A3E5-FC342E09DB4F}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{6A66A0B4-1ECB-46C5-B697-6DC8DAF3784B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{70F34A28-15A3-4C40-9BA8-F1C3D0BAE942}" = protocol=17 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{71E44E0E-12D4-400A-92CC-11F25AA6757B}" = protocol=6 | dir=in | app=c:\games\sniper - ghost warrior 2\bin32\sniperghostwarrior2.exe |
"{72105CE5-F92F-4BF5-A8C1-E5289D7BABD4}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{746F4389-C664-49E9-9675-D223B6875C46}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{778EFF87-D531-497F-81A9-5CED66303235}" = protocol=6 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{7997C219-FE00-41F4-A83B-B33D33D24A1F}" = protocol=6 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\vivoxvoiceservice.exe |
"{7D28A5CD-06F9-4CF6-98A4-4A63781FEBAC}" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe |
"{894BB627-AAC2-4249-9E68-50A59E2259AB}" = protocol=6 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\vivoxvoiceservice.exe |
"{898C4004-7940-4EBD-84B2-A74C841B0DA9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{8998D82B-51BF-41CD-A143-17020F8D8438}" = protocol=17 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{8CBE20C3-CB1D-4C8F-BEFC-6DC85BACD1A4}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{922599F5-F653-4056-9D60-606A90F96CF0}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{92B03FFE-A2F6-4B47-B43D-DD62AEF6537C}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"{983288CE-BC25-4C9B-A28D-BAB05B954A74}" = protocol=6 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\launcher\apblauncher.exe |
"{9B99B742-0E40-4518-9B7D-4C1DF010F321}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\umi.exe |
"{9DBBB559-6144-4CEC-A0AE-AAA9C02ADE1A}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 1942\bf1942.exe |
"{A10EAA17-C169-4FA8-822E-A8F8946B8507}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A295592E-8C63-4E4F-861E-8A5710F68B20}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"{A2DFF942-FA5B-4E60-83DC-8D64E571AD6A}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\umi.exe |
"{A310B104-8F3A-44CB-A941-30FED040B368}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{AC8515E0-5A94-41EE-95F9-7BE8E8C517CB}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{AFCE9A91-5786-4E9D-97E7-F78916FB5D0B}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{B0EAC05D-229A-4864-B817-859771E0163F}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{B293924D-BDD6-4AEC-B6B0-3BD776270914}" = protocol=6 | dir=out | app=system |
"{B2A85865-B87C-4BAE-A3C5-9A89F580839E}" = protocol=6 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\apb.exe |
"{B370D51E-2786-4C2E-A794-40F6751882CA}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{B42884AB-F7C8-4D75-AB9B-3CEC023D8313}" = protocol=17 | dir=in | app=c:\program files (x86)\capcom\dead rising 2\deadrising2.exe |
"{B4A35641-D379-4D91-BD4C-ED7397BBBFDA}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 1942\bf1942.exe |
"{B4D22C84-2D05-475B-8BB6-FD08B87360E4}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\trials_launcher.exe |
"{B810529E-A142-4A50-B431-9204B907DF32}" = protocol=17 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\apb.exe |
"{B9801875-470C-4101-80BC-5823BAA4DF9B}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboarding.exe |
"{B999BCED-3625-45A0-B5CA-447672BD4A65}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{BB4E0332-7560-4462-B24F-959781E590EB}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboardinggame.exe |
"{C02F5772-16D4-4D5B-B1AE-E586E85C421F}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{C096D54A-61A4-4E57-8F84-29270ED32D70}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\ngstudio.exe |
"{C1F4E4AE-E402-4756-A927-D6C9DB03DC59}" = protocol=17 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"{C2DCF271-5795-4A59-8136-9AFBE13E7653}" = protocol=17 | dir=out | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{C3C2B66B-13C1-46FE-8BF3-2176C4591A71}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{C63E85C4-38A1-4C58-B446-5CCCDA58D4A3}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{C8E95CF7-7E93-4BF3-9ABD-4FD9F4557A32}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{CE1C76E1-A193-4077-AD2A-D832D83B980F}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{CE590D70-59FA-433C-B941-24AAF837E099}" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe |
"{D59656FF-2C27-44FE-80F3-E309B5E215FB}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{D6DF6A44-9860-43DF-8C0D-4963D95BE732}" = protocol=58 | dir=in | app=system |
"{D72BEF55-9FC2-4DBC-9009-4DB5368C0A5D}" = protocol=6 | dir=in | app=c:\program files (x86)\capcom\dead rising 2\deadrising2.exe |
"{D7FF7448-A5F0-42A0-A275-5C7096C9276C}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{D91660F8-901C-4A2F-A4F0-F47E7FFC6FCF}" = protocol=17 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\launcher\apblauncher.exe |
"{DA3ED773-014C-4A17-B25D-267A686679E7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{DDC26C78-DAD7-4A73-B44D-A48069CA1881}" = protocol=17 | dir=in | app=c:\games\sniper - ghost warrior 2\bin32\sniperghostwarrior2.exe |
"{E0B72411-E96B-4A81-BADE-75E4969789CA}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{E35B039C-4479-4BF6-B58C-E916A0079CA4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E3F24A63-34D2-40E9-81B6-03FFE4CFD8AA}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{E68EF4E9-0037-4011-8384-44E0F9A99680}" = protocol=6 | dir=out | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{E855C46E-D8CA-477C-8F3A-18C14C7BA6D5}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{E90D1138-18A7-4CC4-BF91-E36F22278D9A}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{E960D244-F00E-4C7D-98C5-15E3B3C356A2}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{F4F29817-F051-4A74-884E-3140EC5C71B8}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\ngstudio.exe |
"{F5351E07-0184-46F1-8A78-8EE31AD83266}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F63B0F2E-36BD-4C4A-A4EA-26AD58C66195}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{F7965FEE-D9FC-47A5-9E75-2F344E0B7C8A}" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{F7D3030F-E7B4-4227-BD32-3A00D2AF9E61}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{F7DDA5FD-522A-47BB-B572-BD37B201AA0C}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe |
"{FAAB6B78-D1E3-49FF-A84E-8BF270D3F4B4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{0B4A16B0-36A1-4A2E-BEE3-36BA58DB4DEF}C:\program files (x86)\mirillis\action!\action.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mirillis\action!\action.exe |
"TCP Query User{1416F9FF-E212-4941-92F9-B3741B498402}C:\program files (x86)\ubisoft\driver san francisco\driver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\driver san francisco\driver.exe |
"TCP Query User{25F2F824-BCAE-4B6A-B44D-941AFBB6C50F}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"TCP Query User{2A5DC43F-BFCE-4087-92B3-4E46506915FF}C:\nexon\combat arms eu\engine.exe" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\engine.exe |
"TCP Query User{326364CE-EB2A-4442-85CA-F458E4160EB8}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"TCP Query User{39BD072C-66BB-4145-8B3F-E946249E37B4}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"TCP Query User{4211DD3F-6061-4C47-8F04-512B2F5B258A}C:\windows\kmsemulator.exe" = protocol=6 | dir=in | app=c:\windows\kmsemulator.exe |
"TCP Query User{573FFD13-4613-462A-B585-882CE6689177}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"TCP Query User{66335623-5E44-4EEF-B909-EA9AF0AE5753}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"TCP Query User{6B0E8D8B-8971-431A-B9DE-41313A066FE8}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{D81B69C3-3B2F-4F40-9AC9-F493DDA06068}C:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe |
"TCP Query User{F3ACD368-6E32-439C-8145-0F41829DF371}C:\programdata\kaspersky lab setup files\setup.exe" = protocol=6 | dir=in | app=c:\programdata\kaspersky lab setup files\setup.exe |
"UDP Query User{1C0D323A-C9E2-4FE1-AB68-288027ACAA80}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{2DFB98A6-677F-4A7C-8ACB-C23477EA262A}C:\program files (x86)\ubisoft\driver san francisco\driver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\driver san francisco\driver.exe |
"UDP Query User{4615A58A-9C21-4D5F-A8D7-849078FAA181}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"UDP Query User{6EA23C89-7CFB-4210-8EC7-477C47EA819E}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"UDP Query User{74012E81-34B5-4F1B-86C6-4F14CDBFE81E}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"UDP Query User{74118394-8B32-4075-8EB4-643DC58438FF}C:\nexon\combat arms eu\engine.exe" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\engine.exe |
"UDP Query User{7ECB4BF4-9BA8-4B77-9C26-278AA54198A2}C:\windows\kmsemulator.exe" = protocol=17 | dir=in | app=c:\windows\kmsemulator.exe |
"UDP Query User{A9C29F31-9419-4308-8243-82CD0AEDE70C}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{CD0FA8F0-9C78-4C3E-917B-BE5F221A5AC4}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{D252BDA8-C29F-4B48-935A-580307251C96}C:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe |
"UDP Query User{D7012776-77EF-43BF-8F30-9BFDA5E42171}C:\programdata\kaspersky lab setup files\setup.exe" = protocol=17 | dir=in | app=c:\programdata\kaspersky lab setup files\setup.exe |
"UDP Query User{EFBFCF72-1415-4129-B1FD-8F9695929553}C:\program files (x86)\mirillis\action!\action.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mirillis\action!\action.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{230D1595-57DA-4933-8C4E-375797EBB7E1}" = Bluetooth Win7 Suite (64)
"{26A24AE4-039D-4CA4-87B4-2F86416022FF}" = Java(TM) 6 Update 22 (64-bit)
"{2748FDE2-7BA8-1D20-11A2-FF01CEB009A5}" = AMD Catalyst Install Manager
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{55B348BE-A3BE-9AE7-58BD-BE45B9A28F82}" = AMD Media Foundation Decoders
"{5B73E1AA-CA9D-E76A-2F2D-E0EFB41CE087}" = AMD Accelerated Video Transcoding
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-0015-0405-1000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0015-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0405-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0016-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0405-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0018-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0405-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-0019-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0405-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001A-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0405-1000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001B-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0405-1000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{AEC2C00D-1E7E-45E3-9058-81EA2446B3CD}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUSR_{70A3169E-288F-454F-A08D-20DF66639B50}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-1000-0000000FF1CE}_Office14.PROPLUSR_{0242505C-4E90-407F-9299-B5B275F50D86}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-041B-1000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-001F-041B-1000-0000000FF1CE}_Office14.PROPLUSR_{4B806706-B352-42E8-8C8B-5CEBCEDBC4E0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0405-1000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-002C-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{715203B3-AD16-41A4-B13C-E1065EAB8963}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010
"{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{E8B6D35B-0B6F-4DCE-9493-859BF3809A7F}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0043-0405-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Czech) 2010
"{90140000-0043-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{15D45352-C443-406A-9DF2-EF4A750A40CF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0044-0405-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-0044-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0405-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-006E-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{4B8654FE-410D-462C-9B3C-09D031BF4534}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0405-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00A1-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00BA-0405-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{90140000-00BA-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{91140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B01875AA-1BD4-5B9F-D2B9-23D909F4280B}" = AMD Drag and Drop Transcoding
"{B962DFD6-45C1-49D8-AEBA-197BF6576D29}" = HP Wireless Assistant
"{C2A9F89A-E657-7E78-CF51-5C8934E1D935}" = ccc-utility64
"{CC1FE395-D90F-712C-E013-EBDCC30433B1}" = AMD Fuel
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{E4F5E48E-7155-4CF9-88CD-7F377EC9AC54}" = Bonjour
"{E54A949B-C4AE-28B6-EC97-FCB9E402D338}" = ccc-utility64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.23
"ImagenomicPortraiturePlugin" = Imagenomic Portraiture 2.1 Plug-in (build 2105)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Office14.PROPLUSR" = Microsoft Office Professional Plus 2010
"Speccy" = Speccy
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WhoCrashed_is1" = WhoCrashed 4.02
"WinRAR archiver" = WinRAR
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{03046EBB-CB7C-4B98-BEFB-690EB955DA22}" = HP Setup
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{07D857B8-C956-401D-BC8F-EDA8459AF037}" = Trials Evolution Gold Edition
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{09BC92CC-9D24-28EA-6CE5-7B3400650601}" = CCC Help English
"{0ACC2993-2058-4BE7-9A92-9DCDAA9B3412}" = LogMeIn Hamachi
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{11F2C5EC-35AA-7237-B62B-A4F041859C2A}" = CCC Help Spanish
"{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
"{197816C4-9BF5-4633-BB84-63F03902544E}" = FiatECUScan
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1" = Euro Truck Simulator 2
"{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
"{1EE9BBA1-312F-4EC0-9DEA-A8FE22BBABAA}_is1" = 20Dollars2Surf 1.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21045E2A-1BD4-44B3-840B-A0857B4DEE55}" = Silicon Laboratories CP210x VCP Drivers for Windows XP/2003 Server/Vista/7
"{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
"{229EDE35-4677-BDE6-70ED-A5A4C711DDC3}" = CCC Help Norwegian
"{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 22
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25
"{27B56E28-94B2-BDF8-D209-EC8D2FF4838E}" = Catalyst Control Center Graphics Previews Common
"{284BFDBC-DAC6-43EC-85A8-E1CEC0D3A114}" = Pinnacle Studio 16
"{2BF8B295-A214-42AC-B4EC-2AE15E08B0E7}" = HP Documentation
"{2E52FB79-7F60-4AD7-B946-5ED18B4F274E}" = ShaunWhiteSnowboarding
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{30BA90A9-E6B4-4FFC-8BC5-B7F2E014F432}" = Hitman Blood Money
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{33D4FA83-02C0-93B3-08ED-5D7378930CFA}" = CCC Help Turkish
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{370B8E47-4A33-E9F7-B04A-424A041D23B0}" = CCC Help Turkish
"{37D0F3C2-8FFD-134D-FBDF-2D711E169D78}" = AMD VISION Engine Control Center
"{387A7BC7-577B-4FC9-8337-4DB8F7D34E55}" = MotoGP(TM)13
"{3CF3DEF4-ED15-4F7B-9320-C3E1081EA4DA}" = SlimDrivers
"{3D2253BD-8907-4A0E-B6D1-EBB9723A70B3}_is1" = CPU Časomíra 2.0
"{41564952-412D-5637-00A7-A758B70C0201}" = Avira SearchFree Toolbar plus Web Protection
"{42FECCEF-63CD-DF98-D6BC-DDBB27E4A580}" = CCC Help Japanese
"{4343080E-91B7-4388-AB4D-FB1000008200}" = Dead Rising 2
"{44039779-BEA6-BF97-EC73-71FC250D1E42}" = CCC Help Dutch
"{44E28991-33C8-4F24-8506-64BA3FB259D1}" = Silicon Laboratories CP210x VCP Drivers for Windows XP/2003 Server/Vista/7_2 (c:\SiLabs\MCU\CP210x\Windows_XP_S2K3_Vista_7_2)
"{45160C56-61F6-468D-A5B0-9FAE2C3E68D6}" = Catalyst Control Center - Branding
"{46594DA4-2D0A-B2D4-C0E0-A5CCA3260025}" = CCC Help Hungarian
"{485B8152-C59F-8569-15BC-46BDA2A1E4A9}" = CCC Help Polish
"{490F47E6-585C-531A-1BF8-4DE44ED9AED7}" = CCC Help Russian
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B784CE7-7CDB-4AF1-B636-2DC3EA51EA87}" = MotoGP(TM)13
"{4BBC41BE-C6DB-AFDC-E1D4-93D39A7DCDCC}" = Catalyst Control Center Localization All
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6
"{50F87176-7DB3-4C75-D9DC-25CB4561D0F8}" = CCC Help Danish
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{52E706AA-B4E9-423A-1651-62E61E06DF9A}" = CCC Help Greek
"{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™
"{53B17A98-5BF0-40BC-AAFF-850A357975AC}" = HP Quick Launch
"{53FAB161-9538-683D-D105-99E734B5FBE6}" = CCC Help Portuguese
"{56C16784-3EC3-CE94-74D1-7D9648DF4B4C}" = CCC Help German
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5B8A0375-B53A-4A67-9DF6-021E5CEFF738}_is1" = Prototype 2 verze 1.0.0.1.
"{5BE7BD06-512B-43bf-AD78-3BD2A5F5F7B3}" = Battlefield 1942™
"{5E627606-53B9-42D1-97E1-D03F6229E248}" = Windows Live UX Platform Language Pack
"{5FB51C12-62AE-0990-E419-C6F62B776E5C}" = CCC Help Portuguese
"{63059735-CA97-FDFB-0E7A-3B8D81572EFD}" = Application Profiles
"{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX
"{6491AB99-A11E-41FD-A5E7-32DE8A097B8E}" = Windows Live Essentials
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{66B46617-A156-F25B-3CC0-5E46343AEA95}" = CCC Help Thai
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6B04DAD8-71E6-A4D8-2B96-58C2F3534941}" = CCC Help Norwegian
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}" = AMD System Monitor
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{6F37D92B-41AA-44B7-80D2-457ABDE11896}" = Windows Live Photo Common
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App (HP Games)
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{75C3C9C0-6CE6-42FA-A0E9-658E8F539124}" = PCMark 7
"{763360F7-5BE2-00D5-34F9-E2567656B98B}" = CCC Help Japanese
"{779D8CA1-03DD-4AD4-B21F-3E20BFE7BEDE}" = SketchUp 8
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{78F4E027-355C-45C0-90DC-F89DFC618761}_is1" = Thread Manager 2.4.0.0
"{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World
"{7D0F4ACC-698A-41B9-B1E2-17594988FBEF}" = Pinnacle Studio 16 - Standard Content Pack
"{80F5C543-1B9F-483E-8C81-F97F30019C2B}_is1" = "Sniper - Ghost Warrior 2"
"{81543139-18AE-703B-D3B1-F6B3A0CB2EAC}" = CCC Help English
"{827B97A9-B347-4110-9F89-37AF2B758F94}" = NHL™ 09
"{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1" = AION Free-to-Play version 1.0
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{853A4763-6643-4604-8D64-28BDD8925F4C}" = Apple Application Support
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{88C4D8A6-9954-46A0-965D-92E55DAB8734}" = Premium Pack Volumes 1-2
"{88F0F4FF-B514-4E32-9C17-CAF96D60EAFC}" = Razer Game Booster
"{89B622E5-326B-6302-982A-BFC17A112B97}_is1" = GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze version for Windows
"{89EEB101-A1C1-00B3-94C7-5F7864C8A618}" = CCC Help Greek
"{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}" = Splash PRO EX
"{8DC069E7-893C-41E1-9442-DE89FEC33371}" = Xobni Core
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{8FA20FAC-719F-7CCD-5790-6B59D691C370}" = CCC Help Chinese Traditional
"{8FB91814-FE42-4B62-9B54-4B677A420715}_is1" = CLEO v3.0.950
"{915726DF-7891-444A-AA03-0DF1D64F561A}" = L.A. Noire
"{91E034D3-ACE1-D27A-B9E8-41468391C923}" = CCC Help Czech
"{92C0275C-86EA-4FA4-86E3-7C90C6F640F2}_is1" = Mafia II Kompletní Edice verze 1.4
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{940B28E7-320B-5AC8-0A8A-32D6A7B404A1}" = CCC Help Swedish
"{962F1328-15D3-0A6A-E8E2-A0BE4FB546AB}" = CCC Help Swedish
"{96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3}" = Google Earth
"{96F42B8E-0963-4063-B712-4675D704A628}" = CCC Help Thai
"{97F77D62-5110-4FA3-A2D3-410B92D31199}" = Windows Live Fotogaléria
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{994D5DF7-DA32-2F0E-3333-B06888235CF3}" = CCC Help Spanish
"{99C382AB-CA1D-8577-66D3-AA850DB5FD00}" = CCC Help Korean
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9AF7D6F5-50A5-432C-9F7B-83BCE03B11A0}" = SpinTires Tech Demo (June 060613)
"{9B28DDFC-B15A-F031-E5B2-4FA2E708521B}" = CCC Help Chinese Standard
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C2BA00E-0D9B-0769-5708-ED222A7886E3}" = CCC Help Danish
"{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1" = Gameforge Live 1.0 "Legend"
"{9D84E30F-6757-4A56-BCB5-51ADE3AE8631}" = BlueStacks Notification Center
"{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}" = FIFA 13
"{A312ABBC-E4A0-4595-BB69-95AFF48A9838}" = HP Software Framework
"{A59E89B3-B241-4476-CB7B-30D5D79D9F07}" = CCC Help Polish
"{A68C4D16-8046-5333-CB64-5E622C795785}" = CCC Help Dutch
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted
"{AEDBD563-24BB-4EE3-8366-A654DAC2D988}" = Mirror's Edge™
"{B1557834-5188-706D-1379-D81062EE026E}" = CCC Help Chinese Traditional
"{B1B6F164-18C3-5F8E-686A-6572BC14FC93}" = CCC Help Korean
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B810D8-DFD6-TmbRaid-89A5-CC4D47756DAF}_is1" = Tomb Raider version 5.1
"{B92132C5-5722-82AA-B510-D73EF9A06123}" = CCC Help French
"{B97E3520-C726-475E-BC0C-7561952633AB}" = HP Power Manager
"{BA0601E1-B65C-11D5-80A9-0000B494D9A6}" = PC Booster
"{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo
"{BE0B654E-FC60-40AE-F60B-06526508B5FD}" = CCC Help Italian
"{BE0E1491-B2DC-6447-217C-342D8F7100EA}" = CCC Help Czech
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Qualcomm Atheros Driver Installation Program
"{C3F73E70-FB24-3D11-5D35-13E076B52D82}" = CCC Help Russian
"{C5AB1EC3-5021-4B1F-0088-ED81A037473F}" = NHL06 DL PC Demo
"{C5EADF55-3B49-B545-E16F-402B443DDC77}" = CCC Help German
"{C6432960-7871-B04D-B121-7DB2DA88CCE4}" = ccc-core-static
"{C7231F7C-6530-4E65-ADA6-5B392CF5BEB1}" = Recovery Manager
"{CBDFF724-E925-2964-E647-0A83D2F9165C}" = CCC Help French
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.5.1 Game
"{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
"{D4329609-4102-4F8C-B83F-7FE024EEA314}_is1" = Dead Space 3 CZ v1.0
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D5341564-7B93-ADAC-E737-C24AA85CC5FF}" = CCC Help Chinese Standard
"{DB52432E-3AD8-41A5-A586-0F065FB6A31E}" = Game Cam
"{DC8FE210-4C59-775C-18A6-453D465C62F3}" = CCC Help Hungarian
"{DDA52D9D-A313-3CD4-F0FF-60FF8B26C6F3}" = Catalyst Control Center InstallProxy
"{DF2035BE-5820-4965-BD97-7FAF8D4A7879}" = Microsoft_VC90_CRT_x86
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E311C37C-B86F-B94B-C0D3-4AEB0A78CE05}" = CCC Help Italian
"{E3D181F8-246B-497F-945E-6DB98CBA6677}" = Hollywood FX Volumes 1-3
"{E3FB1E5A-1C24-D581-6BC8-6F8AC2D343AD}" = CCC Help Finnish
"{E5F05232-96B6-4552-A480-785A60A94B21}" = System Requirements Lab CYRI
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E96CAA2A-0244-4A2A-8403-0C3C9534778B}" = ESU for Microsoft Windows 7 SP1
"{EA92CB68-9667-343A-1F53-B039583F2A3A}" = Catalyst Control Center InstallProxy
"{EB38C3E0-4863-3123-9114-5BE86EC8E5C7}" = Google Talk Plugin
"{ED1BD69A-07E3-418C-91F1-D856582581BF}" = HP On Screen Display
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1" = War Thunder Launcher 1.0.1.246
"{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E79BE5-20F5-82F4-6579-2A91AED3F066}" = Catalyst Control Center Localization All
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1886CD7-9F73-417A-92E9-7E0AB0F0E099}" = Pinnacle Studio 16 - Install Manager
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{F4E2CBB0-B61E-4738-B3B2-AAFF61F1C828}" = Baku
"{F761359C-9CED-45AE-9A51-9D6605CD55C4}" = Evernote v. 4.2.2
"{FA8FCABA-6FAD-34D0-E8BA-C8A29EEBD3CE}" = CCC Help Finnish
"{FB3D07AE-73D0-47A9-AC12-6F50BF8B6202}" = Windows Live Movie Maker
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Any GIF Animator_is1" = Any GIF Animator 2.7
"Avira AntiVir Desktop" = Avira Free Antivirus
"AVStreamer Server" = AVStreamer Server 1.14
"Bandicam" = Bandicam
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"Clownfish" = Clownfish for Skype
"Combat Arms EU" = Combat Arms EU
"CrystalDiskInfo_is1" = CrystalDiskInfo 5.6.1 Shizuku Edition
"CZ SK IPTV v2.0.3" = CZ SK IPTV v2.0.3
"Czech Soccer Manager 2002 FE" = Czech Soccer Manager 2002 FE
"DAEMON Tools Lite" = DAEMON Tools Lite
"Defraggler" = Defraggler (remove only)
"Dxtory2.0_is1" = Dxtory 2.0.108
"ESET Online Scanner" = ESET Online Scanner v3
"F1 2011_is1" = F1 2011 1.0
"F1 Race Stars_is1" = F1 Race Stars
"FerrariVR" = Ferrari Virtual Race (remove only)
"ffdshow_is1" = ffdshow v1.2.4422 [2012-04-09]
"FIFA 13 PC Scoreboard Switcher 0.3" = FIFA 13 PC Scoreboard Switcher 0.3
"FormatFactory" = FormatFactory 3.00
"Fraps" = Fraps (remove only)
"FreeHDSport TV" = FreeHDSport TV
"Full Uninstall_is1" = Full Uninstall version 2.0
"GadgetPack" = GadgetPack (remove only)
"Game Booster_is1" = Game Booster 3
"GFWL_{4343080E-91B7-4388-AB4D-FB1000008200}" = Dead Rising 2
"GFWL_{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™
"Google Chrome" = Google Chrome
"HaaliMkx" = Haali Media Splitter
"HD Tune Pro_is1" = HD Tune Pro 4.50
"HeavyLoad_is1" = HeavyLoad V3.2
"Heroes & Generals" = Heroes & Generals
"Hitman Absolution_is1" = Hitman Absolution
"Hitman Sniper Challenge_is1" = Hitman Sniper Challenge v1.0 / RePack by R.G. World Games
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{07D857B8-C956-401D-BC8F-EDA8459AF037}" = Trials Evolution Gold Edition
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Man City FC" = Man City FC
"Media Player - Codec Pack" = Media Player Codec Pack 4.2.4
"Minecraft1.6.2" = Minecraft1.6.2
"Mirillis Action!" = Action!
"Mixxx (1.11.0)" = Mixxx 1.11.0
"Mozilla Firefox 20.0.1 (x86 cs)" = Mozilla Firefox 20.0.1 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English)
"MTA:SA 1.3" = MTA:SA v1.3.2
"OpenAL" = OpenAL
"Opera 12.15.1748" = Opera 12.15
"Origin" = Origin
"PAYDAY 2_is1" = PAYDAY 2
"Payday The Heist (c) OVERKILL Software_is1" = Payday The Heist (c) OVERKILL Software version 1
"pcsx2-r5350" = PCSX2 - Playstation 2 Emulator
"PDF Complete" = PDF Complete Special Edition
"PunkBusterSvc" = PunkBuster Services
"Race Driver - GRID 2_is1" = Race Driver - GRID 2 1.0.82.5097
"Rockstar Games Social Club" = Rockstar Games Social Club
"SLABCOMM&10C4&EA60" = Silicon Laboratories CP210x USB to UART Bridge (Driver Removal)
"Sleeping Dogs_is1" = Sleeping Dogs v1.4
"SnadBoy's Revelation v2" = SnadBoy's Revelation v2
"Sniper Elite V2_is1" = Sniper Elite V2 1.0
"Spec Ops The Line_is1" = Spec Ops The Line
"SpeedFan" = SpeedFan (remove only)
"SSF Realism Mod" = SSF Realism Mod
"Steam App 113400" = APB Reloaded
"SWAT 4 1.1" = SWAT 4 1.1
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TeamViewer 8" = TeamViewer 8
"TechPowerUp GPU-Z" = TechPowerUp GPU-Z
"Test Drive Unlimited 2_is1" = Test Drive Unlimited 2
"Trials Evolution_is1" = Trials Evolution
"Uplay" = Uplay
"uTorrent" = µTorrent
"VLC media player" = VLC media player 2.0.8
"WildTangent hp Master Uninstall" = HP Games
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR 4.20 (32-bit)
"WinZipper" = WinZipper
"WT087328" = Blackhawk Striker 2
"WT087330" = Bounce Symphony
"WT087335" = Build-a-lot 2
"WT087343" = Dora's World Adventure
"WT087393" = Mah Jong Medley
"WT087394" = Penguins!
"WT087395" = Poker Superstars III
"WT087396" = Polar Bowler
"WT087397" = Polar Golfer
"WT087536" = Diner Dash 2 Restaurant Rescue
"WT089307" = Virtual Villagers 4 - The Tree of Life
"WT089308" = Blasterball 3
"WT089328" = Farm Frenzy
"WT089359" = Cake Mania
"WT089362" = Agatha Christie - Peril at End House
"WT089453" = Bejeweled 2 Deluxe
"WT089454" = Chuzzle Deluxe
"WT089455" = Zuma Deluxe
"WT089457" = Slingo Supreme
"WT089458" = Plants vs. Zombies - Game of the Year
"WT089470" = FATE - The Traitor Soul
"WT089484" = Namco All-Stars PAC-MAN
"WT089496" = Mystery P.I. - Stolen in San Francisco
"WT089498" = Bejeweled 3
"WT089504" = Final Drive Nitro
"x264vfw" = x264vfw - H.264/MPEG-4 AVC codec (remove only)
"Xvid_is1" = Xvid 1.2.2 final uninstall
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"GamersFirst LIVE!" = GamersFirst LIVE!
"SeznamInstall" = Seznam Software
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 4.9.2013 9:02:53 | Computer Name = JAKUB-HP | Source = Office Software Protection Platform Service | ID = 8200
Description = License acquisition failure details. hr=0xC004C003
Error - 4.9.2013 9:02:53 | Computer Name = JAKUB-HP | Source = Office Software Protection Platform Service | ID = 1012
Description = Acquisition of Product Certificate failed. hr=0xC004C003 Sku Id=42cbf3f6-4d5e-49c6-991a-0d99b8429a6d
Error - 4.9.2013 14:36:46 | Computer Name = JAKUB-HP | Source = Application Error | ID = 1000
Description = Název chybující aplikace: rublik.exe, verze: 0.0.0.0, časové razítko:
0x51dd55c5 Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód
výjimky: 0xc0000005 Posun chyby: 0x00000000 ID chybujícího procesu: 0x6c4 Čas spuštění
chybující aplikace: 0x01cea99db00e18e7 Cesta k chybující aplikaci: C:\Program Files
(x86)\Rublik\rublik.exe Cesta k chybujícímu modulu: unknown ID zprávy: f34edd6a-1590-11e3-b3cd-2c768add0320
Error - 4.9.2013 14:37:00 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
Error - 5.9.2013 11:45:10 | Computer Name = JAKUB-HP | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: c:\program files (x86)\r.g.
catalyst\F1 2011\CustomActionOnFinishInst.exe. Chyba v souboru manifestu nebo zásad
c:\program files (x86)\r.g. catalyst\F1 2011\CustomActionOnFinishInst.exe na řádku
1. V manifestu není povoleno více prvků requestedPrivileges.
Error - 6.9.2013 9:13:08 | Computer Name = JAKUB-HP | Source = Application Error | ID = 1000
Description = Název chybující aplikace: rublik.exe, verze: 0.0.0.0, časové razítko:
0x51dd55c5 Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód
výjimky: 0xc0000005 Posun chyby: 0x00000000 ID chybujícího procesu: 0xb60 Čas spuštění
chybující aplikace: 0x01ceab02ceda8d4f Cesta k chybující aplikaci: C:\Program Files
(x86)\Rublik\rublik.exe Cesta k chybujícímu modulu: unknown ID zprávy: 1266f5f3-16f6-11e3-be70-2c768add0320
Error - 6.9.2013 9:13:52 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
Error - 6.9.2013 11:06:44 | Computer Name = JAKUB-HP | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: c:\program files (x86)\r.g.
catalyst\F1 2011\CustomActionOnFinishInst.exe. Chyba v souboru manifestu nebo zásad
c:\program files (x86)\r.g. catalyst\F1 2011\CustomActionOnFinishInst.exe na řádku
1. V manifestu není povoleno více prvků requestedPrivileges.
Error - 7.9.2013 2:14:22 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
Error - 7.9.2013 3:14:33 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
[ Hewlett-Packard Events ]
Error - 24.2.2013 15:15:47 | Computer Name = JAKUB-HP | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\021324081536.xml
File not created by asset agent
Error - 3.3.2013 10:42:25 | Computer Name = JAKUB-HP | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\031303034217.xml
File not created by asset agent
[ HP Wireless Assistant Events ]
Error - 3.7.2013 5:41:10 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 5:41:14 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 5:41:15 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:27 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:29 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:30 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:32 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:33 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:35 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:37 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
[ System Events ]
Error - 7.9.2013 3:44:33 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:11 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:11 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:11 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:39 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:39 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:39 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:50:09 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:50:09 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:50:09 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\JAKUB\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,75 Gb Total Physical Memory | 2,43 Gb Available Physical Memory | 64,91% Memory free
9,36 Gb Paging File | 8,05 Gb Available in Paging File | 85,98% Paging File free
Paging file location(s): C:\pagefile.sys 5751 5751 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 449,46 Gb Total Space | 88,23 Gb Free Space | 19,63% Space Free | Partition Type: NTFS
Drive D: | 16,01 Gb Total Space | 1,95 Gb Free Space | 12,15% Space Free | Partition Type: NTFS
Computer Name: JAKUB-HP | User Name: JAKUB | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
[HKEY_USERS\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe" = [String data over 1000 bytes]
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe" = [String data over 1000 bytes]
"C:\Nexon\Combat Arms EU\CombatArms.exe" = C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe -- (Nexon)
"C:\Nexon\Combat Arms EU\Engine.exe" = C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe -- (Nexon)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{011D652F-9FA2-490D-A1E3-79A48047E920}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{04EBF300-F61E-4E74-809D-FA8ADB226E75}" = lport=137 | protocol=17 | dir=in | app=system |
"{0B6ABB5A-1A2E-4980-9F28-8147DC616C66}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{12711470-AC3A-413C-9AE0-740C79239DD3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{1F048509-D7A4-40FA-85BD-DF7F5C3D99B8}" = lport=11155 | protocol=6 | dir=in | name=tunngle |
"{21D3D8CA-7EF7-40AC-96A3-ED2C3DCE0590}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{26A2327A-AE55-46AD-8BB5-DA554173DF39}" = lport=138 | protocol=17 | dir=in | app=system |
"{2B42EF2B-ADD0-4CF8-A2C6-9135E1E1FAA7}" = rport=445 | protocol=6 | dir=out | app=system |
"{36F24395-8D72-44DE-BEE2-F17A91EDD4A4}" = lport=139 | protocol=6 | dir=in | app=system |
"{398AD266-7217-45CD-8108-93F7E9465542}" = rport=10243 | protocol=6 | dir=out | app=system |
"{425EF32E-8E66-4633-8865-B823ABDF76E3}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{47B81C66-E577-42B3-B114-5EB53AC3A893}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4A2C7C37-4351-4456-BC9B-4BBBA883D336}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{62EF82A8-124F-4914-A36C-388E400C1681}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe |
"{725BC0F8-A032-4152-A695-954CB9ED7FF0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7AFB1F74-1450-457B-83E6-DE2384195A12}" = rport=138 | protocol=17 | dir=out | app=system |
"{887A433C-9137-4B65-A4B6-7819C5581762}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8A97F7F3-D50E-45B2-9A03-7B767391650A}" = rport=137 | protocol=17 | dir=out | app=system |
"{A01E5AC7-E67F-4F12-AF6E-8743CBF08CD8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{A5E229A6-EA4B-4870-BB44-4D76F90D45D1}" = rport=139 | protocol=6 | dir=out | app=system |
"{B3291B93-7804-485D-9FD2-3E1E54319625}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{C6FE485D-2BC2-453D-96C4-4FF7B9EC248B}" = lport=10243 | protocol=6 | dir=in | app=system |
"{CD0FE5FA-C67E-4D72-8DCC-6363053FF1F6}" = lport=445 | protocol=6 | dir=in | app=system |
"{DAE06B4B-F84E-4DE7-A111-D05AE933396E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F1A731B7-F4CC-47AA-A505-4CD949525A99}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{004E93BC-966F-4A50-809C-51DA2194C638}" = protocol=6 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{03A07D3B-4CBB-4057-BB5F-3CEED0D76BFD}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\datapack\trialsfmx.exe |
"{0727ED4A-965A-4901-9003-B3B794444078}" = protocol=17 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\vivoxvoiceservice.exe |
"{07D3E0E2-8902-420D-A509-576DACA1D6D4}" = protocol=17 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\apb.exe |
"{0B1CDC14-D622-472B-98FE-EACD84AA1C45}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{0CF71B7F-CC25-4CC8-AAD1-4DF39F895A07}" = protocol=17 | dir=in | app=c:\program files (x86)\sega\virtua tennis 4\vt4.exe |
"{123CF7B2-9DB8-42C2-8D39-D501309ECABB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{1AAF9C32-4D5B-4488-9CF4-81CAF6132B9D}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe |
"{1E84A357-6CC6-4A49-831F-0EFF38032DE8}" = protocol=17 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\vivoxvoiceservice.exe |
"{1EDEEDEA-015F-41BF-8AB2-49AD754F90E5}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboarding.exe |
"{22350B20-5696-4EA0-A28D-F2A997B64F2A}" = protocol=6 | dir=in | app=c:\program files (x86)\heroes & generals\live\hng.exe |
"{2263D3B4-DA13-42CA-B9AD-A089DBDBE475}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\rm.exe |
"{22A0C53F-1474-44F3-B72E-13834526CDF9}" = protocol=6 | dir=in | app=c:\new folder\steam.exe |
"{24211B8D-AF2E-4CE6-90A8-A51505C273C4}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{26FB8104-3D1B-4800-9245-8774A6A47B38}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{2773FB83-2B25-4680-9496-47C6AC4BE354}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe |
"{290D073F-4EE6-407E-822C-6221FC8CE663}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{335E2096-9EF3-4C77-BB34-AC29D0FCF0A9}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{33B52DE5-FA33-4DF7-AC6D-B430CAE1268E}" = protocol=6 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"{3A05A4C0-C5C4-41B3-B99E-604C76431F7A}" = protocol=6 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\apb.exe |
"{3A4AB7F7-40F4-4735-9701-EE7BBFDD1DDD}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{3E00215A-4011-4417-9B7B-E83B46A09F19}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\icqm\icq.exe |
"{4597AAE1-D021-4CE5-8130-F5990B38AB00}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{45CC8890-8015-4BB1-B59E-93E0EA860555}" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{49BF9B0A-FEC2-480F-9DCE-68AFE68BE4E1}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{49FA8F88-0EC4-446C-945A-79A008352E2C}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{4E2A2825-7020-47F7-8978-5144ED569E45}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\trials_launcher.exe |
"{4FAE560F-B663-40E1-B3FF-D521CD53339F}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\icqm\icq.exe |
"{526DA60A-305E-40CA-B3D8-F34BC357950F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{53C8416A-D7AE-4622-96D4-AB237565C9FD}" = protocol=17 | dir=in | app=c:\program files (x86)\heroes & generals\live\hng.exe |
"{5495D2E8-F9B9-4FAA-9147-7BAC07DA72EE}" = protocol=17 | dir=in | app=c:\new folder\steam.exe |
"{55D9FB04-60BE-4F31-8DE7-9DAF6D25BF38}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\rm.exe |
"{5BD8DD1E-CCC8-410D-BE7C-AFE0C56B76C1}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{5D05039F-D6A9-4B10-B2CA-A0487078BC0E}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboardinggame.exe |
"{5DDB8071-542D-406A-8633-F6C57CD88666}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\datapack\trialsfmx.exe |
"{5E80D33B-72C5-4AD1-8056-FBAB7D6E0C9C}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{5E9FEF99-D4A6-4D16-A2E4-9977216C7DE9}" = protocol=17 | dir=in | app=c:\users\jakub\desktop\hry\fifa 13\game\fifa13.exe |
"{5F2F1F02-2B63-469E-8FE1-7777DB33965C}" = protocol=6 | dir=in | app=c:\users\jakub\desktop\hry\fifa 13\game\fifa13.exe |
"{62A5CBB1-CA91-44FD-A424-D6D664678F2C}" = protocol=6 | dir=in | app=c:\program files (x86)\sega\virtua tennis 4\vt4.exe |
"{644B5071-241D-469A-82C7-462AAAD4ACBB}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{6858C997-5F44-4609-A3E5-FC342E09DB4F}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{6A66A0B4-1ECB-46C5-B697-6DC8DAF3784B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{70F34A28-15A3-4C40-9BA8-F1C3D0BAE942}" = protocol=17 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{71E44E0E-12D4-400A-92CC-11F25AA6757B}" = protocol=6 | dir=in | app=c:\games\sniper - ghost warrior 2\bin32\sniperghostwarrior2.exe |
"{72105CE5-F92F-4BF5-A8C1-E5289D7BABD4}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{746F4389-C664-49E9-9675-D223B6875C46}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{778EFF87-D531-497F-81A9-5CED66303235}" = protocol=6 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{7997C219-FE00-41F4-A83B-B33D33D24A1F}" = protocol=6 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\vivoxvoiceservice.exe |
"{7D28A5CD-06F9-4CF6-98A4-4A63781FEBAC}" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe |
"{894BB627-AAC2-4249-9E68-50A59E2259AB}" = protocol=6 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\vivoxvoiceservice.exe |
"{898C4004-7940-4EBD-84B2-A74C841B0DA9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{8998D82B-51BF-41CD-A143-17020F8D8438}" = protocol=17 | dir=in | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{8CBE20C3-CB1D-4C8F-BEFC-6DC85BACD1A4}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{922599F5-F653-4056-9D60-606A90F96CF0}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{92B03FFE-A2F6-4B47-B43D-DD62AEF6537C}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"{983288CE-BC25-4C9B-A28D-BAB05B954A74}" = protocol=6 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\launcher\apblauncher.exe |
"{9B99B742-0E40-4518-9B7D-4C1DF010F321}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\umi.exe |
"{9DBBB559-6144-4CEC-A0AE-AAA9C02ADE1A}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 1942\bf1942.exe |
"{A10EAA17-C169-4FA8-822E-A8F8946B8507}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A295592E-8C63-4E4F-861E-8A5710F68B20}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"{A2DFF942-FA5B-4E60-83DC-8D64E571AD6A}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\umi.exe |
"{A310B104-8F3A-44CB-A941-30FED040B368}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{AC8515E0-5A94-41EE-95F9-7BE8E8C517CB}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{AFCE9A91-5786-4E9D-97E7-F78916FB5D0B}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{B0EAC05D-229A-4864-B817-859771E0163F}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{B293924D-BDD6-4AEC-B6B0-3BD776270914}" = protocol=6 | dir=out | app=system |
"{B2A85865-B87C-4BAE-A3C5-9A89F580839E}" = protocol=6 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\binaries\apb.exe |
"{B370D51E-2786-4C2E-A794-40F6751882CA}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{B42884AB-F7C8-4D75-AB9B-3CEC023D8313}" = protocol=17 | dir=in | app=c:\program files (x86)\capcom\dead rising 2\deadrising2.exe |
"{B4A35641-D379-4D91-BD4C-ED7397BBBFDA}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 1942\bf1942.exe |
"{B4D22C84-2D05-475B-8BB6-FD08B87360E4}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\trials evolution gold edition\trials_launcher.exe |
"{B810529E-A142-4A50-B431-9204B907DF32}" = protocol=17 | dir=in | app=c:\program files (x86)\gamersfirst\apb reloaded\binaries\apb.exe |
"{B9801875-470C-4101-80BC-5823BAA4DF9B}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboarding.exe |
"{B999BCED-3625-45A0-B5CA-447672BD4A65}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{BB4E0332-7560-4462-B24F-959781E590EB}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\shaun white snowboarding\shaunwhitesnowboardinggame.exe |
"{C02F5772-16D4-4D5B-B1AE-E586E85C421F}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{C096D54A-61A4-4E57-8F84-29270ED32D70}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\ngstudio.exe |
"{C1F4E4AE-E402-4756-A927-D6C9DB03DC59}" = protocol=17 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe |
"{C2DCF271-5795-4A59-8136-9AFBE13E7653}" = protocol=17 | dir=out | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{C3C2B66B-13C1-46FE-8BF3-2176C4591A71}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{C63E85C4-38A1-4C58-B446-5CCCDA58D4A3}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{C8E95CF7-7E93-4BF3-9ABD-4FD9F4557A32}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{CE1C76E1-A193-4077-AD2A-D832D83B980F}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{CE590D70-59FA-433C-B941-24AAF837E099}" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe |
"{D59656FF-2C27-44FE-80F3-E309B5E215FB}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{D6DF6A44-9860-43DF-8C0D-4963D95BE732}" = protocol=58 | dir=in | app=system |
"{D72BEF55-9FC2-4DBC-9009-4DB5368C0A5D}" = protocol=6 | dir=in | app=c:\program files (x86)\capcom\dead rising 2\deadrising2.exe |
"{D7FF7448-A5F0-42A0-A275-5C7096C9276C}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{D91660F8-901C-4A2F-A4F0-F47E7FFC6FCF}" = protocol=17 | dir=in | app=c:\new folder\steamapps\common\apb reloaded\launcher\apblauncher.exe |
"{DA3ED773-014C-4A17-B25D-267A686679E7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{DDC26C78-DAD7-4A73-B44D-A48069CA1881}" = protocol=17 | dir=in | app=c:\games\sniper - ghost warrior 2\bin32\sniperghostwarrior2.exe |
"{E0B72411-E96B-4A81-BADE-75E4969789CA}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{E35B039C-4479-4BF6-B58C-E916A0079CA4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E3F24A63-34D2-40E9-81B6-03FFE4CFD8AA}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{E68EF4E9-0037-4011-8384-44E0F9A99680}" = protocol=6 | dir=out | app=c:\program files (x86)\eplayworks\avstreamer\poagent.exe |
"{E855C46E-D8CA-477C-8F3A-18C14C7BA6D5}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{E90D1138-18A7-4CC4-BF91-E36F22278D9A}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{E960D244-F00E-4C7D-98C5-15E3B3C356A2}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{F4F29817-F051-4A74-884E-3140EC5C71B8}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 16\programs\ngstudio.exe |
"{F5351E07-0184-46F1-8A78-8EE31AD83266}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F63B0F2E-36BD-4C4A-A4EA-26AD58C66195}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{F7965FEE-D9FC-47A5-9E75-2F344E0B7C8A}" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{F7D3030F-E7B4-4227-BD32-3A00D2AF9E61}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{F7DDA5FD-522A-47BB-B572-BD37B201AA0C}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe |
"{FAAB6B78-D1E3-49FF-A84E-8BF270D3F4B4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{0B4A16B0-36A1-4A2E-BEE3-36BA58DB4DEF}C:\program files (x86)\mirillis\action!\action.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mirillis\action!\action.exe |
"TCP Query User{1416F9FF-E212-4941-92F9-B3741B498402}C:\program files (x86)\ubisoft\driver san francisco\driver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\driver san francisco\driver.exe |
"TCP Query User{25F2F824-BCAE-4B6A-B44D-941AFBB6C50F}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"TCP Query User{2A5DC43F-BFCE-4087-92B3-4E46506915FF}C:\nexon\combat arms eu\engine.exe" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\engine.exe |
"TCP Query User{326364CE-EB2A-4442-85CA-F458E4160EB8}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"TCP Query User{39BD072C-66BB-4145-8B3F-E946249E37B4}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"TCP Query User{4211DD3F-6061-4C47-8F04-512B2F5B258A}C:\windows\kmsemulator.exe" = protocol=6 | dir=in | app=c:\windows\kmsemulator.exe |
"TCP Query User{573FFD13-4613-462A-B585-882CE6689177}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"TCP Query User{66335623-5E44-4EEF-B909-EA9AF0AE5753}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"TCP Query User{6B0E8D8B-8971-431A-B9DE-41313A066FE8}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{D81B69C3-3B2F-4F40-9AC9-F493DDA06068}C:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe |
"TCP Query User{F3ACD368-6E32-439C-8145-0F41829DF371}C:\programdata\kaspersky lab setup files\setup.exe" = protocol=6 | dir=in | app=c:\programdata\kaspersky lab setup files\setup.exe |
"UDP Query User{1C0D323A-C9E2-4FE1-AB68-288027ACAA80}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{2DFB98A6-677F-4A7C-8ACB-C23477EA262A}C:\program files (x86)\ubisoft\driver san francisco\driver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\driver san francisco\driver.exe |
"UDP Query User{4615A58A-9C21-4D5F-A8D7-849078FAA181}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"UDP Query User{6EA23C89-7CFB-4210-8EC7-477C47EA819E}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"UDP Query User{74012E81-34B5-4F1B-86C6-4F14CDBFE81E}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
"UDP Query User{74118394-8B32-4075-8EB4-643DC58438FF}C:\nexon\combat arms eu\engine.exe" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\engine.exe |
"UDP Query User{7ECB4BF4-9BA8-4B77-9C26-278AA54198A2}C:\windows\kmsemulator.exe" = protocol=17 | dir=in | app=c:\windows\kmsemulator.exe |
"UDP Query User{A9C29F31-9419-4308-8243-82CD0AEDE70C}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{CD0FA8F0-9C78-4C3E-917B-BE5F221A5AC4}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{D252BDA8-C29F-4B48-935A-580307251C96}C:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\local\temp\nsv8029.tmp\setup.exe |
"UDP Query User{D7012776-77EF-43BF-8F30-9BFDA5E42171}C:\programdata\kaspersky lab setup files\setup.exe" = protocol=17 | dir=in | app=c:\programdata\kaspersky lab setup files\setup.exe |
"UDP Query User{EFBFCF72-1415-4129-B1FD-8F9695929553}C:\program files (x86)\mirillis\action!\action.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mirillis\action!\action.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{230D1595-57DA-4933-8C4E-375797EBB7E1}" = Bluetooth Win7 Suite (64)
"{26A24AE4-039D-4CA4-87B4-2F86416022FF}" = Java(TM) 6 Update 22 (64-bit)
"{2748FDE2-7BA8-1D20-11A2-FF01CEB009A5}" = AMD Catalyst Install Manager
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{55B348BE-A3BE-9AE7-58BD-BE45B9A28F82}" = AMD Media Foundation Decoders
"{5B73E1AA-CA9D-E76A-2F2D-E0EFB41CE087}" = AMD Accelerated Video Transcoding
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-0015-0405-1000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0015-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0405-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0016-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0405-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0018-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0405-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-0019-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0405-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001A-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0405-1000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001B-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0405-1000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{AEC2C00D-1E7E-45E3-9058-81EA2446B3CD}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUSR_{70A3169E-288F-454F-A08D-20DF66639B50}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-1000-0000000FF1CE}_Office14.PROPLUSR_{0242505C-4E90-407F-9299-B5B275F50D86}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-041B-1000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-001F-041B-1000-0000000FF1CE}_Office14.PROPLUSR_{4B806706-B352-42E8-8C8B-5CEBCEDBC4E0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0405-1000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-002C-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{715203B3-AD16-41A4-B13C-E1065EAB8963}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010
"{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{E8B6D35B-0B6F-4DCE-9493-859BF3809A7F}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0043-0405-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Czech) 2010
"{90140000-0043-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{15D45352-C443-406A-9DF2-EF4A750A40CF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0044-0405-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-0044-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0405-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-006E-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{4B8654FE-410D-462C-9B3C-09D031BF4534}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0405-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00A1-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00BA-0405-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{90140000-00BA-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{9F412D54-AC04-46F9-AFE7-FE15DC0147A0}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{91140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B01875AA-1BD4-5B9F-D2B9-23D909F4280B}" = AMD Drag and Drop Transcoding
"{B962DFD6-45C1-49D8-AEBA-197BF6576D29}" = HP Wireless Assistant
"{C2A9F89A-E657-7E78-CF51-5C8934E1D935}" = ccc-utility64
"{CC1FE395-D90F-712C-E013-EBDCC30433B1}" = AMD Fuel
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{E4F5E48E-7155-4CF9-88CD-7F377EC9AC54}" = Bonjour
"{E54A949B-C4AE-28B6-EC97-FCB9E402D338}" = ccc-utility64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.23
"ImagenomicPortraiturePlugin" = Imagenomic Portraiture 2.1 Plug-in (build 2105)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Office14.PROPLUSR" = Microsoft Office Professional Plus 2010
"Speccy" = Speccy
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WhoCrashed_is1" = WhoCrashed 4.02
"WinRAR archiver" = WinRAR
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{03046EBB-CB7C-4B98-BEFB-690EB955DA22}" = HP Setup
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{07D857B8-C956-401D-BC8F-EDA8459AF037}" = Trials Evolution Gold Edition
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{09BC92CC-9D24-28EA-6CE5-7B3400650601}" = CCC Help English
"{0ACC2993-2058-4BE7-9A92-9DCDAA9B3412}" = LogMeIn Hamachi
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{11F2C5EC-35AA-7237-B62B-A4F041859C2A}" = CCC Help Spanish
"{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
"{197816C4-9BF5-4633-BB84-63F03902544E}" = FiatECUScan
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1" = Euro Truck Simulator 2
"{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
"{1EE9BBA1-312F-4EC0-9DEA-A8FE22BBABAA}_is1" = 20Dollars2Surf 1.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21045E2A-1BD4-44B3-840B-A0857B4DEE55}" = Silicon Laboratories CP210x VCP Drivers for Windows XP/2003 Server/Vista/7
"{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
"{229EDE35-4677-BDE6-70ED-A5A4C711DDC3}" = CCC Help Norwegian
"{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 22
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25
"{27B56E28-94B2-BDF8-D209-EC8D2FF4838E}" = Catalyst Control Center Graphics Previews Common
"{284BFDBC-DAC6-43EC-85A8-E1CEC0D3A114}" = Pinnacle Studio 16
"{2BF8B295-A214-42AC-B4EC-2AE15E08B0E7}" = HP Documentation
"{2E52FB79-7F60-4AD7-B946-5ED18B4F274E}" = ShaunWhiteSnowboarding
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{30BA90A9-E6B4-4FFC-8BC5-B7F2E014F432}" = Hitman Blood Money
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{33D4FA83-02C0-93B3-08ED-5D7378930CFA}" = CCC Help Turkish
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{370B8E47-4A33-E9F7-B04A-424A041D23B0}" = CCC Help Turkish
"{37D0F3C2-8FFD-134D-FBDF-2D711E169D78}" = AMD VISION Engine Control Center
"{387A7BC7-577B-4FC9-8337-4DB8F7D34E55}" = MotoGP(TM)13
"{3CF3DEF4-ED15-4F7B-9320-C3E1081EA4DA}" = SlimDrivers
"{3D2253BD-8907-4A0E-B6D1-EBB9723A70B3}_is1" = CPU Časomíra 2.0
"{41564952-412D-5637-00A7-A758B70C0201}" = Avira SearchFree Toolbar plus Web Protection
"{42FECCEF-63CD-DF98-D6BC-DDBB27E4A580}" = CCC Help Japanese
"{4343080E-91B7-4388-AB4D-FB1000008200}" = Dead Rising 2
"{44039779-BEA6-BF97-EC73-71FC250D1E42}" = CCC Help Dutch
"{44E28991-33C8-4F24-8506-64BA3FB259D1}" = Silicon Laboratories CP210x VCP Drivers for Windows XP/2003 Server/Vista/7_2 (c:\SiLabs\MCU\CP210x\Windows_XP_S2K3_Vista_7_2)
"{45160C56-61F6-468D-A5B0-9FAE2C3E68D6}" = Catalyst Control Center - Branding
"{46594DA4-2D0A-B2D4-C0E0-A5CCA3260025}" = CCC Help Hungarian
"{485B8152-C59F-8569-15BC-46BDA2A1E4A9}" = CCC Help Polish
"{490F47E6-585C-531A-1BF8-4DE44ED9AED7}" = CCC Help Russian
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B784CE7-7CDB-4AF1-B636-2DC3EA51EA87}" = MotoGP(TM)13
"{4BBC41BE-C6DB-AFDC-E1D4-93D39A7DCDCC}" = Catalyst Control Center Localization All
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6
"{50F87176-7DB3-4C75-D9DC-25CB4561D0F8}" = CCC Help Danish
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{52E706AA-B4E9-423A-1651-62E61E06DF9A}" = CCC Help Greek
"{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™
"{53B17A98-5BF0-40BC-AAFF-850A357975AC}" = HP Quick Launch
"{53FAB161-9538-683D-D105-99E734B5FBE6}" = CCC Help Portuguese
"{56C16784-3EC3-CE94-74D1-7D9648DF4B4C}" = CCC Help German
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5B8A0375-B53A-4A67-9DF6-021E5CEFF738}_is1" = Prototype 2 verze 1.0.0.1.
"{5BE7BD06-512B-43bf-AD78-3BD2A5F5F7B3}" = Battlefield 1942™
"{5E627606-53B9-42D1-97E1-D03F6229E248}" = Windows Live UX Platform Language Pack
"{5FB51C12-62AE-0990-E419-C6F62B776E5C}" = CCC Help Portuguese
"{63059735-CA97-FDFB-0E7A-3B8D81572EFD}" = Application Profiles
"{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX
"{6491AB99-A11E-41FD-A5E7-32DE8A097B8E}" = Windows Live Essentials
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{66B46617-A156-F25B-3CC0-5E46343AEA95}" = CCC Help Thai
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6B04DAD8-71E6-A4D8-2B96-58C2F3534941}" = CCC Help Norwegian
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}" = AMD System Monitor
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{6F37D92B-41AA-44B7-80D2-457ABDE11896}" = Windows Live Photo Common
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App (HP Games)
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{75C3C9C0-6CE6-42FA-A0E9-658E8F539124}" = PCMark 7
"{763360F7-5BE2-00D5-34F9-E2567656B98B}" = CCC Help Japanese
"{779D8CA1-03DD-4AD4-B21F-3E20BFE7BEDE}" = SketchUp 8
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{78F4E027-355C-45C0-90DC-F89DFC618761}_is1" = Thread Manager 2.4.0.0
"{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World
"{7D0F4ACC-698A-41B9-B1E2-17594988FBEF}" = Pinnacle Studio 16 - Standard Content Pack
"{80F5C543-1B9F-483E-8C81-F97F30019C2B}_is1" = "Sniper - Ghost Warrior 2"
"{81543139-18AE-703B-D3B1-F6B3A0CB2EAC}" = CCC Help English
"{827B97A9-B347-4110-9F89-37AF2B758F94}" = NHL™ 09
"{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1" = AION Free-to-Play version 1.0
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{853A4763-6643-4604-8D64-28BDD8925F4C}" = Apple Application Support
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{88C4D8A6-9954-46A0-965D-92E55DAB8734}" = Premium Pack Volumes 1-2
"{88F0F4FF-B514-4E32-9C17-CAF96D60EAFC}" = Razer Game Booster
"{89B622E5-326B-6302-982A-BFC17A112B97}_is1" = GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze version for Windows
"{89EEB101-A1C1-00B3-94C7-5F7864C8A618}" = CCC Help Greek
"{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}" = Splash PRO EX
"{8DC069E7-893C-41E1-9442-DE89FEC33371}" = Xobni Core
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{8FA20FAC-719F-7CCD-5790-6B59D691C370}" = CCC Help Chinese Traditional
"{8FB91814-FE42-4B62-9B54-4B677A420715}_is1" = CLEO v3.0.950
"{915726DF-7891-444A-AA03-0DF1D64F561A}" = L.A. Noire
"{91E034D3-ACE1-D27A-B9E8-41468391C923}" = CCC Help Czech
"{92C0275C-86EA-4FA4-86E3-7C90C6F640F2}_is1" = Mafia II Kompletní Edice verze 1.4
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{940B28E7-320B-5AC8-0A8A-32D6A7B404A1}" = CCC Help Swedish
"{962F1328-15D3-0A6A-E8E2-A0BE4FB546AB}" = CCC Help Swedish
"{96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3}" = Google Earth
"{96F42B8E-0963-4063-B712-4675D704A628}" = CCC Help Thai
"{97F77D62-5110-4FA3-A2D3-410B92D31199}" = Windows Live Fotogaléria
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{994D5DF7-DA32-2F0E-3333-B06888235CF3}" = CCC Help Spanish
"{99C382AB-CA1D-8577-66D3-AA850DB5FD00}" = CCC Help Korean
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9AF7D6F5-50A5-432C-9F7B-83BCE03B11A0}" = SpinTires Tech Demo (June 060613)
"{9B28DDFC-B15A-F031-E5B2-4FA2E708521B}" = CCC Help Chinese Standard
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C2BA00E-0D9B-0769-5708-ED222A7886E3}" = CCC Help Danish
"{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1" = Gameforge Live 1.0 "Legend"
"{9D84E30F-6757-4A56-BCB5-51ADE3AE8631}" = BlueStacks Notification Center
"{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}" = FIFA 13
"{A312ABBC-E4A0-4595-BB69-95AFF48A9838}" = HP Software Framework
"{A59E89B3-B241-4476-CB7B-30D5D79D9F07}" = CCC Help Polish
"{A68C4D16-8046-5333-CB64-5E622C795785}" = CCC Help Dutch
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted
"{AEDBD563-24BB-4EE3-8366-A654DAC2D988}" = Mirror's Edge™
"{B1557834-5188-706D-1379-D81062EE026E}" = CCC Help Chinese Traditional
"{B1B6F164-18C3-5F8E-686A-6572BC14FC93}" = CCC Help Korean
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B810D8-DFD6-TmbRaid-89A5-CC4D47756DAF}_is1" = Tomb Raider version 5.1
"{B92132C5-5722-82AA-B510-D73EF9A06123}" = CCC Help French
"{B97E3520-C726-475E-BC0C-7561952633AB}" = HP Power Manager
"{BA0601E1-B65C-11D5-80A9-0000B494D9A6}" = PC Booster
"{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo
"{BE0B654E-FC60-40AE-F60B-06526508B5FD}" = CCC Help Italian
"{BE0E1491-B2DC-6447-217C-342D8F7100EA}" = CCC Help Czech
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Qualcomm Atheros Driver Installation Program
"{C3F73E70-FB24-3D11-5D35-13E076B52D82}" = CCC Help Russian
"{C5AB1EC3-5021-4B1F-0088-ED81A037473F}" = NHL06 DL PC Demo
"{C5EADF55-3B49-B545-E16F-402B443DDC77}" = CCC Help German
"{C6432960-7871-B04D-B121-7DB2DA88CCE4}" = ccc-core-static
"{C7231F7C-6530-4E65-ADA6-5B392CF5BEB1}" = Recovery Manager
"{CBDFF724-E925-2964-E647-0A83D2F9165C}" = CCC Help French
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.5.1 Game
"{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
"{D4329609-4102-4F8C-B83F-7FE024EEA314}_is1" = Dead Space 3 CZ v1.0
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D5341564-7B93-ADAC-E737-C24AA85CC5FF}" = CCC Help Chinese Standard
"{DB52432E-3AD8-41A5-A586-0F065FB6A31E}" = Game Cam
"{DC8FE210-4C59-775C-18A6-453D465C62F3}" = CCC Help Hungarian
"{DDA52D9D-A313-3CD4-F0FF-60FF8B26C6F3}" = Catalyst Control Center InstallProxy
"{DF2035BE-5820-4965-BD97-7FAF8D4A7879}" = Microsoft_VC90_CRT_x86
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E311C37C-B86F-B94B-C0D3-4AEB0A78CE05}" = CCC Help Italian
"{E3D181F8-246B-497F-945E-6DB98CBA6677}" = Hollywood FX Volumes 1-3
"{E3FB1E5A-1C24-D581-6BC8-6F8AC2D343AD}" = CCC Help Finnish
"{E5F05232-96B6-4552-A480-785A60A94B21}" = System Requirements Lab CYRI
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E96CAA2A-0244-4A2A-8403-0C3C9534778B}" = ESU for Microsoft Windows 7 SP1
"{EA92CB68-9667-343A-1F53-B039583F2A3A}" = Catalyst Control Center InstallProxy
"{EB38C3E0-4863-3123-9114-5BE86EC8E5C7}" = Google Talk Plugin
"{ED1BD69A-07E3-418C-91F1-D856582581BF}" = HP On Screen Display
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1" = War Thunder Launcher 1.0.1.246
"{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E79BE5-20F5-82F4-6579-2A91AED3F066}" = Catalyst Control Center Localization All
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1886CD7-9F73-417A-92E9-7E0AB0F0E099}" = Pinnacle Studio 16 - Install Manager
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{F4E2CBB0-B61E-4738-B3B2-AAFF61F1C828}" = Baku
"{F761359C-9CED-45AE-9A51-9D6605CD55C4}" = Evernote v. 4.2.2
"{FA8FCABA-6FAD-34D0-E8BA-C8A29EEBD3CE}" = CCC Help Finnish
"{FB3D07AE-73D0-47A9-AC12-6F50BF8B6202}" = Windows Live Movie Maker
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Any GIF Animator_is1" = Any GIF Animator 2.7
"Avira AntiVir Desktop" = Avira Free Antivirus
"AVStreamer Server" = AVStreamer Server 1.14
"Bandicam" = Bandicam
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"Clownfish" = Clownfish for Skype
"Combat Arms EU" = Combat Arms EU
"CrystalDiskInfo_is1" = CrystalDiskInfo 5.6.1 Shizuku Edition
"CZ SK IPTV v2.0.3" = CZ SK IPTV v2.0.3
"Czech Soccer Manager 2002 FE" = Czech Soccer Manager 2002 FE
"DAEMON Tools Lite" = DAEMON Tools Lite
"Defraggler" = Defraggler (remove only)
"Dxtory2.0_is1" = Dxtory 2.0.108
"ESET Online Scanner" = ESET Online Scanner v3
"F1 2011_is1" = F1 2011 1.0
"F1 Race Stars_is1" = F1 Race Stars
"FerrariVR" = Ferrari Virtual Race (remove only)
"ffdshow_is1" = ffdshow v1.2.4422 [2012-04-09]
"FIFA 13 PC Scoreboard Switcher 0.3" = FIFA 13 PC Scoreboard Switcher 0.3
"FormatFactory" = FormatFactory 3.00
"Fraps" = Fraps (remove only)
"FreeHDSport TV" = FreeHDSport TV
"Full Uninstall_is1" = Full Uninstall version 2.0
"GadgetPack" = GadgetPack (remove only)
"Game Booster_is1" = Game Booster 3
"GFWL_{4343080E-91B7-4388-AB4D-FB1000008200}" = Dead Rising 2
"GFWL_{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™
"Google Chrome" = Google Chrome
"HaaliMkx" = Haali Media Splitter
"HD Tune Pro_is1" = HD Tune Pro 4.50
"HeavyLoad_is1" = HeavyLoad V3.2
"Heroes & Generals" = Heroes & Generals
"Hitman Absolution_is1" = Hitman Absolution
"Hitman Sniper Challenge_is1" = Hitman Sniper Challenge v1.0 / RePack by R.G. World Games
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{07D857B8-C956-401D-BC8F-EDA8459AF037}" = Trials Evolution Gold Edition
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Man City FC" = Man City FC
"Media Player - Codec Pack" = Media Player Codec Pack 4.2.4
"Minecraft1.6.2" = Minecraft1.6.2
"Mirillis Action!" = Action!
"Mixxx (1.11.0)" = Mixxx 1.11.0
"Mozilla Firefox 20.0.1 (x86 cs)" = Mozilla Firefox 20.0.1 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English)
"MTA:SA 1.3" = MTA:SA v1.3.2
"OpenAL" = OpenAL
"Opera 12.15.1748" = Opera 12.15
"Origin" = Origin
"PAYDAY 2_is1" = PAYDAY 2
"Payday The Heist (c) OVERKILL Software_is1" = Payday The Heist (c) OVERKILL Software version 1
"pcsx2-r5350" = PCSX2 - Playstation 2 Emulator
"PDF Complete" = PDF Complete Special Edition
"PunkBusterSvc" = PunkBuster Services
"Race Driver - GRID 2_is1" = Race Driver - GRID 2 1.0.82.5097
"Rockstar Games Social Club" = Rockstar Games Social Club
"SLABCOMM&10C4&EA60" = Silicon Laboratories CP210x USB to UART Bridge (Driver Removal)
"Sleeping Dogs_is1" = Sleeping Dogs v1.4
"SnadBoy's Revelation v2" = SnadBoy's Revelation v2
"Sniper Elite V2_is1" = Sniper Elite V2 1.0
"Spec Ops The Line_is1" = Spec Ops The Line
"SpeedFan" = SpeedFan (remove only)
"SSF Realism Mod" = SSF Realism Mod
"Steam App 113400" = APB Reloaded
"SWAT 4 1.1" = SWAT 4 1.1
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TeamViewer 8" = TeamViewer 8
"TechPowerUp GPU-Z" = TechPowerUp GPU-Z
"Test Drive Unlimited 2_is1" = Test Drive Unlimited 2
"Trials Evolution_is1" = Trials Evolution
"Uplay" = Uplay
"uTorrent" = µTorrent
"VLC media player" = VLC media player 2.0.8
"WildTangent hp Master Uninstall" = HP Games
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR 4.20 (32-bit)
"WinZipper" = WinZipper
"WT087328" = Blackhawk Striker 2
"WT087330" = Bounce Symphony
"WT087335" = Build-a-lot 2
"WT087343" = Dora's World Adventure
"WT087393" = Mah Jong Medley
"WT087394" = Penguins!
"WT087395" = Poker Superstars III
"WT087396" = Polar Bowler
"WT087397" = Polar Golfer
"WT087536" = Diner Dash 2 Restaurant Rescue
"WT089307" = Virtual Villagers 4 - The Tree of Life
"WT089308" = Blasterball 3
"WT089328" = Farm Frenzy
"WT089359" = Cake Mania
"WT089362" = Agatha Christie - Peril at End House
"WT089453" = Bejeweled 2 Deluxe
"WT089454" = Chuzzle Deluxe
"WT089455" = Zuma Deluxe
"WT089457" = Slingo Supreme
"WT089458" = Plants vs. Zombies - Game of the Year
"WT089470" = FATE - The Traitor Soul
"WT089484" = Namco All-Stars PAC-MAN
"WT089496" = Mystery P.I. - Stolen in San Francisco
"WT089498" = Bejeweled 3
"WT089504" = Final Drive Nitro
"x264vfw" = x264vfw - H.264/MPEG-4 AVC codec (remove only)
"Xvid_is1" = Xvid 1.2.2 final uninstall
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"GamersFirst LIVE!" = GamersFirst LIVE!
"SeznamInstall" = Seznam Software
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 4.9.2013 9:02:53 | Computer Name = JAKUB-HP | Source = Office Software Protection Platform Service | ID = 8200
Description = License acquisition failure details. hr=0xC004C003
Error - 4.9.2013 9:02:53 | Computer Name = JAKUB-HP | Source = Office Software Protection Platform Service | ID = 1012
Description = Acquisition of Product Certificate failed. hr=0xC004C003 Sku Id=42cbf3f6-4d5e-49c6-991a-0d99b8429a6d
Error - 4.9.2013 14:36:46 | Computer Name = JAKUB-HP | Source = Application Error | ID = 1000
Description = Název chybující aplikace: rublik.exe, verze: 0.0.0.0, časové razítko:
0x51dd55c5 Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód
výjimky: 0xc0000005 Posun chyby: 0x00000000 ID chybujícího procesu: 0x6c4 Čas spuštění
chybující aplikace: 0x01cea99db00e18e7 Cesta k chybující aplikaci: C:\Program Files
(x86)\Rublik\rublik.exe Cesta k chybujícímu modulu: unknown ID zprávy: f34edd6a-1590-11e3-b3cd-2c768add0320
Error - 4.9.2013 14:37:00 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
Error - 5.9.2013 11:45:10 | Computer Name = JAKUB-HP | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: c:\program files (x86)\r.g.
catalyst\F1 2011\CustomActionOnFinishInst.exe. Chyba v souboru manifestu nebo zásad
c:\program files (x86)\r.g. catalyst\F1 2011\CustomActionOnFinishInst.exe na řádku
1. V manifestu není povoleno více prvků requestedPrivileges.
Error - 6.9.2013 9:13:08 | Computer Name = JAKUB-HP | Source = Application Error | ID = 1000
Description = Název chybující aplikace: rublik.exe, verze: 0.0.0.0, časové razítko:
0x51dd55c5 Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód
výjimky: 0xc0000005 Posun chyby: 0x00000000 ID chybujícího procesu: 0xb60 Čas spuštění
chybující aplikace: 0x01ceab02ceda8d4f Cesta k chybující aplikaci: C:\Program Files
(x86)\Rublik\rublik.exe Cesta k chybujícímu modulu: unknown ID zprávy: 1266f5f3-16f6-11e3-be70-2c768add0320
Error - 6.9.2013 9:13:52 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
Error - 6.9.2013 11:06:44 | Computer Name = JAKUB-HP | Source = SideBySide | ID = 16842827
Description = Selhalo generování kontextu aktivace pro: c:\program files (x86)\r.g.
catalyst\F1 2011\CustomActionOnFinishInst.exe. Chyba v souboru manifestu nebo zásad
c:\program files (x86)\r.g. catalyst\F1 2011\CustomActionOnFinishInst.exe na řádku
1. V manifestu není povoleno více prvků requestedPrivileges.
Error - 7.9.2013 2:14:22 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
Error - 7.9.2013 3:14:33 | Computer Name = JAKUB-HP | Source = WinMgmt | ID = 10
Description =
[ Hewlett-Packard Events ]
Error - 24.2.2013 15:15:47 | Computer Name = JAKUB-HP | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\021324081536.xml
File not created by asset agent
Error - 3.3.2013 10:42:25 | Computer Name = JAKUB-HP | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\031303034217.xml
File not created by asset agent
[ HP Wireless Assistant Events ]
Error - 3.7.2013 5:41:10 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 5:41:14 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 5:41:15 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:27 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:29 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:30 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:32 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:33 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:35 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
Error - 3.7.2013 12:36:37 | Computer Name = JAKUB-HP | Source = HP WA Service | ID = 0
Description = System.Exception GetDeviceInfo() failed : 597 v HP_Common.CaslWrapper.GetDeviceInfo(List`1&
radioList) v HPPA_Service.CurrentConfiguration.ReloadRadioList()
[ System Events ]
Error - 7.9.2013 3:44:33 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:11 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:11 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:11 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:39 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:39 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:48:39 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:50:09 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:50:09 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 7.9.2013 3:50:09 | Computer Name = JAKUB-HP | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
< End of report >
Re: Prosím o kontrolu - pomalý ntb
O TL logfile created on: 7.9.2013 9:15:57 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\JAKUB\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,75 Gb Total Physical Memory | 2,43 Gb Available Physical Memory | 64,91% Memory free
9,36 Gb Paging File | 8,05 Gb Available in Paging File | 85,98% Paging File free
Paging file location(s): C:\pagefile.sys 5751 5751 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 449,46 Gb Total Space | 88,23 Gb Free Space | 19,63% Space Free | Partition Type: NTFS
Drive D: | 16,01 Gb Total Space | 1,95 Gb Free Space | 12,15% Space Free | Partition Type: NTFS
Computer Name: JAKUB-HP | User Name: JAKUB | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013.09.05 15:28:37 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\JAKUB\Desktop\OTL.exe
PRC - [2013.08.24 19:49:56 | 000,829,392 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013.06.28 14:02:06 | 002,255,184 | ---- | M] (LogMeIn Inc.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
========== Modules (No Company Name) ==========
MOD - [2013.08.24 19:49:53 | 000,410,576 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\ppgooglenaclpluginchrome.dll
MOD - [2013.08.24 19:49:51 | 004,053,456 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\pdf.dll
MOD - [2013.08.24 19:48:58 | 001,604,560 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\ffmpegsumo.dll
MOD - [2013.07.09 19:22:16 | 004,591,616 | ---- | M] () -- C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\SwiftShader\1.0.5.0\libGLESv2.dll
MOD - [2013.07.09 19:22:16 | 000,112,128 | ---- | M] () -- C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\SwiftShader\1.0.5.0\libEGL.dll
========== Services (SafeList) ==========
SRV:64bit: - [2013.03.28 22:30:42 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Stopped] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2010.07.21 14:33:00 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Stopped] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV:64bit: - [2009.11.18 04:14:26 | 000,098,208 | ---- | M] (Andrea Electronics Corporation) [Auto | Stopped] -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe -- (AERTFilters)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2000.01.01 02:00:00 | 000,204,288 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2013.09.05 15:30:58 | 000,084,024 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2013.09.05 15:30:29 | 000,815,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2013.09.05 15:30:19 | 000,108,088 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2013.08.28 23:47:18 | 000,563,624 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013.08.21 15:55:45 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.08.14 11:10:26 | 003,291,008 | ---- | M] (Skype Technologies S.A.) [Auto | Stopped] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2013.07.02 21:34:21 | 000,076,888 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWow64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013.06.28 14:02:04 | 002,470,736 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2013.05.08 19:29:44 | 000,023,552 | ---- | M] (Fork Ltd.) [Auto | Stopped] -- C:\Prey\platform\windows\cronsvc.exe -- (CronService)
SRV - [2013.04.23 09:48:17 | 003,574,624 | ---- | M] (TeamViewer GmbH) [Auto | Stopped] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2013.04.13 08:09:59 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.04.04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013.02.07 10:24:14 | 000,148,224 | ---- | M] (ePlayWorks, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe -- (PoSrv1)
SRV - [2012.12.17 15:46:50 | 000,137,488 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe -- (Futuremark SystemInfo Service)
SRV - [2012.09.27 12:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2012.03.05 13:38:38 | 000,035,200 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2011.05.09 18:28:38 | 000,146,592 | ---- | M] (Atheros) [Auto | Stopped] -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe -- (Atheros Bt&Wlan Coex Agent)
SRV - [2011.05.09 18:27:52 | 000,080,032 | ---- | M] (Atheros Commnucations) [Auto | Stopped] -- C:\Program Files (x86)\Bluetooth Suite\AdminService.exe -- (AtherosSvc)
SRV - [2011.02.01 01:42:40 | 001,127,448 | ---- | M] (PDF Complete Inc) [Auto | Stopped] -- C:\Program Files (x86)\PDF Complete\pdfsvc.exe -- (pdfcDispatcher)
SRV - [2010.10.12 19:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.02.19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2000.01.01 02:00:00 | 002,451,456 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013.09.07 08:14:30 | 000,016,152 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SWDUMon.sys -- (SWDUMon)
DRV:64bit: - [2013.09.05 15:31:15 | 000,132,088 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2013.09.05 15:31:15 | 000,105,344 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2013.09.05 15:31:15 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2013.07.01 10:40:32 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2013.07.01 10:40:30 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013.07.01 10:40:29 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2013.05.29 22:45:26 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.04.04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012.11.28 19:49:00 | 000,035,112 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\teamviewervpn.sys -- (teamviewervpn)
DRV:64bit: - [2012.10.24 19:31:18 | 003,802,112 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2012.04.09 10:13:58 | 000,057,472 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Stopped] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.2)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.12.28 06:14:38 | 000,084,808 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ftser2k.sys -- (FTSER2K)
DRV:64bit: - [2011.12.28 06:14:38 | 000,069,192 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ftdibus.sys -- (FTDIBUS)
DRV:64bit: - [2011.08.03 20:58:39 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.08.03 20:58:39 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.05.09 18:28:04 | 000,281,760 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
DRV:64bit: - [2011.05.09 18:28:04 | 000,201,376 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP)
DRV:64bit: - [2011.05.09 18:28:04 | 000,154,272 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP)
DRV:64bit: - [2011.05.09 18:28:04 | 000,055,456 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_lwflt.sys -- (BTATH_LWFLT)
DRV:64bit: - [2011.05.09 18:28:04 | 000,036,000 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort)
DRV:64bit: - [2011.05.09 18:28:02 | 000,298,656 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV:64bit: - [2011.05.09 18:28:02 | 000,029,344 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS)
DRV:64bit: - [2011.03.05 09:16:20 | 000,436,840 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011.02.25 19:12:04 | 002,793,568 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athwx.sys -- (AR5416)
DRV:64bit: - [2011.02.09 17:58:06 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010.12.21 02:20:02 | 001,402,416 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010.11.21 05:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.05.06 15:21:46 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.02.18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 23:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009.06.10 23:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009.06.10 23:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009.06.10 22:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009.06.10 22:34:38 | 001,311,232 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.03.18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2008.02.22 19:54:00 | 000,019,496 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GearAspiWDM)
DRV:64bit: - [2005.09.23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV:64bit: - [2000.01.01 02:00:00 | 009,359,872 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2000.01.01 02:00:00 | 000,339,600 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:64bit: - [2000.01.01 02:00:00 | 000,309,760 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2000.01.01 02:00:00 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2000.01.01 02:00:00 | 000,082,560 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2000.01.01 02:00:00 | 000,056,448 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2000.01.01 02:00:00 | 000,042,624 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2000.01.01 02:00:00 | 000,016,552 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie)
DRV - [2012.11.13 21:53:00 | 000,014,544 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys -- (WinRing0_1_2_0)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2008.09.08 13:05:56 | 000,014,352 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\RMClock\RTCore64.sys -- (RTCore64)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_m ... 1377452141
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Before = http://www.mail.ru/cnt/9516
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\..\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}: "URL" = http://go.mail.ru/search?utf8in=1&fr=ie ... earchTerms}
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.suggest.enabled: true
FF - prefs.js..extensions.enabledAddons: ffaddon%40vagex.com:1.5.7
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:20.0.1
FF - prefs.js..browser.search.useDBForOrder: true
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@live.heroesandgenerals.com/npretox: C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll (Reto-Moto ApS)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\JAKUB\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\JAKUB\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Games\Trials Evolution\datapack\orbit\npuplaypc.dll (Ubisoft)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\PROGRAM FILES\ESET\ESET SMART SECURITY\MOZILLA THUNDERBIRD [2013.08.27 19:32:04 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.04.28 18:56:48 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013.08.27 19:32:04 | 000,000,000 | ---D | M]
[2013.08.25 19:35:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Extensions
[2013.08.29 10:08:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions
[2013.07.25 11:00:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\{37964A3C-4EE8-47b1-8321-34DE2C39BA4D}
[2013.07.25 11:00:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2013.07.25 11:00:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\ffaddon@vagex.com
[2013.06.30 10:44:04 | 000,242,624 | ---- | M] () (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\fhdp3@freehdsp.tv.xpi
[2013.07.03 00:42:09 | 000,713,719 | ---- | M] () (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi
[2013.07.05 13:53:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013.08.19 19:27:10 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013.06.28 11:59:33 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013.08.19 19:27:09 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
File not found (No name found) -- C:\PROGRAM FILES (X86)\IOBIT APPS TOOLBAR\FF
File not found (No name found) -- C:\USERS\JAKUB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4ANQZJ7D.DEFAULT\EXTENSIONS\ASCSURFINGPROTECTION@IOBIT.COM
[2013.04.13 08:09:59 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2013.02.16 10:25:21 | 000,002,421 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2013.02.16 10:25:21 | 000,000,851 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2013.02.16 10:25:21 | 000,001,580 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2013.02.16 10:25:21 | 000,000,867 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2013.02.16 10:25:21 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.seznam.cz/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\pdf.dll
CHR - plugin: Google Talk Plugin (Enabled) = C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
CHR - plugin: Google Talk Plugin Video Renderer (Enabled) = C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npo1d.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: AdobeExManDetect (Enabled) = C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll
CHR - plugin: AdobeAAMDetect (Enabled) = C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
CHR - plugin: Heroes & Generals live (Enabled) = C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll
CHR - plugin: Java(TM) Platform SE 7 U21 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: Uplay PC (Enabled) = C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonEU\NGM\npNxGameeu.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
CHR - plugin: Java Deployment Toolkit 7.0.210.11 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll
CHR - Extension: FB Refresh = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdlfdaajmclngiomogmleihllaejcnni\2.1.0_0\
CHR - Extension: Facebook = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm\1.0.3_0\
CHR - Extension: Photo Zoom for Facebook = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1208.30.1_0\
CHR - Extension: AdBlock = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\
CHR - Extension: Chrome In-App Payments service = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\
O1 HOSTS File: ([2013.09.02 11:48:53 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [AthBtTray] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
O4:64bit: - HKLM..\Run: [AtherosBtStack] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Communications)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001..\Run: [RublikAutostartSetting] "C:\Program Files (x86)\Rublik\rublik.exe" File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105 File not found
O9:64bit: - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - Reg Error: Value error. File not found
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000020 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O13 - gopher Prefix: missing
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{459DDA32-60F6-4889-8E3B-BAFEFB4FBD76}: DhcpNameServer = 78.157.167.7
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084
Drivers32:64bit: msacm.bdmpeg - bdmpega64.acm ()
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.FICV - ficvdec_x64.dll ()
Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32:64bit: vidc.mjpg - bdmjpeg64.dll ()
Drivers32:64bit: vidc.mpeg - bdmpegv64.dll ()
Drivers32:64bit: vidc.xtor - DxtoryCodec64.dll (Dxtory Software)
Drivers32: msacm.bdmpeg - C:\Windows\SysWow64\bdmpega.acm ()
Drivers32: msacm.divxa32 - C:\Windows\SysWow64\DivXa32.acm (Packed With Joy !)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll ()
Drivers32: VIDC.FICV - C:\Windows\SysWow64\ficvdec_x86.dll ()
Drivers32: vidc.mjpx - C:\Windows\SysWow64\bdmjpeg.dll ()
Drivers32: vidc.mpeg - C:\Windows\SysWow64\bdmpegv.dll ()
Drivers32: vidc.pDAD - C:\Windows\SysWow64\prodad-codec.dll (proDAD GmbH)
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.x264 - C:\Program Files (x86)\x264vfw\x264vfw.dll ()
Drivers32: vidc.xtor - C:\Windows\SysWow64\DxtoryCodec.dll (Dxtory Software)
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2013.09.06 22:13:16 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\SpinTires
[2013.09.06 21:34:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oovee
[2013.09.06 21:34:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Oovee
[2013.09.06 15:20:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed
[2013.09.06 15:20:47 | 000,000,000 | ---D | C] -- C:\Program Files\WhoCrashed
[2013.09.06 15:01:52 | 000,081,112 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2013.09.05 15:54:22 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2013.09.05 15:38:52 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Avira
[2013.09.05 15:32:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2013.09.05 15:31:47 | 000,132,088 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013.09.05 15:31:47 | 000,105,344 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013.09.05 15:31:47 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2013.09.05 15:28:33 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\JAKUB\Desktop\OTL.exe
[2013.09.04 20:36:39 | 000,000,000 | ---D | C] -- C:\ProgramData\PDFC
[2013.09.04 20:28:16 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2013.09.04 20:24:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2013.09.04 20:23:56 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2013.09.02 11:46:46 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2013.09.01 19:20:01 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013.09.01 19:20:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013.09.01 13:42:17 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Documents\Virtua Tennis 4
[2013.08.31 14:36:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\20Dollars2Surf
[2013.08.31 14:36:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\20Dollars2Surf
[2013.08.31 14:34:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Rublik
[2013.08.31 14:33:52 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Rublik
[2013.08.31 14:33:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rublik
[2013.08.31 09:58:58 | 000,000,000 | ---D | C] -- C:\Windows\San Andreas Mod Installer
[2013.08.30 16:40:48 | 000,084,808 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\drivers\ftser2k.sys
[2013.08.30 16:40:48 | 000,054,600 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\ftserui2.dll
[2013.08.30 16:36:52 | 000,330,056 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\ftd2xx.dll
[2013.08.30 16:36:52 | 000,206,144 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysWow64\ftd2xx.dll
[2013.08.30 16:36:52 | 000,143,688 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\ftbusui.dll
[2013.08.30 16:36:52 | 000,069,192 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\drivers\ftdibus.sys
[2013.08.29 16:41:16 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
[2013.08.29 16:41:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ICQM
[2013.08.28 14:22:19 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Desktop\fotky do komentů
[2013.08.28 09:15:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze
[2013.08.28 09:15:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze
[2013.08.27 19:17:32 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ESET
[2013.08.25 19:35:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeHDSport TV
[2013.08.25 19:34:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeHDSport.TV
[2013.08.25 19:34:49 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LSHunter.TV
[2013.08.25 19:34:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LSHunter.TV
[2013.08.25 18:47:21 | 000,263,592 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013.08.25 18:47:09 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013.08.25 18:47:09 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013.08.25 18:47:09 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013.08.25 18:16:19 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013.08.24 16:58:00 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
[2013.08.24 16:50:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Silabs
[2013.08.24 16:40:18 | 000,000,000 | ---D | C] -- C:\SiLabs
[2013.08.24 16:33:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProScan
[2013.08.24 16:31:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OBD2Spy
[2013.08.24 16:31:15 | 000,286,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\Setup1.exe
[2013.08.24 16:31:13 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\ST6UNST.EXE
[2013.08.24 09:03:55 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\Deployment
[2013.08.23 11:20:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA SPORTS
[2013.08.22 08:06:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MonkeyDragon Mods
[2013.08.22 08:06:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MonkeyDragon Mods
[2013.08.21 15:55:33 | 017,737,608 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2013.08.21 12:45:55 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Documents\BioWare
[2013.08.21 10:50:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NHL 09
[2013.08.20 18:19:44 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ATI
[2013.08.20 15:48:48 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
[2013.08.18 09:27:33 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\skyz
[2013.08.18 09:25:51 | 000,000,000 | ---D | C] -- C:\Minecraft_Backup
[2013.08.18 09:14:56 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Macromedia
[2013.08.18 09:08:26 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Documents\Battlefield 2
[2013.08.18 08:51:36 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\Apple
[2013.08.16 11:01:45 | 000,000,000 | RH-D | C] -- C:\Users\JAKUB\AppData\Roaming\SecuROM
[2013.08.16 09:41:30 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Milestone
[2013.08.16 07:00:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2013.08.15 13:14:53 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\PAYDAY 2
[2013.08.15 13:07:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PAYDAY 2
[2013.08.15 12:25:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PAYDAY 2
[2013.08.15 12:25:33 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\Programs
[2013.08.13 19:38:46 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\EgisTec
[2013.08.13 11:18:37 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\EgisTec IPS
[2013.08.13 11:13:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mafia 2 Multiplayer
[2013.08.13 11:13:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mafia 2 Multiplayer
[2013.08.13 11:13:06 | 000,000,000 | -H-D | C] -- C:\ProgramData\EgisTec
[2013.08.12 21:05:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Locker Pro
[2013.08.12 21:05:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Locker Pro
[2013.08.12 10:24:36 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Ubisoft
[2013.08.12 09:22:19 | 000,000,000 | ---D | C] -- C:\ProgramData\GlarySoft
[2013.08.12 09:19:15 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Mirillis
========== Files - Modified Within 30 Days ==========
[2013.09.07 09:17:08 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.09.07 09:12:55 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.09.07 09:12:45 | 3015,888,896 | -HS- | M] () -- C:\hiberfil.sys
[2013.09.07 08:53:01 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.09.07 08:21:55 | 000,032,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.09.07 08:21:55 | 000,032,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.09.07 08:14:41 | 000,000,410 | ---- | M] () -- C:\Windows\tasks\SlimDrivers Startup.job
[2013.09.07 08:14:30 | 000,016,152 | ---- | M] () -- C:\Windows\SysNative\drivers\SWDUMon.sys
[2013.09.07 08:14:29 | 000,001,212 | ---- | M] () -- C:\Windows\tasks\FreeHDSport TV-updater.job
[2013.09.07 08:14:25 | 000,000,200 | ---- | M] () -- C:\Windows\tasks\AutoKMS.job
[2013.09.07 08:14:24 | 000,000,029 | ---- | M] () -- C:\Windows\SysWow64\TempWmicBatchFile.bat
[2013.09.07 08:13:52 | 000,001,116 | ---- | M] () -- C:\Windows\tasks\FreeHDSport TV-enabler.job
[2013.09.07 08:13:47 | 000,001,206 | ---- | M] () -- C:\Windows\tasks\FreeHDSport TV-codedownloader.job
[2013.09.06 21:34:11 | 000,002,641 | ---- | M] () -- C:\Users\Public\Desktop\SpinTires Tech Demo (June 060613).lnk
[2013.09.06 15:43:26 | 000,107,209 | ---- | M] () -- C:\Users\JAKUB\Desktop\_vyr_55bolf04-seda.jpg
[2013.09.06 15:38:58 | 000,117,423 | ---- | M] () -- C:\Users\JAKUB\Desktop\1087_58.jpg
[2013.09.06 15:20:48 | 000,000,836 | ---- | M] () -- C:\Users\JAKUB\Desktop\WhoCrashed.lnk
[2013.09.06 15:01:16 | 000,081,112 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2013.09.05 20:26:17 | 001,585,322 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.09.05 20:26:17 | 000,669,700 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2013.09.05 20:26:17 | 000,655,090 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.09.05 20:26:17 | 000,141,392 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2013.09.05 20:26:17 | 000,121,962 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.09.05 19:43:04 | 000,000,332 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForJAKUB.job
[2013.09.05 19:28:39 | 000,062,734 | ---- | M] () -- C:\Users\JAKUB\Desktop\562652_613241678703959_2115408753_n.jpg
[2013.09.05 16:19:02 | 000,024,585 | ---- | M] () -- C:\Users\JAKUB\Desktop\10396_466238666793903_280637916_n.jpg
[2013.09.05 15:32:26 | 000,002,070 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.09.05 15:31:15 | 000,132,088 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013.09.05 15:31:15 | 000,105,344 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013.09.05 15:31:15 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2013.09.05 15:28:37 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\JAKUB\Desktop\OTL.exe
[2013.09.04 20:36:28 | 000,000,200 | ---- | M] () -- C:\Windows\tasks\AutoKMSDaily.job
[2013.09.04 20:24:01 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013.09.04 15:02:25 | 000,000,567 | ---- | M] () -- C:\Users\JAKUB\Desktop\Settings.ini
[2013.09.04 15:02:25 | 000,000,184 | ---- | M] () -- C:\Windows\AutoKMS.ini
[2013.09.04 15:00:40 | 000,647,168 | ---- | M] () -- C:\Windows\AutoKMS.exe
[2013.09.02 20:35:58 | 000,165,376 | ---- | M] () -- C:\Users\JAKUB\Desktop\SystemLook_x64.exe
[2013.09.02 12:24:07 | 000,000,512 | ---- | M] () -- C:\Users\JAKUB\Desktop\MBR.dat
[2013.09.02 11:48:53 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2013.09.01 16:48:48 | 000,000,116 | ---- | M] () -- C:\Users\Public\Desktop\NortonIdentifySafe.url
[2013.08.31 14:36:22 | 000,001,025 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\20Dollars2Surf.lnk
[2013.08.31 14:36:22 | 000,001,007 | ---- | M] () -- C:\Users\Public\Desktop\20Dollars2Surf.lnk
[2013.08.29 10:11:16 | 000,001,436 | ---- | M] () -- C:\Users\JAKUB\Desktop\Google Chrome.lnk
[2013.08.28 09:15:47 | 000,000,000 | ---- | M] () -- C:\Users\JAKUB\regbcm
[2013.08.25 19:45:14 | 005,156,896 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.08.25 18:46:59 | 000,096,168 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013.08.25 18:46:58 | 000,867,240 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2013.08.25 18:46:58 | 000,789,416 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2013.08.25 18:46:58 | 000,263,592 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013.08.25 18:46:58 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013.08.25 18:46:58 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013.08.24 18:21:51 | 000,001,647 | ---- | M] () -- C:\Users\JAKUB\Desktop\FIAT ECU SAN.lnk
[2013.08.24 16:31:15 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\Setup1.exe
[2013.08.24 16:31:14 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\ST6UNST.EXE
[2013.08.23 19:38:50 | 000,000,000 | ---- | M] () -- C:\ProgramData\TEMP
[2013.08.21 15:55:43 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.08.21 15:55:43 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013.08.21 15:55:33 | 017,737,608 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2013.08.20 16:13:32 | 001,564,544 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
========== Files Created - No Company Name ==========
[2013.09.06 21:34:11 | 000,002,641 | ---- | C] () -- C:\Users\Public\Desktop\SpinTires Tech Demo (June 060613).lnk
[2013.09.06 15:43:26 | 000,107,209 | ---- | C] () -- C:\Users\JAKUB\Desktop\_vyr_55bolf04-seda.jpg
[2013.09.06 15:38:57 | 000,117,423 | ---- | C] () -- C:\Users\JAKUB\Desktop\1087_58.jpg
[2013.09.06 15:20:48 | 000,000,836 | ---- | C] () -- C:\Users\JAKUB\Desktop\WhoCrashed.lnk
[2013.09.05 19:28:38 | 000,062,734 | ---- | C] () -- C:\Users\JAKUB\Desktop\562652_613241678703959_2115408753_n.jpg
[2013.09.05 16:19:01 | 000,024,585 | ---- | C] () -- C:\Users\JAKUB\Desktop\10396_466238666793903_280637916_n.jpg
[2013.09.05 15:36:23 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.09.05 15:32:26 | 000,002,070 | ---- | C] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.09.04 20:24:01 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013.09.04 15:01:24 | 000,000,567 | ---- | C] () -- C:\Users\JAKUB\Desktop\Settings.ini
[2013.09.04 15:00:41 | 000,000,200 | ---- | C] () -- C:\Windows\tasks\AutoKMS.job
[2013.09.04 15:00:40 | 000,647,168 | ---- | C] () -- C:\Windows\AutoKMS.exe
[2013.09.04 15:00:40 | 000,000,200 | ---- | C] () -- C:\Windows\tasks\AutoKMSDaily.job
[2013.09.02 20:35:56 | 000,165,376 | ---- | C] () -- C:\Users\JAKUB\Desktop\SystemLook_x64.exe
[2013.09.02 12:24:07 | 000,000,512 | ---- | C] () -- C:\Users\JAKUB\Desktop\MBR.dat
[2013.09.02 11:50:43 | 000,000,029 | ---- | C] () -- C:\Windows\SysWow64\TempWmicBatchFile.bat
[2013.09.01 16:48:48 | 000,000,116 | ---- | C] () -- C:\Users\Public\Desktop\NortonIdentifySafe.url
[2013.08.31 14:36:22 | 000,001,025 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\20Dollars2Surf.lnk
[2013.08.31 14:36:22 | 000,001,007 | ---- | C] () -- C:\Users\Public\Desktop\20Dollars2Surf.lnk
[2013.08.28 09:15:47 | 000,000,000 | ---- | C] () -- C:\Users\JAKUB\regbcm
[2013.08.25 19:35:21 | 000,001,212 | ---- | C] () -- C:\Windows\tasks\FreeHDSport TV-updater.job
[2013.08.25 19:35:18 | 000,001,116 | ---- | C] () -- C:\Windows\tasks\FreeHDSport TV-enabler.job
[2013.08.25 19:35:14 | 000,001,206 | ---- | C] () -- C:\Windows\tasks\FreeHDSport TV-codedownloader.job
[2013.08.24 18:21:51 | 000,001,647 | ---- | C] () -- C:\Users\JAKUB\Desktop\FIAT ECU SAN.lnk
[2013.08.12 21:05:15 | 000,001,859 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empathy.lnk
[2013.08.12 09:35:28 | 000,000,000 | ---- | C] () -- C:\ProgramData\TEMP
[2013.08.02 20:52:38 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2013.07.09 20:41:01 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013.05.28 22:22:48 | 000,641,024 | ---- | C] () -- C:\Windows\SysWow64\ficvdec_x86.dll
[2013.05.11 20:04:11 | 000,007,605 | ---- | C] () -- C:\Users\JAKUB\AppData\Local\Resmon.ResmonCfg
[2013.05.06 18:54:57 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
[2013.05.04 17:11:01 | 000,164,035 | ---- | C] () -- C:\Windows\CZ SK IPTV v2.0.3 Uninstaller.exe
[2013.04.27 19:48:04 | 000,160,420 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2013.04.18 21:15:51 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2013.04.18 21:15:51 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2013.04.14 10:36:13 | 000,000,184 | ---- | C] () -- C:\Windows\AutoKMS.ini
[2013.04.07 13:58:53 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2013.03.29 04:13:14 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
[2013.03.29 04:13:12 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
[2013.03.29 03:38:08 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2013.03.29 03:38:08 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2013.03.16 12:45:27 | 000,290,776 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\JAKUB\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16614)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,75 Gb Total Physical Memory | 2,43 Gb Available Physical Memory | 64,91% Memory free
9,36 Gb Paging File | 8,05 Gb Available in Paging File | 85,98% Paging File free
Paging file location(s): C:\pagefile.sys 5751 5751 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 449,46 Gb Total Space | 88,23 Gb Free Space | 19,63% Space Free | Partition Type: NTFS
Drive D: | 16,01 Gb Total Space | 1,95 Gb Free Space | 12,15% Space Free | Partition Type: NTFS
Computer Name: JAKUB-HP | User Name: JAKUB | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013.09.05 15:28:37 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\JAKUB\Desktop\OTL.exe
PRC - [2013.08.24 19:49:56 | 000,829,392 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013.06.28 14:02:06 | 002,255,184 | ---- | M] (LogMeIn Inc.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
========== Modules (No Company Name) ==========
MOD - [2013.08.24 19:49:53 | 000,410,576 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\ppgooglenaclpluginchrome.dll
MOD - [2013.08.24 19:49:51 | 004,053,456 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\pdf.dll
MOD - [2013.08.24 19:48:58 | 001,604,560 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\ffmpegsumo.dll
MOD - [2013.07.09 19:22:16 | 004,591,616 | ---- | M] () -- C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\SwiftShader\1.0.5.0\libGLESv2.dll
MOD - [2013.07.09 19:22:16 | 000,112,128 | ---- | M] () -- C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\SwiftShader\1.0.5.0\libEGL.dll
========== Services (SafeList) ==========
SRV:64bit: - [2013.03.28 22:30:42 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Stopped] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2010.07.21 14:33:00 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Stopped] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV:64bit: - [2009.11.18 04:14:26 | 000,098,208 | ---- | M] (Andrea Electronics Corporation) [Auto | Stopped] -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe -- (AERTFilters)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2000.01.01 02:00:00 | 000,204,288 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2013.09.05 15:30:58 | 000,084,024 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2013.09.05 15:30:29 | 000,815,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2013.09.05 15:30:19 | 000,108,088 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2013.08.28 23:47:18 | 000,563,624 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013.08.21 15:55:45 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.08.14 11:10:26 | 003,291,008 | ---- | M] (Skype Technologies S.A.) [Auto | Stopped] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2013.07.02 21:34:21 | 000,076,888 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWow64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013.06.28 14:02:04 | 002,470,736 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2013.05.08 19:29:44 | 000,023,552 | ---- | M] (Fork Ltd.) [Auto | Stopped] -- C:\Prey\platform\windows\cronsvc.exe -- (CronService)
SRV - [2013.04.23 09:48:17 | 003,574,624 | ---- | M] (TeamViewer GmbH) [Auto | Stopped] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2013.04.13 08:09:59 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.04.04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013.02.07 10:24:14 | 000,148,224 | ---- | M] (ePlayWorks, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe -- (PoSrv1)
SRV - [2012.12.17 15:46:50 | 000,137,488 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe -- (Futuremark SystemInfo Service)
SRV - [2012.09.27 12:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2012.03.05 13:38:38 | 000,035,200 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2011.05.09 18:28:38 | 000,146,592 | ---- | M] (Atheros) [Auto | Stopped] -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe -- (Atheros Bt&Wlan Coex Agent)
SRV - [2011.05.09 18:27:52 | 000,080,032 | ---- | M] (Atheros Commnucations) [Auto | Stopped] -- C:\Program Files (x86)\Bluetooth Suite\AdminService.exe -- (AtherosSvc)
SRV - [2011.02.01 01:42:40 | 001,127,448 | ---- | M] (PDF Complete Inc) [Auto | Stopped] -- C:\Program Files (x86)\PDF Complete\pdfsvc.exe -- (pdfcDispatcher)
SRV - [2010.10.12 19:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.02.19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2000.01.01 02:00:00 | 002,451,456 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013.09.07 08:14:30 | 000,016,152 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SWDUMon.sys -- (SWDUMon)
DRV:64bit: - [2013.09.05 15:31:15 | 000,132,088 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2013.09.05 15:31:15 | 000,105,344 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2013.09.05 15:31:15 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2013.07.01 10:40:32 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2013.07.01 10:40:30 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013.07.01 10:40:29 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2013.05.29 22:45:26 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.04.04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012.11.28 19:49:00 | 000,035,112 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\teamviewervpn.sys -- (teamviewervpn)
DRV:64bit: - [2012.10.24 19:31:18 | 003,802,112 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2012.04.09 10:13:58 | 000,057,472 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Stopped] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.2)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.12.28 06:14:38 | 000,084,808 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ftser2k.sys -- (FTSER2K)
DRV:64bit: - [2011.12.28 06:14:38 | 000,069,192 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ftdibus.sys -- (FTDIBUS)
DRV:64bit: - [2011.08.03 20:58:39 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.08.03 20:58:39 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.05.09 18:28:04 | 000,281,760 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
DRV:64bit: - [2011.05.09 18:28:04 | 000,201,376 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP)
DRV:64bit: - [2011.05.09 18:28:04 | 000,154,272 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP)
DRV:64bit: - [2011.05.09 18:28:04 | 000,055,456 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_lwflt.sys -- (BTATH_LWFLT)
DRV:64bit: - [2011.05.09 18:28:04 | 000,036,000 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort)
DRV:64bit: - [2011.05.09 18:28:02 | 000,298,656 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV:64bit: - [2011.05.09 18:28:02 | 000,029,344 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS)
DRV:64bit: - [2011.03.05 09:16:20 | 000,436,840 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011.02.25 19:12:04 | 002,793,568 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athwx.sys -- (AR5416)
DRV:64bit: - [2011.02.09 17:58:06 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010.12.21 02:20:02 | 001,402,416 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010.11.21 05:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.05.06 15:21:46 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.02.18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 23:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009.06.10 23:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009.06.10 23:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009.06.10 22:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009.06.10 22:34:38 | 001,311,232 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.03.18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2008.02.22 19:54:00 | 000,019,496 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GearAspiWDM)
DRV:64bit: - [2005.09.23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV:64bit: - [2000.01.01 02:00:00 | 009,359,872 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2000.01.01 02:00:00 | 000,339,600 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:64bit: - [2000.01.01 02:00:00 | 000,309,760 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2000.01.01 02:00:00 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2000.01.01 02:00:00 | 000,082,560 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2000.01.01 02:00:00 | 000,056,448 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2000.01.01 02:00:00 | 000,042,624 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2000.01.01 02:00:00 | 000,016,552 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie)
DRV - [2012.11.13 21:53:00 | 000,014,544 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys -- (WinRing0_1_2_0)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2008.09.08 13:05:56 | 000,014,352 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\RMClock\RTCore64.sys -- (RTCore64)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_m ... 1377452141
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Before = http://www.mail.ru/cnt/9516
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\..\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}: "URL" = http://go.mail.ru/search?utf8in=1&fr=ie ... earchTerms}
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.suggest.enabled: true
FF - prefs.js..extensions.enabledAddons: ffaddon%40vagex.com:1.5.7
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:20.0.1
FF - prefs.js..browser.search.useDBForOrder: true
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@live.heroesandgenerals.com/npretox: C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll (Reto-Moto ApS)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\JAKUB\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\JAKUB\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Games\Trials Evolution\datapack\orbit\npuplaypc.dll (Ubisoft)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\PROGRAM FILES\ESET\ESET SMART SECURITY\MOZILLA THUNDERBIRD [2013.08.27 19:32:04 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.04.28 18:56:48 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013.08.27 19:32:04 | 000,000,000 | ---D | M]
[2013.08.25 19:35:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Extensions
[2013.08.29 10:08:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions
[2013.07.25 11:00:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\{37964A3C-4EE8-47b1-8321-34DE2C39BA4D}
[2013.07.25 11:00:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2013.07.25 11:00:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\ffaddon@vagex.com
[2013.06.30 10:44:04 | 000,242,624 | ---- | M] () (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\fhdp3@freehdsp.tv.xpi
[2013.07.03 00:42:09 | 000,713,719 | ---- | M] () (No name found) -- C:\Users\JAKUB\AppData\Roaming\Mozilla\Firefox\Profiles\4anqzj7d.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi
[2013.07.05 13:53:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013.08.19 19:27:10 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013.06.28 11:59:33 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013.08.19 19:27:09 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
File not found (No name found) -- C:\PROGRAM FILES (X86)\IOBIT APPS TOOLBAR\FF
File not found (No name found) -- C:\USERS\JAKUB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4ANQZJ7D.DEFAULT\EXTENSIONS\ASCSURFINGPROTECTION@IOBIT.COM
[2013.04.13 08:09:59 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2013.02.16 10:25:21 | 000,002,421 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2013.02.16 10:25:21 | 000,000,851 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2013.02.16 10:25:21 | 000,001,580 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2013.02.16 10:25:21 | 000,000,867 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2013.02.16 10:25:21 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.seznam.cz/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.62\pdf.dll
CHR - plugin: Google Talk Plugin (Enabled) = C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
CHR - plugin: Google Talk Plugin Video Renderer (Enabled) = C:\Users\JAKUB\AppData\Roaming\Mozilla\plugins\npo1d.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: AdobeExManDetect (Enabled) = C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll
CHR - plugin: AdobeAAMDetect (Enabled) = C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
CHR - plugin: Heroes & Generals live (Enabled) = C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll
CHR - plugin: Java(TM) Platform SE 7 U21 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: Uplay PC (Enabled) = C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonEU\NGM\npNxGameeu.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
CHR - plugin: Java Deployment Toolkit 7.0.210.11 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll
CHR - Extension: FB Refresh = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdlfdaajmclngiomogmleihllaejcnni\2.1.0_0\
CHR - Extension: Facebook = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm\1.0.3_0\
CHR - Extension: Photo Zoom for Facebook = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1208.30.1_0\
CHR - Extension: AdBlock = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\
CHR - Extension: Chrome In-App Payments service = C:\Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\
O1 HOSTS File: ([2013.09.02 11:48:53 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [AthBtTray] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
O4:64bit: - HKLM..\Run: [AtherosBtStack] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Communications)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001..\Run: [RublikAutostartSetting] "C:\Program Files (x86)\Rublik\rublik.exe" File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105 File not found
O9:64bit: - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - Reg Error: Value error. File not found
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000020 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O13 - gopher Prefix: missing
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.25.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{459DDA32-60F6-4889-8E3B-BAFEFB4FBD76}: DhcpNameServer = 78.157.167.7
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084
Drivers32:64bit: msacm.bdmpeg - bdmpega64.acm ()
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.FICV - ficvdec_x64.dll ()
Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32:64bit: vidc.mjpg - bdmjpeg64.dll ()
Drivers32:64bit: vidc.mpeg - bdmpegv64.dll ()
Drivers32:64bit: vidc.xtor - DxtoryCodec64.dll (Dxtory Software)
Drivers32: msacm.bdmpeg - C:\Windows\SysWow64\bdmpega.acm ()
Drivers32: msacm.divxa32 - C:\Windows\SysWow64\DivXa32.acm (Packed With Joy !)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll ()
Drivers32: VIDC.FICV - C:\Windows\SysWow64\ficvdec_x86.dll ()
Drivers32: vidc.mjpx - C:\Windows\SysWow64\bdmjpeg.dll ()
Drivers32: vidc.mpeg - C:\Windows\SysWow64\bdmpegv.dll ()
Drivers32: vidc.pDAD - C:\Windows\SysWow64\prodad-codec.dll (proDAD GmbH)
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.x264 - C:\Program Files (x86)\x264vfw\x264vfw.dll ()
Drivers32: vidc.xtor - C:\Windows\SysWow64\DxtoryCodec.dll (Dxtory Software)
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2013.09.06 22:13:16 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\SpinTires
[2013.09.06 21:34:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oovee
[2013.09.06 21:34:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Oovee
[2013.09.06 15:20:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed
[2013.09.06 15:20:47 | 000,000,000 | ---D | C] -- C:\Program Files\WhoCrashed
[2013.09.06 15:01:52 | 000,081,112 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2013.09.05 15:54:22 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2013.09.05 15:38:52 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Avira
[2013.09.05 15:32:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2013.09.05 15:31:47 | 000,132,088 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013.09.05 15:31:47 | 000,105,344 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013.09.05 15:31:47 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2013.09.05 15:28:33 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\JAKUB\Desktop\OTL.exe
[2013.09.04 20:36:39 | 000,000,000 | ---D | C] -- C:\ProgramData\PDFC
[2013.09.04 20:28:16 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2013.09.04 20:24:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2013.09.04 20:23:56 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2013.09.02 11:46:46 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2013.09.01 19:20:01 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013.09.01 19:20:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013.09.01 13:42:17 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Documents\Virtua Tennis 4
[2013.08.31 14:36:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\20Dollars2Surf
[2013.08.31 14:36:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\20Dollars2Surf
[2013.08.31 14:34:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Rublik
[2013.08.31 14:33:52 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Rublik
[2013.08.31 14:33:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rublik
[2013.08.31 09:58:58 | 000,000,000 | ---D | C] -- C:\Windows\San Andreas Mod Installer
[2013.08.30 16:40:48 | 000,084,808 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\drivers\ftser2k.sys
[2013.08.30 16:40:48 | 000,054,600 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\ftserui2.dll
[2013.08.30 16:36:52 | 000,330,056 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\ftd2xx.dll
[2013.08.30 16:36:52 | 000,206,144 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysWow64\ftd2xx.dll
[2013.08.30 16:36:52 | 000,143,688 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\ftbusui.dll
[2013.08.30 16:36:52 | 000,069,192 | ---- | C] (FTDI Ltd.) -- C:\Windows\SysNative\drivers\ftdibus.sys
[2013.08.29 16:41:16 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
[2013.08.29 16:41:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ICQM
[2013.08.28 14:22:19 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Desktop\fotky do komentů
[2013.08.28 09:15:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze
[2013.08.28 09:15:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze
[2013.08.27 19:17:32 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ESET
[2013.08.25 19:35:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeHDSport TV
[2013.08.25 19:34:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeHDSport.TV
[2013.08.25 19:34:49 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LSHunter.TV
[2013.08.25 19:34:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LSHunter.TV
[2013.08.25 18:47:21 | 000,263,592 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013.08.25 18:47:09 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013.08.25 18:47:09 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013.08.25 18:47:09 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013.08.25 18:16:19 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013.08.24 16:58:00 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
[2013.08.24 16:50:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Silabs
[2013.08.24 16:40:18 | 000,000,000 | ---D | C] -- C:\SiLabs
[2013.08.24 16:33:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProScan
[2013.08.24 16:31:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OBD2Spy
[2013.08.24 16:31:15 | 000,286,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\Setup1.exe
[2013.08.24 16:31:13 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\ST6UNST.EXE
[2013.08.24 09:03:55 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\Deployment
[2013.08.23 11:20:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA SPORTS
[2013.08.22 08:06:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MonkeyDragon Mods
[2013.08.22 08:06:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MonkeyDragon Mods
[2013.08.21 15:55:33 | 017,737,608 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2013.08.21 12:45:55 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Documents\BioWare
[2013.08.21 10:50:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NHL 09
[2013.08.20 18:19:44 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\ATI
[2013.08.20 15:48:48 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
[2013.08.18 09:27:33 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\skyz
[2013.08.18 09:25:51 | 000,000,000 | ---D | C] -- C:\Minecraft_Backup
[2013.08.18 09:14:56 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Macromedia
[2013.08.18 09:08:26 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\Documents\Battlefield 2
[2013.08.18 08:51:36 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\Apple
[2013.08.16 11:01:45 | 000,000,000 | RH-D | C] -- C:\Users\JAKUB\AppData\Roaming\SecuROM
[2013.08.16 09:41:30 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Milestone
[2013.08.16 07:00:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2013.08.15 13:14:53 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\PAYDAY 2
[2013.08.15 13:07:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PAYDAY 2
[2013.08.15 12:25:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PAYDAY 2
[2013.08.15 12:25:33 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\Programs
[2013.08.13 19:38:46 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\EgisTec
[2013.08.13 11:18:37 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Local\EgisTec IPS
[2013.08.13 11:13:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mafia 2 Multiplayer
[2013.08.13 11:13:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mafia 2 Multiplayer
[2013.08.13 11:13:06 | 000,000,000 | -H-D | C] -- C:\ProgramData\EgisTec
[2013.08.12 21:05:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Locker Pro
[2013.08.12 21:05:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Locker Pro
[2013.08.12 10:24:36 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Ubisoft
[2013.08.12 09:22:19 | 000,000,000 | ---D | C] -- C:\ProgramData\GlarySoft
[2013.08.12 09:19:15 | 000,000,000 | ---D | C] -- C:\Users\JAKUB\AppData\Roaming\Mirillis
========== Files - Modified Within 30 Days ==========
[2013.09.07 09:17:08 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.09.07 09:12:55 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.09.07 09:12:45 | 3015,888,896 | -HS- | M] () -- C:\hiberfil.sys
[2013.09.07 08:53:01 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.09.07 08:21:55 | 000,032,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.09.07 08:21:55 | 000,032,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.09.07 08:14:41 | 000,000,410 | ---- | M] () -- C:\Windows\tasks\SlimDrivers Startup.job
[2013.09.07 08:14:30 | 000,016,152 | ---- | M] () -- C:\Windows\SysNative\drivers\SWDUMon.sys
[2013.09.07 08:14:29 | 000,001,212 | ---- | M] () -- C:\Windows\tasks\FreeHDSport TV-updater.job
[2013.09.07 08:14:25 | 000,000,200 | ---- | M] () -- C:\Windows\tasks\AutoKMS.job
[2013.09.07 08:14:24 | 000,000,029 | ---- | M] () -- C:\Windows\SysWow64\TempWmicBatchFile.bat
[2013.09.07 08:13:52 | 000,001,116 | ---- | M] () -- C:\Windows\tasks\FreeHDSport TV-enabler.job
[2013.09.07 08:13:47 | 000,001,206 | ---- | M] () -- C:\Windows\tasks\FreeHDSport TV-codedownloader.job
[2013.09.06 21:34:11 | 000,002,641 | ---- | M] () -- C:\Users\Public\Desktop\SpinTires Tech Demo (June 060613).lnk
[2013.09.06 15:43:26 | 000,107,209 | ---- | M] () -- C:\Users\JAKUB\Desktop\_vyr_55bolf04-seda.jpg
[2013.09.06 15:38:58 | 000,117,423 | ---- | M] () -- C:\Users\JAKUB\Desktop\1087_58.jpg
[2013.09.06 15:20:48 | 000,000,836 | ---- | M] () -- C:\Users\JAKUB\Desktop\WhoCrashed.lnk
[2013.09.06 15:01:16 | 000,081,112 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2013.09.05 20:26:17 | 001,585,322 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.09.05 20:26:17 | 000,669,700 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2013.09.05 20:26:17 | 000,655,090 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.09.05 20:26:17 | 000,141,392 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2013.09.05 20:26:17 | 000,121,962 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.09.05 19:43:04 | 000,000,332 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForJAKUB.job
[2013.09.05 19:28:39 | 000,062,734 | ---- | M] () -- C:\Users\JAKUB\Desktop\562652_613241678703959_2115408753_n.jpg
[2013.09.05 16:19:02 | 000,024,585 | ---- | M] () -- C:\Users\JAKUB\Desktop\10396_466238666793903_280637916_n.jpg
[2013.09.05 15:32:26 | 000,002,070 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.09.05 15:31:15 | 000,132,088 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013.09.05 15:31:15 | 000,105,344 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013.09.05 15:31:15 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2013.09.05 15:28:37 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\JAKUB\Desktop\OTL.exe
[2013.09.04 20:36:28 | 000,000,200 | ---- | M] () -- C:\Windows\tasks\AutoKMSDaily.job
[2013.09.04 20:24:01 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013.09.04 15:02:25 | 000,000,567 | ---- | M] () -- C:\Users\JAKUB\Desktop\Settings.ini
[2013.09.04 15:02:25 | 000,000,184 | ---- | M] () -- C:\Windows\AutoKMS.ini
[2013.09.04 15:00:40 | 000,647,168 | ---- | M] () -- C:\Windows\AutoKMS.exe
[2013.09.02 20:35:58 | 000,165,376 | ---- | M] () -- C:\Users\JAKUB\Desktop\SystemLook_x64.exe
[2013.09.02 12:24:07 | 000,000,512 | ---- | M] () -- C:\Users\JAKUB\Desktop\MBR.dat
[2013.09.02 11:48:53 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2013.09.01 16:48:48 | 000,000,116 | ---- | M] () -- C:\Users\Public\Desktop\NortonIdentifySafe.url
[2013.08.31 14:36:22 | 000,001,025 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\20Dollars2Surf.lnk
[2013.08.31 14:36:22 | 000,001,007 | ---- | M] () -- C:\Users\Public\Desktop\20Dollars2Surf.lnk
[2013.08.29 10:11:16 | 000,001,436 | ---- | M] () -- C:\Users\JAKUB\Desktop\Google Chrome.lnk
[2013.08.28 09:15:47 | 000,000,000 | ---- | M] () -- C:\Users\JAKUB\regbcm
[2013.08.25 19:45:14 | 005,156,896 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.08.25 18:46:59 | 000,096,168 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013.08.25 18:46:58 | 000,867,240 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2013.08.25 18:46:58 | 000,789,416 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2013.08.25 18:46:58 | 000,263,592 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013.08.25 18:46:58 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013.08.25 18:46:58 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013.08.24 18:21:51 | 000,001,647 | ---- | M] () -- C:\Users\JAKUB\Desktop\FIAT ECU SAN.lnk
[2013.08.24 16:31:15 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\Setup1.exe
[2013.08.24 16:31:14 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\ST6UNST.EXE
[2013.08.23 19:38:50 | 000,000,000 | ---- | M] () -- C:\ProgramData\TEMP
[2013.08.21 15:55:43 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.08.21 15:55:43 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013.08.21 15:55:33 | 017,737,608 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2013.08.20 16:13:32 | 001,564,544 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
========== Files Created - No Company Name ==========
[2013.09.06 21:34:11 | 000,002,641 | ---- | C] () -- C:\Users\Public\Desktop\SpinTires Tech Demo (June 060613).lnk
[2013.09.06 15:43:26 | 000,107,209 | ---- | C] () -- C:\Users\JAKUB\Desktop\_vyr_55bolf04-seda.jpg
[2013.09.06 15:38:57 | 000,117,423 | ---- | C] () -- C:\Users\JAKUB\Desktop\1087_58.jpg
[2013.09.06 15:20:48 | 000,000,836 | ---- | C] () -- C:\Users\JAKUB\Desktop\WhoCrashed.lnk
[2013.09.05 19:28:38 | 000,062,734 | ---- | C] () -- C:\Users\JAKUB\Desktop\562652_613241678703959_2115408753_n.jpg
[2013.09.05 16:19:01 | 000,024,585 | ---- | C] () -- C:\Users\JAKUB\Desktop\10396_466238666793903_280637916_n.jpg
[2013.09.05 15:36:23 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.09.05 15:32:26 | 000,002,070 | ---- | C] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.09.04 20:24:01 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013.09.04 15:01:24 | 000,000,567 | ---- | C] () -- C:\Users\JAKUB\Desktop\Settings.ini
[2013.09.04 15:00:41 | 000,000,200 | ---- | C] () -- C:\Windows\tasks\AutoKMS.job
[2013.09.04 15:00:40 | 000,647,168 | ---- | C] () -- C:\Windows\AutoKMS.exe
[2013.09.04 15:00:40 | 000,000,200 | ---- | C] () -- C:\Windows\tasks\AutoKMSDaily.job
[2013.09.02 20:35:56 | 000,165,376 | ---- | C] () -- C:\Users\JAKUB\Desktop\SystemLook_x64.exe
[2013.09.02 12:24:07 | 000,000,512 | ---- | C] () -- C:\Users\JAKUB\Desktop\MBR.dat
[2013.09.02 11:50:43 | 000,000,029 | ---- | C] () -- C:\Windows\SysWow64\TempWmicBatchFile.bat
[2013.09.01 16:48:48 | 000,000,116 | ---- | C] () -- C:\Users\Public\Desktop\NortonIdentifySafe.url
[2013.08.31 14:36:22 | 000,001,025 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\20Dollars2Surf.lnk
[2013.08.31 14:36:22 | 000,001,007 | ---- | C] () -- C:\Users\Public\Desktop\20Dollars2Surf.lnk
[2013.08.28 09:15:47 | 000,000,000 | ---- | C] () -- C:\Users\JAKUB\regbcm
[2013.08.25 19:35:21 | 000,001,212 | ---- | C] () -- C:\Windows\tasks\FreeHDSport TV-updater.job
[2013.08.25 19:35:18 | 000,001,116 | ---- | C] () -- C:\Windows\tasks\FreeHDSport TV-enabler.job
[2013.08.25 19:35:14 | 000,001,206 | ---- | C] () -- C:\Windows\tasks\FreeHDSport TV-codedownloader.job
[2013.08.24 18:21:51 | 000,001,647 | ---- | C] () -- C:\Users\JAKUB\Desktop\FIAT ECU SAN.lnk
[2013.08.12 21:05:15 | 000,001,859 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empathy.lnk
[2013.08.12 09:35:28 | 000,000,000 | ---- | C] () -- C:\ProgramData\TEMP
[2013.08.02 20:52:38 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2013.07.09 20:41:01 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013.05.28 22:22:48 | 000,641,024 | ---- | C] () -- C:\Windows\SysWow64\ficvdec_x86.dll
[2013.05.11 20:04:11 | 000,007,605 | ---- | C] () -- C:\Users\JAKUB\AppData\Local\Resmon.ResmonCfg
[2013.05.06 18:54:57 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
[2013.05.04 17:11:01 | 000,164,035 | ---- | C] () -- C:\Windows\CZ SK IPTV v2.0.3 Uninstaller.exe
[2013.04.27 19:48:04 | 000,160,420 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2013.04.18 21:15:51 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2013.04.18 21:15:51 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2013.04.14 10:36:13 | 000,000,184 | ---- | C] () -- C:\Windows\AutoKMS.ini
[2013.04.07 13:58:53 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2013.03.29 04:13:14 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
[2013.03.29 04:13:12 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
[2013.03.29 03:38:08 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2013.03.29 03:38:08 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2013.03.16 12:45:27 | 000,290,776 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
Re: Prosím o kontrolu - pomalý ntb
[2013.03.16 12:45:26 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013.02.22 19:24:29 | 001,564,544 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013.02.19 20:05:20 | 000,349,562 | ---- | C] () -- C:\Windows\uninstall Man_City.exe
[2013.02.19 18:35:59 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2012.11.27 01:18:46 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012.11.19 09:33:32 | 000,065,656 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2012.11.19 09:33:30 | 000,022,640 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2012.11.11 22:58:46 | 000,039,904 | ---- | C] () -- C:\Windows\SysWow64\dischandler.exe
[2012.11.11 19:42:32 | 003,915,776 | ---- | C] () -- C:\Windows\SysWow64\ffmpeg.dll
[2012.11.11 19:41:14 | 000,271,360 | ---- | C] () -- C:\Windows\SysWow64\TomsMoComp_ff.dll
[2012.11.11 19:40:50 | 000,157,184 | ---- | C] () -- C:\Windows\SysWow64\ff_unrar.dll
[2012.11.11 19:40:48 | 001,525,760 | ---- | C] () -- C:\Windows\SysWow64\ff_samplerate.dll
[2012.11.11 19:40:48 | 000,211,968 | ---- | C] () -- C:\Windows\SysWow64\ff_libdts.dll
[2012.11.11 19:40:48 | 000,147,456 | ---- | C] () -- C:\Windows\SysWow64\ff_libmad.dll
[2012.11.11 19:40:48 | 000,114,688 | ---- | C] () -- C:\Windows\SysWow64\ff_liba52.dll
[2012.11.11 15:32:34 | 007,870,928 | ---- | C] () -- C:\Windows\SysWow64\avcodec-lav-54.dll
[2012.11.11 15:32:34 | 001,182,696 | ---- | C] () -- C:\Windows\SysWow64\avformat-lav-54.dll
[2012.11.11 15:32:34 | 000,382,120 | ---- | C] () -- C:\Windows\SysWow64\swscale-lav-2.dll
[2012.11.11 15:32:34 | 000,238,528 | ---- | C] () -- C:\Windows\SysWow64\avutil-lav-52.dll
[2012.11.11 15:32:34 | 000,183,976 | ---- | C] () -- C:\Windows\SysWow64\libbluray.dll
[2012.11.11 15:32:34 | 000,167,728 | ---- | C] () -- C:\Windows\SysWow64\avfilter-lav-3.dll
[2012.11.11 15:32:34 | 000,158,096 | ---- | C] () -- C:\Windows\SysWow64\avresample-lav-1.dll
[2012.09.30 00:47:28 | 000,000,178 | ---- | C] () -- C:\Windows\SysWow64\Formats.ini
[2011.09.08 16:00:52 | 000,150,528 | ---- | C] () -- C:\Windows\SysWow64\mkx.dll
[2011.09.08 16:00:48 | 000,142,336 | ---- | C] () -- C:\Windows\SysWow64\mp4.dll
[2011.09.08 16:00:42 | 000,123,392 | ---- | C] () -- C:\Windows\SysWow64\ogm.dll
[2011.09.08 16:00:38 | 000,249,856 | ---- | C] () -- C:\Windows\SysWow64\dxr.dll
[2011.09.08 16:00:34 | 000,113,152 | ---- | C] () -- C:\Windows\SysWow64\dsmux.exe
[2011.09.08 16:00:24 | 000,154,624 | ---- | C] () -- C:\Windows\SysWow64\ts.dll
[2011.09.08 16:00:10 | 000,137,728 | ---- | C] () -- C:\Windows\SysWow64\mkv2vfr.exe
[2011.09.08 16:00:06 | 000,358,400 | ---- | C] () -- C:\Windows\SysWow64\gdsmux.exe
[2011.09.08 15:59:54 | 000,080,384 | ---- | C] () -- C:\Windows\SysWow64\mkzlib.dll
[2011.09.08 15:59:52 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\mkunicode.dll
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.02.27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.02.27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.08.30 18:54:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\.minecraft
[2013.08.05 10:38:09 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\AVG
[2013.07.25 11:00:17 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\BANDISOFT
[2013.09.04 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DAEMON Tools Lite
[2013.08.31 14:02:47 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DG
[2013.08.27 19:17:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ESET
[2013.08.12 09:18:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\GlarySoft
[2013.07.26 08:37:37 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\HD Tune Pro
[2013.08.29 16:42:24 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\IObit
[2013.08.03 20:05:22 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\JAM Software
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\LangSoft
[2013.07.25 11:05:23 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Leadertech
[2013.08.16 09:41:30 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Milestone
[2013.07.25 11:00:20 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\MINECRAFTinstall.net
[2013.08.12 09:19:15 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Mirillis
[2013.07.25 11:00:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Opera
[2013.08.15 09:05:53 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Origin
[2013.08.31 14:34:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Rublik
[2013.08.24 18:51:05 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
[2013.08.18 09:27:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\skyz
[2013.09.06 22:17:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SpinTires
[2013.07.20 10:35:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Stardock
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SuperHideIP
[2013.08.26 12:04:06 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TeamViewer
[2013.08.29 20:37:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TS3Client
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Tunngle
[2013.08.12 10:24:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Ubisoft
[2013.08.25 18:24:31 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Uniblue
[2013.09.06 15:10:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\uTorrent
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,032,592 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2013.02.19 19:35:40 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013.05.05 19:03:39 | 000,000,332 | ---- | C] () -- C:\Windows\Tasks\HPCeeScheduleForJAKUB.job
[2013.08.02 20:29:25 | 000,000,410 | ---- | C] () -- C:\Windows\Tasks\SlimDrivers Startup.job
[2013.08.25 19:35:14 | 000,001,206 | ---- | C] () -- C:\Windows\Tasks\FreeHDSport TV-codedownloader.job
[2013.08.25 19:35:18 | 000,001,116 | ---- | C] () -- C:\Windows\Tasks\FreeHDSport TV-enabler.job
[2013.08.25 19:35:21 | 000,001,212 | ---- | C] () -- C:\Windows\Tasks\FreeHDSport TV-updater.job
[2013.09.04 15:00:40 | 000,000,200 | ---- | C] () -- C:\Windows\Tasks\AutoKMSDaily.job
[2013.09.04 15:00:41 | 000,000,200 | ---- | C] () -- C:\Windows\Tasks\AutoKMS.job
< >
< MD5 for: AGP440.SYS >
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T183057241368\internal_ide_channel\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T183057241368\pci\cc_0101\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T192603690795\internal_ide_channel\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T192603690795\pci\cc_0101\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\erdnt\cache64\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T183057241368\gencdrom\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T192603690795\gencdrom\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: CNGAUDIT.DLL >
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\erdnt\cache86\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\erdnt\cache64\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
< MD5 for: CRYPTSVC.DLL >
[2012.06.02 06:52:32 | 000,142,336 | ---- | M] (Microsoft Corporation) MD5=063DD65889D21035311463337BD268E7 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_788c7cc71232cc19\cryptsvc.dll
[2010.11.21 05:24:16 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=15597883FBE9B056F276ADA3AD87D9AF -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_d4259ed3b16ed82a\cryptsvc.dll
[2013.07.01 10:44:14 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=33ADF6E0853AB39EA1723BE82842C1D3 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_77d7a417f9359661\cryptsvc.dll
[2013.07.01 10:42:37 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\erdnt\cache86\cryptsvc.dll
[2013.07.01 10:42:37 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\SysWOW64\cryptsvc.dll
[2013.07.01 10:42:37 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_77d8a461f934afb8\cryptsvc.dll
[2012.06.04 09:52:35 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=7E7D2DACF65D750D466F36BD3D09AE20 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_d4ab184aca903d4f\cryptsvc.dll
[2013.07.01 10:44:14 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=7FDC4626B01106A8EF328C88C7C0DEE3 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_d3f63f9bb1930797\cryptsvc.dll
[2013.07.01 10:42:37 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=8122252F0A4ACFA92FA0C1D50D18493B -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_d4a24ea4ca968363\cryptsvc.dll
[2012.06.02 06:36:29 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=96C0E38905CFD788313BE8E11DAE3F2F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_77ddc9e5f93000db\cryptsvc.dll
[2012.06.02 07:41:28 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=9C01375BE382E834CC26D1B7EAF2C4FE -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_d3fc6569b18d7211\cryptsvc.dll
[2010.11.21 05:24:32 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll
[2013.07.01 10:42:37 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=AC04D05309BB2C418D0D80B9FB014642 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_7883b3211239122d\cryptsvc.dll
[2013.07.01 10:44:14 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=CA13C4F92BEE66DB48E58AB3223DDF6E -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_d4a14e5aca976a0c\cryptsvc.dll
[2013.07.01 10:42:37 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\erdnt\cache64\cryptsvc.dll
[2013.07.01 10:42:37 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\SysNative\cryptsvc.dll
[2013.07.01 10:42:37 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_d3f73fe5b19220ee\cryptsvc.dll
[2013.07.01 10:44:14 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=E122AA1C9A3CC46FF9DDDE46E5EB0C58 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_7882b2d71239f8d6\cryptsvc.dll
< MD5 for: EXPLORER.EXE >
[2011.08.03 20:51:23 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\erdnt\cache86\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.21 05:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011.08.03 20:51:23 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.08.03 20:51:23 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.11.21 05:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
< MD5 for: HAL.DLL >
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: IASTORV.SYS >
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\drivers\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0bcee2057afcc090\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
< MD5 for: ISAPNP.SYS >
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\drivers\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\isapnp.sys
< MD5 for: LSASS.EXE >
[2009.07.14 03:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_04709031736ac277\lsass.exe
[2011.11.17 08:20:34 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0A10B74FBB437FF9A23F1D5DE4446A83 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.21861_none_04c1204e8cb39c3f\lsass.exe
[2013.07.01 10:38:56 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=77119F1F9B492B260030C34F9BE327FA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22099_none_04a88ce28cc4eb33\lsass.exe
[2012.06.04 09:51:10 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=79C908CAA6F43021EB05F4C733A927D1 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22010_none_04f609a88c8c279c\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\erdnt\cache64\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\SysNative\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17725_none_0466c45b7371f20d\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17856_none_044756c773895c5e\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17940_none_044c26dd7386a58a\lsass.exe
< MD5 for: NDIS.SYS >
[2011.08.03 20:40:44 | 000,950,656 | ---- | M] (Microsoft Corporation) MD5=303310C91F8C0740ED1C76851C759874 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.21628_none_066fff3d4bd0b870\ndis.sys
[2012.08.22 20:06:07 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=5E74508FCB5820B29EEAFE24E6035BCF -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.22097_none_06232d534c0a8d67\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\erdnt\cache64\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\SysNative\drivers\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17939_none_05dc9a6832ba428a\ndis.sys
[2010.11.21 05:23:55 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2011.08.03 20:40:44 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=C38B8AE57F78915905064A9A24DC1586 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17530_none_05d3903632c269df\ndis.sys
< MD5 for: NETLOGON.DLL >
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\erdnt\cache64\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\erdnt\cache86\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
< MD5 for: NVRAID.SYS >
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\drivers\nvraid.sys
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvraid.sys
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvraid.sys
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=666CA16F17914C1CD3616CF16DE0A6EA -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvraid.sys
< MD5 for: NVSTOR.SYS >
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\drivers\nvstor.sys
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvstor.sys
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys
< MD5 for: SCECLI.DLL >
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\erdnt\cache86\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\erdnt\cache64\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SMSS.EXE >
[2009.07.14 03:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe
[2013.03.19 04:57:17 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=498E2A20E145199709CD100CDBA8603D -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22280_none_0a9a7b3b492b4d05\smss.exe
[2013.03.19 05:06:33 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0371DE302FFFF8F086661611BE60848 -- C:\Windows\SysNative\smss.exe
[2013.03.19 05:06:33 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0371DE302FFFF8F086661611BE60848 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_0a5f8ec22fd235a9\smss.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.07.01 10:45:24 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2010.11.21 05:24:08 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2011.08.03 20:46:21 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316\tcpip.sys
[2013.07.01 10:45:24 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\erdnt\cache64\tcpip.sys
[2013.07.01 10:45:24 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\SysNative\drivers\tcpip.sys
[2013.07.01 10:45:24 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2011.08.03 20:46:21 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2011.08.03 20:51:45 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=CB6A53EF141CC3DA32DA54F7E75D301B -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21687_none_118505f696597a9d\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2011.08.03 20:51:45 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=DC08410DB2D0CC542DACAC7A90E6CB7A -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17582_none_10f667b97d405c20\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\erdnt\cache64\winlogon.exe
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
< MD5 for: WS2_32.DLL >
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\erdnt\cache64\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\SysNative\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_50ddb631e4f59005\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\erdnt\cache86\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\SysWOW64\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_f4bf1aae2c981ecf\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[6 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[6 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[61 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.08.30 18:54:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\.minecraft
[2013.09.05 16:17:11 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Adobe
[2013.08.20 18:19:44 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ATI
[2013.08.05 10:38:09 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\AVG
[2013.09.05 15:38:52 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Avira
[2013.07.25 11:00:17 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\BANDISOFT
[2013.09.04 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DAEMON Tools Lite
[2013.08.31 14:02:47 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DG
[2013.08.27 19:17:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ESET
[2013.08.12 09:18:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\GlarySoft
[2013.07.26 08:37:37 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\HD Tune Pro
[2013.07.25 11:19:53 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Hewlett-Packard
[2013.08.29 16:42:24 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\IObit
[2013.08.03 20:05:22 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\JAM Software
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\LangSoft
[2013.07.25 11:05:23 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Leadertech
[2013.08.18 09:14:56 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Macromedia
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Malwarebytes
[2013.09.04 14:56:13 | 000,000,000 | --SD | M] -- C:\Users\JAKUB\AppData\Roaming\Microsoft
[2013.08.16 09:41:30 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Milestone
[2013.07.25 11:00:20 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\MINECRAFTinstall.net
[2013.08.12 09:19:15 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Mirillis
[2013.08.30 17:32:42 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Mozilla
[2013.07.25 11:00:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Opera
[2013.08.15 09:05:53 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Origin
[2013.08.31 14:34:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Rublik
[2013.08.24 18:51:05 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
[2013.08.16 11:01:45 | 000,000,000 | RH-D | M] -- C:\Users\JAKUB\AppData\Roaming\SecuROM
[2013.09.06 22:03:29 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Skype
[2013.08.18 09:27:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\skyz
[2013.09.06 22:17:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SpinTires
[2013.07.20 10:35:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Stardock
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SuperHideIP
[2013.08.26 12:04:06 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TeamViewer
[2013.08.29 20:37:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TS3Client
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Tunngle
[2013.08.12 10:24:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Ubisoft
[2013.08.25 18:24:31 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Uniblue
[2013.09.06 15:10:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\uTorrent
[2013.08.05 13:43:41 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\vlc
[2013.07.25 16:51:28 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\WinRAR
[2013.02.22 19:24:29 | 001,564,544 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013.02.19 20:05:20 | 000,349,562 | ---- | C] () -- C:\Windows\uninstall Man_City.exe
[2013.02.19 18:35:59 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2012.11.27 01:18:46 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012.11.19 09:33:32 | 000,065,656 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2012.11.19 09:33:30 | 000,022,640 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2012.11.11 22:58:46 | 000,039,904 | ---- | C] () -- C:\Windows\SysWow64\dischandler.exe
[2012.11.11 19:42:32 | 003,915,776 | ---- | C] () -- C:\Windows\SysWow64\ffmpeg.dll
[2012.11.11 19:41:14 | 000,271,360 | ---- | C] () -- C:\Windows\SysWow64\TomsMoComp_ff.dll
[2012.11.11 19:40:50 | 000,157,184 | ---- | C] () -- C:\Windows\SysWow64\ff_unrar.dll
[2012.11.11 19:40:48 | 001,525,760 | ---- | C] () -- C:\Windows\SysWow64\ff_samplerate.dll
[2012.11.11 19:40:48 | 000,211,968 | ---- | C] () -- C:\Windows\SysWow64\ff_libdts.dll
[2012.11.11 19:40:48 | 000,147,456 | ---- | C] () -- C:\Windows\SysWow64\ff_libmad.dll
[2012.11.11 19:40:48 | 000,114,688 | ---- | C] () -- C:\Windows\SysWow64\ff_liba52.dll
[2012.11.11 15:32:34 | 007,870,928 | ---- | C] () -- C:\Windows\SysWow64\avcodec-lav-54.dll
[2012.11.11 15:32:34 | 001,182,696 | ---- | C] () -- C:\Windows\SysWow64\avformat-lav-54.dll
[2012.11.11 15:32:34 | 000,382,120 | ---- | C] () -- C:\Windows\SysWow64\swscale-lav-2.dll
[2012.11.11 15:32:34 | 000,238,528 | ---- | C] () -- C:\Windows\SysWow64\avutil-lav-52.dll
[2012.11.11 15:32:34 | 000,183,976 | ---- | C] () -- C:\Windows\SysWow64\libbluray.dll
[2012.11.11 15:32:34 | 000,167,728 | ---- | C] () -- C:\Windows\SysWow64\avfilter-lav-3.dll
[2012.11.11 15:32:34 | 000,158,096 | ---- | C] () -- C:\Windows\SysWow64\avresample-lav-1.dll
[2012.09.30 00:47:28 | 000,000,178 | ---- | C] () -- C:\Windows\SysWow64\Formats.ini
[2011.09.08 16:00:52 | 000,150,528 | ---- | C] () -- C:\Windows\SysWow64\mkx.dll
[2011.09.08 16:00:48 | 000,142,336 | ---- | C] () -- C:\Windows\SysWow64\mp4.dll
[2011.09.08 16:00:42 | 000,123,392 | ---- | C] () -- C:\Windows\SysWow64\ogm.dll
[2011.09.08 16:00:38 | 000,249,856 | ---- | C] () -- C:\Windows\SysWow64\dxr.dll
[2011.09.08 16:00:34 | 000,113,152 | ---- | C] () -- C:\Windows\SysWow64\dsmux.exe
[2011.09.08 16:00:24 | 000,154,624 | ---- | C] () -- C:\Windows\SysWow64\ts.dll
[2011.09.08 16:00:10 | 000,137,728 | ---- | C] () -- C:\Windows\SysWow64\mkv2vfr.exe
[2011.09.08 16:00:06 | 000,358,400 | ---- | C] () -- C:\Windows\SysWow64\gdsmux.exe
[2011.09.08 15:59:54 | 000,080,384 | ---- | C] () -- C:\Windows\SysWow64\mkzlib.dll
[2011.09.08 15:59:52 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\mkunicode.dll
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.02.27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.02.27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.08.30 18:54:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\.minecraft
[2013.08.05 10:38:09 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\AVG
[2013.07.25 11:00:17 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\BANDISOFT
[2013.09.04 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DAEMON Tools Lite
[2013.08.31 14:02:47 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DG
[2013.08.27 19:17:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ESET
[2013.08.12 09:18:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\GlarySoft
[2013.07.26 08:37:37 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\HD Tune Pro
[2013.08.29 16:42:24 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\IObit
[2013.08.03 20:05:22 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\JAM Software
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\LangSoft
[2013.07.25 11:05:23 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Leadertech
[2013.08.16 09:41:30 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Milestone
[2013.07.25 11:00:20 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\MINECRAFTinstall.net
[2013.08.12 09:19:15 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Mirillis
[2013.07.25 11:00:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Opera
[2013.08.15 09:05:53 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Origin
[2013.08.31 14:34:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Rublik
[2013.08.24 18:51:05 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
[2013.08.18 09:27:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\skyz
[2013.09.06 22:17:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SpinTires
[2013.07.20 10:35:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Stardock
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SuperHideIP
[2013.08.26 12:04:06 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TeamViewer
[2013.08.29 20:37:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TS3Client
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Tunngle
[2013.08.12 10:24:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Ubisoft
[2013.08.25 18:24:31 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Uniblue
[2013.09.06 15:10:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\uTorrent
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,032,592 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2013.02.19 19:35:40 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013.05.05 19:03:39 | 000,000,332 | ---- | C] () -- C:\Windows\Tasks\HPCeeScheduleForJAKUB.job
[2013.08.02 20:29:25 | 000,000,410 | ---- | C] () -- C:\Windows\Tasks\SlimDrivers Startup.job
[2013.08.25 19:35:14 | 000,001,206 | ---- | C] () -- C:\Windows\Tasks\FreeHDSport TV-codedownloader.job
[2013.08.25 19:35:18 | 000,001,116 | ---- | C] () -- C:\Windows\Tasks\FreeHDSport TV-enabler.job
[2013.08.25 19:35:21 | 000,001,212 | ---- | C] () -- C:\Windows\Tasks\FreeHDSport TV-updater.job
[2013.09.04 15:00:40 | 000,000,200 | ---- | C] () -- C:\Windows\Tasks\AutoKMSDaily.job
[2013.09.04 15:00:41 | 000,000,200 | ---- | C] () -- C:\Windows\Tasks\AutoKMS.job
< >
< MD5 for: AGP440.SYS >
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T183057241368\internal_ide_channel\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T183057241368\pci\cc_0101\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T192603690795\internal_ide_channel\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T192603690795\pci\cc_0101\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\erdnt\cache64\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T183057241368\gencdrom\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Users\JAKUB\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20130802T192603690795\gencdrom\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: CNGAUDIT.DLL >
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\erdnt\cache86\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\erdnt\cache64\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
< MD5 for: CRYPTSVC.DLL >
[2012.06.02 06:52:32 | 000,142,336 | ---- | M] (Microsoft Corporation) MD5=063DD65889D21035311463337BD268E7 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_788c7cc71232cc19\cryptsvc.dll
[2010.11.21 05:24:16 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=15597883FBE9B056F276ADA3AD87D9AF -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_d4259ed3b16ed82a\cryptsvc.dll
[2013.07.01 10:44:14 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=33ADF6E0853AB39EA1723BE82842C1D3 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_77d7a417f9359661\cryptsvc.dll
[2013.07.01 10:42:37 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\erdnt\cache86\cryptsvc.dll
[2013.07.01 10:42:37 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\SysWOW64\cryptsvc.dll
[2013.07.01 10:42:37 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_77d8a461f934afb8\cryptsvc.dll
[2012.06.04 09:52:35 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=7E7D2DACF65D750D466F36BD3D09AE20 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_d4ab184aca903d4f\cryptsvc.dll
[2013.07.01 10:44:14 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=7FDC4626B01106A8EF328C88C7C0DEE3 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_d3f63f9bb1930797\cryptsvc.dll
[2013.07.01 10:42:37 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=8122252F0A4ACFA92FA0C1D50D18493B -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_d4a24ea4ca968363\cryptsvc.dll
[2012.06.02 06:36:29 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=96C0E38905CFD788313BE8E11DAE3F2F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_77ddc9e5f93000db\cryptsvc.dll
[2012.06.02 07:41:28 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=9C01375BE382E834CC26D1B7EAF2C4FE -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_d3fc6569b18d7211\cryptsvc.dll
[2010.11.21 05:24:32 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll
[2013.07.01 10:42:37 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=AC04D05309BB2C418D0D80B9FB014642 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_7883b3211239122d\cryptsvc.dll
[2013.07.01 10:44:14 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=CA13C4F92BEE66DB48E58AB3223DDF6E -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_d4a14e5aca976a0c\cryptsvc.dll
[2013.07.01 10:42:37 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\erdnt\cache64\cryptsvc.dll
[2013.07.01 10:42:37 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\SysNative\cryptsvc.dll
[2013.07.01 10:42:37 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_d3f73fe5b19220ee\cryptsvc.dll
[2013.07.01 10:44:14 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=E122AA1C9A3CC46FF9DDDE46E5EB0C58 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_7882b2d71239f8d6\cryptsvc.dll
< MD5 for: EXPLORER.EXE >
[2011.08.03 20:51:23 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\erdnt\cache86\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.08.03 20:51:23 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.21 05:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011.08.03 20:51:23 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.08.03 20:51:23 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.11.21 05:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
< MD5 for: HAL.DLL >
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: IASTORV.SYS >
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\drivers\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0bcee2057afcc090\iaStorV.sys
[2011.08.03 20:58:39 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
< MD5 for: ISAPNP.SYS >
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\drivers\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\isapnp.sys
< MD5 for: LSASS.EXE >
[2009.07.14 03:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_04709031736ac277\lsass.exe
[2011.11.17 08:20:34 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0A10B74FBB437FF9A23F1D5DE4446A83 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.21861_none_04c1204e8cb39c3f\lsass.exe
[2013.07.01 10:38:56 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=77119F1F9B492B260030C34F9BE327FA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22099_none_04a88ce28cc4eb33\lsass.exe
[2012.06.04 09:51:10 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=79C908CAA6F43021EB05F4C733A927D1 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22010_none_04f609a88c8c279c\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\erdnt\cache64\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\SysNative\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17725_none_0466c45b7371f20d\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17856_none_044756c773895c5e\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17940_none_044c26dd7386a58a\lsass.exe
< MD5 for: NDIS.SYS >
[2011.08.03 20:40:44 | 000,950,656 | ---- | M] (Microsoft Corporation) MD5=303310C91F8C0740ED1C76851C759874 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.21628_none_066fff3d4bd0b870\ndis.sys
[2012.08.22 20:06:07 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=5E74508FCB5820B29EEAFE24E6035BCF -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.22097_none_06232d534c0a8d67\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\erdnt\cache64\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\SysNative\drivers\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17939_none_05dc9a6832ba428a\ndis.sys
[2010.11.21 05:23:55 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2011.08.03 20:40:44 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=C38B8AE57F78915905064A9A24DC1586 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17530_none_05d3903632c269df\ndis.sys
< MD5 for: NETLOGON.DLL >
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\erdnt\cache64\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\erdnt\cache86\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
< MD5 for: NVRAID.SYS >
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\drivers\nvraid.sys
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvraid.sys
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvraid.sys
[2011.08.03 20:58:39 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=666CA16F17914C1CD3616CF16DE0A6EA -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvraid.sys
< MD5 for: NVSTOR.SYS >
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\drivers\nvstor.sys
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvstor.sys
[2011.08.03 20:58:39 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys
< MD5 for: SCECLI.DLL >
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\erdnt\cache86\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\erdnt\cache64\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SMSS.EXE >
[2009.07.14 03:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe
[2013.03.19 04:57:17 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=498E2A20E145199709CD100CDBA8603D -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22280_none_0a9a7b3b492b4d05\smss.exe
[2013.03.19 05:06:33 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0371DE302FFFF8F086661611BE60848 -- C:\Windows\SysNative\smss.exe
[2013.03.19 05:06:33 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0371DE302FFFF8F086661611BE60848 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_0a5f8ec22fd235a9\smss.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.07.01 10:45:24 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2010.11.21 05:24:08 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2011.08.03 20:46:21 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316\tcpip.sys
[2013.07.01 10:45:24 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\erdnt\cache64\tcpip.sys
[2013.07.01 10:45:24 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\SysNative\drivers\tcpip.sys
[2013.07.01 10:45:24 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2011.08.03 20:46:21 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2011.08.03 20:51:45 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=CB6A53EF141CC3DA32DA54F7E75D301B -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21687_none_118505f696597a9d\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2011.08.03 20:51:45 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=DC08410DB2D0CC542DACAC7A90E6CB7A -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17582_none_10f667b97d405c20\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\erdnt\cache64\winlogon.exe
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
< MD5 for: WS2_32.DLL >
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\erdnt\cache64\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\SysNative\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_50ddb631e4f59005\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\erdnt\cache86\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\SysWOW64\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_f4bf1aae2c981ecf\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[6 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[6 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[61 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.08.30 18:54:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\.minecraft
[2013.09.05 16:17:11 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Adobe
[2013.08.20 18:19:44 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ATI
[2013.08.05 10:38:09 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\AVG
[2013.09.05 15:38:52 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Avira
[2013.07.25 11:00:17 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\BANDISOFT
[2013.09.04 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DAEMON Tools Lite
[2013.08.31 14:02:47 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\DG
[2013.08.27 19:17:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ESET
[2013.08.12 09:18:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\GlarySoft
[2013.07.26 08:37:37 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\HD Tune Pro
[2013.07.25 11:19:53 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Hewlett-Packard
[2013.08.29 16:42:24 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\IObit
[2013.08.03 20:05:22 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\JAM Software
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\LangSoft
[2013.07.25 11:05:23 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Leadertech
[2013.08.18 09:14:56 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Macromedia
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Malwarebytes
[2013.09.04 14:56:13 | 000,000,000 | --SD | M] -- C:\Users\JAKUB\AppData\Roaming\Microsoft
[2013.08.16 09:41:30 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Milestone
[2013.07.25 11:00:20 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\MINECRAFTinstall.net
[2013.08.12 09:19:15 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Mirillis
[2013.08.30 17:32:42 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Mozilla
[2013.07.25 11:00:26 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Opera
[2013.08.15 09:05:53 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Origin
[2013.08.31 14:34:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Rublik
[2013.08.24 18:51:05 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
[2013.08.16 11:01:45 | 000,000,000 | RH-D | M] -- C:\Users\JAKUB\AppData\Roaming\SecuROM
[2013.09.06 22:03:29 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Skype
[2013.08.18 09:27:33 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\skyz
[2013.09.06 22:17:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SpinTires
[2013.07.20 10:35:40 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Stardock
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\SuperHideIP
[2013.08.26 12:04:06 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TeamViewer
[2013.08.29 20:37:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\TS3Client
[2013.07.25 11:00:27 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Tunngle
[2013.08.12 10:24:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Ubisoft
[2013.08.25 18:24:31 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\Uniblue
[2013.09.06 15:10:36 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\uTorrent
[2013.08.05 13:43:41 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\vlc
[2013.07.25 16:51:28 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\WinRAR
Re: Prosím o kontrolu - pomalý ntb
< %APPDATA%\*.exe /s >
[2013.04.04 22:42:44 | 000,177,159 | ---- | M] () -- C:\Users\JAKUB\AppData\Roaming\.minecraft\MineCraft.exe
[2013.05.11 21:32:56 | 000,083,361 | ---- | M] () -- C:\Users\JAKUB\AppData\Roaming\.minecraft\Uninstall Minecraft.exe
[2013.08.18 08:59:15 | 000,763,990 | ---- | M] (TeamExtreme) -- C:\Users\JAKUB\AppData\Roaming\.minecraft\minecraft launcher\Minecraft Launcher.exe
[2013.08.18 08:58:28 | 000,069,254 | ---- | M] () -- C:\Users\JAKUB\AppData\Roaming\.minecraft\minecraft launcher\Uninstall.exe
[2013.08.24 18:15:28 | 000,225,383 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_18CC08F80C86302835C63A.exe
[2013.08.24 18:15:27 | 000,225,383 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_6FEFF9B68218417F98F549.exe
[2013.08.24 18:15:28 | 000,010,134 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_C14A240941151A3B6EB01E.exe
[2013.08.24 18:15:27 | 000,010,134 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_C701C2819B92BF7AA763DE.exe
[2013.06.08 19:57:16 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_5A946EA14073103642F10D.exe
[2013.06.08 19:57:16 | 000,009,662 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_7394A8578B45D0B781B3FA.exe
[2013.06.08 19:57:16 | 000,009,662 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_82A9B986084671CFF1EDCA.exe
[2013.06.08 19:57:16 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_ED66BCBE97E7C5D758DF0B.exe
[2013.07.09 18:25:21 | 000,088,102 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{63059735-CA97-FDFB-0E7A-3B8D81572EFD}\ARPPRODUCTICON.exe
[2013.05.01 13:56:41 | 000,029,926 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2013.05.04 12:22:33 | 000,033,982 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}\_2E758A6ACF428AD2553E12.exe
[2013.05.04 12:22:33 | 000,033,982 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}\_853F67D554F05449430E7E.exe
[2013.05.01 14:00:39 | 000,405,504 | R--- | M] (Flexera Software, Inc.) -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{7D0F4ACC-698A-41B9-B1E2-17594988FBEF}\ARPPRODUCTICON.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_21F3885A18D238E15AAE81.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_415493353D745EEA216D94.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_4BF1AA25BC092196FCA8F4.exe
[2013.06.07 15:29:34 | 000,009,662 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_4E0E8886533CF0864A2C11.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_6FEFF9B68218417F98F549.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_72F520DD47ECBE2F23090C.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_7B4E3B3AF5D833ADA4C0CA.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_806048DC66200FE6D24FF3.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_85972F4A73DF7EADFBAFC2.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_934312A2105DE40686D86A.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_A753214149FB4F8721C1CB.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_A7A1F24988209FFD6FF84A.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_C7EFEC170C2E3BE8B9D183.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_CF15DB293FB3ABD44856FB.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_D707CE1C009F1381803C2C.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_FD8B6BA922FF5C34868F02.exe
[2013.02.19 18:44:40 | 001,075,024 | ---- | M] (BitTorrent Inc.) -- C:\Users\JAKUB\AppData\Roaming\uTorrent\uTorrent.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2013.09.07 08:14:24 | 000,000,029 | ---- | M] () -- C:\Windows\system32\TempWmicBatchFile.bat
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2013.03.14 10:23:30 | 003,672,640 | ---- | M] (Disc Soft Ltd)
"RublikAutostartSetting" = "C:\Program Files (x86)\Rublik\rublik.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\Disabled (Startup Manager)]
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.09.07 09:17:08 | 000,000,512 | ---- | M] () MD5=6E997B9746195685CB80686963356235 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2013.07.02 21:10:00 | 000,599,242 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\APBGame\Content\Release\Packages\SymbolEditor\Primitives_SplatsCracks.upk
[2013.06.21 14:09:06 | 000,599,242 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\APBGame\Content\Release\Packages\SymbolEditor\Primitives_SplatsCracks.upk
[2013.07.02 19:49:53 | 000,029,795 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\Launcher\APB-Reloaded-Crack.exe
[2010.06.14 13:49:08 | 000,004,690 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\65 - Patriotic-FireCracker.png
[2010.06.14 13:49:08 | 000,005,254 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\70 - Foods-Crackers.png
[2010.06.22 05:19:14 | 000,000,736 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\Crackers.xml
[2010.06.22 05:19:16 | 000,000,756 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\FireCracker.xml
[2012.02.02 15:16:26 | 000,009,987 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Animated Slab.png
[2012.02.02 15:16:26 | 000,014,913 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Cracked Slab.png
[2012.02.02 15:16:26 | 000,012,305 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Horizontal Slab.png
[2012.02.02 15:16:26 | 000,012,608 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Red Slab.png
[2012.02.02 15:16:26 | 000,011,676 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab.png
[2011.10.21 12:18:12 | 000,009,561 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\CrackedSlab3D.fxt
[2012.02.02 15:16:26 | 000,006,719 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Stained Glass - Big Crack.png
[2003.12.05 14:52:40 | 000,000,796 | ---- | M] () -- \Program Files (x86)\Rockstar Games\GTA San Andreas\data\Decision\Craig\crack1.ped
[2013.08.05 13:01:26 | 000,011,834 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\uTorrent\AssasinsCreedII-Razor1911-crack.torrent
[2013.08.19 10:26:10 | 000,012,116 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrack.cfx
[2013.08.19 10:26:17 | 000,012,168 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatest.cfx
[2013.08.19 10:26:17 | 000,012,536 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2013.08.19 10:26:20 | 000,013,084 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:22 | 000,012,436 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2013.08.19 10:26:20 | 000,012,720 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestshadow.cfx
[2013.08.19 10:26:10 | 000,012,484 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcracklightmap.cfx
[2013.08.19 10:26:12 | 000,013,032 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcracklightmapshadow.cfx
[2013.08.19 10:26:11 | 000,012,720 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrack.cfx
[2013.08.19 10:26:18 | 000,012,756 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2013.08.19 10:26:19 | 000,013,096 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,013,672 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,012,816 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,348 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2013.08.19 10:26:11 | 000,013,060 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2013.08.19 10:26:15 | 000,013,636 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2013.08.19 10:26:12 | 000,012,880 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetail.cfx
[2013.08.19 10:26:19 | 000,012,916 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatest.cfx
[2013.08.19 10:26:19 | 000,013,256 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,013,832 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,012,940 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,508 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2013.08.19 10:26:12 | 000,013,220 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmap.cfx
[2013.08.19 10:26:15 | 000,013,796 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2013.08.19 10:26:16 | 000,012,904 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailpointlight.cfx
[2013.08.19 10:26:15 | 000,013,472 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailshadow.cfx
[2013.08.19 10:26:16 | 000,012,780 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2013.08.19 10:26:14 | 000,013,312 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2013.08.19 10:26:15 | 000,012,400 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackpointlight.cfx
[2013.08.19 10:26:12 | 000,012,668 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackshadow.cfx
[2013.08.19 10:26:10 | 000,012,296 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrack.cfx
[2013.08.19 10:26:17 | 000,012,348 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatest.cfx
[2013.08.19 10:26:17 | 000,012,716 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2013.08.19 10:26:20 | 000,013,264 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:22 | 000,012,612 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2013.08.19 10:26:20 | 000,012,900 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2013.08.19 10:26:10 | 000,012,664 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcracklightmap.cfx
[2013.08.19 10:26:13 | 000,013,212 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2013.08.19 10:26:11 | 000,012,900 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2013.08.19 10:26:19 | 000,012,936 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2013.08.19 10:26:19 | 000,013,276 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,013,852 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,012,996 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,528 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2013.08.19 10:26:11 | 000,013,240 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2013.08.19 10:26:15 | 000,013,816 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2013.08.19 10:26:12 | 000,013,060 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetail.cfx
[2013.08.19 10:26:19 | 000,013,096 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatest.cfx
[2013.08.19 10:26:19 | 000,013,436 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,014,012 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,013,120 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,688 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2013.08.19 10:26:12 | 000,013,400 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmap.cfx
[2013.08.19 10:26:15 | 000,013,976 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2013.08.19 10:26:16 | 000,013,084 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailpointlight.cfx
[2013.08.19 10:26:15 | 000,013,652 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailshadow.cfx
[2013.08.19 10:26:16 | 000,012,960 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2013.08.19 10:26:15 | 000,013,492 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2013.08.19 10:26:15 | 000,012,576 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackpointlight.cfx
[2013.08.19 10:26:12 | 000,012,848 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackshadow.cfx
[2013.09.04 14:59:59 | 002,568,801 | ---- | M] () -- \Users\JAKUB\Downloads\Office-2010-Crack.rar
[2010.03.05 06:37:46 | 000,010,179 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Effects\65 - Patriotic\FireCracker.hfx
[2010.03.05 06:37:46 | 000,008,201 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Effects\70 - Foods\Crackers.hfx
[2010.03.05 06:45:04 | 001,543,882 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Food\Cracker.hfo
[2010.03.05 06:45:06 | 000,026,143 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Patriotic\Firecracker BAM.hfo
[2010.03.05 06:45:06 | 000,027,267 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Patriotic\Firecracker bottom.hfo
[2010.03.05 06:45:06 | 000,080,879 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Patriotic\Firecracker top.hfo
[2012.06.20 10:11:30 | 000,811,885 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX - Exploze a požáry\Fire Crackle.mp3
[2012.06.20 10:11:28 | 000,159,750 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Gag\Whip Crack Vx.mp3
[2012.06.20 10:11:28 | 000,159,750 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Gag\Whip Crack.mp3
[2012.06.20 10:11:30 | 000,115,740 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Hrající si děti\Bat Crack.mp3
[2012.06.20 10:11:28 | 000,077,918 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX - Sport\Baseball - Bat Cracking.mp3
[2012.06.20 10:11:30 | 003,020,460 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Zimní radovánky\Crackling Hearth.mp3
< *keygen* /s >
< *AntiWPA* /s >
< *loader* /s >
[2013.08.25 19:37:27 | 000,151,720 | ---- | M] () -- \AdwCleaner\Quarantine\C\Program Files (x86)\WinZipper\TrayDownloader.exe.vir
[2013.03.06 18:09:40 | 000,329,248 | ---- | M] () -- \Games\Trials Evolution\datapack\ubiorbitapi_r2_loader.dll
[2013.03.06 18:09:42 | 000,300,064 | ---- | M] () -- \Games\Trials Evolution\datapack\uplay_r1_loader.dll
[2013.03.18 21:05:39 | 000,330,040 | ---- | M] () -- \Games\Trials Evolution\datapack\orbit\ubiorbitapi_r2_loader.dll
[2013.03.18 21:05:39 | 000,294,400 | ---- | M] () -- \Games\Trials Evolution\datapack\orbit\uplay_r1_loader.dll
[2011.08.08 08:08:30 | 000,000,115 | ---- | M] () -- \Hry\F1 2011\audio\audio_loader.xml
[2011.08.08 08:18:26 | 000,000,342 | ---- | M] () -- \Hry\F1 2011\scenes\garage_loader.xml
[2011.08.08 08:18:26 | 000,001,042 | ---- | M] () -- \Hry\F1 2011\scenes\paddock_gameloader.xml
[2011.08.08 08:18:26 | 000,000,645 | ---- | M] () -- \Hry\F1 2011\scenes\paddock_loader.xml
[2011.08.08 08:18:26 | 000,000,577 | ---- | M] () -- \Hry\F1 2011\scenes\paddock_unloader.xml
[2011.08.08 08:18:26 | 000,001,796 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gaqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gara.xml
[2011.08.08 08:18:26 | 000,001,802 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gate.xml
[2011.08.08 08:18:26 | 000,001,807 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gate_nt.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gawc.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_pfqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_pfra.xml
[2011.08.08 08:18:28 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_pfwc.xml
[2011.08.08 08:18:28 | 000,000,619 | ---- | M] () -- \Hry\F1 2011\scenes\pitstop_loader.xml
[2011.08.08 08:18:28 | 000,000,521 | ---- | M] () -- \Hry\F1 2011\scenes\pitstop_unloader.xml
[2011.08.15 10:50:46 | 000,000,695 | ---- | M] () -- \Hry\F1 2011\scenes\race_marshal_loader.xml
[2011.08.08 08:18:28 | 000,001,555 | ---- | M] () -- \Hry\F1 2011\scenes\trackside_garage_loader.xml
[2011.08.08 08:18:28 | 000,001,578 | ---- | M] () -- \Hry\F1 2011\scenes\trackside_garage_reloader.xml
[2011.08.08 08:18:30 | 000,000,149 | ---- | M] () -- \Hry\F1 2011\system\osd_loader.xml
[2013.05.28 08:15:55 | 000,000,118 | ---- | M] () -- \Hry\Race Driver - GRID 2\audio\audio_loader.xml
[2013.07.02 21:20:33 | 000,002,713 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\APBGame\Gecko\Data\components\uriloader.xpt
[2013.07.02 21:22:40 | 000,065,536 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\Binaries\PhysXLocal\PhysXLoader.dll
[2012.06.15 09:40:05 | 000,110,592 | ---- | M] () -- \Nexon\Combat Arms EU\Uploader.exe
[2013.05.04 11:21:17 | 005,578,752 | ---- | M] () -- \Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader.exe
[2013.05.04 11:21:17 | 001,992,328 | ---- | M] () -- \Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe
[2012.06.26 23:12:26 | 000,061,720 | ---- | M] () -- \Program Files (x86)\2K Games\Spec Ops The Line\Binaries\Win32\PhysXLocal\PhysXLoader.dll
[2013.01.08 16:05:34 | 003,298,024 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe
[2012.03.13 11:41:34 | 000,000,860 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe.manifest
[2012.03.13 11:41:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 11:42:06 | 000,000,324 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 11:42:06 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2013.02.08 14:22:08 | 002,550,272 | ---- | M] () -- \Program Files (x86)\Any GIF Animator\Downloader.dll
[2013.09.05 15:30:29 | 000,053,304 | ---- | M] () -- \Program Files (x86)\Avira\AntiVir Desktop\avwebloader.dll
[2013.09.05 15:30:29 | 000,233,016 | ---- | M] () -- \Program Files (x86)\Avira\AntiVir Desktop\avwebloader.exe
[2013.09.05 15:30:30 | 001,741,368 | ---- | M] () -- \Program Files (x86)\Avira\AntiVir Desktop\avwebloadergui.dll
[2012.02.23 00:11:56 | 000,078,336 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.02.23 00:11:56 | 000,155,136 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.02.23 00:11:56 | 000,117,248 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2010.10.07 04:36:40 | 000,265,552 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 04:36:40 | 000,018,264 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2011.02.09 17:58:48 | 000,056,416 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\Koan\pyloader.dll
[2011.02.09 17:57:16 | 000,015,849 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\Uploader\PyUploader.kc
[2011.02.09 17:57:16 | 000,179,296 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\Uploader\_PyUploader.pyd
[2011.02.09 17:57:16 | 002,475,304 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\YouCam\CES_3DLoaderFBX.dll
[2009.09.25 21:19:16 | 000,470,528 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\LeagueLoader.exe
[2013.01.08 12:25:30 | 000,000,740 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\LeagueLoader.ini
[2009.09.25 21:32:13 | 000,004,782 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\LeagueLoader_Readme_rus.txt
[2009.09.25 21:33:44 | 000,000,686 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\NHL09LeagueLoader.eng
[2009.09.25 21:32:36 | 000,000,811 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\NHL09LeagueLoader.rus
[1 \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\*.tmp files -> \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\*.tmp -> ]
[2006.05.04 18:16:50 | 000,333,840 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\hideout\Loader_Sequence.WAV
[2006.05.04 18:16:50 | 000,005,952 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\hideout\Loader_Sequence.WHD
[2006.05.04 18:16:50 | 000,351,949 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\hideout\Loader_Sequence.ZIP
[2006.05.04 18:17:20 | 000,313,360 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M00\Loader_Sequence.WAV
[2006.05.04 18:17:20 | 000,005,392 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M00\Loader_Sequence.WHD
[2006.05.04 18:17:20 | 000,570,691 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M00\Loader_Sequence.ZIP
[2006.05.04 18:18:02 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M01\Loader_Sequence.WAV
[2006.05.04 18:18:02 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M01\Loader_Sequence.WHD
[2006.05.04 18:18:02 | 000,711,223 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M01\Loader_Sequence.ZIP
[2006.05.04 18:18:52 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M02\Loader_Sequence.WAV
[2006.05.04 18:18:52 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M02\Loader_Sequence.WHD
[2006.05.04 18:18:52 | 000,634,201 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M02\Loader_Sequence.ZIP
[2006.05.04 18:19:46 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M03\Loader_Sequence.WAV
[2006.05.04 18:19:46 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M03\Loader_Sequence.WHD
[2006.05.04 18:19:46 | 000,707,294 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M03\Loader_Sequence.ZIP
[2006.05.04 18:20:20 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M04\Loader_Sequence.WAV
[2006.05.04 18:20:20 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M04\Loader_Sequence.WHD
[2006.05.04 18:20:20 | 000,531,761 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M04\Loader_Sequence.ZIP
[2006.05.04 18:21:00 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M05\Loader_Sequence.WAV
[2006.05.04 18:21:00 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M05\Loader_Sequence.WHD
[2006.05.04 18:21:00 | 000,591,946 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M05\Loader_Sequence.ZIP
[2006.05.04 18:21:50 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M06\Loader_Sequence.WAV
[2006.05.04 18:21:50 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M06\Loader_Sequence.WHD
[2006.05.04 18:21:50 | 000,617,459 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M06\Loader_Sequence.ZIP
[2006.05.04 18:22:26 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M08\Loader_Sequence.WAV
[2006.05.04 18:22:26 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M08\Loader_Sequence.WHD
[2006.05.04 18:22:28 | 000,440,664 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M08\Loader_Sequence.ZIP
[2006.05.04 18:23:14 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M09\Loader_Sequence.WAV
[2006.05.04 18:23:14 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M09\Loader_Sequence.WHD
[2006.05.04 18:23:14 | 000,550,700 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M09\Loader_Sequence.ZIP
[2006.05.04 18:24:14 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M10\Loader_Sequence.WAV
[2006.05.04 18:24:14 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M10\Loader_Sequence.WHD
[2006.05.04 18:24:14 | 000,650,200 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M10\Loader_Sequence.ZIP
[2006.05.04 18:24:58 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M11\Loader_Sequence.WAV
[2006.05.04 18:24:58 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M11\Loader_Sequence.WHD
[2006.05.04 18:24:58 | 000,596,635 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M11\Loader_Sequence.ZIP
[2006.05.04 18:25:40 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M12\Loader_Sequence.WAV
[2006.05.04 18:25:40 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M12\Loader_Sequence.WHD
[2006.05.04 18:25:40 | 000,668,734 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M12\Loader_Sequence.ZIP
[2006.05.04 18:26:20 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M13\Loader_Sequence.WAV
[2006.05.04 18:26:20 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M13\Loader_Sequence.WHD
[2006.05.04 18:26:20 | 000,632,940 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M13\Loader_Sequence.ZIP
[2012.06.26 11:52:38 | 000,015,982 | ---- | M] () -- \Program Files (x86)\FiatECUScan\Loader_for_FiatEcuScan_3.6.0.exe
[2013.08.25 19:35:06 | 000,476,672 | ---- | M] () -- \Program Files (x86)\FreeHDSport TV\FreeHDSport TV-codedownloader.exe
[2013.02.05 12:34:22 | 000,178,560 | ---- | M] () -- \Program Files (x86)\GameforgeLive\MultiHTTPDownloader.exe
[2012.10.25 14:34:34 | 000,006,421 | ---- | M] () -- \Program Files (x86)\GameforgeLive\HTML\css\downloader.css
[2012.08.23 16:22:34 | 000,001,849 | ---- | M] () -- \Program Files (x86)\GameforgeLive\skin\4story\images\ajax-loader_black_bg.gif
[2012.08.23 16:22:36 | 000,006,513 | ---- | M] () -- \Program Files (x86)\GameforgeLive\skin\shared\js\clientdownloader.js
[2013.06.21 14:09:34 | 000,002,713 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\APBGame\Gecko\Data\components\uriloader.xpt
[2013.06.21 14:10:04 | 000,065,536 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\Binaries\PhysXLocal\PhysXLoader.dll
[2012.08.23 05:02:38 | 000,004,176 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Resources\en-US\searching\ajax-loader.gif
[2012.08.23 05:02:38 | 000,000,513 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\DynamicComponents\ruby\dcloader.rb
[2012.08.23 05:02:38 | 000,001,875 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\ShadowStringsFix\shadowstringsfix_loader.rb
[2012.08.23 05:02:38 | 000,003,953 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\SolarNorth\solarnorth_loader.rb
[2012.08.23 05:02:38 | 000,029,557 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\WebTextures\webtextures_loader.rb
[2013.06.07 17:44:50 | 000,056,336 | ---- | M] () -- \Program Files (x86)\Heroes & Generals\live\_Out\Flash\Ingame_Hud\LoaderImage.swf
[2011.01.25 03:16:44 | 000,053,248 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe
[2011.01.25 03:11:12 | 000,005,974 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe.config
[2010.10.15 04:58:52 | 000,001,012 | R--- | M] () -- \Program Files (x86)\HP Games\onplay\downloader_bg_400.gif
[2013.07.03 08:44:01 | 000,002,723 | ---- | M] () -- \Program Files (x86)\IObit\Advanced SystemCare 6\Downloader.log
[2011.12.20 18:45:12 | 001,015,128 | ---- | M] () -- \Program Files (x86)\IObit\Game Booster 3\Freeware\GB_FreeSoftwareDownloader.exe
[2012.08.16 09:26:52 | 000,071,008 | ---- | M] () -- \Program Files (x86)\Mafia II Kompletní Edice\pc\PhysXLoader.dll
[2013.01.01 01:00:00 | 000,057,856 | ---- | M] () -- \Program Files (x86)\Mortal Kombat Komplete Edition\PhysXLocal\PhysXLoader.dll
[2012.05.03 19:38:36 | 000,071,528 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2012.05.03 19:39:16 | 000,063,848 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2012.05.21 05:03:06 | 000,083,816 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader.dll
[2012.05.21 05:03:06 | 000,089,448 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader64.dll
[2008.10.10 15:39:54 | 000,068,688 | ---- | M] () -- \Program Files (x86)\Origin Games\Mirrors Edge\Binaries\PhysXLocal\PhysXLoader.dll
[2011.12.17 21:24:36 | 000,000,613 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Freemake Video Downloader (Logs).xml
[2011.01.08 17:45:00 | 000,001,281 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\JDownloader.xml
[2011.12.17 11:42:42 | 000,000,674 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Orbit Downloader More.xml
[2011.12.18 12:25:24 | 000,000,567 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Orbit Downloader.xml
[2010.08.26 07:56:52 | 000,000,747 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Universal Share Downloader.xml
[2011.12.17 11:42:44 | 000,000,771 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\VSO Downloader (Logs).xml
[2011.08.08 08:08:30 | 000,000,115 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\audio\audio_loader.xml
[2011.08.08 08:18:26 | 000,000,342 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\garage_loader.xml
[2011.08.08 08:18:26 | 000,001,042 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\paddock_gameloader.xml
[2011.08.08 08:18:26 | 000,000,645 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\paddock_loader.xml
[2011.08.08 08:18:26 | 000,000,577 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\paddock_unloader.xml
[2011.08.08 08:18:26 | 000,001,796 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gaqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gara.xml
[2011.08.08 08:18:26 | 000,001,802 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gate.xml
[2011.08.08 08:18:26 | 000,001,807 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gate_nt.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gawc.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_pfqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_pfra.xml
[2011.08.08 08:18:28 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_pfwc.xml
[2011.08.08 08:18:28 | 000,000,619 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\pitstop_loader.xml
[2011.08.08 08:18:28 | 000,000,521 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\pitstop_unloader.xml
[2011.08.15 10:50:46 | 000,000,695 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\race_marshal_loader.xml
[2011.08.08 08:18:28 | 000,001,555 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\trackside_garage_loader.xml
[2011.08.08 08:18:28 | 000,001,578 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\trackside_garage_reloader.xml
[2011.08.08 08:18:30 | 000,000,149 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\system\osd_loader.xml
[2012.08.21 19:22:32 | 000,057,856 | ---- | M] () -- \Program Files (x86)\R.G. World Games\Hitman Sniper Challenge\PhysXLoader.dll
[2013.05.29 21:32:28 | 000,728,576 | ---- | M] () -- \Program Files (x86)\Rockstar Games\GTA San Andreas\MTA\loader.dll
[2011.10.28 05:19:56 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderLargeBlue.gif
[2011.10.28 05:19:56 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderLargeGrey.gif
[2011.10.28 05:19:56 | 000,001,737 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderSmallBlue.gif
[2011.10.28 05:19:56 | 000,001,737 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderSmallGold.gif
[2012.11.19 19:19:28 | 000,051,200 | ---- | M] () -- \Program Files (x86)\SQUARE ENIX\Hitman Absolution\PhysXLoader.dll
[2013.02.04 18:44:34 | 000,329,248 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\ubiorbitapi_r2_loader.dll
[2013.02.04 18:44:36 | 000,300,064 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\uplay_r1_loader.dll
[2013.03.18 21:05:39 | 000,330,040 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\orbit\ubiorbitapi_r2_loader.dll
[2013.03.18 21:05:39 | 000,294,400 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\orbit\uplay_r1_loader.dll
[2013.05.08 06:28:52 | 000,329,056 | ---- | M] () -- \Program Files (x86)\Ubisoft\Ubisoft Game Launcher\ubiorbitapi_r2_loader.dll
[2011.02.16 22:13:02 | 000,411,888 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\WTDownloader.exe
[2010.11.03 23:17:00 | 000,002,193 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\UI\GamePlay_Loader.html
[2011.02.16 21:02:14 | 000,009,072 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\UI\Scripts\gameplay_loader.js
[2010.11.03 23:17:00 | 000,002,355 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\UI\Skins\default\gameplay_loader.css
[2013.01.08 16:26:28 | 003,298,024 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012.03.13 11:42:26 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,324 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2010.10.07 04:36:40 | 000,387,408 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 04:36:40 | 000,018,264 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2010.03.15 12:27:20 | 000,054,784 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2013.04.28 17:09:28 | 000,004,068 | ---- | M] () -- \ProgramData\Electronic Arts\Need For Speed World\Data\GFX\_RadialFlareLoader_Double.gfx
[2013.07.13 10:17:28 | 000,004,827 | ---- | M] () -- \ProgramData\IObit\ASCDownloader\Downloader.log
[2013.06.19 15:59:00 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2013.06.19 15:59:00 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2013.06.19 15:59:00 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2013.07.01 19:59:56 | 000,001,339 | ---- | M] () -- \Users\JAKUB\AppData\Local\Apps\2.0\09MZ40W2.E50\70E37EZG.ZPO\laun...app_59711684aa47878d_0001.0021_69ddb507cab74b90\uploaders.txt
[2012.11.14 08:39:38 | 000,003,951 | ---- | M] () -- \Users\JAKUB\AppData\Local\GamersFirst\LIVE!\Content\v2\_img\ajax-loader.gif
[2013.08.16 06:59:13 | 000,001,737 | ---- | M] () -- \Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdlfdaajmclngiomogmleihllaejcnni\2.1.0_0\ajax-loader.gif
[2013.05.29 22:46:55 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin3\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin4\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,061,770 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin5\dt_dadget_loader.png
[2013.05.29 22:46:57 | 000,061,770 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin6\dt_dadget_loader.png
[2013.09.05 15:41:15 | 000,111,850 | ---- | M] () -- \Users\JAKUB\AppData\Local\Temp\avnwldrtemp\networkloader.log
[2013.07.20 08:13:09 | 000,000,175 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\.minecraft\config\ModLoader.cfg
[2013.07.20 08:13:19 | 000,000,047 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\.minecraft\config\mod_ModLoaderMp.cfg
[2013.09.06 19:35:48 | 000,674,952 | ---- | M] () -- \Users\JAKUB\Downloads\puma_gaffer_font.rar_downloader (1).exe
[2013.09.06 19:35:40 | 000,674,952 | ---- | M] () -- \Users\JAKUB\Downloads\puma_gaffer_font.rar_downloader.exe
[2013.08.21 01:57:04 | 000,413,696 | ---- | M] () -- \Users\JAKUB\Downloads\Splinter Cell Blacklist FullRip\Splinter Cell Blacklist\src\SYSTEM\uplay_r1_loader.dll
[2013.03.22 21:05:41 | 000,446,464 | ---- | M] () -- \Windows\NEXON_EU_DownloaderUpdater.exe
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2013.09.07 08:13:47 | 000,001,206 | ---- | M] () -- \Windows\Tasks\FreeHDSport TV-codedownloader.job
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:38:48 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.08.03 20:23:42 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2010.11.21 05:16:35 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.08.03 20:47:07 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.08.03 20:47:07 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
< *minodlogin* /s >
[2013.08.27 18:38:02 | 000,012,376 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\uTorrent\ESET Smart Security 6 32,64bit+Minodlogin 3.10.0.1.rar.torrent
< *tnod* /s >
[2012.10.17 01:50:08 | 000,350,219 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesBase\smartnodesBase.p3d
[2012.10.17 01:50:08 | 000,363,351 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesFacility\smartnodesFacility.p3d
[2012.10.17 01:50:08 | 000,330,530 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesGreen\smartnodesGreen.p3d
[2012.10.17 01:53:58 | 000,475,560 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesPermanent1\smartnodesPermanent1.p3d
[2012.10.17 01:53:58 | 000,451,092 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesPermanent2\smartnodesPermanent2.p3d
[2012.10.17 01:53:58 | 000,148,935 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesRed\smartnodesRed.p3d
[2012.10.17 01:53:58 | 000,455,510 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesShared\smartnodesShared.p3d
[2012.10.17 01:50:08 | 000,459,375 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesYellow\smartnodesYellow.p3d
< *AutoKMS* /s >
[2013.09.04 15:00:40 | 000,647,168 | ---- | M] () -- \Windows\AutoKMS.exe
[2013.09.04 15:02:25 | 000,000,184 | ---- | M] () -- \Windows\AutoKMS.ini
[2013.09.07 08:14:24 | 000,000,311 | ---- | M] () -- \Windows\AutoKMS.log
[2013.04.22 21:21:37 | 001,725,440 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.exe
[2013.04.22 21:21:37 | 000,000,768 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.ini
[2013.09.04 13:50:21 | 000,028,666 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.log
[2013.09.07 08:14:25 | 000,000,200 | ---- | M] () -- \Windows\Tasks\AutoKMS.job
[2013.09.04 20:36:28 | 000,000,200 | ---- | M] () -- \Windows\Tasks\AutoKMSDaily.job
< *activator* /s >
[2011.02.09 17:59:20 | 000,199,776 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\YouCam\CLSWActivator.dll
< *serial* /s >
[2012.07.08 07:37:16 | 000,026,016 | ---- | M] () -- \AdwCleaner\Quarantine\C\Program Files (x86)\Uniblue\SpeedUpMyPC\sp_move_serial.exe.vir
[2012.08.15 18:11:19 | 004,739,892 | ---- | M] () -- \Hry\Sleeping Dogs\Data\movies\photocamera_serialkiller_bodies.bik
[2013.07.02 21:22:23 | 000,027,728 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\Binaries\AutoReporter.XmlSerializers.dll
[2013.06.21 14:10:00 | 000,027,728 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\Binaries\AutoReporter.XmlSerializers.dll
[2013.01.24 20:09:36 | 000,434,264 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.dll
[2013.04.14 21:32:22 | 001,164,288 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.ni.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2010.07.21 14:33:00 | 000,267,832 | ---- | M] () -- \Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll
[2010.07.21 14:33:02 | 000,000,256 | ---- | M] () -- \Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll.hpsign
[2013.01.24 22:32:40 | 000,434,264 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.dll
[2013.04.14 21:33:09 | 001,546,240 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.ni.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2011.01.15 02:20:52 | 000,073,040 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\HfxSerial.exe
[2011.01.15 02:21:02 | 000,009,552 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-CHS.dll
[2011.01.15 02:21:04 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-DEU.dll
[2011.01.15 02:21:04 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ESP.dll
[2011.01.15 02:21:04 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-FRA.dll
[2011.01.15 02:21:06 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ITA.dll
[2011.01.15 02:21:06 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-JPN.dll
[2011.01.15 02:21:06 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-KOR.dll
[2011.01.15 02:21:08 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-NLD.dll
[2011.08.03 20:27:34 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.02.23 18:42:29 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\2ad51da1b752b19c992fcefd56eb7c01\System.Runtime.Serialization.ni.dll
[2013.02.23 18:40:22 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\eb4fa29ea9ab56d453b36696edbe6423\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.23 12:20:43 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\32072ac29ee7bc9e2ccab4fb8aa46d54\System.Runtime.Serialization.ni.dll
[2013.02.23 12:18:23 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\8e03b29f6562f1b7ce14fa3337d9cee2\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.05.19 07:50:15 | 002,647,040 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\2609614ca03927f7a99418c74844059b\System.Runtime.Serialization.ni.dll
[2013.02.25 17:33:27 | 000,311,296 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\77abf1693d291d374b58ffbbfe36d4dd\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.25 19:13:43 | 000,009,216 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\058c3947c450591cb81643529cfd5ca7\System.Xml.Serialization.ni.dll
[2013.05.21 21:07:00 | 003,412,992 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\b2b920fd7211cb0a65ebdaf5385e1f0e\System.Runtime.Serialization.ni.dll
[2013.02.25 17:19:19 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\c79d7323e38d906c09917fe1d40b2ad7\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.25 17:31:18 | 000,010,240 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\7711bba76f0bf9a22deaa8bb2e09bb16\System.Xml.Serialization.ni.dll
[2013.02.22 19:26:02 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.08.20 16:10:50 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.02.22 19:26:02 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013.08.20 16:10:49 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.08.20 16:10:55 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.08.03 20:27:38 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 16:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 03:33:16 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 03:33:16 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.08.03 20:27:31 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 16:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 03:48:20 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 03:48:20 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2011.08.03 20:27:17 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2011.08.03 20:27:17 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2011.08.03 20:27:31 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.08.03 20:27:38 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 03:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2011.08.03 20:27:42 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53\System.Runtime.Serialization.dll
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec\System.Runtime.Serialization.dll
[2009.07.14 04:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.08.03 20:47:08 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.08.03 20:47:07 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 04:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2010.11.21 05:17:50 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2012.10.05 20:18:30 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b.manifest
[2012.10.05 20:10:31 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53.manifest
[2010.11.21 05:17:50 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2012.10.05 20:19:07 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4.manifest
[2012.10.05 20:11:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec.manifest
[2010.11.21 05:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012.10.05 19:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2012.10.05 19:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2011.08.03 20:25:26 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012.10.05 22:12:17 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f.manifest
[2012.10.05 21:59:28 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797.manifest
[2010.11.21 05:17:50 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012.10.05 19:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2012.10.05 19:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2010.11.21 05:18:20 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012.10.05 19:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2012.10.05 19:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2011.08.03 20:27:34 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.04.04 22:42:44 | 000,177,159 | ---- | M] () -- C:\Users\JAKUB\AppData\Roaming\.minecraft\MineCraft.exe
[2013.05.11 21:32:56 | 000,083,361 | ---- | M] () -- C:\Users\JAKUB\AppData\Roaming\.minecraft\Uninstall Minecraft.exe
[2013.08.18 08:59:15 | 000,763,990 | ---- | M] (TeamExtreme) -- C:\Users\JAKUB\AppData\Roaming\.minecraft\minecraft launcher\Minecraft Launcher.exe
[2013.08.18 08:58:28 | 000,069,254 | ---- | M] () -- C:\Users\JAKUB\AppData\Roaming\.minecraft\minecraft launcher\Uninstall.exe
[2013.08.24 18:15:28 | 000,225,383 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_18CC08F80C86302835C63A.exe
[2013.08.24 18:15:27 | 000,225,383 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_6FEFF9B68218417F98F549.exe
[2013.08.24 18:15:28 | 000,010,134 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_C14A240941151A3B6EB01E.exe
[2013.08.24 18:15:27 | 000,010,134 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{197816C4-9BF5-4633-BB84-63F03902544E}\_C701C2819B92BF7AA763DE.exe
[2013.06.08 19:57:16 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_5A946EA14073103642F10D.exe
[2013.06.08 19:57:16 | 000,009,662 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_7394A8578B45D0B781B3FA.exe
[2013.06.08 19:57:16 | 000,009,662 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_82A9B986084671CFF1EDCA.exe
[2013.06.08 19:57:16 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{25871CD6-3E41-44F5-9A20-033B4DDF4741}\_ED66BCBE97E7C5D758DF0B.exe
[2013.07.09 18:25:21 | 000,088,102 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{63059735-CA97-FDFB-0E7A-3B8D81572EFD}\ARPPRODUCTICON.exe
[2013.05.01 13:56:41 | 000,029,926 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2013.05.04 12:22:33 | 000,033,982 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}\_2E758A6ACF428AD2553E12.exe
[2013.05.04 12:22:33 | 000,033,982 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}\_853F67D554F05449430E7E.exe
[2013.05.01 14:00:39 | 000,405,504 | R--- | M] (Flexera Software, Inc.) -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{7D0F4ACC-698A-41B9-B1E2-17594988FBEF}\ARPPRODUCTICON.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_21F3885A18D238E15AAE81.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_415493353D745EEA216D94.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_4BF1AA25BC092196FCA8F4.exe
[2013.06.07 15:29:34 | 000,009,662 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_4E0E8886533CF0864A2C11.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_6FEFF9B68218417F98F549.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_72F520DD47ECBE2F23090C.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_7B4E3B3AF5D833ADA4C0CA.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_806048DC66200FE6D24FF3.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_85972F4A73DF7EADFBAFC2.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_934312A2105DE40686D86A.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_A753214149FB4F8721C1CB.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_A7A1F24988209FFD6FF84A.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_C7EFEC170C2E3BE8B9D183.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_CF15DB293FB3ABD44856FB.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_D707CE1C009F1381803C2C.exe
[2013.06.07 15:29:34 | 000,287,934 | R--- | M] () -- C:\Users\JAKUB\AppData\Roaming\Microsoft\Installer\{8A9B1F0E-DE51-4625-A90E-4E7BF43EB515}\_FD8B6BA922FF5C34868F02.exe
[2013.02.19 18:44:40 | 001,075,024 | ---- | M] (BitTorrent Inc.) -- C:\Users\JAKUB\AppData\Roaming\uTorrent\uTorrent.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2013.09.07 08:14:24 | 000,000,029 | ---- | M] () -- C:\Windows\system32\TempWmicBatchFile.bat
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2013.03.14 10:23:30 | 003,672,640 | ---- | M] (Disc Soft Ltd)
"RublikAutostartSetting" = "C:\Program Files (x86)\Rublik\rublik.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\Disabled (Startup Manager)]
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.09.07 09:17:08 | 000,000,512 | ---- | M] () MD5=6E997B9746195685CB80686963356235 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2013.07.02 21:10:00 | 000,599,242 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\APBGame\Content\Release\Packages\SymbolEditor\Primitives_SplatsCracks.upk
[2013.06.21 14:09:06 | 000,599,242 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\APBGame\Content\Release\Packages\SymbolEditor\Primitives_SplatsCracks.upk
[2013.07.02 19:49:53 | 000,029,795 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\Launcher\APB-Reloaded-Crack.exe
[2010.06.14 13:49:08 | 000,004,690 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\65 - Patriotic-FireCracker.png
[2010.06.14 13:49:08 | 000,005,254 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\70 - Foods-Crackers.png
[2010.06.22 05:19:14 | 000,000,736 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\Crackers.xml
[2010.06.22 05:19:16 | 000,000,756 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFx\HfxXML\FireCracker.xml
[2012.02.02 15:16:26 | 000,009,987 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Animated Slab.png
[2012.02.02 15:16:26 | 000,014,913 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Cracked Slab.png
[2012.02.02 15:16:26 | 000,012,305 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Horizontal Slab.png
[2012.02.02 15:16:26 | 000,012,608 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab - Red Slab.png
[2012.02.02 15:16:26 | 000,011,676 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Cracked Slab.png
[2011.10.21 12:18:12 | 000,009,561 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\CrackedSlab3D.fxt
[2012.02.02 15:16:26 | 000,006,719 | ---- | M] () -- \Program Files (x86)\Pinnacle\Studio 16\plugins\RTFXV2\Base\RTFxFilters\Stained Glass - Big Crack.png
[2003.12.05 14:52:40 | 000,000,796 | ---- | M] () -- \Program Files (x86)\Rockstar Games\GTA San Andreas\data\Decision\Craig\crack1.ped
[2013.08.05 13:01:26 | 000,011,834 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\uTorrent\AssasinsCreedII-Razor1911-crack.torrent
[2013.08.19 10:26:10 | 000,012,116 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrack.cfx
[2013.08.19 10:26:17 | 000,012,168 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatest.cfx
[2013.08.19 10:26:17 | 000,012,536 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2013.08.19 10:26:20 | 000,013,084 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:22 | 000,012,436 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2013.08.19 10:26:20 | 000,012,720 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackalphatestshadow.cfx
[2013.08.19 10:26:10 | 000,012,484 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcracklightmap.cfx
[2013.08.19 10:26:12 | 000,013,032 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcracklightmapshadow.cfx
[2013.08.19 10:26:11 | 000,012,720 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrack.cfx
[2013.08.19 10:26:18 | 000,012,756 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2013.08.19 10:26:19 | 000,013,096 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,013,672 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,012,816 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,348 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2013.08.19 10:26:11 | 000,013,060 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2013.08.19 10:26:15 | 000,013,636 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2013.08.19 10:26:12 | 000,012,880 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetail.cfx
[2013.08.19 10:26:19 | 000,012,916 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatest.cfx
[2013.08.19 10:26:19 | 000,013,256 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,013,832 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,012,940 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,508 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2013.08.19 10:26:12 | 000,013,220 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmap.cfx
[2013.08.19 10:26:15 | 000,013,796 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2013.08.19 10:26:16 | 000,012,904 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailpointlight.cfx
[2013.08.19 10:26:15 | 000,013,472 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailshadow.cfx
[2013.08.19 10:26:16 | 000,012,780 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2013.08.19 10:26:14 | 000,013,312 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2013.08.19 10:26:15 | 000,012,400 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackpointlight.cfx
[2013.08.19 10:26:12 | 000,012,668 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetailcrackshadow.cfx
[2013.08.19 10:26:10 | 000,012,296 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrack.cfx
[2013.08.19 10:26:17 | 000,012,348 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatest.cfx
[2013.08.19 10:26:17 | 000,012,716 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2013.08.19 10:26:20 | 000,013,264 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:22 | 000,012,612 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2013.08.19 10:26:20 | 000,012,900 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2013.08.19 10:26:10 | 000,012,664 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcracklightmap.cfx
[2013.08.19 10:26:13 | 000,013,212 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2013.08.19 10:26:11 | 000,012,900 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2013.08.19 10:26:19 | 000,012,936 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2013.08.19 10:26:19 | 000,013,276 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,013,852 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,012,996 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,528 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2013.08.19 10:26:11 | 000,013,240 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2013.08.19 10:26:15 | 000,013,816 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2013.08.19 10:26:12 | 000,013,060 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetail.cfx
[2013.08.19 10:26:19 | 000,013,096 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatest.cfx
[2013.08.19 10:26:19 | 000,013,436 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2013.08.19 10:26:22 | 000,014,012 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2013.08.19 10:26:23 | 000,013,120 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2013.08.19 10:26:22 | 000,013,688 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2013.08.19 10:26:12 | 000,013,400 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmap.cfx
[2013.08.19 10:26:15 | 000,013,976 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2013.08.19 10:26:16 | 000,013,084 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailpointlight.cfx
[2013.08.19 10:26:15 | 000,013,652 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailshadow.cfx
[2013.08.19 10:26:16 | 000,012,960 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2013.08.19 10:26:15 | 000,013,492 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2013.08.19 10:26:15 | 000,012,576 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackpointlight.cfx
[2013.08.19 10:26:12 | 000,012,848 | ---- | M] () -- \Users\JAKUB\Documents\Battlefield 2\mods\bf2\cache\{D7B71EE2-2BA4-11CF-B777-7015BEC2C535}_2442_3\rashaderstmbasedetaildirtcrackshadow.cfx
[2013.09.04 14:59:59 | 002,568,801 | ---- | M] () -- \Users\JAKUB\Downloads\Office-2010-Crack.rar
[2010.03.05 06:37:46 | 000,010,179 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Effects\65 - Patriotic\FireCracker.hfx
[2010.03.05 06:37:46 | 000,008,201 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Effects\70 - Foods\Crackers.hfx
[2010.03.05 06:45:04 | 001,543,882 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Food\Cracker.hfo
[2010.03.05 06:45:06 | 000,026,143 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Patriotic\Firecracker BAM.hfo
[2010.03.05 06:45:06 | 000,027,267 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Patriotic\Firecracker bottom.hfo
[2010.03.05 06:45:06 | 000,080,879 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Objects\Patriotic\Firecracker top.hfo
[2012.06.20 10:11:30 | 000,811,885 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX - Exploze a požáry\Fire Crackle.mp3
[2012.06.20 10:11:28 | 000,159,750 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Gag\Whip Crack Vx.mp3
[2012.06.20 10:11:28 | 000,159,750 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Gag\Whip Crack.mp3
[2012.06.20 10:11:30 | 000,115,740 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Hrající si děti\Bat Crack.mp3
[2012.06.20 10:11:28 | 000,077,918 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX - Sport\Baseball - Bat Cracking.mp3
[2012.06.20 10:11:30 | 003,020,460 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\Sound Effects\UFX – Zimní radovánky\Crackling Hearth.mp3
< *keygen* /s >
< *AntiWPA* /s >
< *loader* /s >
[2013.08.25 19:37:27 | 000,151,720 | ---- | M] () -- \AdwCleaner\Quarantine\C\Program Files (x86)\WinZipper\TrayDownloader.exe.vir
[2013.03.06 18:09:40 | 000,329,248 | ---- | M] () -- \Games\Trials Evolution\datapack\ubiorbitapi_r2_loader.dll
[2013.03.06 18:09:42 | 000,300,064 | ---- | M] () -- \Games\Trials Evolution\datapack\uplay_r1_loader.dll
[2013.03.18 21:05:39 | 000,330,040 | ---- | M] () -- \Games\Trials Evolution\datapack\orbit\ubiorbitapi_r2_loader.dll
[2013.03.18 21:05:39 | 000,294,400 | ---- | M] () -- \Games\Trials Evolution\datapack\orbit\uplay_r1_loader.dll
[2011.08.08 08:08:30 | 000,000,115 | ---- | M] () -- \Hry\F1 2011\audio\audio_loader.xml
[2011.08.08 08:18:26 | 000,000,342 | ---- | M] () -- \Hry\F1 2011\scenes\garage_loader.xml
[2011.08.08 08:18:26 | 000,001,042 | ---- | M] () -- \Hry\F1 2011\scenes\paddock_gameloader.xml
[2011.08.08 08:18:26 | 000,000,645 | ---- | M] () -- \Hry\F1 2011\scenes\paddock_loader.xml
[2011.08.08 08:18:26 | 000,000,577 | ---- | M] () -- \Hry\F1 2011\scenes\paddock_unloader.xml
[2011.08.08 08:18:26 | 000,001,796 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gaqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gara.xml
[2011.08.08 08:18:26 | 000,001,802 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gate.xml
[2011.08.08 08:18:26 | 000,001,807 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gate_nt.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_gawc.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_pfqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_pfra.xml
[2011.08.08 08:18:28 | 000,001,801 | ---- | M] () -- \Hry\F1 2011\scenes\parcferme_loader_pfwc.xml
[2011.08.08 08:18:28 | 000,000,619 | ---- | M] () -- \Hry\F1 2011\scenes\pitstop_loader.xml
[2011.08.08 08:18:28 | 000,000,521 | ---- | M] () -- \Hry\F1 2011\scenes\pitstop_unloader.xml
[2011.08.15 10:50:46 | 000,000,695 | ---- | M] () -- \Hry\F1 2011\scenes\race_marshal_loader.xml
[2011.08.08 08:18:28 | 000,001,555 | ---- | M] () -- \Hry\F1 2011\scenes\trackside_garage_loader.xml
[2011.08.08 08:18:28 | 000,001,578 | ---- | M] () -- \Hry\F1 2011\scenes\trackside_garage_reloader.xml
[2011.08.08 08:18:30 | 000,000,149 | ---- | M] () -- \Hry\F1 2011\system\osd_loader.xml
[2013.05.28 08:15:55 | 000,000,118 | ---- | M] () -- \Hry\Race Driver - GRID 2\audio\audio_loader.xml
[2013.07.02 21:20:33 | 000,002,713 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\APBGame\Gecko\Data\components\uriloader.xpt
[2013.07.02 21:22:40 | 000,065,536 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\Binaries\PhysXLocal\PhysXLoader.dll
[2012.06.15 09:40:05 | 000,110,592 | ---- | M] () -- \Nexon\Combat Arms EU\Uploader.exe
[2013.05.04 11:21:17 | 005,578,752 | ---- | M] () -- \Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader.exe
[2013.05.04 11:21:17 | 001,992,328 | ---- | M] () -- \Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe
[2012.06.26 23:12:26 | 000,061,720 | ---- | M] () -- \Program Files (x86)\2K Games\Spec Ops The Line\Binaries\Win32\PhysXLocal\PhysXLoader.dll
[2013.01.08 16:05:34 | 003,298,024 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe
[2012.03.13 11:41:34 | 000,000,860 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe.manifest
[2012.03.13 11:41:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 11:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 11:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 11:42:06 | 000,000,324 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 11:42:06 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2013.02.08 14:22:08 | 002,550,272 | ---- | M] () -- \Program Files (x86)\Any GIF Animator\Downloader.dll
[2013.09.05 15:30:29 | 000,053,304 | ---- | M] () -- \Program Files (x86)\Avira\AntiVir Desktop\avwebloader.dll
[2013.09.05 15:30:29 | 000,233,016 | ---- | M] () -- \Program Files (x86)\Avira\AntiVir Desktop\avwebloader.exe
[2013.09.05 15:30:30 | 001,741,368 | ---- | M] () -- \Program Files (x86)\Avira\AntiVir Desktop\avwebloadergui.dll
[2012.02.23 00:11:56 | 000,078,336 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.02.23 00:11:56 | 000,155,136 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.02.23 00:11:56 | 000,117,248 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2010.10.07 04:36:40 | 000,265,552 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 04:36:40 | 000,018,264 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2011.02.09 17:58:48 | 000,056,416 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\Koan\pyloader.dll
[2011.02.09 17:57:16 | 000,015,849 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\Uploader\PyUploader.kc
[2011.02.09 17:57:16 | 000,179,296 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\Uploader\_PyUploader.pyd
[2011.02.09 17:57:16 | 002,475,304 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\YouCam\CES_3DLoaderFBX.dll
[2009.09.25 21:19:16 | 000,470,528 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\LeagueLoader.exe
[2013.01.08 12:25:30 | 000,000,740 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\LeagueLoader.ini
[2009.09.25 21:32:13 | 000,004,782 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\LeagueLoader_Readme_rus.txt
[2009.09.25 21:33:44 | 000,000,686 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\NHL09LeagueLoader.eng
[2009.09.25 21:32:36 | 000,000,811 | ---- | M] () -- \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\NHL09LeagueLoader.rus
[1 \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\*.tmp files -> \Program Files (x86)\EA Sports\NHL 09\EA Sports\NHL 09\*.tmp -> ]
[2006.05.04 18:16:50 | 000,333,840 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\hideout\Loader_Sequence.WAV
[2006.05.04 18:16:50 | 000,005,952 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\hideout\Loader_Sequence.WHD
[2006.05.04 18:16:50 | 000,351,949 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\hideout\Loader_Sequence.ZIP
[2006.05.04 18:17:20 | 000,313,360 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M00\Loader_Sequence.WAV
[2006.05.04 18:17:20 | 000,005,392 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M00\Loader_Sequence.WHD
[2006.05.04 18:17:20 | 000,570,691 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M00\Loader_Sequence.ZIP
[2006.05.04 18:18:02 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M01\Loader_Sequence.WAV
[2006.05.04 18:18:02 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M01\Loader_Sequence.WHD
[2006.05.04 18:18:02 | 000,711,223 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M01\Loader_Sequence.ZIP
[2006.05.04 18:18:52 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M02\Loader_Sequence.WAV
[2006.05.04 18:18:52 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M02\Loader_Sequence.WHD
[2006.05.04 18:18:52 | 000,634,201 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M02\Loader_Sequence.ZIP
[2006.05.04 18:19:46 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M03\Loader_Sequence.WAV
[2006.05.04 18:19:46 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M03\Loader_Sequence.WHD
[2006.05.04 18:19:46 | 000,707,294 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M03\Loader_Sequence.ZIP
[2006.05.04 18:20:20 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M04\Loader_Sequence.WAV
[2006.05.04 18:20:20 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M04\Loader_Sequence.WHD
[2006.05.04 18:20:20 | 000,531,761 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M04\Loader_Sequence.ZIP
[2006.05.04 18:21:00 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M05\Loader_Sequence.WAV
[2006.05.04 18:21:00 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M05\Loader_Sequence.WHD
[2006.05.04 18:21:00 | 000,591,946 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M05\Loader_Sequence.ZIP
[2006.05.04 18:21:50 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M06\Loader_Sequence.WAV
[2006.05.04 18:21:50 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M06\Loader_Sequence.WHD
[2006.05.04 18:21:50 | 000,617,459 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M06\Loader_Sequence.ZIP
[2006.05.04 18:22:26 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M08\Loader_Sequence.WAV
[2006.05.04 18:22:26 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M08\Loader_Sequence.WHD
[2006.05.04 18:22:28 | 000,440,664 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M08\Loader_Sequence.ZIP
[2006.05.04 18:23:14 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M09\Loader_Sequence.WAV
[2006.05.04 18:23:14 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M09\Loader_Sequence.WHD
[2006.05.04 18:23:14 | 000,550,700 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M09\Loader_Sequence.ZIP
[2006.05.04 18:24:14 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M10\Loader_Sequence.WAV
[2006.05.04 18:24:14 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M10\Loader_Sequence.WHD
[2006.05.04 18:24:14 | 000,650,200 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M10\Loader_Sequence.ZIP
[2006.05.04 18:24:58 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M11\Loader_Sequence.WAV
[2006.05.04 18:24:58 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M11\Loader_Sequence.WHD
[2006.05.04 18:24:58 | 000,596,635 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M11\Loader_Sequence.ZIP
[2006.05.04 18:25:40 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M12\Loader_Sequence.WAV
[2006.05.04 18:25:40 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M12\Loader_Sequence.WHD
[2006.05.04 18:25:40 | 000,668,734 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M12\Loader_Sequence.ZIP
[2006.05.04 18:26:20 | 000,320,528 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M13\Loader_Sequence.WAV
[2006.05.04 18:26:20 | 000,005,616 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M13\Loader_Sequence.WHD
[2006.05.04 18:26:20 | 000,632,940 | ---- | M] () -- \Program Files (x86)\Eidos\Hitman Blood Money\Scenes\M13\Loader_Sequence.ZIP
[2012.06.26 11:52:38 | 000,015,982 | ---- | M] () -- \Program Files (x86)\FiatECUScan\Loader_for_FiatEcuScan_3.6.0.exe
[2013.08.25 19:35:06 | 000,476,672 | ---- | M] () -- \Program Files (x86)\FreeHDSport TV\FreeHDSport TV-codedownloader.exe
[2013.02.05 12:34:22 | 000,178,560 | ---- | M] () -- \Program Files (x86)\GameforgeLive\MultiHTTPDownloader.exe
[2012.10.25 14:34:34 | 000,006,421 | ---- | M] () -- \Program Files (x86)\GameforgeLive\HTML\css\downloader.css
[2012.08.23 16:22:34 | 000,001,849 | ---- | M] () -- \Program Files (x86)\GameforgeLive\skin\4story\images\ajax-loader_black_bg.gif
[2012.08.23 16:22:36 | 000,006,513 | ---- | M] () -- \Program Files (x86)\GameforgeLive\skin\shared\js\clientdownloader.js
[2013.06.21 14:09:34 | 000,002,713 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\APBGame\Gecko\Data\components\uriloader.xpt
[2013.06.21 14:10:04 | 000,065,536 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\Binaries\PhysXLocal\PhysXLoader.dll
[2012.08.23 05:02:38 | 000,004,176 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Resources\en-US\searching\ajax-loader.gif
[2012.08.23 05:02:38 | 000,000,513 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\DynamicComponents\ruby\dcloader.rb
[2012.08.23 05:02:38 | 000,001,875 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\ShadowStringsFix\shadowstringsfix_loader.rb
[2012.08.23 05:02:38 | 000,003,953 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\SolarNorth\solarnorth_loader.rb
[2012.08.23 05:02:38 | 000,029,557 | ---- | M] () -- \Program Files (x86)\Google\Google SketchUp 8\Tools\WebTextures\webtextures_loader.rb
[2013.06.07 17:44:50 | 000,056,336 | ---- | M] () -- \Program Files (x86)\Heroes & Generals\live\_Out\Flash\Ingame_Hud\LoaderImage.swf
[2011.01.25 03:16:44 | 000,053,248 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe
[2011.01.25 03:11:12 | 000,005,974 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Setup\ContentDownloader.exe.config
[2010.10.15 04:58:52 | 000,001,012 | R--- | M] () -- \Program Files (x86)\HP Games\onplay\downloader_bg_400.gif
[2013.07.03 08:44:01 | 000,002,723 | ---- | M] () -- \Program Files (x86)\IObit\Advanced SystemCare 6\Downloader.log
[2011.12.20 18:45:12 | 001,015,128 | ---- | M] () -- \Program Files (x86)\IObit\Game Booster 3\Freeware\GB_FreeSoftwareDownloader.exe
[2012.08.16 09:26:52 | 000,071,008 | ---- | M] () -- \Program Files (x86)\Mafia II Kompletní Edice\pc\PhysXLoader.dll
[2013.01.01 01:00:00 | 000,057,856 | ---- | M] () -- \Program Files (x86)\Mortal Kombat Komplete Edition\PhysXLocal\PhysXLoader.dll
[2012.05.03 19:38:36 | 000,071,528 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2012.05.03 19:39:16 | 000,063,848 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2012.05.21 05:03:06 | 000,083,816 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader.dll
[2012.05.21 05:03:06 | 000,089,448 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader64.dll
[2008.10.10 15:39:54 | 000,068,688 | ---- | M] () -- \Program Files (x86)\Origin Games\Mirrors Edge\Binaries\PhysXLocal\PhysXLoader.dll
[2011.12.17 21:24:36 | 000,000,613 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Freemake Video Downloader (Logs).xml
[2011.01.08 17:45:00 | 000,001,281 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\JDownloader.xml
[2011.12.17 11:42:42 | 000,000,674 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Orbit Downloader More.xml
[2011.12.18 12:25:24 | 000,000,567 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Orbit Downloader.xml
[2010.08.26 07:56:52 | 000,000,747 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\Universal Share Downloader.xml
[2011.12.17 11:42:44 | 000,000,771 | ---- | M] () -- \Program Files (x86)\Pmcc\Baku\MRU Lists\Applications\VSO Downloader (Logs).xml
[2011.08.08 08:08:30 | 000,000,115 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\audio\audio_loader.xml
[2011.08.08 08:18:26 | 000,000,342 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\garage_loader.xml
[2011.08.08 08:18:26 | 000,001,042 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\paddock_gameloader.xml
[2011.08.08 08:18:26 | 000,000,645 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\paddock_loader.xml
[2011.08.08 08:18:26 | 000,000,577 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\paddock_unloader.xml
[2011.08.08 08:18:26 | 000,001,796 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gaqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gara.xml
[2011.08.08 08:18:26 | 000,001,802 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gate.xml
[2011.08.08 08:18:26 | 000,001,807 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gate_nt.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_gawc.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_pfqa.xml
[2011.08.08 08:18:26 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_pfra.xml
[2011.08.08 08:18:28 | 000,001,801 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\parcferme_loader_pfwc.xml
[2011.08.08 08:18:28 | 000,000,619 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\pitstop_loader.xml
[2011.08.08 08:18:28 | 000,000,521 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\pitstop_unloader.xml
[2011.08.15 10:50:46 | 000,000,695 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\race_marshal_loader.xml
[2011.08.08 08:18:28 | 000,001,555 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\trackside_garage_loader.xml
[2011.08.08 08:18:28 | 000,001,578 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\scenes\trackside_garage_reloader.xml
[2011.08.08 08:18:30 | 000,000,149 | ---- | M] () -- \Program Files (x86)\R.G. Catalyst\F1 2011\system\osd_loader.xml
[2012.08.21 19:22:32 | 000,057,856 | ---- | M] () -- \Program Files (x86)\R.G. World Games\Hitman Sniper Challenge\PhysXLoader.dll
[2013.05.29 21:32:28 | 000,728,576 | ---- | M] () -- \Program Files (x86)\Rockstar Games\GTA San Andreas\MTA\loader.dll
[2011.10.28 05:19:56 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderLargeBlue.gif
[2011.10.28 05:19:56 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderLargeGrey.gif
[2011.10.28 05:19:56 | 000,001,737 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderSmallBlue.gif
[2011.10.28 05:19:56 | 000,001,737 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\images\loaderSmallGold.gif
[2012.11.19 19:19:28 | 000,051,200 | ---- | M] () -- \Program Files (x86)\SQUARE ENIX\Hitman Absolution\PhysXLoader.dll
[2013.02.04 18:44:34 | 000,329,248 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\ubiorbitapi_r2_loader.dll
[2013.02.04 18:44:36 | 000,300,064 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\uplay_r1_loader.dll
[2013.03.18 21:05:39 | 000,330,040 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\orbit\ubiorbitapi_r2_loader.dll
[2013.03.18 21:05:39 | 000,294,400 | ---- | M] () -- \Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\orbit\uplay_r1_loader.dll
[2013.05.08 06:28:52 | 000,329,056 | ---- | M] () -- \Program Files (x86)\Ubisoft\Ubisoft Game Launcher\ubiorbitapi_r2_loader.dll
[2011.02.16 22:13:02 | 000,411,888 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\WTDownloader.exe
[2010.11.03 23:17:00 | 000,002,193 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\UI\GamePlay_Loader.html
[2011.02.16 21:02:14 | 000,009,072 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\UI\Scripts\gameplay_loader.js
[2010.11.03 23:17:00 | 000,002,355 | ---- | M] () -- \Program Files (x86)\WildTangent Games\App\UI\Skins\default\gameplay_loader.css
[2013.01.08 16:26:28 | 003,298,024 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012.03.13 11:42:26 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,324 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2010.10.07 04:36:40 | 000,387,408 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2010.10.07 04:36:40 | 000,018,264 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2010.03.15 12:27:20 | 000,054,784 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2013.04.28 17:09:28 | 000,004,068 | ---- | M] () -- \ProgramData\Electronic Arts\Need For Speed World\Data\GFX\_RadialFlareLoader_Double.gfx
[2013.07.13 10:17:28 | 000,004,827 | ---- | M] () -- \ProgramData\IObit\ASCDownloader\Downloader.log
[2013.06.19 15:59:00 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2013.06.19 15:59:00 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2013.06.19 15:59:00 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2013.07.01 19:59:56 | 000,001,339 | ---- | M] () -- \Users\JAKUB\AppData\Local\Apps\2.0\09MZ40W2.E50\70E37EZG.ZPO\laun...app_59711684aa47878d_0001.0021_69ddb507cab74b90\uploaders.txt
[2012.11.14 08:39:38 | 000,003,951 | ---- | M] () -- \Users\JAKUB\AppData\Local\GamersFirst\LIVE!\Content\v2\_img\ajax-loader.gif
[2013.08.16 06:59:13 | 000,001,737 | ---- | M] () -- \Users\JAKUB\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdlfdaajmclngiomogmleihllaejcnni\2.1.0_0\ajax-loader.gif
[2013.05.29 22:46:55 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin3\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,057,728 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin4\dt_dadget_loader.png
[2013.05.29 22:46:56 | 000,061,770 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin5\dt_dadget_loader.png
[2013.05.29 22:46:57 | 000,061,770 | ---- | M] () -- \Users\JAKUB\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin6\dt_dadget_loader.png
[2013.09.05 15:41:15 | 000,111,850 | ---- | M] () -- \Users\JAKUB\AppData\Local\Temp\avnwldrtemp\networkloader.log
[2013.07.20 08:13:09 | 000,000,175 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\.minecraft\config\ModLoader.cfg
[2013.07.20 08:13:19 | 000,000,047 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\.minecraft\config\mod_ModLoaderMp.cfg
[2013.09.06 19:35:48 | 000,674,952 | ---- | M] () -- \Users\JAKUB\Downloads\puma_gaffer_font.rar_downloader (1).exe
[2013.09.06 19:35:40 | 000,674,952 | ---- | M] () -- \Users\JAKUB\Downloads\puma_gaffer_font.rar_downloader.exe
[2013.08.21 01:57:04 | 000,413,696 | ---- | M] () -- \Users\JAKUB\Downloads\Splinter Cell Blacklist FullRip\Splinter Cell Blacklist\src\SYSTEM\uplay_r1_loader.dll
[2013.03.22 21:05:41 | 000,446,464 | ---- | M] () -- \Windows\NEXON_EU_DownloaderUpdater.exe
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2013.09.07 08:13:47 | 000,001,206 | ---- | M] () -- \Windows\Tasks\FreeHDSport TV-codedownloader.job
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:38:48 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.08.03 20:23:42 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2010.11.21 05:16:35 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.08.03 20:47:07 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.08.03 20:47:07 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
< *minodlogin* /s >
[2013.08.27 18:38:02 | 000,012,376 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\uTorrent\ESET Smart Security 6 32,64bit+Minodlogin 3.10.0.1.rar.torrent
< *tnod* /s >
[2012.10.17 01:50:08 | 000,350,219 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesBase\smartnodesBase.p3d
[2012.10.17 01:50:08 | 000,363,351 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesFacility\smartnodesFacility.p3d
[2012.10.17 01:50:08 | 000,330,530 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesGreen\smartnodesGreen.p3d
[2012.10.17 01:53:58 | 000,475,560 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesPermanent1\smartnodesPermanent1.p3d
[2012.10.17 01:53:58 | 000,451,092 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesPermanent2\smartnodesPermanent2.p3d
[2012.10.17 01:53:58 | 000,148,935 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesRed\smartnodesRed.p3d
[2012.10.17 01:53:58 | 000,455,510 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesShared\smartnodesShared.p3d
[2012.10.17 01:50:08 | 000,459,375 | ---- | M] () -- \Program Files (x86)\Prototype 2\art\packages\animations\smartnodesYellow\smartnodesYellow.p3d
< *AutoKMS* /s >
[2013.09.04 15:00:40 | 000,647,168 | ---- | M] () -- \Windows\AutoKMS.exe
[2013.09.04 15:02:25 | 000,000,184 | ---- | M] () -- \Windows\AutoKMS.ini
[2013.09.07 08:14:24 | 000,000,311 | ---- | M] () -- \Windows\AutoKMS.log
[2013.04.22 21:21:37 | 001,725,440 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.exe
[2013.04.22 21:21:37 | 000,000,768 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.ini
[2013.09.04 13:50:21 | 000,028,666 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.log
[2013.09.07 08:14:25 | 000,000,200 | ---- | M] () -- \Windows\Tasks\AutoKMS.job
[2013.09.04 20:36:28 | 000,000,200 | ---- | M] () -- \Windows\Tasks\AutoKMSDaily.job
< *activator* /s >
[2011.02.09 17:59:20 | 000,199,776 | ---- | M] () -- \Program Files (x86)\CyberLink\YouCam\subsys\YouCam\CLSWActivator.dll
< *serial* /s >
[2012.07.08 07:37:16 | 000,026,016 | ---- | M] () -- \AdwCleaner\Quarantine\C\Program Files (x86)\Uniblue\SpeedUpMyPC\sp_move_serial.exe.vir
[2012.08.15 18:11:19 | 004,739,892 | ---- | M] () -- \Hry\Sleeping Dogs\Data\movies\photocamera_serialkiller_bodies.bik
[2013.07.02 21:22:23 | 000,027,728 | ---- | M] () -- \New Folder\SteamApps\common\APB Reloaded\Binaries\AutoReporter.XmlSerializers.dll
[2013.06.21 14:10:00 | 000,027,728 | ---- | M] () -- \Program Files (x86)\GamersFirst\APB Reloaded\Binaries\AutoReporter.XmlSerializers.dll
[2013.01.24 20:09:36 | 000,434,264 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.dll
[2013.04.14 21:32:22 | 001,164,288 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.ni.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2010.07.21 14:33:00 | 000,267,832 | ---- | M] () -- \Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll
[2010.07.21 14:33:02 | 000,000,256 | ---- | M] () -- \Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll.hpsign
[2013.01.24 22:32:40 | 000,434,264 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.dll
[2013.04.14 21:33:09 | 001,546,240 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.20125.0\System.Runtime.Serialization.ni.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2011.01.15 02:20:52 | 000,073,040 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\HfxSerial.exe
[2011.01.15 02:21:02 | 000,009,552 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-CHS.dll
[2011.01.15 02:21:04 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-DEU.dll
[2011.01.15 02:21:04 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ESP.dll
[2011.01.15 02:21:04 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-FRA.dll
[2011.01.15 02:21:06 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ITA.dll
[2011.01.15 02:21:06 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-JPN.dll
[2011.01.15 02:21:06 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-KOR.dll
[2011.01.15 02:21:08 | 000,010,064 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-NLD.dll
[2011.08.03 20:27:34 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.02.23 18:42:29 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\2ad51da1b752b19c992fcefd56eb7c01\System.Runtime.Serialization.ni.dll
[2013.02.23 18:40:22 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\eb4fa29ea9ab56d453b36696edbe6423\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.23 12:20:43 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\32072ac29ee7bc9e2ccab4fb8aa46d54\System.Runtime.Serialization.ni.dll
[2013.02.23 12:18:23 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\8e03b29f6562f1b7ce14fa3337d9cee2\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.05.19 07:50:15 | 002,647,040 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\2609614ca03927f7a99418c74844059b\System.Runtime.Serialization.ni.dll
[2013.02.25 17:33:27 | 000,311,296 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\77abf1693d291d374b58ffbbfe36d4dd\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.25 19:13:43 | 000,009,216 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\058c3947c450591cb81643529cfd5ca7\System.Xml.Serialization.ni.dll
[2013.05.21 21:07:00 | 003,412,992 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\b2b920fd7211cb0a65ebdaf5385e1f0e\System.Runtime.Serialization.ni.dll
[2013.02.25 17:19:19 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\c79d7323e38d906c09917fe1d40b2ad7\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.25 17:31:18 | 000,010,240 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\7711bba76f0bf9a22deaa8bb2e09bb16\System.Xml.Serialization.ni.dll
[2013.02.22 19:26:02 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.08.20 16:10:50 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.02.22 19:26:02 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013.08.20 16:10:49 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.08.20 16:10:55 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.08.03 20:27:38 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 16:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 03:33:16 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 03:33:16 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.08.03 20:27:31 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 16:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 03:48:20 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 03:48:20 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2011.08.03 20:27:17 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2011.08.03 20:27:17 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2011.08.03 20:27:31 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.08.03 20:27:38 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 03:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2011.08.03 20:27:42 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53\System.Runtime.Serialization.dll
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec\System.Runtime.Serialization.dll
[2009.07.14 04:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.08.03 20:47:08 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.08.03 20:47:07 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 04:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2010.11.21 05:17:50 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2012.10.05 20:18:30 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b.manifest
[2012.10.05 20:10:31 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53.manifest
[2010.11.21 05:17:50 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2012.10.05 20:19:07 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4.manifest
[2012.10.05 20:11:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec.manifest
[2010.11.21 05:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012.10.05 19:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2012.10.05 19:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2011.08.03 20:25:26 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012.10.05 22:12:17 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f.manifest
[2012.10.05 21:59:28 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797.manifest
[2010.11.21 05:17:50 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012.10.05 19:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2012.10.05 19:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2010.11.21 05:18:20 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012.10.05 19:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2012.10.05 19:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2011.08.03 20:27:34 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
Re: Prosím o kontrolu - pomalý ntb
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2012.10.05 12:56:07 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:37:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2011.08.03 20:27:38 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.08.03 20:27:17 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:25:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll
< *w7lxe* /s >
========== Files - Unicode (All) ==========
[2013.09.07 08:15:23 | 096,496,803 | ---- | M] ()(C:\Windows\SysWow64\???@) -- C:\Windows\SysWow64\未ᵌ@
[2013.09.07 08:15:23 | 096,496,803 | ---- | M] ()(C:\Windows\System32\???@) -- C:\Windows\System32\未ᵌ@
[2013.09.07 08:15:23 | 000,000,000 | ---- | C] ()(C:\Windows\SysWow64\???@) -- C:\Windows\SysWow64\未ᵌ@
[2013.09.06 15:02:16 | 096,334,488 | ---- | M] ()(C:\Windows\SysWow64\???{) -- C:\Windows\SysWow64\獢쫈ᵌ{
[2013.09.06 15:02:16 | 096,334,488 | ---- | M] ()(C:\Windows\System32\???{) -- C:\Windows\System32\獢쫈ᵌ{
[2013.09.06 15:02:16 | 096,334,488 | ---- | C] ()(C:\Windows\SysWow64\???{) -- C:\Windows\SysWow64\獢쫈ᵌ{
========== Alternate Data Streams ==========
@Alternate Data Stream - 188 bytes -> C:\ProgramData\TEMP:0B4227B4
< End of report >
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2012.10.05 12:56:07 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:37:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2011.08.03 20:27:38 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.08.03 20:27:17 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2011.08.03 20:27:56 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:25:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll
< *w7lxe* /s >
========== Files - Unicode (All) ==========
[2013.09.07 08:15:23 | 096,496,803 | ---- | M] ()(C:\Windows\SysWow64\???@) -- C:\Windows\SysWow64\未ᵌ@
[2013.09.07 08:15:23 | 096,496,803 | ---- | M] ()(C:\Windows\System32\???@) -- C:\Windows\System32\未ᵌ@
[2013.09.07 08:15:23 | 000,000,000 | ---- | C] ()(C:\Windows\SysWow64\???@) -- C:\Windows\SysWow64\未ᵌ@
[2013.09.06 15:02:16 | 096,334,488 | ---- | M] ()(C:\Windows\SysWow64\???{) -- C:\Windows\SysWow64\獢쫈ᵌ{
[2013.09.06 15:02:16 | 096,334,488 | ---- | M] ()(C:\Windows\System32\???{) -- C:\Windows\System32\獢쫈ᵌ{
[2013.09.06 15:02:16 | 096,334,488 | ---- | C] ()(C:\Windows\SysWow64\???{) -- C:\Windows\SysWow64\獢쫈ᵌ{
========== Alternate Data Streams ==========
@Alternate Data Stream - 188 bytes -> C:\ProgramData\TEMP:0B4227B4
< End of report >
Re: Prosím o kontrolu - pomalý ntb
Co ten crack na office?
Jestli to chcete docistit, office odinstalujte a dejte novy log z RSIT. Tak hovori pravidla fora
Pak budem mazat.

Jestli to chcete docistit, office odinstalujte a dejte novy log z RSIT. Tak hovori pravidla fora

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu - pomalý ntb
OK, ten smažu, ale jak mám psát referáty do školy?
Re: Prosím o kontrolu - pomalý ntb
Logfile of random's system information tool 1.08 (written by random/random)
Run by JAKUB at 2013-09-07 20:48:29
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 75 GB (16%) free of 460 GB
Total RAM: 3835 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:48:44, on 7.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Program Files (x86)\Full Uninstall\FullUninstallAgent.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\JAKUB\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\JAKUB.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [RublikAutostartSetting] "C:\Program Files (x86)\Rublik\rublik.exe"
O4 - Global Startup: 20Dollars2Surf.lnk = C:\Program Files (x86)\20Dollars2Surf\20dollars2surf.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Cron Service for Prey (CronService) - Fork Ltd. - C:\Prey\platform\windows\cronsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: AVStreamer Service (PoSrv1) - ePlayWorks, Inc. - C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lokátor vzdáleného volání procedur (RPC) (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Zachytávání pro službu SNMP (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 9439 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
atieclxx
C:\Windows\system32\WLANExt.exe 38898864
\??\C:\Windows\system32\conhost.exe "-14727882021492271630942081916-587688044-5410124068857007426485511892083584989
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {0283AC07-E7CD-470B-86A0-FD3AB33F6533}
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Prey\platform\windows\cronsvc.exe"
C:\Windows\system32\svchost.exe -k defragsvc
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Full Uninstall\FullUninstallAgent.exe" -start
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\Windows\SysWow64\perfhost.exe
"C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
C:\Windows\System32\vds.exe
taskeng.exe {25AF64E0-4C3A-47DE-84CF-159941ACD4A3}
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000838
WLIDSvcM.exe 4084
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Windows\system32\wuauclt.exe"
"taskhost.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Users\JAKUB\AppData\Roaming\uTorrent\uTorrent.exe" "magnet:?xt=urn:btih:2b890000d53ee246874d2ae7019924c0d9140349&dn=Outlast+2013+Steam-Rip+MULTi6-RG+GameWorks&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80&tr=udp%3A%2F%2Ftracker.publicbt.com%3A80&tr=udp%3A%2F%2Ftracker.istole.it%3A6969&tr=udp%3A%2F%2Ftracker.ccc.de%3A80&tr=udp%3A%2F%2Fopen.demonii.com%3A1337"
taskeng.exe {2F2A917D-A62A-452B-B36A-A64C0BA884AC}
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\Origin\Origin.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5208.0.1640887257\1221417642" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x1002 --gpu-device-id=0x68e4 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.861.1.2000 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.2.491929960\573787635" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.3.421303212\1829287634" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.4.979967779\1993773948" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.8.1603502249\301912370" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.12.1332314892\1092521709" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.15.963168172\536836626" /prefetch:673131151
"C:\Users\JAKUB\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.16.448278237\504024576" /prefetch:673131151
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\AutoKMSDaily.job
C:\Windows\tasks\FreeHDSport TV-codedownloader.job
C:\Windows\tasks\FreeHDSport TV-enabler.job
C:\Windows\tasks\FreeHDSport TV-updater.job
C:\Windows\tasks\HPCeeScheduleForJAKUB.job
C:\Windows\tasks\SlimDrivers Startup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-03 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-05-09 60576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AtherosBtStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2011-05-09 627360]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-05-09 379552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2000-01-01 6548112]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"RublikAutostartSetting"=C:\Program Files (x86)\Rublik\rublik.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-09-05 347192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Chit Chat for Facebook]
c:\program files (x86)\chit chat for facebook\ccffacebook.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\JAKUB\AppData\Roaming\Seznam.cz\szninstall.exe -c []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\JAKUB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ErrorRepairPro]
C:\Program Files (x86)\Error Repair Professional\autostart.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\F-Secure Hoster (666)]
c:\program files (x86)\f-secure\fshoster32.exe -app -hosterid:1 []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\fTalk]
c:\users\jakub\appdata\local\ftalk\ftalk.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter]
C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe /autostart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Powersuite Monitor]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Printsrv]
c:\Windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedUpMyPC]
C:\Program Files (x86)\Uniblue\SpeedUpMyPC\launcher.exe -d 20000 --minimized []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
c:\new folder\steam.exe [2013-08-28 1811880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ThreadManager.exe]
C:\Program Files (x86)\Thread Manager\ThreadManager.exe [2013-07-14 12322584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-09-05 347192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
20Dollars2Surf.lnk - C:\Program Files (x86)\20Dollars2Surf\20dollars2surf.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe"="C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe:*:Enabled:NEXON_EU_Downloader_Engine.exe"
"C:\Nexon\Combat Arms EU\CombatArms.exe"="C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms EU\Engine.exe"="C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Nexon\Combat Arms EU\CombatArms.exe"="C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms EU\Engine.exe"="C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-09-07 20:48:28 ----D---- C:\rsit
2013-09-07 09:10:40 ----A---- C:\Windows\ntbtlog.txt
2013-09-06 22:13:16 ----D---- C:\Users\JAKUB\AppData\Roaming\SpinTires
2013-09-06 21:34:08 ----D---- C:\Program Files (x86)\Oovee
2013-09-06 15:20:47 ----D---- C:\Program Files\WhoCrashed
2013-09-06 15:01:52 ----A---- C:\Windows\system32\drivers\avnetflt.sys
2013-09-05 15:38:52 ----D---- C:\Users\JAKUB\AppData\Roaming\Avira
2013-09-05 15:31:47 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2013-09-05 15:31:47 ----A---- C:\Windows\system32\drivers\avipbb.sys
2013-09-05 15:31:47 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2013-09-04 20:36:39 ----D---- C:\ProgramData\PDFC
2013-09-04 20:28:16 ----SHD---- C:\$RECYCLE.BIN
2013-09-04 20:23:56 ----D---- C:\Program Files\CCleaner
2013-09-04 15:00:40 ----A---- C:\Windows\AutoKMS.exe
2013-09-02 11:50:43 ----A---- C:\Windows\SYSWOW64\TempWmicBatchFile.bat
2013-09-02 11:46:46 ----D---- C:\Windows\temp
2013-08-31 14:36:22 ----D---- C:\Program Files (x86)\20Dollars2Surf
2013-08-31 14:34:29 ----D---- C:\ProgramData\Rublik
2013-08-31 14:33:52 ----D---- C:\Users\JAKUB\AppData\Roaming\Rublik
2013-08-31 14:33:39 ----D---- C:\Program Files (x86)\Rublik
2013-08-31 09:58:58 ----D---- C:\Windows\San Andreas Mod Installer
2013-08-30 16:40:48 ----A---- C:\Windows\system32\ftserui2.dll
2013-08-30 16:40:48 ----A---- C:\Windows\system32\drivers\ftser2k.sys
2013-08-30 16:36:52 ----A---- C:\Windows\SYSWOW64\ftd2xx.dll
2013-08-30 16:36:52 ----A---- C:\Windows\system32\ftd2xx.dll
2013-08-30 16:36:52 ----A---- C:\Windows\system32\ftbusui.dll
2013-08-30 16:36:52 ----A---- C:\Windows\system32\drivers\ftdibus.sys
2013-08-29 16:41:16 ----D---- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
2013-08-29 16:41:16 ----D---- C:\Program Files (x86)\ICQM
2013-08-28 09:15:32 ----D---- C:\Program Files (x86)\GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze
2013-08-27 19:17:32 ----D---- C:\Users\JAKUB\AppData\Roaming\ESET
2013-08-25 19:35:05 ----D---- C:\Program Files (x86)\FreeHDSport TV
2013-08-25 19:34:50 ----D---- C:\Program Files (x86)\FreeHDSport.TV
2013-08-25 19:34:49 ----D---- C:\Program Files (x86)\LSHunter.TV
2013-08-25 18:47:21 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-08-25 18:47:09 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-08-25 18:47:09 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-08-25 18:47:09 ----A---- C:\Windows\SYSWOW64\java.exe
2013-08-25 18:16:19 ----D---- C:\AdwCleaner
2013-08-24 16:58:00 ----D---- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
2013-08-24 16:50:50 ----D---- C:\Program Files (x86)\Silabs
2013-08-24 16:40:18 ----D---- C:\SiLabs
2013-08-24 16:31:23 ----D---- C:\Program Files (x86)\OBD2Spy
2013-08-24 16:31:15 ----N---- C:\Windows\Setup1.exe
2013-08-24 16:31:13 ----A---- C:\Windows\ST6UNST.EXE
2013-08-22 08:06:41 ----D---- C:\Program Files (x86)\MonkeyDragon Mods
2013-08-21 15:55:33 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2013-08-21 10:50:32 ----D---- C:\Program Files (x86)\NHL 09
2013-08-20 18:19:44 ----D---- C:\Users\JAKUB\AppData\Roaming\ATI
2013-08-20 15:48:48 ----D---- C:\Windows\SYSWOW64\directx
2013-08-18 09:27:33 ----D---- C:\Users\JAKUB\AppData\Roaming\skyz
2013-08-18 09:25:51 ----D---- C:\Minecraft_Backup
2013-08-18 09:14:56 ----D---- C:\Users\JAKUB\AppData\Roaming\Macromedia
2013-08-16 11:01:45 ----RHD---- C:\Users\JAKUB\AppData\Roaming\SecuROM
2013-08-16 09:41:30 ----D---- C:\Users\JAKUB\AppData\Roaming\Milestone
2013-08-15 12:25:48 ----D---- C:\Program Files (x86)\PAYDAY 2
2013-08-13 11:13:48 ----D---- C:\Program Files (x86)\Mafia 2 Multiplayer
2013-08-13 11:13:06 ----HD---- C:\ProgramData\EgisTec
2013-08-12 21:05:18 ----D---- C:\Program Files (x86)\PC Locker Pro
2013-08-12 10:24:36 ----D---- C:\Users\JAKUB\AppData\Roaming\Ubisoft
2013-08-12 09:22:19 ----D---- C:\ProgramData\GlarySoft
2013-08-12 09:19:15 ----D---- C:\Users\JAKUB\AppData\Roaming\Mirillis
======List of files/folders modified in the last 1 months======
2013-09-07 20:48:37 ----D---- C:\Program Files\trend micro
2013-09-07 20:48:26 ----D---- C:\Users\JAKUB\AppData\Roaming\uTorrent
2013-09-07 19:55:49 ----D---- C:\Program Files (x86)\Origin
2013-09-07 19:54:18 ----SHD---- C:\Windows\Installer
2013-09-07 19:54:18 ----D---- C:\Config.Msi
2013-09-07 19:54:15 ----HD---- C:\Windows\SysWOW64
2013-09-07 19:53:42 ----SHD---- C:\System Volume Information
2013-09-07 19:53:19 ----D---- C:\Windows\System32
2013-09-07 19:45:38 ----D---- C:\Windows\Microsoft.NET
2013-09-07 19:44:50 ----D---- C:\ProgramData\Microsoft Help
2013-09-07 19:44:49 ----RSD---- C:\Windows\assembly
2013-09-07 19:40:20 ----SD---- C:\ProgramData\Microsoft
2013-09-07 19:39:42 ----RSD---- C:\Windows\Fonts
2013-09-07 19:39:34 ----D---- C:\Windows\SHELLNEW
2013-09-07 19:32:30 ----A---- C:\Windows\win.ini
2013-09-07 10:58:12 ----D---- C:\Windows\system32\config
2013-09-07 10:44:29 ----D---- C:\Windows\system32\drivers
2013-09-07 09:10:40 ----D---- C:\Windows
2013-09-07 08:29:36 ----D---- C:\New Folder
2013-09-06 22:18:25 ----D---- C:\Windows\system32\catroot
2013-09-06 22:03:29 ----D---- C:\Users\JAKUB\AppData\Roaming\Skype
2013-09-06 21:34:11 ----D---- C:\Windows\Logs
2013-09-06 21:34:08 ----RD---- C:\Program Files (x86)
2013-09-06 15:20:47 ----RD---- C:\Program Files
2013-09-05 20:26:17 ----D---- C:\Windows\inf
2013-09-05 20:26:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-05 16:17:11 ----D---- C:\Users\JAKUB\AppData\Roaming\Adobe
2013-09-04 20:36:39 ----D---- C:\ProgramData
2013-09-04 20:31:29 ----D---- C:\Users\JAKUB\AppData\Roaming\DAEMON Tools Lite
2013-09-04 20:28:17 ----D---- C:\Windows\Minidump
2013-09-04 20:24:07 ----D---- C:\Windows\system32\Tasks
2013-09-04 20:23:51 ----D---- C:\Windows\erdnt
2013-09-04 15:02:25 ----A---- C:\Windows\AutoKMS.ini
2013-09-04 15:00:41 ----D---- C:\Windows\Tasks
2013-09-04 14:56:13 ----SD---- C:\Users\JAKUB\AppData\Roaming\Microsoft
2013-09-02 11:49:01 ----A---- C:\Windows\system.ini
2013-09-02 11:48:53 ----D---- C:\Windows\system32\drivers\etc
2013-09-02 11:48:53 ----D---- C:\Program Files (x86)\Google
2013-09-02 11:48:14 ----D---- C:\ProgramData\Norton
2013-09-02 11:46:12 ----RD---- C:\Program Files (x86)\Skype
2013-09-02 11:42:14 ----D---- C:\Windows\SYSWOW64\drivers
2013-09-02 11:42:14 ----D---- C:\Windows\AppPatch
2013-09-02 11:42:13 ----D---- C:\Program Files (x86)\Common Files
2013-09-01 19:19:56 ----D---- C:\Program Files (x86)\WinRAR
2013-09-01 16:49:00 ----D---- C:\Program Files\Common Files
2013-08-31 14:02:47 ----D---- C:\Users\JAKUB\AppData\Roaming\DG
2013-08-30 18:54:33 ----D---- C:\Users\JAKUB\AppData\Roaming\.minecraft
2013-08-30 17:32:42 ----D---- C:\Users\JAKUB\AppData\Roaming\Mozilla
2013-08-30 17:07:51 ----D---- C:\Program Files (x86)\FiatECUScan
2013-08-30 16:40:49 ----D---- C:\Windows\system32\DriverStore
2013-08-29 20:37:36 ----D---- C:\Users\JAKUB\AppData\Roaming\TS3Client
2013-08-29 19:05:34 ----D---- C:\ProgramData\Kaspersky Lab
2013-08-29 09:55:27 ----D---- C:\Windows\system32\catroot2
2013-08-26 12:04:06 ----D---- C:\Users\JAKUB\AppData\Roaming\TeamViewer
2013-08-25 18:49:46 ----D---- C:\ProgramData\F-Secure
2013-08-25 18:46:58 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-08-25 18:46:58 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-08-25 18:24:31 ----D---- C:\Users\JAKUB\AppData\Roaming\Uniblue
2013-08-25 16:13:21 ----A---- C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-08-25 08:40:25 ----D---- C:\Windows\Prefetch
2013-08-24 18:56:26 ----D---- C:\Program Files (x86)\RealWorld Cursor Editor
2013-08-24 18:54:32 ----D---- C:\Program Files (x86)\VS Revo Group
2013-08-24 16:50:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-08-24 09:03:52 ----D---- C:\Ubisoft
2013-08-23 11:19:28 ----D---- C:\Program Files (x86)\EA Sports
2013-08-22 08:06:02 ----D---- C:\Windows\Speech
2013-08-21 16:25:57 ----D---- C:\Hry
2013-08-21 15:55:43 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-08-20 16:13:32 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-08-20 16:09:29 ----D---- C:\Windows\SYSWOW64\en-US
2013-08-20 16:09:29 ----D---- C:\Windows\system32\en-US
2013-08-20 14:43:28 ----D---- C:\ProgramData\Codemasters
2013-08-20 13:06:44 ----D---- C:\Windows\system32\wbem
2013-08-20 13:05:49 ----D---- C:\Windows\registration
2013-08-18 08:59:18 ----D---- C:\Program Files (x86)\EA GAMES
2013-08-16 11:01:22 ----D---- C:\Program Files (x86)\Origin Games
2013-08-16 09:23:22 ----D---- C:\Program Files (x86)\Ubisoft
2013-08-16 09:19:22 ----D---- C:\ProgramData\Ubisoft
2013-08-16 09:14:29 ----D---- C:\Games
2013-08-15 09:05:53 ----D---- C:\Users\JAKUB\AppData\Roaming\Origin
2013-08-15 09:05:52 ----D---- C:\ProgramData\Origin
2013-08-13 19:51:54 ----D---- C:\Windows\winsxs
2013-08-13 19:41:25 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-08-12 20:36:08 ----D---- C:\ProgramData\Adobe
2013-08-12 09:35:22 ----RD---- C:\Users
2013-08-12 09:35:21 ----D---- C:\ProgramData\WinZip
2013-08-12 09:35:21 ----D---- C:\ProgramData\WildTangent
2013-08-12 09:35:21 ----D---- C:\ProgramData\Steam
2013-08-12 09:35:19 ----D---- C:\ProgramData\MTA San Andreas All
2013-08-12 09:35:19 ----D---- C:\ProgramData\Hewlett-Packard
2013-08-12 09:35:19 ----D---- C:\ProgramData\G DATA
2013-08-12 09:35:18 ----D---- C:\ProgramData\Atheros
2013-08-12 09:35:18 ----D---- C:\Program Files\Windows NT
2013-08-12 09:35:18 ----D---- C:\Program Files\Windows Media Player
2013-08-12 09:35:18 ----D---- C:\Program Files (x86)\Windows Media Player
2013-08-12 09:35:18 ----D---- C:\Program Files (x86)\War Thunder
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Mixxx
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\GameforgeLive
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\Game Cam
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\Futuremark
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\Evernote
2013-08-12 09:35:09 ----D---- C:\Program Files (x86)\AMD
2013-08-12 09:33:05 ----D---- C:\Windows\Downloaded Program Files
2013-08-12 09:18:26 ----D---- C:\Users\JAKUB\AppData\Roaming\GlarySoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2000-01-01 82560]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2000-01-01 42624]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys [2000-01-01 16552]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2013-09-05 132088]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-09-05 28600]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-05-29 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2013-09-05 105344]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2000-01-01 9359872]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2000-01-01 309760]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-10-24 3802112]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2000-01-01 96896]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-05-09 29344]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-02-09 31088]
R3 GearAspiWDM;GEARAspiWDM; C:\Windows\System32\drivers\GEARAspiWDM.sys [2008-02-22 19496]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 4065296]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2000-01-01 339600]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-03-05 436840]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-12-21 1402416]
R3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2012-11-28 35112]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2000-01-01 56448]
S3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 AR5416;Atheros Wireless Adapter Service; C:\Windows\system32\DRIVERS\athwx.sys [2011-02-25 2793568]
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-05-09 36000]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
S3 atillk64;atillk64; C:\Windows\system32\drivers\atillk64.sys []
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-06-10 1311232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-05-09 298656]
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-05-09 201376]
S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-05-09 55456]
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-05-09 154272]
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2011-05-09 281760]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 EagleX64;EagleX64; C:\Windows\system32\drivers\EagleX64.sys []
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-12-28 69192]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2011-12-28 84808]
S3 GDPkIcpt;GDPkIcpt; C:\Windows\system32\drivers\GDPkIcpt.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-07-01 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTCore64;RTCore64; \??\C:\Program Files (x86)\RMClock\RTCore64.sys [2008-09-08 14352]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-07 16152]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-07-01 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-07-01 30208]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [2012-11-13 14544]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2000-01-01 204288]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-03-28 361984]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-09-05 108088]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-09-05 84024]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-05-09 146592]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-05-09 80032]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 CronService;Cron Service for Prey; C:\Prey\platform\windows\cronsvc.exe [2013-05-08 23552]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-07-21 103992]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-03-05 35200]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2000-01-01 2451456]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
R2 PoSrv1;AVStreamer Service; C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe [2013-02-07 148224]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-08-14 3291008]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-04-23 3574624]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21 257416]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S2 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S2 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S2 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S2 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-02-20 1255736]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2012-12-17 137488]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-04-13 115608]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-08-28 563624]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-09-05 815160]
-----------------EOF-----------------
Run by JAKUB at 2013-09-07 20:48:29
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 75 GB (16%) free of 460 GB
Total RAM: 3835 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:48:44, on 7.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Program Files (x86)\Full Uninstall\FullUninstallAgent.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\JAKUB\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\JAKUB.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [RublikAutostartSetting] "C:\Program Files (x86)\Rublik\rublik.exe"
O4 - Global Startup: 20Dollars2Surf.lnk = C:\Program Files (x86)\20Dollars2Surf\20dollars2surf.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Cron Service for Prey (CronService) - Fork Ltd. - C:\Prey\platform\windows\cronsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: AVStreamer Service (PoSrv1) - ePlayWorks, Inc. - C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lokátor vzdáleného volání procedur (RPC) (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Zachytávání pro službu SNMP (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 9439 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
atieclxx
C:\Windows\system32\WLANExt.exe 38898864
\??\C:\Windows\system32\conhost.exe "-14727882021492271630942081916-587688044-5410124068857007426485511892083584989
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {0283AC07-E7CD-470B-86A0-FD3AB33F6533}
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Prey\platform\windows\cronsvc.exe"
C:\Windows\system32\svchost.exe -k defragsvc
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Full Uninstall\FullUninstallAgent.exe" -start
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\Windows\SysWow64\perfhost.exe
"C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
C:\Windows\System32\vds.exe
taskeng.exe {25AF64E0-4C3A-47DE-84CF-159941ACD4A3}
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000838
WLIDSvcM.exe 4084
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Windows\system32\wuauclt.exe"
"taskhost.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Users\JAKUB\AppData\Roaming\uTorrent\uTorrent.exe" "magnet:?xt=urn:btih:2b890000d53ee246874d2ae7019924c0d9140349&dn=Outlast+2013+Steam-Rip+MULTi6-RG+GameWorks&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80&tr=udp%3A%2F%2Ftracker.publicbt.com%3A80&tr=udp%3A%2F%2Ftracker.istole.it%3A6969&tr=udp%3A%2F%2Ftracker.ccc.de%3A80&tr=udp%3A%2F%2Fopen.demonii.com%3A1337"
taskeng.exe {2F2A917D-A62A-452B-B36A-A64C0BA884AC}
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\Origin\Origin.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5208.0.1640887257\1221417642" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x1002 --gpu-device-id=0x68e4 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.861.1.2000 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.2.491929960\573787635" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.3.421303212\1829287634" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.4.979967779\1993773948" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.8.1603502249\301912370" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.12.1332314892\1092521709" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.15.963168172\536836626" /prefetch:673131151
"C:\Users\JAKUB\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control0 pct:50a m29stable:r1/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_06/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5208.16.448278237\504024576" /prefetch:673131151
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\AutoKMSDaily.job
C:\Windows\tasks\FreeHDSport TV-codedownloader.job
C:\Windows\tasks\FreeHDSport TV-enabler.job
C:\Windows\tasks\FreeHDSport TV-updater.job
C:\Windows\tasks\HPCeeScheduleForJAKUB.job
C:\Windows\tasks\SlimDrivers Startup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-03 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-05-09 60576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AtherosBtStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2011-05-09 627360]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-05-09 379552]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2000-01-01 6548112]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"RublikAutostartSetting"=C:\Program Files (x86)\Rublik\rublik.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-09-05 347192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Chit Chat for Facebook]
c:\program files (x86)\chit chat for facebook\ccffacebook.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\JAKUB\AppData\Roaming\Seznam.cz\szninstall.exe -c []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\JAKUB\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ErrorRepairPro]
C:\Program Files (x86)\Error Repair Professional\autostart.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\F-Secure Hoster (666)]
c:\program files (x86)\f-secure\fshoster32.exe -app -hosterid:1 []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\fTalk]
c:\users\jakub\appdata\local\ftalk\ftalk.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter]
C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe /autostart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Powersuite Monitor]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Printsrv]
c:\Windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedUpMyPC]
C:\Program Files (x86)\Uniblue\SpeedUpMyPC\launcher.exe -d 20000 --minimized []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
c:\new folder\steam.exe [2013-08-28 1811880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ThreadManager.exe]
C:\Program Files (x86)\Thread Manager\ThreadManager.exe [2013-07-14 12322584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-09-05 347192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
20Dollars2Surf.lnk - C:\Program Files (x86)\20Dollars2Surf\20dollars2surf.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe"="C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe:*:Enabled:NEXON_EU_Downloader_Engine.exe"
"C:\Nexon\Combat Arms EU\CombatArms.exe"="C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms EU\Engine.exe"="C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Nexon\Combat Arms EU\CombatArms.exe"="C:\Nexon\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms EU\Engine.exe"="C:\Nexon\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-09-07 20:48:28 ----D---- C:\rsit
2013-09-07 09:10:40 ----A---- C:\Windows\ntbtlog.txt
2013-09-06 22:13:16 ----D---- C:\Users\JAKUB\AppData\Roaming\SpinTires
2013-09-06 21:34:08 ----D---- C:\Program Files (x86)\Oovee
2013-09-06 15:20:47 ----D---- C:\Program Files\WhoCrashed
2013-09-06 15:01:52 ----A---- C:\Windows\system32\drivers\avnetflt.sys
2013-09-05 15:38:52 ----D---- C:\Users\JAKUB\AppData\Roaming\Avira
2013-09-05 15:31:47 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2013-09-05 15:31:47 ----A---- C:\Windows\system32\drivers\avipbb.sys
2013-09-05 15:31:47 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2013-09-04 20:36:39 ----D---- C:\ProgramData\PDFC
2013-09-04 20:28:16 ----SHD---- C:\$RECYCLE.BIN
2013-09-04 20:23:56 ----D---- C:\Program Files\CCleaner
2013-09-04 15:00:40 ----A---- C:\Windows\AutoKMS.exe
2013-09-02 11:50:43 ----A---- C:\Windows\SYSWOW64\TempWmicBatchFile.bat
2013-09-02 11:46:46 ----D---- C:\Windows\temp
2013-08-31 14:36:22 ----D---- C:\Program Files (x86)\20Dollars2Surf
2013-08-31 14:34:29 ----D---- C:\ProgramData\Rublik
2013-08-31 14:33:52 ----D---- C:\Users\JAKUB\AppData\Roaming\Rublik
2013-08-31 14:33:39 ----D---- C:\Program Files (x86)\Rublik
2013-08-31 09:58:58 ----D---- C:\Windows\San Andreas Mod Installer
2013-08-30 16:40:48 ----A---- C:\Windows\system32\ftserui2.dll
2013-08-30 16:40:48 ----A---- C:\Windows\system32\drivers\ftser2k.sys
2013-08-30 16:36:52 ----A---- C:\Windows\SYSWOW64\ftd2xx.dll
2013-08-30 16:36:52 ----A---- C:\Windows\system32\ftd2xx.dll
2013-08-30 16:36:52 ----A---- C:\Windows\system32\ftbusui.dll
2013-08-30 16:36:52 ----A---- C:\Windows\system32\drivers\ftdibus.sys
2013-08-29 16:41:16 ----D---- C:\Users\JAKUB\AppData\Roaming\ICQ-Profile
2013-08-29 16:41:16 ----D---- C:\Program Files (x86)\ICQM
2013-08-28 09:15:32 ----D---- C:\Program Files (x86)\GPS-Navigace-Sygic-Aura-V11.2.6-Android-CZ-pln-verze
2013-08-27 19:17:32 ----D---- C:\Users\JAKUB\AppData\Roaming\ESET
2013-08-25 19:35:05 ----D---- C:\Program Files (x86)\FreeHDSport TV
2013-08-25 19:34:50 ----D---- C:\Program Files (x86)\FreeHDSport.TV
2013-08-25 19:34:49 ----D---- C:\Program Files (x86)\LSHunter.TV
2013-08-25 18:47:21 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-08-25 18:47:09 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-08-25 18:47:09 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-08-25 18:47:09 ----A---- C:\Windows\SYSWOW64\java.exe
2013-08-25 18:16:19 ----D---- C:\AdwCleaner
2013-08-24 16:58:00 ----D---- C:\Users\JAKUB\AppData\Roaming\ScanMaster-ELM
2013-08-24 16:50:50 ----D---- C:\Program Files (x86)\Silabs
2013-08-24 16:40:18 ----D---- C:\SiLabs
2013-08-24 16:31:23 ----D---- C:\Program Files (x86)\OBD2Spy
2013-08-24 16:31:15 ----N---- C:\Windows\Setup1.exe
2013-08-24 16:31:13 ----A---- C:\Windows\ST6UNST.EXE
2013-08-22 08:06:41 ----D---- C:\Program Files (x86)\MonkeyDragon Mods
2013-08-21 15:55:33 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2013-08-21 10:50:32 ----D---- C:\Program Files (x86)\NHL 09
2013-08-20 18:19:44 ----D---- C:\Users\JAKUB\AppData\Roaming\ATI
2013-08-20 15:48:48 ----D---- C:\Windows\SYSWOW64\directx
2013-08-18 09:27:33 ----D---- C:\Users\JAKUB\AppData\Roaming\skyz
2013-08-18 09:25:51 ----D---- C:\Minecraft_Backup
2013-08-18 09:14:56 ----D---- C:\Users\JAKUB\AppData\Roaming\Macromedia
2013-08-16 11:01:45 ----RHD---- C:\Users\JAKUB\AppData\Roaming\SecuROM
2013-08-16 09:41:30 ----D---- C:\Users\JAKUB\AppData\Roaming\Milestone
2013-08-15 12:25:48 ----D---- C:\Program Files (x86)\PAYDAY 2
2013-08-13 11:13:48 ----D---- C:\Program Files (x86)\Mafia 2 Multiplayer
2013-08-13 11:13:06 ----HD---- C:\ProgramData\EgisTec
2013-08-12 21:05:18 ----D---- C:\Program Files (x86)\PC Locker Pro
2013-08-12 10:24:36 ----D---- C:\Users\JAKUB\AppData\Roaming\Ubisoft
2013-08-12 09:22:19 ----D---- C:\ProgramData\GlarySoft
2013-08-12 09:19:15 ----D---- C:\Users\JAKUB\AppData\Roaming\Mirillis
======List of files/folders modified in the last 1 months======
2013-09-07 20:48:37 ----D---- C:\Program Files\trend micro
2013-09-07 20:48:26 ----D---- C:\Users\JAKUB\AppData\Roaming\uTorrent
2013-09-07 19:55:49 ----D---- C:\Program Files (x86)\Origin
2013-09-07 19:54:18 ----SHD---- C:\Windows\Installer
2013-09-07 19:54:18 ----D---- C:\Config.Msi
2013-09-07 19:54:15 ----HD---- C:\Windows\SysWOW64
2013-09-07 19:53:42 ----SHD---- C:\System Volume Information
2013-09-07 19:53:19 ----D---- C:\Windows\System32
2013-09-07 19:45:38 ----D---- C:\Windows\Microsoft.NET
2013-09-07 19:44:50 ----D---- C:\ProgramData\Microsoft Help
2013-09-07 19:44:49 ----RSD---- C:\Windows\assembly
2013-09-07 19:40:20 ----SD---- C:\ProgramData\Microsoft
2013-09-07 19:39:42 ----RSD---- C:\Windows\Fonts
2013-09-07 19:39:34 ----D---- C:\Windows\SHELLNEW
2013-09-07 19:32:30 ----A---- C:\Windows\win.ini
2013-09-07 10:58:12 ----D---- C:\Windows\system32\config
2013-09-07 10:44:29 ----D---- C:\Windows\system32\drivers
2013-09-07 09:10:40 ----D---- C:\Windows
2013-09-07 08:29:36 ----D---- C:\New Folder
2013-09-06 22:18:25 ----D---- C:\Windows\system32\catroot
2013-09-06 22:03:29 ----D---- C:\Users\JAKUB\AppData\Roaming\Skype
2013-09-06 21:34:11 ----D---- C:\Windows\Logs
2013-09-06 21:34:08 ----RD---- C:\Program Files (x86)
2013-09-06 15:20:47 ----RD---- C:\Program Files
2013-09-05 20:26:17 ----D---- C:\Windows\inf
2013-09-05 20:26:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-05 16:17:11 ----D---- C:\Users\JAKUB\AppData\Roaming\Adobe
2013-09-04 20:36:39 ----D---- C:\ProgramData
2013-09-04 20:31:29 ----D---- C:\Users\JAKUB\AppData\Roaming\DAEMON Tools Lite
2013-09-04 20:28:17 ----D---- C:\Windows\Minidump
2013-09-04 20:24:07 ----D---- C:\Windows\system32\Tasks
2013-09-04 20:23:51 ----D---- C:\Windows\erdnt
2013-09-04 15:02:25 ----A---- C:\Windows\AutoKMS.ini
2013-09-04 15:00:41 ----D---- C:\Windows\Tasks
2013-09-04 14:56:13 ----SD---- C:\Users\JAKUB\AppData\Roaming\Microsoft
2013-09-02 11:49:01 ----A---- C:\Windows\system.ini
2013-09-02 11:48:53 ----D---- C:\Windows\system32\drivers\etc
2013-09-02 11:48:53 ----D---- C:\Program Files (x86)\Google
2013-09-02 11:48:14 ----D---- C:\ProgramData\Norton
2013-09-02 11:46:12 ----RD---- C:\Program Files (x86)\Skype
2013-09-02 11:42:14 ----D---- C:\Windows\SYSWOW64\drivers
2013-09-02 11:42:14 ----D---- C:\Windows\AppPatch
2013-09-02 11:42:13 ----D---- C:\Program Files (x86)\Common Files
2013-09-01 19:19:56 ----D---- C:\Program Files (x86)\WinRAR
2013-09-01 16:49:00 ----D---- C:\Program Files\Common Files
2013-08-31 14:02:47 ----D---- C:\Users\JAKUB\AppData\Roaming\DG
2013-08-30 18:54:33 ----D---- C:\Users\JAKUB\AppData\Roaming\.minecraft
2013-08-30 17:32:42 ----D---- C:\Users\JAKUB\AppData\Roaming\Mozilla
2013-08-30 17:07:51 ----D---- C:\Program Files (x86)\FiatECUScan
2013-08-30 16:40:49 ----D---- C:\Windows\system32\DriverStore
2013-08-29 20:37:36 ----D---- C:\Users\JAKUB\AppData\Roaming\TS3Client
2013-08-29 19:05:34 ----D---- C:\ProgramData\Kaspersky Lab
2013-08-29 09:55:27 ----D---- C:\Windows\system32\catroot2
2013-08-26 12:04:06 ----D---- C:\Users\JAKUB\AppData\Roaming\TeamViewer
2013-08-25 18:49:46 ----D---- C:\ProgramData\F-Secure
2013-08-25 18:46:58 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-08-25 18:46:58 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-08-25 18:24:31 ----D---- C:\Users\JAKUB\AppData\Roaming\Uniblue
2013-08-25 16:13:21 ----A---- C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-08-25 08:40:25 ----D---- C:\Windows\Prefetch
2013-08-24 18:56:26 ----D---- C:\Program Files (x86)\RealWorld Cursor Editor
2013-08-24 18:54:32 ----D---- C:\Program Files (x86)\VS Revo Group
2013-08-24 16:50:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-08-24 09:03:52 ----D---- C:\Ubisoft
2013-08-23 11:19:28 ----D---- C:\Program Files (x86)\EA Sports
2013-08-22 08:06:02 ----D---- C:\Windows\Speech
2013-08-21 16:25:57 ----D---- C:\Hry
2013-08-21 15:55:43 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-08-20 16:13:32 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-08-20 16:09:29 ----D---- C:\Windows\SYSWOW64\en-US
2013-08-20 16:09:29 ----D---- C:\Windows\system32\en-US
2013-08-20 14:43:28 ----D---- C:\ProgramData\Codemasters
2013-08-20 13:06:44 ----D---- C:\Windows\system32\wbem
2013-08-20 13:05:49 ----D---- C:\Windows\registration
2013-08-18 08:59:18 ----D---- C:\Program Files (x86)\EA GAMES
2013-08-16 11:01:22 ----D---- C:\Program Files (x86)\Origin Games
2013-08-16 09:23:22 ----D---- C:\Program Files (x86)\Ubisoft
2013-08-16 09:19:22 ----D---- C:\ProgramData\Ubisoft
2013-08-16 09:14:29 ----D---- C:\Games
2013-08-15 09:05:53 ----D---- C:\Users\JAKUB\AppData\Roaming\Origin
2013-08-15 09:05:52 ----D---- C:\ProgramData\Origin
2013-08-13 19:51:54 ----D---- C:\Windows\winsxs
2013-08-13 19:41:25 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-08-12 20:36:08 ----D---- C:\ProgramData\Adobe
2013-08-12 09:35:22 ----RD---- C:\Users
2013-08-12 09:35:21 ----D---- C:\ProgramData\WinZip
2013-08-12 09:35:21 ----D---- C:\ProgramData\WildTangent
2013-08-12 09:35:21 ----D---- C:\ProgramData\Steam
2013-08-12 09:35:19 ----D---- C:\ProgramData\MTA San Andreas All
2013-08-12 09:35:19 ----D---- C:\ProgramData\Hewlett-Packard
2013-08-12 09:35:19 ----D---- C:\ProgramData\G DATA
2013-08-12 09:35:18 ----D---- C:\ProgramData\Atheros
2013-08-12 09:35:18 ----D---- C:\Program Files\Windows NT
2013-08-12 09:35:18 ----D---- C:\Program Files\Windows Media Player
2013-08-12 09:35:18 ----D---- C:\Program Files (x86)\Windows Media Player
2013-08-12 09:35:18 ----D---- C:\Program Files (x86)\War Thunder
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Mixxx
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-08-12 09:35:17 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\GameforgeLive
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\Game Cam
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\Futuremark
2013-08-12 09:35:13 ----D---- C:\Program Files (x86)\Evernote
2013-08-12 09:35:09 ----D---- C:\Program Files (x86)\AMD
2013-08-12 09:33:05 ----D---- C:\Windows\Downloaded Program Files
2013-08-12 09:18:26 ----D---- C:\Users\JAKUB\AppData\Roaming\GlarySoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2000-01-01 82560]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2000-01-01 42624]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys [2000-01-01 16552]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2013-09-05 132088]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-09-05 28600]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-05-29 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2013-09-05 105344]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2000-01-01 9359872]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2000-01-01 309760]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-10-24 3802112]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2000-01-01 96896]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-05-09 29344]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-02-09 31088]
R3 GearAspiWDM;GEARAspiWDM; C:\Windows\System32\drivers\GEARAspiWDM.sys [2008-02-22 19496]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 4065296]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2000-01-01 339600]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-03-05 436840]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-12-21 1402416]
R3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2012-11-28 35112]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2000-01-01 56448]
S3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 AR5416;Atheros Wireless Adapter Service; C:\Windows\system32\DRIVERS\athwx.sys [2011-02-25 2793568]
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-05-09 36000]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
S3 atillk64;atillk64; C:\Windows\system32\drivers\atillk64.sys []
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-06-10 1311232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-05-09 298656]
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-05-09 201376]
S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-05-09 55456]
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-05-09 154272]
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2011-05-09 281760]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 EagleX64;EagleX64; C:\Windows\system32\drivers\EagleX64.sys []
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-12-28 69192]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2011-12-28 84808]
S3 GDPkIcpt;GDPkIcpt; C:\Windows\system32\drivers\GDPkIcpt.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-07-01 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTCore64;RTCore64; \??\C:\Program Files (x86)\RMClock\RTCore64.sys [2008-09-08 14352]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-07 16152]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-07-01 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-07-01 30208]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [2012-11-13 14544]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2000-01-01 204288]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-03-28 361984]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-09-05 108088]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-09-05 84024]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-05-09 146592]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-05-09 80032]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 CronService;Cron Service for Prey; C:\Prey\platform\windows\cronsvc.exe [2013-05-08 23552]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-07-21 103992]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-03-05 35200]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2000-01-01 2451456]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
R2 PoSrv1;AVStreamer Service; C:\Program Files (x86)\ePlayWorks\AVStreamer\PoSrv.exe [2013-02-07 148224]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-08-14 3291008]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-04-23 3574624]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21 257416]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S2 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S2 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S2 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S2 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-02-20 1255736]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2012-12-17 137488]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-04-13 115608]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-08-28 563624]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-09-05 815160]
-----------------EOF-----------------
Re: Prosím o kontrolu - pomalý ntb




Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)
Kód: Vybrat vše
:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]
:services
Skype C2C Service
AdobeFlashPlayerUpdateSvc
:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\AutoKMSDaily.job
C:\Windows\tasks\FreeHDSport TV-codedownloader.job
C:\Windows\tasks\FreeHDSport TV-enabler.job
C:\Windows\tasks\FreeHDSport TV-updater.job
C:\Windows\tasks\HPCeeScheduleForJAKUB.job
C:\Windows\tasks\SlimDrivers Startup.job
C:\Program Files (x86)\IObit
C:\Windows\AutoKMS.exe
:otl
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_m ... 1377452141
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Before = http://www.mail.ru/cnt/9516
IE - HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\..\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}: "URL" = http://go.mail.ru/search?utf8in=1&fr=ietb&q={SearchTerms}
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
File not found (No name found) -- C:\PROGRAM FILES (X86)\IOBIT APPS TOOLBAR\FF
File not found (No name found) -- C:\USERS\JAKUB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4ANQZJ7D.DEFAULT\EXTENSIONS\ASCSURFINGPROTECTION@IOBIT.COM
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105 File not found
O9:64bit: - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - Reg Error: Value error. File not found
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Key error. File not found
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
[2013.08.05 10:38:09 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\AVG
[2013.08.27 19:17:32 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\ESET
[2013.07.25 11:00:19 | 000,000,000 | ---D | M] -- C:\Users\JAKUB\AppData\Roaming\IObit
[6 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[6 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[61 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[2013.09.04 14:59:59 | 002,568,801 | ---- | M] () -- \Users\JAKUB\Downloads\Office-2010-Crack.rar
[2013.08.27 18:38:02 | 000,012,376 | ---- | M] () -- \Users\JAKUB\AppData\Roaming\uTorrent\ESET Smart Security 6 32,64bit+Minodlogin 3.10.0.1.rar.torrent
[2013.09.04 15:00:40 | 000,647,168 | ---- | M] () -- \Windows\AutoKMS.exe
[2013.09.04 15:02:25 | 000,000,184 | ---- | M] () -- \Windows\AutoKMS.ini
[2013.09.07 08:14:24 | 000,000,311 | ---- | M] () -- \Windows\AutoKMS.log
[2013.04.22 21:21:37 | 001,725,440 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.exe
[2013.04.22 21:21:37 | 000,000,768 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.ini
[2013.09.04 13:50:21 | 000,028,666 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.log
[2013.09.07 08:14:25 | 000,000,200 | ---- | M] () -- \Windows\Tasks\AutoKMS.job
[2013.09.04 20:36:28 | 000,000,200 | ---- | M] () -- \Windows\Tasks\AutoKMSDaily.job
@Alternate Data Stream - 188 bytes -> C:\ProgramData\TEMP:0B4227B4
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=-
"RublikAutostartSetting"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Chit Chat for Facebook] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ErrorRepairPro] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\F-Secure Hoster (666)] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\fTalk] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Powersuite Monitor] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Printsrv] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedUpMyPC] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ThreadManager.exe] /64
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu - pomalý ntb
All processes killed
========== COMMANDS ==========
[EMPTYTEMP]
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: JAKUB
->Temp folder emptied: 20753939 bytes
->Temporary Internet Files folder emptied: 1615049 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 374062962 bytes
->Apple Safari cache emptied: 0 bytes
->Flash cache emptied: 739 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 180482 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
%systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 668 bytes
RecycleBin emptied: 20024690922 bytes
Total Files Cleaned = 19 475,00 mb
[EMPTYFLASH]
User: Default
User: JAKUB
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service Skype C2C Service stopped successfully!
Service Skype C2C Service deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\tasks\AutoKMS.job moved successfully.
C:\Windows\tasks\AutoKMSDaily.job moved successfully.
C:\Windows\tasks\FreeHDSport TV-codedownloader.job moved successfully.
C:\Windows\tasks\FreeHDSport TV-enabler.job moved successfully.
C:\Windows\tasks\FreeHDSport TV-updater.job moved successfully.
C:\Windows\tasks\HPCeeScheduleForJAKUB.job moved successfully.
C:\Windows\tasks\SlimDrivers Startup.job moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\Update folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\Log folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2 folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\Quarantine Zone folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\log\scan folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\log\realtime folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\log folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Update folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Tweak folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Scroll folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Performance folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\News folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Defrag folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\button folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Border folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Boost folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\LatestGames folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Language folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Freeware folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3 folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\SecurityHole_Backup folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\images folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BootTimeLog folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6 folder moved successfully.
C:\Program Files (x86)\IObit folder moved successfully.
C:\Windows\AutoKMS.exe moved successfully.
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Before| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1617569673-3034970362-4137664275-1001\Software\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin\ deleted successfully.
C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll moved successfully.
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin\ deleted successfully.
File C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll not found.
File C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll not found.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel\ deleted successfully.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel\ not found.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{7815BE26-237D-41A8-A98F-F7BD75F71086}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7815BE26-237D-41A8-A98F-F7BD75F71086}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype-ie-addon-data\ deleted successfully.
Invalid CLSID key: C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
File C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll not found.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue\Strartup Manager folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue\PC Tuneup 2011 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue\AVG Registry Cleaner folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Registry Defrag\Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Registry Defrag folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\User Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Logs folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Disk Doctor\User Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Disk Doctor\Logs folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Disk Doctor folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Integrator folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Disk Defrag\Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Disk Defrag folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\ESET\ESET Smart Security folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\ESET folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Smart Defrag 2 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\IObit Uninstaller folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\IObit Malware Fighter folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\SmartRAM folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Registrycleaner\backup folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Registrycleaner folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Internet Booster folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Driver Manager folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Boottime folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Backup folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1076.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1EF8.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6F07.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPC22F.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPD760.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP6B8E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP783D.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7F5E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE300.tmp\ehiVidCtl.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE300.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\Windows\Installer\MSI11CC.tmp- folder deleted successfully.
C:\Windows\Installer\MSI11EF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI13FF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1533.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1694.tmp- folder deleted successfully.
C:\Windows\Installer\MSI193D.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1C4A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1E0A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2017.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2215.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2448.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSI2448.tmp-\HD-ShortcutHandler.dll deleted successfully.
C:\Windows\Installer\MSI2448.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2485.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2662.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2F8F.tmp- folder deleted successfully.
C:\Windows\Installer\MSI318A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI31DE.tmp- folder deleted successfully.
C:\Windows\Installer\MSI32F9.tmp-\HD-ShortcutHandler.dll deleted successfully.
C:\Windows\Installer\MSI32F9.tmp- folder deleted successfully.
C:\Windows\Installer\MSI369A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI378A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3AC0.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3BDF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3E59.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3F97.tmp- folder deleted successfully.
C:\Windows\Installer\MSI41D3.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSI41D3.tmp- folder deleted successfully.
C:\Windows\Installer\MSI438E.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSI438E.tmp- folder deleted successfully.
C:\Windows\Installer\MSI43F8.tmp- folder deleted successfully.
C:\Windows\Installer\MSI456D.tmp- folder deleted successfully.
C:\Windows\Installer\MSI46DA.tmp- folder deleted successfully.
C:\Windows\Installer\MSI48D7.tmp- folder deleted successfully.
C:\Windows\Installer\MSI4A25.tmp- folder deleted successfully.
C:\Windows\Installer\MSI683.tmp- folder deleted successfully.
C:\Windows\Installer\MSI7C22.tmp deleted successfully.
C:\Windows\Installer\MSI7ECB.tmp- folder deleted successfully.
C:\Windows\Installer\MSI882C.tmp- folder deleted successfully.
C:\Windows\Installer\MSI884B.tmp- folder deleted successfully.
C:\Windows\Installer\MSI8C91.tmp- folder deleted successfully.
C:\Windows\Installer\MSI8D99.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9549.tmp- folder deleted successfully.
C:\Windows\Installer\MSI99F8.tmp-\HD-ShortcutHandler.dll deleted successfully.
C:\Windows\Installer\MSI99F8.tmp- folder deleted successfully.
C:\Windows\Installer\MSI99FB.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9AF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9E5D.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9FC7.tmp- folder deleted successfully.
C:\Windows\Installer\MSIA5FC.tmp- folder deleted successfully.
C:\Windows\Installer\MSIAADF.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSIAADF.tmp- folder deleted successfully.
C:\Windows\Installer\MSIB00E.tmp- folder deleted successfully.
C:\Windows\Installer\MSIB50E.tmp- folder deleted successfully.
C:\Windows\Installer\MSIBE1C.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC148.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC3F.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC416.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC678.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC8E9.tmp- folder deleted successfully.
C:\Windows\Installer\MSICC05.tmp- folder deleted successfully.
C:\Windows\Installer\MSID441.tmp- folder deleted successfully.
C:\Windows\Installer\MSID73F.tmp- folder deleted successfully.
C:\Windows\Installer\MSIDD1E.tmp- folder deleted successfully.
C:\Windows\Installer\MSIE578.tmp- folder deleted successfully.
C:\Windows\Installer\MSIEA3A.tmp- folder deleted successfully.
C:\Windows\Installer\MSIEC7C.tmp- folder deleted successfully.
C:\Windows\Installer\MSIEEFC.tmp- folder deleted successfully.
File \Users\JAKUB\Downloads\Office-2010-Crack.rar not found.
File move failed. \Users\JAKUB\AppData\Roaming\uTorrent\ESET Smart Security 6 32,64bit+Minodlogin 3.10.0.1.rar.torrent scheduled to be moved on reboot.
File \Windows\AutoKMS.exe not found.
File move failed. \Windows\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS.log scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.exe scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.log scheduled to be moved on reboot.
File \Windows\Tasks\AutoKMS.job not found.
File \Windows\Tasks\AutoKMSDaily.job not found.
ADS C:\ProgramData\TEMP:0B4227B4 deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\RublikAutostartSetting deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Chit Chat for Facebook\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ErrorRepairPro\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\F-Secure Hoster (666)\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\fTalk\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Powersuite Monitor\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Printsrv\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedUpMyPC\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ThreadManager.exe\ deleted successfully.
OTL by OldTimer - Version 3.2.69.0 log created on 09082013_091945
Files\Folders moved on Reboot...
C:\Users\JAKUB\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Users\JAKUB\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.
File move failed. \Users\JAKUB\AppData\Roaming\uTorrent\ESET Smart Security 6 32,64bit+Minodlogin 3.10.0.1.rar.torrent scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS.log scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.exe scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.log scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== COMMANDS ==========
[EMPTYTEMP]
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: JAKUB
->Temp folder emptied: 20753939 bytes
->Temporary Internet Files folder emptied: 1615049 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 374062962 bytes
->Apple Safari cache emptied: 0 bytes
->Flash cache emptied: 739 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 180482 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
%systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 668 bytes
RecycleBin emptied: 20024690922 bytes
Total Files Cleaned = 19 475,00 mb
[EMPTYFLASH]
User: Default
User: JAKUB
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service Skype C2C Service stopped successfully!
Service Skype C2C Service deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\tasks\AutoKMS.job moved successfully.
C:\Windows\tasks\AutoKMSDaily.job moved successfully.
C:\Windows\tasks\FreeHDSport TV-codedownloader.job moved successfully.
C:\Windows\tasks\FreeHDSport TV-enabler.job moved successfully.
C:\Windows\tasks\FreeHDSport TV-updater.job moved successfully.
C:\Windows\tasks\HPCeeScheduleForJAKUB.job moved successfully.
C:\Windows\tasks\SlimDrivers Startup.job moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\Update folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\Log folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2 folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\Quarantine Zone folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\log\scan folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\log\realtime folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter\log folder moved successfully.
C:\Program Files (x86)\IObit\IObit Malware Fighter folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Update folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Tweak folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Scroll folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Performance folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\News folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Defrag folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\button folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Border folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default\Boost folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin\Default folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Skin folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\LatestGames folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Language folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3\Freeware folder moved successfully.
C:\Program Files (x86)\IObit\Game Booster 3 folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\SecurityHole_Backup folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\images folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BootTimeLog folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6 folder moved successfully.
C:\Program Files (x86)\IObit folder moved successfully.
C:\Windows\AutoKMS.exe moved successfully.
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
HKU\S-1-5-21-1617569673-3034970362-4137664275-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Before| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1617569673-3034970362-4137664275-1001\Software\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin\ deleted successfully.
C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll moved successfully.
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin\ deleted successfully.
File C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll not found.
File C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll not found.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel\ deleted successfully.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel\ not found.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Se&nd to OneNote\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{7815BE26-237D-41A8-A98F-F7BD75F71086}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7815BE26-237D-41A8-A98F-F7BD75F71086}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype-ie-addon-data\ deleted successfully.
Invalid CLSID key: C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
File C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll not found.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue\Strartup Manager folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue\PC Tuneup 2011 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue\AVG Registry Cleaner folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Rescue folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Registry Defrag\Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Registry Defrag folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\User Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Logs folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Disk Doctor\User Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Disk Doctor\Logs folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011\Disk Doctor folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\PC Tuneup 2011 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Integrator folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Disk Defrag\Reports folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG\Disk Defrag folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\AVG folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\ESET\ESET Smart Security folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\ESET folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Smart Defrag 2 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\IObit Uninstaller folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\IObit Malware Fighter folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\SmartRAM folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Registrycleaner\backup folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Registrycleaner folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Internet Booster folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Driver Manager folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Boottime folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6\Backup folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit\Advanced SystemCare V6 folder moved successfully.
C:\Users\JAKUB\AppData\Roaming\IObit folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1076.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1EF8.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6F07.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPC22F.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPD760.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP6B8E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP783D.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7F5E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE300.tmp\ehiVidCtl.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE300.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\Windows\Installer\MSI11CC.tmp- folder deleted successfully.
C:\Windows\Installer\MSI11EF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI13FF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1533.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1694.tmp- folder deleted successfully.
C:\Windows\Installer\MSI193D.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1C4A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI1E0A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2017.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2215.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2448.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSI2448.tmp-\HD-ShortcutHandler.dll deleted successfully.
C:\Windows\Installer\MSI2448.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2485.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2662.tmp- folder deleted successfully.
C:\Windows\Installer\MSI2F8F.tmp- folder deleted successfully.
C:\Windows\Installer\MSI318A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI31DE.tmp- folder deleted successfully.
C:\Windows\Installer\MSI32F9.tmp-\HD-ShortcutHandler.dll deleted successfully.
C:\Windows\Installer\MSI32F9.tmp- folder deleted successfully.
C:\Windows\Installer\MSI369A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI378A.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3AC0.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3BDF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3E59.tmp- folder deleted successfully.
C:\Windows\Installer\MSI3F97.tmp- folder deleted successfully.
C:\Windows\Installer\MSI41D3.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSI41D3.tmp- folder deleted successfully.
C:\Windows\Installer\MSI438E.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSI438E.tmp- folder deleted successfully.
C:\Windows\Installer\MSI43F8.tmp- folder deleted successfully.
C:\Windows\Installer\MSI456D.tmp- folder deleted successfully.
C:\Windows\Installer\MSI46DA.tmp- folder deleted successfully.
C:\Windows\Installer\MSI48D7.tmp- folder deleted successfully.
C:\Windows\Installer\MSI4A25.tmp- folder deleted successfully.
C:\Windows\Installer\MSI683.tmp- folder deleted successfully.
C:\Windows\Installer\MSI7C22.tmp deleted successfully.
C:\Windows\Installer\MSI7ECB.tmp- folder deleted successfully.
C:\Windows\Installer\MSI882C.tmp- folder deleted successfully.
C:\Windows\Installer\MSI884B.tmp- folder deleted successfully.
C:\Windows\Installer\MSI8C91.tmp- folder deleted successfully.
C:\Windows\Installer\MSI8D99.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9549.tmp- folder deleted successfully.
C:\Windows\Installer\MSI99F8.tmp-\HD-ShortcutHandler.dll deleted successfully.
C:\Windows\Installer\MSI99F8.tmp- folder deleted successfully.
C:\Windows\Installer\MSI99FB.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9AF.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9E5D.tmp- folder deleted successfully.
C:\Windows\Installer\MSI9FC7.tmp- folder deleted successfully.
C:\Windows\Installer\MSIA5FC.tmp- folder deleted successfully.
C:\Windows\Installer\MSIAADF.tmp-\HD-LibraryHandler.dll deleted successfully.
C:\Windows\Installer\MSIAADF.tmp- folder deleted successfully.
C:\Windows\Installer\MSIB00E.tmp- folder deleted successfully.
C:\Windows\Installer\MSIB50E.tmp- folder deleted successfully.
C:\Windows\Installer\MSIBE1C.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC148.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC3F.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC416.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC678.tmp- folder deleted successfully.
C:\Windows\Installer\MSIC8E9.tmp- folder deleted successfully.
C:\Windows\Installer\MSICC05.tmp- folder deleted successfully.
C:\Windows\Installer\MSID441.tmp- folder deleted successfully.
C:\Windows\Installer\MSID73F.tmp- folder deleted successfully.
C:\Windows\Installer\MSIDD1E.tmp- folder deleted successfully.
C:\Windows\Installer\MSIE578.tmp- folder deleted successfully.
C:\Windows\Installer\MSIEA3A.tmp- folder deleted successfully.
C:\Windows\Installer\MSIEC7C.tmp- folder deleted successfully.
C:\Windows\Installer\MSIEEFC.tmp- folder deleted successfully.
File \Users\JAKUB\Downloads\Office-2010-Crack.rar not found.
File move failed. \Users\JAKUB\AppData\Roaming\uTorrent\ESET Smart Security 6 32,64bit+Minodlogin 3.10.0.1.rar.torrent scheduled to be moved on reboot.
File \Windows\AutoKMS.exe not found.
File move failed. \Windows\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS.log scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.exe scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.log scheduled to be moved on reboot.
File \Windows\Tasks\AutoKMS.job not found.
File \Windows\Tasks\AutoKMSDaily.job not found.
ADS C:\ProgramData\TEMP:0B4227B4 deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\RublikAutostartSetting deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Chit Chat for Facebook\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ErrorRepairPro\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\F-Secure Hoster (666)\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\fTalk\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Powersuite Monitor\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Printsrv\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedUpMyPC\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ThreadManager.exe\ deleted successfully.
OTL by OldTimer - Version 3.2.69.0 log created on 09082013_091945
Files\Folders moved on Reboot...
C:\Users\JAKUB\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Users\JAKUB\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.
File move failed. \Users\JAKUB\AppData\Roaming\uTorrent\ESET Smart Security 6 32,64bit+Minodlogin 3.10.0.1.rar.torrent scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS.log scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.exe scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.ini scheduled to be moved on reboot.
File move failed. \Windows\AutoKMS\AutoKMS.log scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
Re: Prosím o kontrolu - pomalý ntb


vyosek píše:T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).