¨OTL logfile created on: 5/8/2014 10:25:40 AM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Pepik\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3.68 Gb Total Physical Memory | 1.51 Gb Available Physical Memory | 40.92% Memory free
7.36 Gb Paging File | 4.76 Gb Available in Paging File | 64.76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 447.66 Gb Total Space | 162.57 Gb Free Space | 36.32% Space Free | Partition Type: NTFS
Drive G: | 3.77 Gb Total Space | 0.31 Gb Free Space | 8.20% Space Free | Partition Type: FAT32
Computer Name: PEPA | User Name: Pepik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/05/08 10:20:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Pepik\Downloads\OTL.exe
PRC - [2014/05/08 09:51:53 | 000,214,520 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrB.exe
PRC - [2014/03/19 01:46:35 | 000,196,048 | ---- | M] (APN LLC.) -- C:\Users\Pepik\AppData\Local\VNT\vntldr.exe
PRC - [2014/03/12 03:54:58 | 000,108,032 | ---- | M] (Freemake) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
PRC - [2014/03/12 03:54:56 | 000,009,216 | ---- | M] (Ellora Assets Corp.) -- C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
PRC - [2013/12/18 10:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/10/23 14:54:33 | 003,567,800 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\avastui.exe
PRC - [2013/10/22 16:03:53 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013/08/18 09:12:01 | 000,075,064 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2012/09/20 08:44:16 | 000,296,392 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
PRC - [2011/05/26 08:40:48 | 000,029,696 | ---- | M] (Acer Incorporated) -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
PRC - [2011/04/24 03:29:20 | 000,256,832 | ---- | M] (NTI Corporation) -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
PRC - [2011/04/24 03:28:38 | 000,297,280 | ---- | M] (NTI Corporation) -- C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
PRC - [2011/04/22 18:44:14 | 000,244,624 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe
PRC - [2010/04/13 18:57:58 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2010/03/18 06:57:02 | 002,320,920 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010/03/18 06:56:56 | 000,268,824 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
========== Modules (No Company Name) ==========
MOD - [2014/04/24 02:33:13 | 000,390,472 | ---- | M] () -- C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll
MOD - [2014/04/24 02:33:12 | 013,692,232 | ---- | M] () -- C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\PepperFlash\pepflashplayer.dll
MOD - [2014/04/24 02:33:10 | 004,081,480 | ---- | M] () -- C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\pdf.dll
MOD - [2014/04/24 02:33:05 | 000,674,632 | ---- | M] () -- C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\libglesv2.dll
MOD - [2014/04/24 02:33:04 | 000,093,000 | ---- | M] () -- C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\libegl.dll
MOD - [2014/04/24 02:33:03 | 001,647,432 | ---- | M] () -- C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\ffmpegsumo.dll
MOD - [2014/04/24 02:33:01 | 000,065,352 | ---- | M] () -- C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\chrome_elf.dll
MOD - [2013/10/22 16:03:56 | 019,336,120 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2011/04/24 03:29:56 | 000,465,640 | ---- | M] () -- C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
========== Services (SafeList) ==========
SRV:
64bit: - [2013/10/22 16:03:53 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:
64bit: - [2011/04/22 18:44:14 | 000,244,624 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Live Updater Service)
SRV:
64bit: - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2014/05/08 09:51:53 | 000,214,520 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrB.exe -- (PnkBstrB)
SRV - [2014/05/01 19:56:48 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/03/12 03:54:58 | 000,108,032 | ---- | M] (Freemake) [Auto | Running] -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe -- (Freemake Improver)
SRV - [2014/03/12 03:54:56 | 000,009,216 | ---- | M] (Ellora Assets Corp.) [Auto | Running] -- C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe -- (FreemakeVideoCapture)
SRV - [2013/12/18 10:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/10/23 09:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/09/07 15:14:14 | 000,117,656 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/08/18 09:12:01 | 000,075,064 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013/02/25 08:39:32 | 000,543,144 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2012/09/26 00:51:53 | 004,460,280 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2012/04/26 15:03:36 | 000,135,584 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe -- (Futuremark SystemInfo Service)
SRV - [2011/10/09 17:59:19 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/05/26 08:40:48 | 000,029,696 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe -- (GREGService)
SRV - [2011/04/24 03:29:20 | 000,256,832 | ---- | M] (NTI Corporation) [Auto | Running] -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe -- (NTI IScheduleSvc)
SRV - [2010/04/13 18:57:58 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/03/18 06:57:02 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/03/18 06:56:56 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/02/19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/11 09:38:06 | 000,620,544 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
========== Driver Services (SafeList) ==========
DRV:
64bit: - [2013/11/11 16:18:00 | 000,409,832 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
DRV:
64bit: - [2013/10/22 16:04:01 | 001,032,416 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:
64bit: - [2013/10/22 16:04:01 | 000,205,320 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:
64bit: - [2013/10/22 16:04:01 | 000,084,328 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:
64bit: - [2013/10/22 16:04:01 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:
64bit: - [2013/10/22 16:04:01 | 000,065,264 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:
64bit: - [2013/10/22 16:04:01 | 000,038,984 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:
64bit: - [2013/10/22 16:03:59 | 000,092,544 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:
64bit: - [2012/04/15 23:32:14 | 001,071,032 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\wcmvcam64.sys -- (WCMVCAM)
DRV:
64bit: - [2012/03/01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:
64bit: - [2011/12/15 19:29:42 | 000,031,232 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tap0901.sys -- (tap0901)
DRV:
64bit: - [2011/11/09 15:11:20 | 000,270,912 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:
64bit: - [2011/06/08 18:36:14 | 004,729,408 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:
64bit: - [2011/06/02 05:37:32 | 002,750,464 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:
64bit: - [2011/03/11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2011/03/11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2011/03/10 06:01:45 | 000,018,432 | ---- | M] (NTI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NTIDrvr.sys -- (NTIDrvr)
DRV:
64bit: - [2011/03/10 06:01:45 | 000,017,408 | ---- | M] (NTI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UBHelper.sys -- (UBHelper)
DRV:
64bit: - [2011/02/11 23:23:34 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (npf)
DRV:
64bit: - [2011/01/18 00:56:14 | 000,412,712 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a)
DRV:
64bit: - [2010/11/21 05:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:
64bit: - [2010/11/21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2010/11/21 05:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:
64bit: - [2010/09/22 03:47:10 | 000,243,712 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:
64bit: - [2010/07/20 02:10:40 | 010,603,904 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:
64bit: - [2010/04/28 01:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmVirHid.sys -- (WmVirHid)
DRV:
64bit: - [2010/04/28 01:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmBEnum.sys -- (WmBEnum)
DRV:
64bit: - [2010/04/27 23:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmXlCore.sys -- (WmXlCore)
DRV:
64bit: - [2010/04/27 23:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmFilter.sys -- (WmFilter)
DRV:
64bit: - [2010/04/13 18:44:22 | 000,540,696 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:
64bit: - [2010/02/27 01:32:14 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:
64bit: - [2009/09/19 05:30:14 | 000,161,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV:
64bit: - [2009/09/19 05:30:14 | 000,127,488 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bbus.sys -- (ss_bbus)
DRV:
64bit: - [2009/09/19 05:30:14 | 000,018,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdfl.sys -- (ss_bmdfl)
DRV:
64bit: - [2009/09/17 07:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64)
DRV:
64bit: - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009/04/08 14:28:46 | 000,068,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:
64bit: - [2009/03/18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:
64bit: - [2008/12/26 13:56:04 | 000,021,504 | ---- | M] (Avnex) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vcsvad.sys -- (VCSVADHWSer)
DRV:
64bit: - [2008/08/28 11:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/03/31 09:39:36 | 000,016,392 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys -- (TFsExDisk)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://acer.msn.com
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com
IE:
64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:
64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://start.mysearchdial.com/results.p ... 495951&ir=
IE:
64bit: - HKLM\..\SearchScopes\{7603420F-1940-B9EF-2221-3F9F755D2323}: "URL" =
http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://acer.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com
IE - HKLM\..\URLSearchHook: - No CLSID value found
IE - HKLM\..\URLSearchHook: {74198672-5F7D-4FE9-A611-4AC1D5A66A15} - C:\Program Files (x86)\SimilarWeb\SimilarWeb.dll (SimilarGroup)
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{38FD2F15-E806-4BB6-9A9E-6F8C8734AEFE: "URL" =
http://start.mysearchdial.com/results.p ... 495951&ir=
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://acer.msn.com
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://start.search.us.com/v/2/?guid={D ... 1}&serpv=5
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\URLSearchHook: {74198672-5F7D-4FE9-A611-4AC1D5A66A15} - C:\Program Files (x86)\SimilarWeb\SimilarWeb.dll (SimilarGroup)
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{268DDC2E-9AB6-4AF7-A619-699D23176C72}: "URL" =
http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{38FD2F15-E806-4BB6-9A9E-6F8C8734AEFE: "URL" =
http://start.mysearchdial.com/results.p ... 495951&ir=
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{38FD2F15-E806-4BB6-9A9E-6F8C8734AEFE}: "URL" =
http://search.conduit.com/ResultsExt.as ... =CT3225826
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{451048B7-4A2C-4AD8-95A6-9559F7591203}: "URL" =
http://search.us.com/serp?guid={36E86B2 ... earchTerms}
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{4AF75676-BE7D-4E32-995A-FBB252803C6B}: "URL" =
http://search.yahoo.com/search?p={searc ... type=10513
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{4D8E786B-26A0-4C75-89D9-032F4876CCC3}: "URL" =
http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{5DA21C4A-791A-4824-AE7C-FB1FCC32E252}: "URL" =
http://www.novinky.cz/hledej?w={searchT ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{74F8B4D5-9720-4FC3-8D1C-58BA96059FAC}: "URL" =
http://search.yahoo.com/search?fr=chr-g ... earchTerms}
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{82B3F7AE-B924-4EE8-81FF-06FCE12F9C9B}: "URL" =
http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{8A77F983-44CC-45AA-B61B-DDFCC6A8BCE9}: "URL" =
http://www.firmy.cz/phr/{searchTerms}?s ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{97510374-5D11-4AF4-88FE-05E5D1E03E51}: "URL" =
http://encyklopedie.seznam.cz/search?q= ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{BBEA5945-44C0-4616-9C22-57CC44BF2363}: "URL" =
http://search.yahoo.com/search?p={searc ... type=10511
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{C866815B-C082-4849-81B9-B84F03AF5152}: "URL" =
http://www.mapy.cz/?query={searchTerms} ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{D1BDE674-59F3-4F44-80A2-16A68853A43E}: "URL" =
http://search.seznam.cz/?q={searchTerms ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{E01C3AA4-939B-47B0-B14E-ACDE7A8D8C15}: "URL" =
http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..\SearchScopes\{F2C30662-88C2-40FC-AF08-739702ACCA9B}: "URL" =
http://start.funmoods.com/results.php?f ... earchTerms}
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1:9421;<local>
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "
http://start.search.us.com/v/2/?guid={D ... 1}&serpv=5"
FF - prefs.js..keyword.URL: "
http://search.us.com/serp?guid={36E86B2 ... serpv=5&k="
FF - user.js - File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_206.dll File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF:
64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF:
64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Pepik\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKCU\Software\MozillaPlugins\@tightropeinteractive.com/Plugin: C:\Users\Pepik\AppData\Local\TNT2\2.0.0.1599\npTNT2.dll (Search.Us.com)
FF - HKCU\Software\MozillaPlugins\@tnt2ghost.com/Plugin: C:\Users\Pepik\AppData\Local\TNT2\2.0.0.1599\npTNT2ghost.dll (Search.Us.com)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Pepik\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Pepik\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Pepik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
fmconverter@gmail.com: C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ [2012/04/14 20:10:47 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013/10/22 16:04:03 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
fmdownloader@gmail.com: C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\
fmdownloader@gmail.com\ [2014/04/13 15:58:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
ytfmdownloader@gmail.com: C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\
ytfmdownloader@gmail.com\ [2014/04/13 15:58:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/08/02 17:15:10 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/04/28 20:11:39 | 000,000,000 | ---D | M]
[2012/07/11 21:44:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Pepik\AppData\Roaming\mozilla\Extensions
[2014/05/04 12:35:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Pepik\AppData\Roaming\mozilla\Firefox\Profiles\6icesh4i.default\extensions
[2013/03/28 21:36:14 | 000,000,000 | ---D | M] (Seznam lištička) -- C:\Users\Pepik\AppData\Roaming\mozilla\Firefox\Profiles\6icesh4i.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2013/07/31 13:37:18 | 000,000,000 | ---D | M] ("SimilarWeb") -- C:\Users\Pepik\AppData\Roaming\mozilla\Firefox\Profiles\6icesh4i.default\extensions\
FirefoxAddon@similarWeb.com
[2013/09/05 17:56:46 | 000,000,000 | ---D | M] (GoPhotoIt) -- C:\Users\Pepik\AppData\Roaming\mozilla\Firefox\Profiles\6icesh4i.default\extensions\
gophoto@gophoto.it
[2014/02/13 09:26:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Pepik\AppData\Roaming\mozilla\Firefox\Profiles\6icesh4i.default\extensions\staged
[2013/10/31 18:17:49 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Users\Pepik\AppData\Roaming\mozilla\Firefox\Profiles\6icesh4i.default\extensions\
toolbar_PTV-RG@apn.ask.com
[2013/04/11 17:54:38 | 000,197,614 | ---- | M] () (No name found) -- C:\Users\Pepik\AppData\Roaming\mozilla\firefox\profiles\6icesh4i.default\extensions\
ftdownloader3@ftdownloader.com.xpi
[2013/03/17 18:07:12 | 000,215,985 | ---- | M] () (No name found) -- C:\Users\Pepik\AppData\Roaming\mozilla\firefox\profiles\6icesh4i.default\extensions\
onlinehdtv@onlinehd.tv.xpi
[2014/03/27 14:47:55 | 000,557,187 | ---- | M] () (No name found) -- C:\Users\Pepik\AppData\Roaming\mozilla\firefox\profiles\6icesh4i.default\extensions\
toolbar_PTV-RG@apn.ask.com.xpi
[2012/06/26 06:53:49 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/08/02 17:15:10 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/09/07 15:14:15 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/10/22 16:04:03 | 000,000,000 | ---D | M] (avast! Online Security) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
File not found (No name found) -- C:\USERS\PEPIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6ICESH4I.DEFAULT\EXTENSIONS\{C50CA3C4-5656-43C2-A061-13E717F73FC8}.XPI
File not found (No name found) -- C:\USERS\PEPIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6ICESH4I.DEFAULT\EXTENSIONS\{C9B68337-E93A-44EA-94DC-CB300EC06444}
File not found (No name found) -- C:\USERS\PEPIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6ICESH4I.DEFAULT\EXTENSIONS\
PLUGIN@YONTOO.COM.XPI
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Pepik\AppData\Local\Google\Chrome\Application\34.0.1847.131\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_268.dll
CHR - plugin: Babylon ToolBar (Enabled) = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.7_0\BabylonChromeToolBar.dll
CHR - plugin: Freemake np-plugin for google chrome (Enabled) = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj\1.0.0_0\npFreemake.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft® Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np32dsw.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
CHR - plugin: Java(TM) Platform SE 7 U5 (Enabled) = C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.50.255 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Windows Live™ Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Unity Player (Enabled) = C:\Users\Pepik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Pepik\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: Search.us Home = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\alojkmcmnpkbagfnepailkeejeoebdkg\1.0.0.0_0\
CHR - Extension: YouTube = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Image Downloader = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnpniohnfphhjihaiiggeabnkjhpaldj\1.3_0\
CHR - Extension: Vyhledávánà Google = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Hola Better Internet = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio\1.3.233_0\
CHR - Extension: SaveFrom.net помощник = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdpljndcmbeikfnlflcggaipgnhiedbl\2.41_0\
CHR - Extension: Peněženka Google = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
CHR - Extension: Search.us Home = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\alojkmcmnpkbagfnepailkeejeoebdkg\1.0.0.0_0\
CHR - Extension: YouTube = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Image Downloader = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnpniohnfphhjihaiiggeabnkjhpaldj\1.3_0\
CHR - Extension: Vyhledávánà Google = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Hola Better Internet = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio\1.3.233_0\
CHR - Extension: SaveFrom.net помощник = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdpljndcmbeikfnlflcggaipgnhiedbl\2.41_0\
CHR - Extension: Peněženka Google = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Users\Pepik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2014/05/04 13:40:48 | 000,000,741 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:
64bit: - BHO: (Ask Toolbar) - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport_x64.dll" File not found
O2:
64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Ask Toolbar) - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" File not found
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O3:
64bit: - HKLM\..\Toolbar: (Ask Toolbar) - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport_x64.dll" File not found
O3:
64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" File not found
O3 - HKLM\..\Toolbar: (SimilarWeb) - {74198672-5F7D-4FE9-A611-4AC1D5A66A15} - C:\Program Files (x86)\SimilarWeb\SimilarWeb.dll (SimilarGroup)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:
64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:
64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:
64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:
64bit: - HKLM..\Run: [Power Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated)
O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Logitech Inc.)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [BackupManagerTray] C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
O4 - HKLM..\Run: [Gaming Mouse Driver] C:\Program Files (x86)\Gaming Mouse\Monitor.EXE ()
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [VNT] C:\Program Files (x86)\VNT\vntldr.exe (APN LLC.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000..\Run: [AutoStartNPSAgent] C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000..\Run: [Clownfish] File not found
O4 - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe ()
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:
64bit: - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000 File not found
O8:
64bit: - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105 File not found
O9 - Extra Button: SimilarWeb - {5D06ED6E-DA78-4486-A246-B131A2C39807} - C:\Program Files (x86)\SimilarWeb\SimilarWeb.dll (SimilarGroup)
O13
64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-2289079560-4057469565-1523236124-1000\..Trusted Domains: localhost ([]http in Internet)
O16:
64bit: - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_30)
O16:
64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.5.1)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.5.1)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.9 212.47.0.7
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{610EB418-5BBF-4997-8F43-3817DE589DD9}: DhcpNameServer = 192.168.1.9 212.47.0.7
O18:
64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:
64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:
64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:
64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/09/06 11:13:38 | 000,213,472 | ---- | M] () - G:\autorun.ico -- [ FAT32 ]
O33 - MountPoints2\{0e91db54-d96b-11e2-a9b5-dc0ea10325dc}\Shell - "" = AutoRun
O33 - MountPoints2\{0e91db54-d96b-11e2-a9b5-dc0ea10325dc}\Shell\AutoRun\command - "" = G:\Startme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
Drivers32:
64bit: msacm.bdmpeg - bdmpega64.acm ()
Drivers32:
64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:
64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32:
64bit: vidc.mjpg - bdmjpeg64.dll ()
Drivers32:
64bit: vidc.mpeg - bdmpegv64.dll ()
Drivers32:
64bit: vidc.tscc - C:\Windows\SysWOW64\tsccvid64.dll (TechSmith Corporation)
Drivers32: msacm.bdmpeg - C:\Windows\SysWow64\bdmpega.acm ()
Drivers32: msacm.divxa32 - C:\Windows\SysWow64\msaud32_divx.acm (Microsoft Corporation)
Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.vorbis - C:\Windows\SysWow64\vorbis.acm (HMS
http://hp.vector.co.jp/authors/VA012897/)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll ()
Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
Drivers32: vidc.iv31 - C:\Windows\SysWow64\ir32_32.dll (Intel(R) Corporation)
Drivers32: vidc.iv32 - C:\Windows\SysWow64\ir32_32.dll (Intel(R) Corporation)
Drivers32: vidc.iv41 - C:\Windows\SysWow64\ir41_32.ax (Intel Corporation)
Drivers32: vidc.mjpg - C:\Windows\SysWow64\bdmjpeg.dll ()
Drivers32: vidc.mpeg - C:\Windows\SysWow64\bdmpegv.dll ()
Drivers32: vidc.tscc - C:\Windows\SysWOW64\tsccvid.dll (TechSmith Corporation)
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
Drivers32: vidc.yvu9 - C:\Windows\SysWow64\iyvu9_32.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2014/05/03 22:19:08 | 000,000,000 | ---D | C] -- C:\Users\Pepik\AppData\Local\Screencast-O-Matic
[2014/05/02 16:03:27 | 000,000,000 | ---D | C] -- C:\Users\Pepik\AppData\Local\CrashDumps
[2014/05/02 14:05:11 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\Windows\SysWow64\sqlite3.dll
[2014/05/02 14:04:01 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/05/01 19:56:29 | 017,338,544 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014/04/30 20:57:01 | 000,000,000 | ---D | C] -- C:\Users\Pepik\Desktop\Social Gang
[2014/04/19 16:23:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Dev Tycoon CZ
[2014/04/19 15:48:11 | 000,000,000 | ---D | C] -- C:\Users\Pepik\AppData\Local\Game Dev Tycoon
[2014/04/19 15:47:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Game Dev Tycoon v1.3.2
[2014/04/19 15:46:45 | 000,000,000 | ---D | C] -- C:\Users\Pepik\Desktop\Game.Dev.Tycoon-ALiAS
[2014/04/18 15:43:25 | 000,000,000 | ---D | C] -- C:\Users\Pepik\AppData\Local\{187927AB-7D65-452C-87AC-E44B4CF052C1}
[2014/04/13 16:01:44 | 000,000,000 | ---D | C] -- C:\Users\Pepik\AppData\Local\FreemakeVideoDownloader
[2014/04/13 15:59:21 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
========== Files - Modified Within 30 Days ==========
[2014/05/08 10:29:24 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014/05/08 10:27:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000UA.job
[2014/05/08 09:56:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/05/08 09:51:53 | 000,214,520 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2014/05/08 09:51:53 | 000,214,520 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2014/05/08 09:45:00 | 000,000,950 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/05/08 08:38:21 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/05/08 08:38:21 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/05/08 08:31:06 | 000,000,946 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/05/08 08:30:58 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000Core.job
[2014/05/08 08:30:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/05/08 08:30:34 | 2962,255,872 | -HS- | M] () -- C:\hiberfil.sys
[2014/05/07 23:20:01 | 000,000,928 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000UA.job
[2014/05/07 22:18:29 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000Core.job
[2014/05/06 19:04:50 | 001,586,070 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/05/06 19:04:50 | 000,669,926 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2014/05/06 19:04:50 | 000,655,280 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/05/06 19:04:50 | 000,141,526 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2014/05/06 19:04:50 | 000,122,152 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/05/06 19:00:27 | 000,217,057 | ---- | M] () -- C:\Users\Pepik\Desktop\1493441_1447318688822588_1875241201_o.jpg
[2014/05/04 17:31:51 | 011,598,474 | ---- | M] () -- C:\Users\Pepik\Desktop\lada kreten.mp3
[2014/05/04 13:40:48 | 000,000,741 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2014/05/01 19:56:48 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/05/01 19:56:48 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014/05/01 19:56:29 | 017,338,544 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014/05/01 19:17:30 | 000,000,431 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.ics
[2014/05/01 09:33:19 | 009,602,682 | ---- | M] () -- C:\Users\Pepik\Desktop\pro dluhyse.mp3
[2014/05/01 09:25:53 | 000,068,371 | ---- | M] () -- C:\Users\Pepik\Desktop\llkmj.flp
[2014/04/28 20:11:40 | 000,001,983 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2014/04/23 15:03:41 | 009,046,848 | ---- | M] () -- C:\Users\Pepik\Desktop\VID_20140422_182607.mp4
[2014/04/19 18:04:23 | 000,202,541 | ---- | M] () -- C:\Users\Pepik\Desktop\w2hobq.jpg
[2014/04/19 16:23:04 | 000,002,008 | ---- | M] () -- C:\Users\Public\Desktop\Game Dev Tycoon CZ.lnk
[2014/04/17 18:33:18 | 003,700,350 | ---- | M] () -- C:\Users\Pepik\Desktop\Perverz - Deadline mit Blokkmonsta, Schwartz & Rako (HD-Video).mp3
[2014/04/17 18:31:25 | 003,259,403 | ---- | M] () -- C:\Users\Pepik\Desktop\Perverz - Das Vorurteil stimmt (HD-Video).mp3
[2014/04/17 18:01:05 | 001,783,710 | ---- | M] () -- C:\Users\Pepik\Desktop\VYZVANENI.mp3
[2014/04/13 15:58:55 | 000,001,300 | ---- | M] () -- C:\Users\Public\Desktop\Freemake Video Downloader.lnk
========== Files Created - No Company Name ==========
[2014/05/08 10:29:24 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014/05/06 19:00:27 | 000,217,057 | ---- | C] () -- C:\Users\Pepik\Desktop\1493441_1447318688822588_1875241201_o.jpg
[2014/05/04 17:31:02 | 011,598,474 | ---- | C] () -- C:\Users\Pepik\Desktop\lada kreten.mp3
[2014/05/01 19:19:10 | 000,000,914 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/05/01 09:32:38 | 009,602,682 | ---- | C] () -- C:\Users\Pepik\Desktop\pro dluhyse.mp3
[2014/05/01 09:25:53 | 000,068,371 | ---- | C] () -- C:\Users\Pepik\Desktop\llkmj.flp
[2014/04/28 20:11:40 | 000,001,983 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2014/04/23 15:01:28 | 009,046,848 | ---- | C] () -- C:\Users\Pepik\Desktop\VID_20140422_182607.mp4
[2014/04/19 18:04:22 | 000,202,541 | ---- | C] () -- C:\Users\Pepik\Desktop\w2hobq.jpg
[2014/04/19 17:20:11 | 008,191,631 | ---- | C] () -- C:\Users\Pepik\Desktop\16. Blokkmonsta - Yeahhh.mp3
[2014/04/19 17:20:11 | 005,785,251 | ---- | C] () -- C:\Users\Pepik\Desktop\19. Blokkmonsta - Doom Rap (Remix) – Bonus Track.mp3
[2014/04/19 16:23:04 | 000,002,008 | ---- | C] () -- C:\Users\Public\Desktop\Game Dev Tycoon CZ.lnk
[2014/04/17 18:33:41 | 003,259,403 | ---- | C] () -- C:\Users\Pepik\Desktop\Perverz - Das Vorurteil stimmt (HD-Video).mp3
[2014/04/17 18:33:40 | 003,700,350 | ---- | C] () -- C:\Users\Pepik\Desktop\Perverz - Deadline mit Blokkmonsta, Schwartz & Rako (HD-Video).mp3
[2014/04/17 18:00:57 | 001,783,710 | ---- | C] () -- C:\Users\Pepik\Desktop\VYZVANENI.mp3
[2014/04/13 15:58:55 | 000,001,300 | ---- | C] () -- C:\Users\Public\Desktop\Freemake Video Downloader.lnk
[2013/10/21 19:36:55 | 000,000,918 | ---- | C] () -- C:\Windows\ARPR.INI
[2013/07/12 16:11:03 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\iyvu9_32.dll
[2013/06/25 16:19:00 | 000,462,848 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2013/06/25 16:18:59 | 000,014,456 | ---- | C] () -- C:\Windows\SysWow64\Kara_v.dll
[2013/06/24 08:00:46 | 001,205,201 | ---- | C] () -- C:\Windows\unins000.exe
[2013/06/19 19:57:06 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2013/06/19 19:57:06 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2013/06/02 12:52:44 | 097,979,392 | ---- | C] () -- C:\Program Files (x86)\Samsung New PC Studio.msi
[2013/06/02 12:52:44 | 000,102,400 | ---- | C] () -- C:\Program Files (x86)\1029.MST
[2013/06/02 12:52:44 | 000,014,444 | ---- | C] () -- C:\Program Files (x86)\0x0405.ini
[2013/05/24 20:13:59 | 000,002,240 | ---- | C] () -- C:\Windows\LENDIG.sys
[2013/03/23 15:29:55 | 000,877,747 | ---- | C] () -- C:\Users\Pepik\AppData\Local\Tempmusic.ogg
[2013/01/03 20:16:25 | 000,000,246 | ---- | C] () -- C:\Users\Pepik\AppData\Roaming\Mouse Monitor_Settings.ini
[2012/11/19 09:33:32 | 000,065,656 | ---- | C] () -- C:\Windows\SysWow64\bdmpegv.dll
[2012/11/19 09:33:30 | 000,022,640 | ---- | C] () -- C:\Windows\SysWow64\bdmjpeg.dll
[2012/08/30 19:26:40 | 000,000,032 | ---- | C] () -- C:\Windows\CD_Start.INI
[2012/07/07 21:03:52 | 000,000,331 | ---- | C] () -- C:\Windows\game.ini
[2012/07/02 11:58:27 | 000,069,632 | ---- | C] () -- C:\Windows\SysWow64\xmltok.dll
[2012/07/02 11:58:27 | 000,036,864 | ---- | C] () -- C:\Windows\SysWow64\xmlparse.dll
[2012/07/01 15:30:46 | 000,001,796 | ---- | C] () -- C:\Users\Pepik\AppData\Roaming\System Monitor II_CPU0_Settings.ini
[2012/06/11 21:10:17 | 000,000,123 | ---- | C] () -- C:\Users\Pepik\AppData\Roaming\Mouse Monitor_Counters.ini
[2012/06/11 19:02:06 | 000,000,199 | ---- | C] () -- C:\Users\Pepik\AppData\Roaming\Keyboard Monitor_Settings.ini
[2012/06/11 16:28:23 | 000,000,276 | ---- | C] () -- C:\Users\Pepik\AppData\Roaming\System Uptime Full Plus_Settings.ini
[2012/03/07 19:04:55 | 000,045,270 | ---- | C] () -- C:\Users\Pepik\AppData\Roaming\room_v3.dat
[2012/02/11 23:31:12 | 000,005,632 | ---- | C] () -- C:\Users\Pepik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/12/29 19:36:43 | 000,007,605 | ---- | C] () -- C:\Users\Pepik\AppData\Local\Resmon.ResmonCfg
[2011/11/09 15:37:07 | 000,017,212 | ---- | C] () -- C:\Users\Pepik\AppData\Roaming\UserTile.png
========== ZeroAccess Check ==========
[2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 07:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 06:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2014/01/25 19:00:11 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\.minecraft
[2013/09/21 17:02:28 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\.technic
[2012/08/05 18:06:57 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Acoustica
[2012/02/05 11:50:29 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Ashampoo
[2013/02/01 16:34:06 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Audacity
[2013/10/23 14:48:07 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\AVAST Software
[2012/02/24 14:55:38 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Avnex
[2013/01/20 17:30:17 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\BANDISOFT
[2013/09/19 17:27:24 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\bin
[2014/05/01 19:24:52 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\BitTorrent
[2013/09/19 17:25:20 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\cache
[2012/02/12 15:55:58 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013/09/19 17:30:14 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\config
[2013/09/19 17:27:24 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\coremods
[2014/05/01 19:24:55 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\DAEMON Tools Lite
[2012/06/22 20:23:03 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21__F893F7CA-8278-41DF-A76F-CAF0437A90CD__
[2013/09/12 15:46:03 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\DesktopIconGoodgame
[2012/04/28 10:05:17 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Dropbox
[2013/08/26 16:40:03 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\FlvtoConverter
[2013/03/17 18:40:14 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Freecorder 7 Video
[2013/08/04 11:35:44 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\ftblauncher
[2013/03/19 16:58:43 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\GarenaPlus
[2012/01/12 18:05:09 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Hardcore
[2011/11/14 00:09:39 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\ICQ
[2012/08/05 18:07:58 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Image-Line
[2012/05/05 08:17:05 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\IObit
[2011/12/28 19:21:55 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\IrfanView
[2012/07/01 19:11:40 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Leadertech
[2013/09/19 17:28:12 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\lib
[2012/05/05 17:30:01 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\LolClient
[2012/06/09 18:40:32 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\LolClient2
[2013/07/30 20:30:16 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\MKKE
[2013/09/19 17:28:20 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\mods
[2012/02/03 09:46:56 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Need for Speed World
[2013/11/07 17:53:15 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Nordic Games
[2011/11/09 14:56:34 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Opera
[2012/07/30 21:51:22 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\PC Suite
[2012/03/21 18:01:36 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Publish Providers
[2013/09/20 16:06:50 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\resources
[2013/05/05 20:27:00 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Samsung
[2013/09/21 08:42:29 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\saves
[2013/09/12 15:46:56 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Seznam.cz
[2013/03/17 18:01:43 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\SimilarWeb
[2013/08/23 16:52:12 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\skyz
[2013/11/15 16:58:42 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Softland
[2013/01/20 10:38:45 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Sony
[2013/09/21 08:50:27 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\stats
[2012/08/05 18:07:23 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\SynthMaker
[2013/09/19 17:27:01 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\temp
[2013/09/19 17:28:18 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\texturepacks
[2013/09/19 17:28:18 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\texturepacks-mp-cache
[2014/02/14 21:51:26 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\TS3Client
[2012/06/22 20:04:28 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Ubisoft
[2013/08/05 14:54:13 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Ulozto File Manager
[2012/03/07 20:05:40 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\Unity
[2012/10/21 08:09:20 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\uTorrent
[2012/06/05 15:46:46 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\wargaming.net
[2013/02/27 16:58:10 | 000,000,000 | ---D | M] -- C:\Users\Pepik\AppData\Roaming\WebcamMax
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009/07/14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009/07/14 07:08:49 | 000,032,592 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/07/31 17:35:43 | 000,000,910 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000Core.job
[2012/07/31 17:35:43 | 000,000,962 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000UA.job
[2013/03/16 21:15:39 | 000,000,906 | ---- | C] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000Core.job
[2013/03/16 21:15:39 | 000,000,928 | ---- | C] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2289079560-4057469565-1523236124-1000UA.job
[2013/06/19 15:05:26 | 000,000,946 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013/06/19 15:05:27 | 000,000,950 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2014/05/01 19:19:10 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
< >
< MD5 for: AGP440.SYS >
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010/11/21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010/11/21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2010/11/21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010/11/21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2010/11/21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010/11/21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010/11/21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
