
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
reklama v prohlizeci "Ads by Info"
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: reklama v prohlizeci "Ads by Info"
Vypada to ze reklamy Ads by info zmizeli a uz se v prohlizeci na strankach neobjevujou.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Jakub at 2014-09-18 19:18:33
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 35 GB (5%) free of 715 GB
Total RAM: 16066 MB (81% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:18:35, on 18.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\Jakub.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: ::1 localhost
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - Startup: Dropbox.lnk = C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Služba Kaspersky Anti-Virus 15.0.0 (AVP15.0.0) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Flexlm Service 1 - Macrovision Corporation - C:\Flexlm\Lmgrd.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: postgresql-x64-9.2 - PostgreSQL Server 9.2 (postgresql-x64-9.2) - PostgreSQL Global Development Group - C:/Program Files/PostgreSQL/9.2/bin/pg_ctl.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9877 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\Flexlm\Lmgrd.exe -z2
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
\??\C:\Windows\system32\conhost.exe "-250698524-541222515372146381893216153-2078090130-984045322-2028453665-1330585368
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
SCIA.exe -T Jakub-PC 10.8 -1 --lmgrd_start 541af2da
\??\C:\Windows\system32\conhost.exe "-381318178-2135083260-461557351-852310917-170988788262170916-1551994197-1080207221
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:/Program Files/PostgreSQL/9.2/bin/pg_ctl.exe" runservice -N "postgresql-x64-9.2" -D "C:/Program Files/PostgreSQL/9.2/data" -w
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" -D "C:/Program Files/PostgreSQL/9.2/data"
\??\C:\Windows\system32\conhost.exe "818061222-17564802051073468862-1187222566-212130508715150686901457086766-1593822924
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forklog" "1064" "1060"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkboot" "1264" "-x4"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkboot" "1280" "-x3"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkboot" "1264" "-x5"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkavlauncher" "1280"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkcol" "1264"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe" "-launchedbyvulcan"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-8aed2693-3aff-47ba-a9bb-00ab3be2854a -SystemEventPortName:HostProcess-d3bee31b-8a07-49a2-aa05-f64c2eba6c1b -IoCancelEventPortName:HostProcess-6a2f6b42-624f-4cbd-97eb-5c53c2a393f1 -NonStateChangingEventPortName:HostProcess-6de768a4-7fe8-4049-a6a5-aad51cc23842 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b7814020-7534-4839-90c6-18fd4547f1fb -DeviceGroupId:WpdFsGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --channel="3080.0.309343981\1358130895" /prefetch:3
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --channel="3080.1.1912412265\2000755249" /prefetch:3
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=gpu-process --channel="3080.2.235603837\1355095957" --no-sandbox --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --supports-dual-gpus=false --gpu-vendor-id=0x8086 --gpu-device-id=0x0162 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable /prefetch:12
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe" /firstrunupdate 0 /TAGS:@FULL-{877CD02C-D0AF-49BB-AF3F-0CB67F0EC460}
"C:\Windows\system32\wuauclt.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jakub\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2f8a6adc-78a8-4091-aece-dd933e9d77d1}]
GOSavee - C:\Program Files (x86)\GOSavee\arP9rgBH3VUDtf.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-04-20 878784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{69deaea4-521e-474a-8ff0-4272d7caf23a}]
YoutuBeAduBlockue - C:\Program Files (x86)\YoutuBeAduBlockue\v93O0ag5LJ1FoB.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-07-25 1419936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll [2014-04-20 583360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08 163720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll [2014-04-20 1109696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08 163720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-04-20 709312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-07-25 1176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-04-20 480448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21 141192]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-04-20 891072]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21 141192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08 163720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21 141192]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27 558496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [2014-05-08 3499896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jakub^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe [2014-09-13 36414624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2013-05-01 421888]
""= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-07-08 152392]
"Adobe Creative Cloud"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-07-22 2694040]
C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2014-09-18 19:18:33 ----D---- C:\rsit
2014-09-18 16:57:51 ----SHD---- C:\$RECYCLE.BIN
2014-09-18 16:06:33 ----D---- C:\Windows\Temp
2014-09-18 16:06:33 ----A---- C:\Windows\zoek-delete.exe
2014-09-18 09:47:17 ----A---- C:\ComboFix.txt
2014-09-18 02:59:28 ----A---- C:\Windows\zip.exe
2014-09-18 02:59:28 ----A---- C:\Windows\SWSC.exe
2014-09-18 02:59:28 ----A---- C:\Windows\SWREG.exe
2014-09-18 02:59:28 ----A---- C:\Windows\sed.exe
2014-09-18 02:59:28 ----A---- C:\Windows\PEV.exe
2014-09-18 02:59:28 ----A---- C:\Windows\NIRCMD.exe
2014-09-18 02:59:28 ----A---- C:\Windows\MBR.exe
2014-09-18 02:59:28 ----A---- C:\Windows\grep.exe
2014-09-18 02:59:07 ----D---- C:\Windows\erdnt
2014-09-17 08:10:14 ----A---- C:\Windows\system32\drivers\389C5208.sys
2014-09-17 02:37:26 ----A---- C:\Windows\system32\drivers\417F72B8.sys
2014-09-17 02:25:18 ----A---- C:\Windows\system32\klfphc.dll
2014-09-17 02:23:11 ----D---- C:\Windows\ELAMBKUP
2014-09-17 02:23:10 ----D---- C:\Program Files (x86)\Kaspersky Lab
2014-09-17 02:23:09 ----D---- C:\ProgramData\Kaspersky Lab
2014-09-17 02:22:53 ----A---- C:\Windows\system32\drivers\klif.sys
2014-09-17 02:22:53 ----A---- C:\Windows\system32\drivers\klflt.sys
2014-09-17 02:22:52 ----A---- C:\Windows\system32\drivers\klhk.sys
2014-09-16 17:03:44 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-09-16 17:03:29 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-16 17:03:29 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-09-16 17:03:29 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-09-16 17:03:29 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-09-16 07:35:46 ----D---- C:\AdwCleaner
2014-09-15 23:27:44 ----D---- C:\FRST
2014-09-11 18:31:10 ----D---- C:\Users\Jakub\AppData\Roaming\uTorrent
2014-09-11 17:37:49 ----D---- C:\zoek_backup
2014-09-11 17:26:26 ----D---- C:\Windows\ERUNT
2014-09-11 16:51:47 ----D---- C:\Users\Jakub\AppData\Roaming\Opera Software
2014-09-11 16:51:43 ----D---- C:\Program Files (x86)\Opera
2014-09-11 16:26:20 ----RSHD---- C:\Users\Jakub\AppData\Roaming\CapsLock
2014-09-11 03:22:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-09-11 03:22:13 ----A---- C:\Windows\system32\ieui.dll
2014-09-11 03:22:12 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-09-11 03:22:12 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-09-11 03:22:12 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\jscript9diag.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\ieUnatt.exe
2014-09-11 03:22:12 ----A---- C:\Windows\system32\iernonce.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\dxtrans.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\dxtmsft.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\vbscript.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\msrating.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\mshtmled.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\msfeeds.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\jsproxy.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\iesetup.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\iedkcs32.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\ie4uinit.exe
2014-09-11 03:22:10 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-09-11 03:22:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-11 03:22:09 ----A---- C:\Windows\system32\mshtml.dll
2014-09-11 03:22:08 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-09-11 03:22:08 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-09-11 03:22:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-09-11 03:22:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 03:22:08 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-09-11 03:22:08 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-09-11 03:22:08 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-09-11 03:22:08 ----A---- C:\Windows\system32\ieapfltr.dll
2014-09-11 03:22:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-09-11 03:22:07 ----A---- C:\Windows\system32\wininet.dll
2014-09-11 03:22:07 ----A---- C:\Windows\system32\iertutil.dll
2014-09-11 03:22:06 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-09-11 03:22:06 ----A---- C:\Windows\system32\jscript9.dll
2014-09-11 03:22:05 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-09-11 03:22:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-09-11 03:22:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-09-11 03:22:05 ----A---- C:\Windows\system32\urlmon.dll
2014-09-11 03:22:04 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-09-11 03:22:04 ----A---- C:\Windows\system32\ieframe.dll
2014-09-11 03:01:22 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 03:01:21 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-09-10 22:54:08 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-09-10 22:54:08 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-09-10 22:53:25 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-09-10 22:53:25 ----A---- C:\Windows\system32\d3d10warp.dll
2014-09-10 22:52:58 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-09-10 22:52:58 ----A---- C:\Windows\system32\kerberos.dll
2014-09-10 22:52:57 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-09-10 22:52:57 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-09-10 22:52:57 ----A---- C:\Windows\system32\lsasrv.dll
2014-09-10 22:52:50 ----A---- C:\Windows\system32\aepdu.dll
2014-09-10 22:52:48 ----A---- C:\Windows\system32\aeinv.dll
2014-09-08 22:01:39 ----D---- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-09-08 22:01:39 ----D---- C:\Program Files\iTunes
2014-09-08 22:01:39 ----D---- C:\Program Files\iPod
2014-09-08 22:01:39 ----D---- C:\Program Files (x86)\iTunes
2014-08-28 04:08:52 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 04:08:52 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 04:08:52 ----A---- C:\Windows\system32\gdi32.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wups2.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wucltux.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-19 13:31:25 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-19 13:31:25 ----A---- C:\Windows\system32\wups.dll
2014-08-19 13:31:25 ----A---- C:\Windows\system32\wudriver.dll
2014-08-19 13:31:25 ----A---- C:\Windows\system32\wuapi.dll
2014-08-19 13:31:24 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-19 13:31:24 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-19 13:30:31 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-19 13:30:31 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-19 13:30:31 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-19 13:30:30 ----A---- C:\Windows\system32\wuapp.exe
======List of files/folders modified in the last 1 months======
2014-09-18 19:18:35 ----D---- C:\Windows\Prefetch
2014-09-18 19:18:35 ----D---- C:\Program Files\trend micro
2014-09-18 17:02:19 ----D---- C:\Windows\system32\config
2014-09-18 17:01:58 ----D---- C:\Users\Jakub\AppData\Roaming\Dropbox
2014-09-18 16:59:42 ----A---- C:\Windows\SYSWOW64\log.txt
2014-09-18 16:57:18 ----D---- C:\Windows
2014-09-18 16:57:15 ----SHD---- C:\System Volume Information
2014-09-18 15:58:44 ----D---- C:\Windows\system32\drivers\etc
2014-09-18 15:25:02 ----D---- C:\Windows\SysWOW64
2014-09-18 14:40:26 ----D---- C:\Windows\SYSWOW64\config
2014-09-18 09:47:22 ----D---- C:\Windows\system32\drivers
2014-09-18 09:47:22 ----D---- C:\Qoobox
2014-09-18 09:41:40 ----A---- C:\Windows\system.ini
2014-09-18 09:38:00 ----D---- C:\Windows\SYSWOW64\drivers
2014-09-18 09:38:00 ----D---- C:\Windows\AppPatch
2014-09-18 09:37:59 ----D---- C:\Program Files (x86)\Common Files
2014-09-18 02:49:58 ----RD---- C:\Program Files (x86)
2014-09-18 01:32:10 ----D---- C:\Users\Jakub\AppData\Roaming\vlc
2014-09-18 01:03:22 ----D---- C:\Users\Jakub\AppData\Roaming\TS3Client
2014-09-17 18:57:28 ----D---- C:\Windows\Help
2014-09-17 18:55:35 ----D---- C:\Users\Jakub\AppData\Roaming\Skype
2014-09-17 18:52:29 ----SHD---- C:\Windows\Installer
2014-09-17 17:15:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-17 16:52:03 ----D---- C:\Windows\system32\Tasks
2014-09-17 07:29:46 ----D---- C:\Windows\pss
2014-09-17 02:41:26 ----D---- C:\ProgramData\Skype
2014-09-17 02:26:06 ----D---- C:\ProgramData
2014-09-17 02:25:19 ----D---- C:\Windows\system32\catroot
2014-09-17 02:25:18 ----D---- C:\Windows\System32
2014-09-17 02:25:01 ----D---- C:\Windows\inf
2014-09-17 02:24:44 ----D---- C:\Windows\system32\DriverStore
2014-09-17 01:58:00 ----RD---- C:\Program Files
2014-09-16 18:30:43 ----D---- C:\Extracted
2014-09-16 18:18:18 ----D---- C:\Users\Jakub\AppData\Roaming\FileZilla
2014-09-16 17:03:29 ----D---- C:\ProgramData\Malwarebytes
2014-09-15 09:10:05 ----D---- C:\Windows\Tasks
2014-09-12 09:49:02 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-09-12 09:17:45 ----D---- C:\Program Files\Common Files\Adobe
2014-09-12 08:49:06 ----D---- C:\Users\Jakub\AppData\Roaming\Adobe
2014-09-12 08:47:05 ----D---- C:\Program Files (x86)\Adobe
2014-09-11 18:52:50 ----A---- C:\Windows\win.ini
2014-09-11 18:46:35 ----D---- C:\Program Files (x86)\Google
2014-09-11 15:46:40 ----D---- C:\Program Files\CCleaner
2014-09-11 15:35:42 ----RD---- C:\Users
2014-09-11 15:35:42 ----HD---- C:\Windows\system32\GroupPolicy
2014-09-11 15:35:42 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-09-11 15:04:40 ----D---- C:\Windows\debug
2014-09-11 04:31:15 ----D---- C:\Windows\rescache
2014-09-11 03:55:43 ----D---- C:\Windows\Microsoft.NET
2014-09-11 03:55:23 ----RSD---- C:\Windows\assembly
2014-09-11 03:42:55 ----D---- C:\Windows\winsxs
2014-09-11 03:41:20 ----D---- C:\Windows\SYSWOW64\en-US
2014-09-11 03:41:20 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-09-11 03:41:20 ----D---- C:\Windows\system32\en-US
2014-09-11 03:41:20 ----D---- C:\Windows\system32\cs-CZ
2014-09-11 03:41:20 ----D---- C:\Program Files\Internet Explorer
2014-09-11 03:41:19 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-11 03:22:24 ----D---- C:\Windows\system32\catroot2
2014-09-11 03:20:45 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-09-11 03:20:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-11 03:18:26 ----D---- C:\Windows\system32\MRT
2014-09-11 03:03:13 ----A---- C:\Windows\system32\MRT.exe
2014-09-11 03:00:58 ----SD---- C:\Windows\system32\CompatTel
2014-09-10 04:42:07 ----D---- C:\Program Files\Adobe
2014-08-30 12:25:15 ----D---- C:\sarka
2014-08-26 15:19:25 ----D---- C:\Program Files (x86)\Hearthstone
2014-08-25 06:53:42 ----N---- C:\Windows\system32\MpSigStub.exe
2014-08-22 03:03:08 ----D---- C:\Program Files (x86)\Battle.net
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-01-04 16152]
R0 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-02-20 457824]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2012-06-22 56336]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-07-12 283064]
R1 klhk;klhk; C:\Windows\system32\DRIVERS\klhk.sys [2014-04-10 243808]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-07-25 792128]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2014-02-25 30304]
R1 klpd;klpd; C:\Windows\system32\DRIVERS\klpd.sys [2013-04-12 15456]
R1 kltdi;kltdi; C:\Windows\system32\DRIVERS\kltdi.sys [2014-03-25 55904]
R1 kneps;kneps; C:\Windows\system32\DRIVERS\kneps.sys [2014-03-26 179296]
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2011-11-03 130536]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2011-11-03 395752]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-01-04 355096]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-01-04 786200]
R3 klflt;Kaspersky Lab Kernel DLL; C:\Windows\system32\DRIVERS\klflt.sys [2014-07-25 140352]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\Windows\system32\DRIVERS\klkbdflt.sys [2014-03-28 28768]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\Windows\system32\DRIVERS\klmouflt.sys [2013-08-08 29280]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-05-12 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-09-18 122584]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-05-12 63704]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-17 62784]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-02-03 677480]
S3 61883;61883 Unit Device; C:\Windows\system32\DRIVERS\61883.sys [2009-07-14 60288]
S3 Avc;Zařízení AVC; C:\Windows\system32\DRIVERS\avc.sys [2009-07-14 48768]
S3 AVCSTRM;AVC Streaming Filter Driver; C:\Windows\system32\DRIVERS\avcstrm.sys [2009-07-14 17664]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 MSTAPE;Microsoft AV/C Tape Subunit Device; C:\Windows\system32\DRIVERS\mstape.sys [2009-07-14 56448]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-03-17 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-07 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-07 277784]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-05-12 860472]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-05-12 1809720]
R2 postgresql-x64-9.2;postgresql-x64-9.2 - PostgreSQL Server 9.2; C:/Program Files/PostgreSQL/9.2/bin/pg_ctl.exe runservice -N postgresql-x64-9.2 -D C:/Program Files/PostgreSQL/9.2/data -w []
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-07 363800]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-07-08 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 Flexlm Service 1;Flexlm Service 1; C:\Flexlm\Lmgrd.exe [2008-04-02 974848]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-14 257416]
S3 AVP15.0.0;Služba Kaspersky Anti-Virus 15.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [2014-04-20 233552]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-03-17 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-10-18 118680]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-01-31 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by Jakub at 2014-09-18 19:18:33
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 35 GB (5%) free of 715 GB
Total RAM: 16066 MB (81% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:18:35, on 18.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\Jakub.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: ::1 localhost
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - Startup: Dropbox.lnk = C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Služba Kaspersky Anti-Virus 15.0.0 (AVP15.0.0) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Flexlm Service 1 - Macrovision Corporation - C:\Flexlm\Lmgrd.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: postgresql-x64-9.2 - PostgreSQL Server 9.2 (postgresql-x64-9.2) - PostgreSQL Global Development Group - C:/Program Files/PostgreSQL/9.2/bin/pg_ctl.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9877 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\Flexlm\Lmgrd.exe -z2
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
\??\C:\Windows\system32\conhost.exe "-250698524-541222515372146381893216153-2078090130-984045322-2028453665-1330585368
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
SCIA.exe -T Jakub-PC 10.8 -1 --lmgrd_start 541af2da
\??\C:\Windows\system32\conhost.exe "-381318178-2135083260-461557351-852310917-170988788262170916-1551994197-1080207221
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:/Program Files/PostgreSQL/9.2/bin/pg_ctl.exe" runservice -N "postgresql-x64-9.2" -D "C:/Program Files/PostgreSQL/9.2/data" -w
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" -D "C:/Program Files/PostgreSQL/9.2/data"
\??\C:\Windows\system32\conhost.exe "818061222-17564802051073468862-1187222566-212130508715150686901457086766-1593822924
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forklog" "1064" "1060"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkboot" "1264" "-x4"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkboot" "1280" "-x3"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkboot" "1264" "-x5"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkavlauncher" "1280"
"C:/Program Files/PostgreSQL/9.2/bin/postgres.exe" "--forkcol" "1264"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe" "-launchedbyvulcan"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-8aed2693-3aff-47ba-a9bb-00ab3be2854a -SystemEventPortName:HostProcess-d3bee31b-8a07-49a2-aa05-f64c2eba6c1b -IoCancelEventPortName:HostProcess-6a2f6b42-624f-4cbd-97eb-5c53c2a393f1 -NonStateChangingEventPortName:HostProcess-6de768a4-7fe8-4049-a6a5-aad51cc23842 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b7814020-7534-4839-90c6-18fd4547f1fb -DeviceGroupId:WpdFsGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --channel="3080.0.309343981\1358130895" /prefetch:3
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --channel="3080.1.1912412265\2000755249" /prefetch:3
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe" --type=gpu-process --channel="3080.2.235603837\1355095957" --no-sandbox --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable --supports-dual-gpus=false --gpu-vendor-id=0x8086 --gpu-device-id=0x0162 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " --lang=en-US --locales-dir-path="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\locales" --log-severity=disable /prefetch:12
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe" /firstrunupdate 0 /TAGS:@FULL-{877CD02C-D0AF-49BB-AF3F-0CB67F0EC460}
"C:\Windows\system32\wuauclt.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jakub\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2f8a6adc-78a8-4091-aece-dd933e9d77d1}]
GOSavee - C:\Program Files (x86)\GOSavee\arP9rgBH3VUDtf.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-04-20 878784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{69deaea4-521e-474a-8ff0-4272d7caf23a}]
YoutuBeAduBlockue - C:\Program Files (x86)\YoutuBeAduBlockue\v93O0ag5LJ1FoB.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-07-25 1419936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll [2014-04-20 583360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08 163720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll [2014-04-20 1109696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08 163720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-04-20 709312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-07-25 1176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-04-20 480448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21 141192]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-04-20 891072]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21 141192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08 163720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-12-21 141192]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27 558496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [2014-05-08 3499896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jakub^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe [2014-09-13 36414624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2013-05-01 421888]
""= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-07-08 152392]
"Adobe Creative Cloud"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-07-22 2694040]
C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2014-09-18 19:18:33 ----D---- C:\rsit
2014-09-18 16:57:51 ----SHD---- C:\$RECYCLE.BIN
2014-09-18 16:06:33 ----D---- C:\Windows\Temp
2014-09-18 16:06:33 ----A---- C:\Windows\zoek-delete.exe
2014-09-18 09:47:17 ----A---- C:\ComboFix.txt
2014-09-18 02:59:28 ----A---- C:\Windows\zip.exe
2014-09-18 02:59:28 ----A---- C:\Windows\SWSC.exe
2014-09-18 02:59:28 ----A---- C:\Windows\SWREG.exe
2014-09-18 02:59:28 ----A---- C:\Windows\sed.exe
2014-09-18 02:59:28 ----A---- C:\Windows\PEV.exe
2014-09-18 02:59:28 ----A---- C:\Windows\NIRCMD.exe
2014-09-18 02:59:28 ----A---- C:\Windows\MBR.exe
2014-09-18 02:59:28 ----A---- C:\Windows\grep.exe
2014-09-18 02:59:07 ----D---- C:\Windows\erdnt
2014-09-17 08:10:14 ----A---- C:\Windows\system32\drivers\389C5208.sys
2014-09-17 02:37:26 ----A---- C:\Windows\system32\drivers\417F72B8.sys
2014-09-17 02:25:18 ----A---- C:\Windows\system32\klfphc.dll
2014-09-17 02:23:11 ----D---- C:\Windows\ELAMBKUP
2014-09-17 02:23:10 ----D---- C:\Program Files (x86)\Kaspersky Lab
2014-09-17 02:23:09 ----D---- C:\ProgramData\Kaspersky Lab
2014-09-17 02:22:53 ----A---- C:\Windows\system32\drivers\klif.sys
2014-09-17 02:22:53 ----A---- C:\Windows\system32\drivers\klflt.sys
2014-09-17 02:22:52 ----A---- C:\Windows\system32\drivers\klhk.sys
2014-09-16 17:03:44 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-09-16 17:03:29 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-16 17:03:29 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-09-16 17:03:29 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-09-16 17:03:29 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-09-16 07:35:46 ----D---- C:\AdwCleaner
2014-09-15 23:27:44 ----D---- C:\FRST
2014-09-11 18:31:10 ----D---- C:\Users\Jakub\AppData\Roaming\uTorrent
2014-09-11 17:37:49 ----D---- C:\zoek_backup
2014-09-11 17:26:26 ----D---- C:\Windows\ERUNT
2014-09-11 16:51:47 ----D---- C:\Users\Jakub\AppData\Roaming\Opera Software
2014-09-11 16:51:43 ----D---- C:\Program Files (x86)\Opera
2014-09-11 16:26:20 ----RSHD---- C:\Users\Jakub\AppData\Roaming\CapsLock
2014-09-11 03:22:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-09-11 03:22:13 ----A---- C:\Windows\system32\ieui.dll
2014-09-11 03:22:12 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-09-11 03:22:12 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-09-11 03:22:12 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\jscript9diag.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\ieUnatt.exe
2014-09-11 03:22:12 ----A---- C:\Windows\system32\iernonce.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\dxtrans.dll
2014-09-11 03:22:12 ----A---- C:\Windows\system32\dxtmsft.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-09-11 03:22:11 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\vbscript.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\msrating.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\mshtmled.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\msfeeds.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\jsproxy.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\iesetup.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\iedkcs32.dll
2014-09-11 03:22:11 ----A---- C:\Windows\system32\ie4uinit.exe
2014-09-11 03:22:10 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-09-11 03:22:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-11 03:22:09 ----A---- C:\Windows\system32\mshtml.dll
2014-09-11 03:22:08 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-09-11 03:22:08 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-09-11 03:22:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-09-11 03:22:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 03:22:08 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-09-11 03:22:08 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-09-11 03:22:08 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-09-11 03:22:08 ----A---- C:\Windows\system32\ieapfltr.dll
2014-09-11 03:22:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-09-11 03:22:07 ----A---- C:\Windows\system32\wininet.dll
2014-09-11 03:22:07 ----A---- C:\Windows\system32\iertutil.dll
2014-09-11 03:22:06 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-09-11 03:22:06 ----A---- C:\Windows\system32\jscript9.dll
2014-09-11 03:22:05 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-09-11 03:22:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-09-11 03:22:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-09-11 03:22:05 ----A---- C:\Windows\system32\urlmon.dll
2014-09-11 03:22:04 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-09-11 03:22:04 ----A---- C:\Windows\system32\ieframe.dll
2014-09-11 03:01:22 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 03:01:21 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-09-10 22:54:08 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-09-10 22:54:08 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-09-10 22:53:25 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-09-10 22:53:25 ----A---- C:\Windows\system32\d3d10warp.dll
2014-09-10 22:52:58 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-09-10 22:52:58 ----A---- C:\Windows\system32\kerberos.dll
2014-09-10 22:52:57 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-09-10 22:52:57 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-09-10 22:52:57 ----A---- C:\Windows\system32\lsasrv.dll
2014-09-10 22:52:50 ----A---- C:\Windows\system32\aepdu.dll
2014-09-10 22:52:48 ----A---- C:\Windows\system32\aeinv.dll
2014-09-08 22:01:39 ----D---- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-09-08 22:01:39 ----D---- C:\Program Files\iTunes
2014-09-08 22:01:39 ----D---- C:\Program Files\iPod
2014-09-08 22:01:39 ----D---- C:\Program Files (x86)\iTunes
2014-08-28 04:08:52 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 04:08:52 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 04:08:52 ----A---- C:\Windows\system32\gdi32.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wups2.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wucltux.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-19 13:31:54 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-19 13:31:25 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-19 13:31:25 ----A---- C:\Windows\system32\wups.dll
2014-08-19 13:31:25 ----A---- C:\Windows\system32\wudriver.dll
2014-08-19 13:31:25 ----A---- C:\Windows\system32\wuapi.dll
2014-08-19 13:31:24 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-19 13:31:24 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-19 13:30:31 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-19 13:30:31 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-19 13:30:31 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-19 13:30:30 ----A---- C:\Windows\system32\wuapp.exe
======List of files/folders modified in the last 1 months======
2014-09-18 19:18:35 ----D---- C:\Windows\Prefetch
2014-09-18 19:18:35 ----D---- C:\Program Files\trend micro
2014-09-18 17:02:19 ----D---- C:\Windows\system32\config
2014-09-18 17:01:58 ----D---- C:\Users\Jakub\AppData\Roaming\Dropbox
2014-09-18 16:59:42 ----A---- C:\Windows\SYSWOW64\log.txt
2014-09-18 16:57:18 ----D---- C:\Windows
2014-09-18 16:57:15 ----SHD---- C:\System Volume Information
2014-09-18 15:58:44 ----D---- C:\Windows\system32\drivers\etc
2014-09-18 15:25:02 ----D---- C:\Windows\SysWOW64
2014-09-18 14:40:26 ----D---- C:\Windows\SYSWOW64\config
2014-09-18 09:47:22 ----D---- C:\Windows\system32\drivers
2014-09-18 09:47:22 ----D---- C:\Qoobox
2014-09-18 09:41:40 ----A---- C:\Windows\system.ini
2014-09-18 09:38:00 ----D---- C:\Windows\SYSWOW64\drivers
2014-09-18 09:38:00 ----D---- C:\Windows\AppPatch
2014-09-18 09:37:59 ----D---- C:\Program Files (x86)\Common Files
2014-09-18 02:49:58 ----RD---- C:\Program Files (x86)
2014-09-18 01:32:10 ----D---- C:\Users\Jakub\AppData\Roaming\vlc
2014-09-18 01:03:22 ----D---- C:\Users\Jakub\AppData\Roaming\TS3Client
2014-09-17 18:57:28 ----D---- C:\Windows\Help
2014-09-17 18:55:35 ----D---- C:\Users\Jakub\AppData\Roaming\Skype
2014-09-17 18:52:29 ----SHD---- C:\Windows\Installer
2014-09-17 17:15:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-17 16:52:03 ----D---- C:\Windows\system32\Tasks
2014-09-17 07:29:46 ----D---- C:\Windows\pss
2014-09-17 02:41:26 ----D---- C:\ProgramData\Skype
2014-09-17 02:26:06 ----D---- C:\ProgramData
2014-09-17 02:25:19 ----D---- C:\Windows\system32\catroot
2014-09-17 02:25:18 ----D---- C:\Windows\System32
2014-09-17 02:25:01 ----D---- C:\Windows\inf
2014-09-17 02:24:44 ----D---- C:\Windows\system32\DriverStore
2014-09-17 01:58:00 ----RD---- C:\Program Files
2014-09-16 18:30:43 ----D---- C:\Extracted
2014-09-16 18:18:18 ----D---- C:\Users\Jakub\AppData\Roaming\FileZilla
2014-09-16 17:03:29 ----D---- C:\ProgramData\Malwarebytes
2014-09-15 09:10:05 ----D---- C:\Windows\Tasks
2014-09-12 09:49:02 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-09-12 09:17:45 ----D---- C:\Program Files\Common Files\Adobe
2014-09-12 08:49:06 ----D---- C:\Users\Jakub\AppData\Roaming\Adobe
2014-09-12 08:47:05 ----D---- C:\Program Files (x86)\Adobe
2014-09-11 18:52:50 ----A---- C:\Windows\win.ini
2014-09-11 18:46:35 ----D---- C:\Program Files (x86)\Google
2014-09-11 15:46:40 ----D---- C:\Program Files\CCleaner
2014-09-11 15:35:42 ----RD---- C:\Users
2014-09-11 15:35:42 ----HD---- C:\Windows\system32\GroupPolicy
2014-09-11 15:35:42 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-09-11 15:04:40 ----D---- C:\Windows\debug
2014-09-11 04:31:15 ----D---- C:\Windows\rescache
2014-09-11 03:55:43 ----D---- C:\Windows\Microsoft.NET
2014-09-11 03:55:23 ----RSD---- C:\Windows\assembly
2014-09-11 03:42:55 ----D---- C:\Windows\winsxs
2014-09-11 03:41:20 ----D---- C:\Windows\SYSWOW64\en-US
2014-09-11 03:41:20 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-09-11 03:41:20 ----D---- C:\Windows\system32\en-US
2014-09-11 03:41:20 ----D---- C:\Windows\system32\cs-CZ
2014-09-11 03:41:20 ----D---- C:\Program Files\Internet Explorer
2014-09-11 03:41:19 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-11 03:22:24 ----D---- C:\Windows\system32\catroot2
2014-09-11 03:20:45 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-09-11 03:20:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-11 03:18:26 ----D---- C:\Windows\system32\MRT
2014-09-11 03:03:13 ----A---- C:\Windows\system32\MRT.exe
2014-09-11 03:00:58 ----SD---- C:\Windows\system32\CompatTel
2014-09-10 04:42:07 ----D---- C:\Program Files\Adobe
2014-08-30 12:25:15 ----D---- C:\sarka
2014-08-26 15:19:25 ----D---- C:\Program Files (x86)\Hearthstone
2014-08-25 06:53:42 ----N---- C:\Windows\system32\MpSigStub.exe
2014-08-22 03:03:08 ----D---- C:\Program Files (x86)\Battle.net
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-01-04 16152]
R0 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-02-20 457824]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2012-06-22 56336]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-07-12 283064]
R1 klhk;klhk; C:\Windows\system32\DRIVERS\klhk.sys [2014-04-10 243808]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-07-25 792128]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2014-02-25 30304]
R1 klpd;klpd; C:\Windows\system32\DRIVERS\klpd.sys [2013-04-12 15456]
R1 kltdi;kltdi; C:\Windows\system32\DRIVERS\kltdi.sys [2014-03-25 55904]
R1 kneps;kneps; C:\Windows\system32\DRIVERS\kneps.sys [2014-03-26 179296]
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2011-11-03 130536]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2011-11-03 395752]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-01-04 355096]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-01-04 786200]
R3 klflt;Kaspersky Lab Kernel DLL; C:\Windows\system32\DRIVERS\klflt.sys [2014-07-25 140352]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\Windows\system32\DRIVERS\klkbdflt.sys [2014-03-28 28768]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\Windows\system32\DRIVERS\klmouflt.sys [2013-08-08 29280]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-05-12 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-09-18 122584]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-05-12 63704]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-17 62784]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-02-03 677480]
S3 61883;61883 Unit Device; C:\Windows\system32\DRIVERS\61883.sys [2009-07-14 60288]
S3 Avc;Zařízení AVC; C:\Windows\system32\DRIVERS\avc.sys [2009-07-14 48768]
S3 AVCSTRM;AVC Streaming Filter Driver; C:\Windows\system32\DRIVERS\avcstrm.sys [2009-07-14 17664]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 MSTAPE;Microsoft AV/C Tape Subunit Device; C:\Windows\system32\DRIVERS\mstape.sys [2009-07-14 56448]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-06-12 43336]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-03-17 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-07 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-07 277784]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-05-12 860472]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-05-12 1809720]
R2 postgresql-x64-9.2;postgresql-x64-9.2 - PostgreSQL Server 9.2; C:/Program Files/PostgreSQL/9.2/bin/pg_ctl.exe runservice -N postgresql-x64-9.2 -D C:/Program Files/PostgreSQL/9.2/data -w []
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-07 363800]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-07-08 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 Flexlm Service 1;Flexlm Service 1; C:\Flexlm\Lmgrd.exe [2008-04-02 974848]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-14 257416]
S3 AVP15.0.0;Služba Kaspersky Anti-Virus 15.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [2014-04-20 233552]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-03-17 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-10-18 118680]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-01-31 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: reklama v prohlizeci "Ads by Info"

Dame si jeste posledni sken a budem mazat.

Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text
Kód: Vybrat vše
CREATERESTOREPOINT
netsvcs
drivers32
savembr:0
/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop
%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5
*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: reklama v prohlizeci "Ads by Info"
OTL logfile created on: 19.9.2014 9:36:55 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jakub\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17280)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
15,69 Gb Total Physical Memory | 13,36 Gb Available Physical Memory | 85,13% Memory free
31,38 Gb Paging File | 27,90 Gb Available in Paging File | 88,93% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698,54 Gb Total Space | 33,98 Gb Free Space | 4,86% Space Free | Partition Type: NTFS
Drive E: | 2794,39 Gb Total Space | 56,32 Gb Free Space | 2,02% Space Free | Partition Type: NTFS
Drive G: | 698,63 Gb Total Space | 65,31 Gb Free Space | 9,35% Space Free | Partition Type: NTFS
Computer Name: JAKUB-PC | User Name: Jakub | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014.09.19 09:34:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jakub\Desktop\OTL.exe
PRC - [2014.09.13 02:52:04 | 036,414,624 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2014.09.04 05:01:19 | 000,852,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014.07.22 17:15:56 | 002,694,040 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
PRC - [2014.07.16 11:05:50 | 005,558,432 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
PRC - [2014.07.03 06:25:22 | 000,490,360 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
PRC - [2014.02.19 06:06:04 | 000,769,904 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
PRC - [2013.12.21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012.02.07 18:53:34 | 000,363,800 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2012.02.07 18:53:32 | 000,277,784 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2012.02.07 18:52:04 | 000,161,560 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2008.04.02 02:59:22 | 000,983,040 | ---- | M] () -- C:\Flexlm\Scia.exe
PRC - [2008.04.02 02:59:00 | 000,974,848 | ---- | M] (Macrovision Corporation) -- C:\Flexlm\Lmgrd.exe
========== Modules (No Company Name) ==========
MOD - [2014.09.18 23:50:52 | 000,043,008 | ---- | M] () -- c:\Users\Jakub\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmd0y_8.dll
MOD - [2014.09.13 02:20:58 | 003,610,624 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2014.09.04 05:01:18 | 000,331,592 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppgooglenaclpluginchrome.dll
MOD - [2014.09.04 05:01:17 | 014,891,848 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\PepperFlash\pepflashplayer.dll
MOD - [2014.09.04 05:01:16 | 008,577,864 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll
MOD - [2014.09.04 05:01:12 | 001,098,056 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libglesv2.dll
MOD - [2014.09.04 05:01:10 | 000,174,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libegl.dll
MOD - [2014.09.04 05:01:09 | 001,660,232 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ffmpegsumo.dll
MOD - [2014.07.16 11:05:50 | 005,558,432 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
MOD - [2014.07.03 06:45:40 | 032,733,056 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libcef.dll
MOD - [2014.07.03 06:45:40 | 000,742,784 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libGLESv2.dll
MOD - [2014.07.03 06:45:40 | 000,136,576 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libEGL.dll
MOD - [2014.02.12 21:58:32 | 000,073,544 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2014.02.12 21:58:10 | 001,044,808 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2013.08.23 21:01:44 | 025,100,288 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\libcef.dll
========== Services (SafeList) ==========
SRV:64bit: - [2014.08.19 00:03:37 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014.03.17 16:33:20 | 000,282,096 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService1.0.0.0)
SRV:64bit: - [2013.05.27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013.04.02 05:41:38 | 000,089,600 | ---- | M] (PostgreSQL Global Development Group) [Auto | Running] -- C:\Program Files\PostgreSQL\9.2\bin\pg_ctl.exe -- (postgresql-x64-9.2)
SRV:64bit: - [2012.02.02 23:29:52 | 000,628,448 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV - [2014.04.20 16:15:58 | 000,233,552 | ---- | M] (Kaspersky Lab ZAO) [On_Demand | Stopped] -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe -- (AVP15.0.0)
SRV - [2014.03.21 00:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2014.03.17 16:33:24 | 000,279,024 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2013.12.21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013.10.18 22:05:43 | 000,118,680 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.09.11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013.07.14 22:18:58 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.04.24 14:37:56 | 000,169,752 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe -- (ICCS)
SRV - [2012.02.07 18:53:34 | 000,363,800 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012.02.07 18:53:32 | 000,277,784 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012.02.07 18:52:04 | 000,161,560 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2008.04.02 02:59:00 | 000,974,848 | ---- | M] (Macrovision Corporation) [Auto | Stopped] -- C:\Flexlm\Lmgrd.exe -- (Flexlm Service 1)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2014.07.25 18:23:54 | 000,792,128 | ---- | M] (Kaspersky Lab ZAO) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF)
DRV:64bit: - [2014.07.25 18:23:54 | 000,140,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klflt.sys -- (klflt)
DRV:64bit: - [2014.04.10 17:25:34 | 000,243,808 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klhk.sys -- (klhk)
DRV:64bit: - [2014.03.28 17:51:04 | 000,028,768 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klkbdflt.sys -- (klkbdflt)
DRV:64bit: - [2014.03.26 17:05:28 | 000,179,296 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kneps.sys -- (kneps)
DRV:64bit: - [2014.03.25 16:26:04 | 000,055,904 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kltdi.sys -- (kltdi)
DRV:64bit: - [2014.03.07 09:26:44 | 000,450,520 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2014.03.07 09:18:24 | 003,729,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2014.02.25 13:09:02 | 000,030,304 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6)
DRV:64bit: - [2014.02.20 12:59:04 | 000,457,824 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\kl1.sys -- (kl1)
DRV:64bit: - [2013.08.08 17:11:00 | 000,029,280 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klmouflt.sys -- (klmouflt)
DRV:64bit: - [2013.07.12 10:04:59 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.04.12 15:34:48 | 000,015,456 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klpd.sys -- (klpd)
DRV:64bit: - [2012.12.13 13:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012.08.23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012.08.23 16:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012.08.23 16:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012.08.21 14:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012.07.17 19:12:08 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2012.06.22 04:01:00 | 000,056,336 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.03 15:01:20 | 000,677,480 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2012.01.04 21:58:50 | 000,786,200 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:64bit: - [2012.01.04 21:58:50 | 000,355,096 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:64bit: - [2012.01.04 21:58:50 | 000,016,152 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:64bit: - [2011.11.03 05:10:42 | 000,395,752 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
DRV:64bit: - [2011.11.03 05:10:42 | 000,130,536 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 02:06:43 | 000,060,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\61883.sys -- (61883)
DRV:64bit: - [2009.07.14 02:06:43 | 000,048,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avc.sys -- (Avc)
DRV:64bit: - [2009.07.14 02:06:40 | 000,017,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avcstrm.sys -- (AVCSTRM)
DRV:64bit: - [2009.07.14 02:06:39 | 000,056,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mstape.sys -- (MSTAPE)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes,DefaultScope = {012E1000-F331-11DB-8314-0800200C9A66}
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes\{02BD18CB-237D-44CB-8086-F345D6FEAFFA}: "URL" = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1001\..\SearchScopes,DefaultScope =
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Google"
FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaulturl: "http://www.google.com/search?btnG=Google+Search&q="
FF - prefs.js..browser.search.order.1: "Google"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: true
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:24.0
FF - prefs.js..keyword.URL: "http://www.google.com/search?btnG=Google+Search&q="
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.1: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect_x86_64: C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@kaspersky.com/content_blocker: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@kaspersky.com/online_banking: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@kaspersky.com/virtual_keyboard: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [2014.09.17 02:23:27 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.0: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{7F737E3E-993D-43AB-9109-90C4E82752CC}: C:\Program Files (x86)\iSkysoft\Free Video Downloader\SVRFirefoxExt\ [2013.02.16 14:58:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2014.05.22 03:21:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\content_blocker@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtual_keyboard@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [2014.09.17 02:23:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\url_advisor@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com [2014.09.17 02:23:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\anti_banner@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com [2014.09.17 02:23:10 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\online_banking@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{7F737E3E-993D-43AB-9109-90C4E82752CC}: C:\Program Files (x86)\iSkysoft\Free Video Downloader\SVRFirefoxExt\ [2013.02.16 14:58:52 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2013.07.11 06:21:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Extensions
[2014.09.17 07:28:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\[ofr2][opt]rs0,[slws][slns]\extensions
[2014.09.17 16:57:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\extensions
[2014.09.17 16:57:08 | 000,226,542 | ---- | M] () (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\extensions\firefox-hotfix@mozilla.org.xpi
[2014.02.13 18:27:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2014.08.12 13:09:39 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013.10.18 22:05:43 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014.09.17 17:15:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\updated\extensions
[2014.09.17 17:15:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\updated\browser\extensions
[2014.09.17 17:15:24 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\updated\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
O1 HOSTS File: ([2014.09.18 15:58:44 | 000,000,840 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (GOSavee) - {2f8a6adc-78a8-4091-aece-dd933e9d77d1} - C:\Program Files (x86)\GOSavee\arP9rgBH3VUDtf.x64.dll File not found
O2:64bit: - BHO: (Content Blocker Plugin) - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (YoutuBeAduBlockue) - {69deaea4-521e-474a-8ff0-4272d7caf23a} - C:\Program Files (x86)\YoutuBeAduBlockue\v93O0ag5LJ1FoB.x64.dll File not found
O2:64bit: - BHO: (Virtual Keyboard Plugin) - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (Safe Money Plugin) - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (Adobe Acrobat Create PDF Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2:64bit: - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O2:64bit: - BHO: (URL Advisor Plugin) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (Adobe Acrobat Create PDF from Selection) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Content Blocker Plugin) - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (Virtual Keyboard Plugin) - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Safe Money Plugin) - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
O2 - BHO: (Adobe Acrobat Create PDF Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (URL Advisor Plugin) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (Adobe Acrobat Create PDF from Selection) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe Creative Cloud] C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9:64bit: - Extra Button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9:64bit: - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKLM\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: localhost ([]http in Internet)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F4B082AC-5872-40B7-96DB-6BD5C28B2B66}: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.CFHD - CFHD.dll (CineForm Inc.)
Drivers32:64bit: VIDC.HFYU - huffyuv.dll (Disappearing Inc.)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: VIDC.CFHD - C:\Windows\SysWow64\CFHD.dll (CineForm Inc.)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2014.09.19 09:34:30 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Jakub\Desktop\OTL.exe
[2014.09.18 19:18:33 | 000,000,000 | ---D | C] -- C:\rsit
[2014.09.18 16:57:51 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2014.09.18 16:06:33 | 000,000,000 | ---D | C] -- C:\Windows\Temp
[2014.09.18 16:06:33 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Local\Temp
[2014.09.18 13:21:46 | 001,016,830 | ---- | C] (Thisisu) -- C:\Users\Jakub\Desktop\JRT.exe
[2014.09.18 02:59:28 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2014.09.18 02:59:28 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2014.09.18 02:59:28 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2014.09.18 02:59:07 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2014.09.18 02:58:07 | 005,578,824 | R--- | C] (Swearware) -- C:\Users\Jakub\Desktop\ComboFix.exe
[2014.09.17 10:36:12 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\Package_OCTOBER
[2014.09.17 08:10:14 | 000,122,584 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\389C5208.sys
[2014.09.17 02:37:26 | 000,122,584 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\417F72B8.sys
[2014.09.17 02:25:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
[2014.09.17 02:25:18 | 000,110,176 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\klfphc.dll
[2014.09.17 02:23:11 | 000,000,000 | ---D | C] -- C:\Windows\ELAMBKUP
[2014.09.17 02:23:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kaspersky Lab
[2014.09.17 02:23:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2014.09.17 02:22:53 | 000,792,128 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klif.sys
[2014.09.17 02:22:53 | 000,140,352 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klflt.sys
[2014.09.17 02:22:52 | 000,243,808 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klhk.sys
[2014.09.16 20:54:03 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\Prinovis_C14B23_Christmas 1
[2014.09.16 17:00:50 | 017,292,760 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Jakub\Desktop\mbam-setup-2.0.2.1012.exe
[2014.09.16 07:35:46 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014.09.16 00:45:09 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\H_OCTOBER
[2014.09.15 23:27:44 | 000,000,000 | ---D | C] -- C:\FRST
[2014.09.15 23:26:27 | 002,105,856 | ---- | C] (Farbar) -- C:\Users\Jakub\Desktop\FRST64.exe
[2014.09.14 21:07:23 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\C14B23_Christmass
[2014.09.12 09:33:09 | 000,000,000 | R--D | C] -- C:\Users\Jakub\Creative Cloud Files
[2014.09.11 18:31:19 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
[2014.09.11 18:31:10 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Roaming\uTorrent
[2014.09.11 16:51:47 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Roaming\Opera Software
[2014.09.11 16:51:47 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Local\Opera Software
[2014.09.11 16:51:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2014.09.11 16:26:20 | 000,000,000 | RHSD | C] -- C:\Users\Jakub\AppData\Roaming\CapsLock
[2014.09.11 15:35:42 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Local\Comodo
[2014.09.11 03:22:13 | 000,596,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.09.11 03:22:13 | 000,440,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014.09.11 03:22:12 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014.09.11 03:22:12 | 000,446,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.09.11 03:22:12 | 000,289,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.09.11 03:22:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.09.11 03:22:12 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.09.11 03:22:12 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014.09.11 03:22:12 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014.09.11 03:22:12 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014.09.11 03:22:12 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014.09.11 03:22:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014.09.11 03:22:11 | 000,727,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.09.11 03:22:11 | 000,707,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014.09.11 03:22:11 | 000,547,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.09.11 03:22:11 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014.09.11 03:22:11 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014.09.11 03:22:11 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.09.11 03:22:11 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.09.11 03:22:11 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014.09.11 03:22:11 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014.09.11 03:22:11 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014.09.11 03:22:10 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014.09.11 03:22:10 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014.09.11 03:22:08 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014.09.11 03:22:08 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014.09.11 03:22:08 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014.09.11 03:22:08 | 000,775,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014.09.11 03:22:08 | 000,678,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014.09.11 03:22:08 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014.09.11 03:22:08 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014.09.11 03:22:08 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014.09.11 03:22:06 | 005,833,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.09.11 03:22:05 | 002,104,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.09.11 03:22:05 | 002,014,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.09.11 03:01:22 | 002,777,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2014.09.11 03:01:21 | 002,285,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2014.09.10 22:54:08 | 001,031,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2014.09.10 22:54:08 | 000,793,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2014.09.10 22:53:25 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2014.09.10 22:52:57 | 001,460,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014.09.10 22:52:50 | 000,578,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.09.10 22:52:48 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014.09.08 22:02:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2014.09.06 08:58:55 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\HF_OCTOBER
[2014.08.28 04:08:52 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2014.08.27 09:45:31 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\September_RIP
[2014.08.26 10:11:00 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\PDF_RIP
[2014.08.26 07:48:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2013.05.14 17:28:56 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Jakub\AppData\Roaming\pcouffin.sys
========== Files - Modified Within 30 Days ==========
[2014.09.19 09:38:08 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.09.19 09:34:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jakub\Desktop\OTL.exe
[2014.09.19 09:25:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.09.19 09:25:32 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014.09.18 23:58:22 | 000,028,928 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.09.18 23:58:22 | 000,028,928 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.09.18 23:50:05 | 4044,959,742 | -HS- | M] () -- C:\hiberfil.sys
[2014.09.18 18:30:05 | 000,832,273 | ---- | M] () -- C:\Users\Jakub\Desktop\RSITx64.exe
[2014.09.18 17:01:52 | 000,001,011 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014.09.18 17:01:19 | 000,000,979 | ---- | M] () -- C:\Users\Jakub\Desktop\Dropbox.lnk
[2014.09.18 15:58:44 | 000,000,840 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2014.09.18 15:25:01 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe
[2014.09.18 15:05:02 | 001,290,240 | ---- | M] () -- C:\Users\Jakub\Desktop\zoek.exe
[2014.09.18 13:21:53 | 001,016,830 | ---- | M] (Thisisu) -- C:\Users\Jakub\Desktop\JRT.exe
[2014.09.18 09:35:00 | 005,578,824 | R--- | M] (Swearware) -- C:\Users\Jakub\Desktop\ComboFix.exe
[2014.09.17 10:11:35 | 585,598,092 | ---- | M] () -- C:\Users\Jakub\Desktop\Package_OCTOBER.zip
[2014.09.17 08:10:14 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\389C5208.sys
[2014.09.17 02:41:25 | 000,002,533 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2014.09.17 02:37:26 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\417F72B8.sys
[2014.09.17 02:26:22 | 000,002,334 | ---- | M] () -- C:\Users\Jakub\Desktop\Ochrana financí.lnk
[2014.09.17 02:25:21 | 000,001,214 | ---- | M] () -- C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
[2014.09.17 01:58:00 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014.09.16 21:42:22 | 000,055,452 | ---- | M] () -- C:\aaa.xml
[2014.09.16 20:31:34 | 290,186,837 | ---- | M] () -- C:\Users\Jakub\Desktop\Prinovis_C14B23_Christmas 1.zip
[2014.09.16 17:01:22 | 017,292,760 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Jakub\Desktop\mbam-setup-2.0.2.1012.exe
[2014.09.16 07:00:00 | 001,373,475 | ---- | M] () -- C:\Users\Jakub\Desktop\adwcleaner_3.310.exe
[2014.09.15 23:26:39 | 002,105,856 | ---- | M] (Farbar) -- C:\Users\Jakub\Desktop\FRST64.exe
[2014.09.12 16:48:55 | 1288,305,236 | ---- | M] () -- C:\Users\Jakub\Desktop\C14B23_Christmass.zip
[2014.09.12 08:47:54 | 000,001,301 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
[2014.09.11 18:52:45 | 000,001,290 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014.09.11 18:52:45 | 000,001,053 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014.09.11 18:31:19 | 000,000,893 | ---- | M] () -- C:\Users\Jakub\Desktop\µTorrent.lnk
[2014.09.11 16:59:32 | 000,005,348 | ---- | M] () -- C:\Users\Jakub\Documents\cc_20140911_165930.reg
[2014.09.11 16:51:43 | 000,001,139 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2014.09.11 15:49:13 | 000,010,040 | ---- | M] () -- C:\Users\Jakub\Documents\cc_20140911_154911.reg
[2014.09.11 15:49:04 | 000,029,870 | ---- | M] () -- C:\Users\Jakub\Documents\cc_20140911_154902.reg
[2014.09.11 15:46:42 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014.09.11 15:35:43 | 000,000,270 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2014.09.11 03:20:45 | 001,559,340 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.09.11 03:20:45 | 000,668,882 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2014.09.11 03:20:45 | 000,654,270 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.09.11 03:20:45 | 000,141,542 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2014.09.11 03:20:45 | 000,122,142 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.09.11 03:20:32 | 001,559,340 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.09.08 22:02:28 | 000,001,783 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014.09.05 04:10:43 | 000,578,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.09.05 04:05:42 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014.08.29 03:20:16 | 012,110,632 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014.08.23 04:07:00 | 000,404,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
========== Files Created - No Company Name ==========
[2014.09.19 09:38:08 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.09.18 18:30:03 | 000,832,273 | ---- | C] () -- C:\Users\Jakub\Desktop\RSITx64.exe
[2014.09.18 17:01:52 | 000,001,011 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014.09.18 16:06:33 | 000,024,064 | ---- | C] () -- C:\Windows\zoek-delete.exe
[2014.09.18 15:04:55 | 001,290,240 | ---- | C] () -- C:\Users\Jakub\Desktop\zoek.exe
[2014.09.18 02:59:28 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2014.09.18 02:59:28 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2014.09.18 02:59:28 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2014.09.18 02:59:28 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2014.09.18 02:59:28 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2014.09.17 09:54:27 | 585,598,092 | ---- | C] () -- C:\Users\Jakub\Desktop\Package_OCTOBER.zip
[2014.09.17 02:26:22 | 000,002,334 | ---- | C] () -- C:\Users\Jakub\Desktop\Ochrana financí.lnk
[2014.09.17 02:25:29 | 000,001,214 | ---- | C] () -- C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
[2014.09.17 02:18:20 | 000,055,452 | ---- | C] () -- C:\aaa.xml
[2014.09.16 20:25:26 | 290,186,837 | ---- | C] () -- C:\Users\Jakub\Desktop\Prinovis_C14B23_Christmas 1.zip
[2014.09.16 06:59:52 | 001,373,475 | ---- | C] () -- C:\Users\Jakub\Desktop\adwcleaner_3.310.exe
[2014.09.12 16:13:34 | 1288,305,236 | ---- | C] () -- C:\Users\Jakub\Desktop\C14B23_Christmass.zip
[2014.09.12 08:47:54 | 000,001,301 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
[2014.09.12 08:12:46 | 000,001,310 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Update Management Tool.lnk
[2014.09.11 18:31:19 | 000,000,893 | ---- | C] () -- C:\Users\Jakub\Desktop\µTorrent.lnk
[2014.09.11 16:51:43 | 000,001,139 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2014.09.11 16:51:43 | 000,001,139 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
[2014.09.11 15:49:12 | 000,010,040 | ---- | C] () -- C:\Users\Jakub\Documents\cc_20140911_154911.reg
[2014.09.11 15:49:02 | 000,029,870 | ---- | C] () -- C:\Users\Jakub\Documents\cc_20140911_154902.reg
[2014.09.11 15:35:43 | 000,000,270 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014.09.08 22:02:28 | 000,001,783 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014.05.30 20:22:22 | 000,000,132 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\Filtr IIIExport Adobe CC – předvolby
[2014.05.20 02:42:42 | 000,000,770 | ---- | C] () -- C:\Users\Jakub\AppData\Local\recently-used.xbel
[2014.03.07 09:21:58 | 000,342,944 | ---- | C] () -- C:\Windows\SysWow64\igdmd32.dll
[2014.03.07 09:15:00 | 000,183,296 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2014.03.07 09:14:56 | 000,142,848 | ---- | C] () -- C:\Windows\SysWow64\igdail32.dll
[2014.03.07 09:14:56 | 000,068,608 | ---- | C] () -- C:\Windows\SysWow64\igfxexps32.dll
[2014.02.23 04:33:59 | 001,559,340 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.01.24 12:14:23 | 004,769,280 | ---- | C] () -- C:\Windows\SysWow64\ColoristaRenderer_x64.dll
[2014.01.24 12:14:22 | 004,078,080 | ---- | C] () -- C:\Windows\SysWow64\ColoristaRenderer.dll
[2014.01.24 12:14:21 | 004,890,624 | ---- | C] () -- C:\Windows\SysWow64\LS3Renderer_x64.dll
[2014.01.03 09:29:39 | 004,168,704 | ---- | C] () -- C:\Windows\SysWow64\PhotoLooksRenderer.dll
[2013.09.12 22:57:24 | 145,672,688 | ---- | C] () -- C:\Users\Jakub\AppData\Local\ACCCx2_1_2_232.zip
[2013.08.04 11:29:08 | 004,165,632 | ---- | C] () -- C:\Windows\SysWow64\LS3Renderer.dll
[2013.08.02 13:42:40 | 000,001,480 | ---- | C] () -- C:\Users\Jakub\AppData\Local\Adobe Uložit pro web 13.0 Prefs
[2013.07.15 10:38:50 | 000,000,132 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\Adobe AIFF Format CS5 Prefs
[2013.07.14 22:19:29 | 000,064,759 | ---- | C] () -- C:\Program Files (x86)\EULA.eng
[2013.05.14 17:28:57 | 000,007,859 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\pcouffin.cat
[2013.05.14 17:28:56 | 000,001,167 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\pcouffin.inf
[2013.05.14 17:15:31 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2013.05.14 17:15:30 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2013.05.14 17:14:01 | 000,033,019 | ---- | C] () -- C:\Windows\SysWow64\CoreAAC-uninstall.exe
[2013.04.06 00:01:44 | 000,178,688 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2013.03.31 20:11:40 | 000,000,000 | ---- | C] () -- C:\Windows\HMHud.INI
[2013.03.31 20:06:49 | 000,000,045 | ---- | C] () -- C:\Users\Jakub\AppData\Local\machpro.dat
[2013.03.26 09:28:00 | 000,001,456 | ---- | C] () -- C:\Users\Jakub\AppData\Local\Adobe Save for Web 12.0 Prefs
[2013.02.16 14:58:58 | 000,938,157 | ---- | C] () -- C:\Windows\SysWow64\WPShellExt64.dll
[2013.02.01 02:49:42 | 000,000,600 | ---- | C] () -- C:\Users\Jakub\AppData\Local\PUTTY.RND
[2013.01.31 19:20:10 | 000,734,772 | ---- | C] () -- C:\Windows\SysWow64\igkrng700.bin
[2013.01.31 19:20:10 | 000,479,528 | ---- | C] () -- C:\Windows\SysWow64\igfcg700m.bin
[2013.01.30 23:32:34 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2013.01.30 23:32:30 | 000,039,644 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2012.12.14 02:42:24 | 000,754,652 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng700.bin
[2012.12.14 02:42:24 | 000,598,384 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng700.bin
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jakub\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17280)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
15,69 Gb Total Physical Memory | 13,36 Gb Available Physical Memory | 85,13% Memory free
31,38 Gb Paging File | 27,90 Gb Available in Paging File | 88,93% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698,54 Gb Total Space | 33,98 Gb Free Space | 4,86% Space Free | Partition Type: NTFS
Drive E: | 2794,39 Gb Total Space | 56,32 Gb Free Space | 2,02% Space Free | Partition Type: NTFS
Drive G: | 698,63 Gb Total Space | 65,31 Gb Free Space | 9,35% Space Free | Partition Type: NTFS
Computer Name: JAKUB-PC | User Name: Jakub | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014.09.19 09:34:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jakub\Desktop\OTL.exe
PRC - [2014.09.13 02:52:04 | 036,414,624 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2014.09.04 05:01:19 | 000,852,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014.07.22 17:15:56 | 002,694,040 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
PRC - [2014.07.16 11:05:50 | 005,558,432 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
PRC - [2014.07.03 06:25:22 | 000,490,360 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
PRC - [2014.02.19 06:06:04 | 000,769,904 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
PRC - [2013.12.21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012.02.07 18:53:34 | 000,363,800 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2012.02.07 18:53:32 | 000,277,784 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2012.02.07 18:52:04 | 000,161,560 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2008.04.02 02:59:22 | 000,983,040 | ---- | M] () -- C:\Flexlm\Scia.exe
PRC - [2008.04.02 02:59:00 | 000,974,848 | ---- | M] (Macrovision Corporation) -- C:\Flexlm\Lmgrd.exe
========== Modules (No Company Name) ==========
MOD - [2014.09.18 23:50:52 | 000,043,008 | ---- | M] () -- c:\Users\Jakub\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmd0y_8.dll
MOD - [2014.09.13 02:20:58 | 003,610,624 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2014.09.04 05:01:18 | 000,331,592 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppgooglenaclpluginchrome.dll
MOD - [2014.09.04 05:01:17 | 014,891,848 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\PepperFlash\pepflashplayer.dll
MOD - [2014.09.04 05:01:16 | 008,577,864 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll
MOD - [2014.09.04 05:01:12 | 001,098,056 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libglesv2.dll
MOD - [2014.09.04 05:01:10 | 000,174,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libegl.dll
MOD - [2014.09.04 05:01:09 | 001,660,232 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ffmpegsumo.dll
MOD - [2014.07.16 11:05:50 | 005,558,432 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
MOD - [2014.07.03 06:45:40 | 032,733,056 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libcef.dll
MOD - [2014.07.03 06:45:40 | 000,742,784 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libGLESv2.dll
MOD - [2014.07.03 06:45:40 | 000,136,576 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libEGL.dll
MOD - [2014.02.12 21:58:32 | 000,073,544 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2014.02.12 21:58:10 | 001,044,808 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2013.08.23 21:01:44 | 025,100,288 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\libcef.dll
========== Services (SafeList) ==========
SRV:64bit: - [2014.08.19 00:03:37 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014.03.17 16:33:20 | 000,282,096 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService1.0.0.0)
SRV:64bit: - [2013.05.27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013.04.02 05:41:38 | 000,089,600 | ---- | M] (PostgreSQL Global Development Group) [Auto | Running] -- C:\Program Files\PostgreSQL\9.2\bin\pg_ctl.exe -- (postgresql-x64-9.2)
SRV:64bit: - [2012.02.02 23:29:52 | 000,628,448 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV - [2014.04.20 16:15:58 | 000,233,552 | ---- | M] (Kaspersky Lab ZAO) [On_Demand | Stopped] -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe -- (AVP15.0.0)
SRV - [2014.03.21 00:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2014.03.17 16:33:24 | 000,279,024 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2013.12.21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013.10.18 22:05:43 | 000,118,680 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.09.11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013.07.14 22:18:58 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.04.24 14:37:56 | 000,169,752 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe -- (ICCS)
SRV - [2012.02.07 18:53:34 | 000,363,800 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012.02.07 18:53:32 | 000,277,784 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012.02.07 18:52:04 | 000,161,560 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2008.04.02 02:59:00 | 000,974,848 | ---- | M] (Macrovision Corporation) [Auto | Stopped] -- C:\Flexlm\Lmgrd.exe -- (Flexlm Service 1)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2014.07.25 18:23:54 | 000,792,128 | ---- | M] (Kaspersky Lab ZAO) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF)
DRV:64bit: - [2014.07.25 18:23:54 | 000,140,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klflt.sys -- (klflt)
DRV:64bit: - [2014.04.10 17:25:34 | 000,243,808 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klhk.sys -- (klhk)
DRV:64bit: - [2014.03.28 17:51:04 | 000,028,768 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klkbdflt.sys -- (klkbdflt)
DRV:64bit: - [2014.03.26 17:05:28 | 000,179,296 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kneps.sys -- (kneps)
DRV:64bit: - [2014.03.25 16:26:04 | 000,055,904 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kltdi.sys -- (kltdi)
DRV:64bit: - [2014.03.07 09:26:44 | 000,450,520 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2014.03.07 09:18:24 | 003,729,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2014.02.25 13:09:02 | 000,030,304 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6)
DRV:64bit: - [2014.02.20 12:59:04 | 000,457,824 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\kl1.sys -- (kl1)
DRV:64bit: - [2013.08.08 17:11:00 | 000,029,280 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klmouflt.sys -- (klmouflt)
DRV:64bit: - [2013.07.12 10:04:59 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.04.12 15:34:48 | 000,015,456 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klpd.sys -- (klpd)
DRV:64bit: - [2012.12.13 13:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012.08.23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012.08.23 16:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012.08.23 16:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012.08.21 14:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012.07.17 19:12:08 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2012.06.22 04:01:00 | 000,056,336 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.03 15:01:20 | 000,677,480 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2012.01.04 21:58:50 | 000,786,200 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:64bit: - [2012.01.04 21:58:50 | 000,355,096 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:64bit: - [2012.01.04 21:58:50 | 000,016,152 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:64bit: - [2011.11.03 05:10:42 | 000,395,752 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
DRV:64bit: - [2011.11.03 05:10:42 | 000,130,536 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 02:06:43 | 000,060,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\61883.sys -- (61883)
DRV:64bit: - [2009.07.14 02:06:43 | 000,048,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avc.sys -- (Avc)
DRV:64bit: - [2009.07.14 02:06:40 | 000,017,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avcstrm.sys -- (AVCSTRM)
DRV:64bit: - [2009.07.14 02:06:39 | 000,056,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mstape.sys -- (MSTAPE)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes,DefaultScope = {012E1000-F331-11DB-8314-0800200C9A66}
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes\{02BD18CB-237D-44CB-8086-F345D6FEAFFA}: "URL" = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1001\..\SearchScopes,DefaultScope =
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Google"
FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaulturl: "http://www.google.com/search?btnG=Google+Search&q="
FF - prefs.js..browser.search.order.1: "Google"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: true
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:24.0
FF - prefs.js..keyword.URL: "http://www.google.com/search?btnG=Google+Search&q="
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.1: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect_x86_64: C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@kaspersky.com/content_blocker: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@kaspersky.com/online_banking: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@kaspersky.com/virtual_keyboard: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [2014.09.17 02:23:27 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.0: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{7F737E3E-993D-43AB-9109-90C4E82752CC}: C:\Program Files (x86)\iSkysoft\Free Video Downloader\SVRFirefoxExt\ [2013.02.16 14:58:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2014.05.22 03:21:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\content_blocker@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtual_keyboard@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [2014.09.17 02:23:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\url_advisor@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com [2014.09.17 02:23:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\anti_banner@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com [2014.09.17 02:23:10 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\online_banking@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [2014.09.17 02:23:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{7F737E3E-993D-43AB-9109-90C4E82752CC}: C:\Program Files (x86)\iSkysoft\Free Video Downloader\SVRFirefoxExt\ [2013.02.16 14:58:52 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2013.07.11 06:21:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Extensions
[2014.09.17 07:28:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\[ofr2][opt]rs0,[slws][slns]\extensions
[2014.09.17 16:57:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\extensions
[2014.09.17 16:57:08 | 000,226,542 | ---- | M] () (No name found) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\extensions\firefox-hotfix@mozilla.org.xpi
[2014.02.13 18:27:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2014.08.12 13:09:39 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013.10.18 22:05:43 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014.09.17 17:15:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\updated\extensions
[2014.09.17 17:15:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\updated\browser\extensions
[2014.09.17 17:15:24 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\updated\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
O1 HOSTS File: ([2014.09.18 15:58:44 | 000,000,840 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (GOSavee) - {2f8a6adc-78a8-4091-aece-dd933e9d77d1} - C:\Program Files (x86)\GOSavee\arP9rgBH3VUDtf.x64.dll File not found
O2:64bit: - BHO: (Content Blocker Plugin) - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (YoutuBeAduBlockue) - {69deaea4-521e-474a-8ff0-4272d7caf23a} - C:\Program Files (x86)\YoutuBeAduBlockue\v93O0ag5LJ1FoB.x64.dll File not found
O2:64bit: - BHO: (Virtual Keyboard Plugin) - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (Safe Money Plugin) - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (Adobe Acrobat Create PDF Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2:64bit: - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O2:64bit: - BHO: (URL Advisor Plugin) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (Adobe Acrobat Create PDF from Selection) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Content Blocker Plugin) - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (Virtual Keyboard Plugin) - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Safe Money Plugin) - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
O2 - BHO: (Adobe Acrobat Create PDF Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (URL Advisor Plugin) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (Adobe Acrobat Create PDF from Selection) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe Creative Cloud] C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9:64bit: - Extra Button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9:64bit: - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Virtuální klávesnice - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKLM\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: localhost ([]http in Internet)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F4B082AC-5872-40B7-96DB-6BD5C28B2B66}: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.CFHD - CFHD.dll (CineForm Inc.)
Drivers32:64bit: VIDC.HFYU - huffyuv.dll (Disappearing Inc.)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: VIDC.CFHD - C:\Windows\SysWow64\CFHD.dll (CineForm Inc.)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2014.09.19 09:34:30 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Jakub\Desktop\OTL.exe
[2014.09.18 19:18:33 | 000,000,000 | ---D | C] -- C:\rsit
[2014.09.18 16:57:51 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2014.09.18 16:06:33 | 000,000,000 | ---D | C] -- C:\Windows\Temp
[2014.09.18 16:06:33 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Local\Temp
[2014.09.18 13:21:46 | 001,016,830 | ---- | C] (Thisisu) -- C:\Users\Jakub\Desktop\JRT.exe
[2014.09.18 02:59:28 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2014.09.18 02:59:28 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2014.09.18 02:59:28 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2014.09.18 02:59:07 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2014.09.18 02:58:07 | 005,578,824 | R--- | C] (Swearware) -- C:\Users\Jakub\Desktop\ComboFix.exe
[2014.09.17 10:36:12 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\Package_OCTOBER
[2014.09.17 08:10:14 | 000,122,584 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\389C5208.sys
[2014.09.17 02:37:26 | 000,122,584 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\417F72B8.sys
[2014.09.17 02:25:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
[2014.09.17 02:25:18 | 000,110,176 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\klfphc.dll
[2014.09.17 02:23:11 | 000,000,000 | ---D | C] -- C:\Windows\ELAMBKUP
[2014.09.17 02:23:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kaspersky Lab
[2014.09.17 02:23:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2014.09.17 02:22:53 | 000,792,128 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klif.sys
[2014.09.17 02:22:53 | 000,140,352 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klflt.sys
[2014.09.17 02:22:52 | 000,243,808 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klhk.sys
[2014.09.16 20:54:03 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\Prinovis_C14B23_Christmas 1
[2014.09.16 17:00:50 | 017,292,760 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Jakub\Desktop\mbam-setup-2.0.2.1012.exe
[2014.09.16 07:35:46 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014.09.16 00:45:09 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\H_OCTOBER
[2014.09.15 23:27:44 | 000,000,000 | ---D | C] -- C:\FRST
[2014.09.15 23:26:27 | 002,105,856 | ---- | C] (Farbar) -- C:\Users\Jakub\Desktop\FRST64.exe
[2014.09.14 21:07:23 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\C14B23_Christmass
[2014.09.12 09:33:09 | 000,000,000 | R--D | C] -- C:\Users\Jakub\Creative Cloud Files
[2014.09.11 18:31:19 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
[2014.09.11 18:31:10 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Roaming\uTorrent
[2014.09.11 16:51:47 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Roaming\Opera Software
[2014.09.11 16:51:47 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Local\Opera Software
[2014.09.11 16:51:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2014.09.11 16:26:20 | 000,000,000 | RHSD | C] -- C:\Users\Jakub\AppData\Roaming\CapsLock
[2014.09.11 15:35:42 | 000,000,000 | ---D | C] -- C:\Users\Jakub\AppData\Local\Comodo
[2014.09.11 03:22:13 | 000,596,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.09.11 03:22:13 | 000,440,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014.09.11 03:22:12 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014.09.11 03:22:12 | 000,446,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.09.11 03:22:12 | 000,289,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.09.11 03:22:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.09.11 03:22:12 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.09.11 03:22:12 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014.09.11 03:22:12 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014.09.11 03:22:12 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014.09.11 03:22:12 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014.09.11 03:22:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014.09.11 03:22:11 | 000,727,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.09.11 03:22:11 | 000,707,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014.09.11 03:22:11 | 000,547,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.09.11 03:22:11 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014.09.11 03:22:11 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014.09.11 03:22:11 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.09.11 03:22:11 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.09.11 03:22:11 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014.09.11 03:22:11 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014.09.11 03:22:11 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014.09.11 03:22:10 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014.09.11 03:22:10 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014.09.11 03:22:08 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014.09.11 03:22:08 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014.09.11 03:22:08 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014.09.11 03:22:08 | 000,775,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014.09.11 03:22:08 | 000,678,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014.09.11 03:22:08 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014.09.11 03:22:08 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014.09.11 03:22:08 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014.09.11 03:22:06 | 005,833,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.09.11 03:22:05 | 002,104,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.09.11 03:22:05 | 002,014,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.09.11 03:01:22 | 002,777,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2014.09.11 03:01:21 | 002,285,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2014.09.10 22:54:08 | 001,031,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2014.09.10 22:54:08 | 000,793,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2014.09.10 22:53:25 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2014.09.10 22:52:57 | 001,460,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014.09.10 22:52:50 | 000,578,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.09.10 22:52:48 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014.09.08 22:02:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2014.09.08 22:01:39 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2014.09.06 08:58:55 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\HF_OCTOBER
[2014.08.28 04:08:52 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2014.08.27 09:45:31 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\September_RIP
[2014.08.26 10:11:00 | 000,000,000 | ---D | C] -- C:\Users\Jakub\Desktop\PDF_RIP
[2014.08.26 07:48:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2013.05.14 17:28:56 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Jakub\AppData\Roaming\pcouffin.sys
========== Files - Modified Within 30 Days ==========
[2014.09.19 09:38:08 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.09.19 09:34:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jakub\Desktop\OTL.exe
[2014.09.19 09:25:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.09.19 09:25:32 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014.09.18 23:58:22 | 000,028,928 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.09.18 23:58:22 | 000,028,928 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.09.18 23:50:05 | 4044,959,742 | -HS- | M] () -- C:\hiberfil.sys
[2014.09.18 18:30:05 | 000,832,273 | ---- | M] () -- C:\Users\Jakub\Desktop\RSITx64.exe
[2014.09.18 17:01:52 | 000,001,011 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014.09.18 17:01:19 | 000,000,979 | ---- | M] () -- C:\Users\Jakub\Desktop\Dropbox.lnk
[2014.09.18 15:58:44 | 000,000,840 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2014.09.18 15:25:01 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe
[2014.09.18 15:05:02 | 001,290,240 | ---- | M] () -- C:\Users\Jakub\Desktop\zoek.exe
[2014.09.18 13:21:53 | 001,016,830 | ---- | M] (Thisisu) -- C:\Users\Jakub\Desktop\JRT.exe
[2014.09.18 09:35:00 | 005,578,824 | R--- | M] (Swearware) -- C:\Users\Jakub\Desktop\ComboFix.exe
[2014.09.17 10:11:35 | 585,598,092 | ---- | M] () -- C:\Users\Jakub\Desktop\Package_OCTOBER.zip
[2014.09.17 08:10:14 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\389C5208.sys
[2014.09.17 02:41:25 | 000,002,533 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2014.09.17 02:37:26 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\417F72B8.sys
[2014.09.17 02:26:22 | 000,002,334 | ---- | M] () -- C:\Users\Jakub\Desktop\Ochrana financí.lnk
[2014.09.17 02:25:21 | 000,001,214 | ---- | M] () -- C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
[2014.09.17 01:58:00 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014.09.16 21:42:22 | 000,055,452 | ---- | M] () -- C:\aaa.xml
[2014.09.16 20:31:34 | 290,186,837 | ---- | M] () -- C:\Users\Jakub\Desktop\Prinovis_C14B23_Christmas 1.zip
[2014.09.16 17:01:22 | 017,292,760 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Jakub\Desktop\mbam-setup-2.0.2.1012.exe
[2014.09.16 07:00:00 | 001,373,475 | ---- | M] () -- C:\Users\Jakub\Desktop\adwcleaner_3.310.exe
[2014.09.15 23:26:39 | 002,105,856 | ---- | M] (Farbar) -- C:\Users\Jakub\Desktop\FRST64.exe
[2014.09.12 16:48:55 | 1288,305,236 | ---- | M] () -- C:\Users\Jakub\Desktop\C14B23_Christmass.zip
[2014.09.12 08:47:54 | 000,001,301 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
[2014.09.11 18:52:45 | 000,001,290 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014.09.11 18:52:45 | 000,001,053 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014.09.11 18:31:19 | 000,000,893 | ---- | M] () -- C:\Users\Jakub\Desktop\µTorrent.lnk
[2014.09.11 16:59:32 | 000,005,348 | ---- | M] () -- C:\Users\Jakub\Documents\cc_20140911_165930.reg
[2014.09.11 16:51:43 | 000,001,139 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2014.09.11 15:49:13 | 000,010,040 | ---- | M] () -- C:\Users\Jakub\Documents\cc_20140911_154911.reg
[2014.09.11 15:49:04 | 000,029,870 | ---- | M] () -- C:\Users\Jakub\Documents\cc_20140911_154902.reg
[2014.09.11 15:46:42 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014.09.11 15:35:43 | 000,000,270 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2014.09.11 03:20:45 | 001,559,340 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.09.11 03:20:45 | 000,668,882 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2014.09.11 03:20:45 | 000,654,270 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.09.11 03:20:45 | 000,141,542 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2014.09.11 03:20:45 | 000,122,142 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.09.11 03:20:32 | 001,559,340 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.09.08 22:02:28 | 000,001,783 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014.09.05 04:10:43 | 000,578,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.09.05 04:05:42 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014.08.29 03:20:16 | 012,110,632 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014.08.23 04:07:00 | 000,404,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
========== Files Created - No Company Name ==========
[2014.09.19 09:38:08 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.09.18 18:30:03 | 000,832,273 | ---- | C] () -- C:\Users\Jakub\Desktop\RSITx64.exe
[2014.09.18 17:01:52 | 000,001,011 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014.09.18 16:06:33 | 000,024,064 | ---- | C] () -- C:\Windows\zoek-delete.exe
[2014.09.18 15:04:55 | 001,290,240 | ---- | C] () -- C:\Users\Jakub\Desktop\zoek.exe
[2014.09.18 02:59:28 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2014.09.18 02:59:28 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2014.09.18 02:59:28 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2014.09.18 02:59:28 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2014.09.18 02:59:28 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2014.09.17 09:54:27 | 585,598,092 | ---- | C] () -- C:\Users\Jakub\Desktop\Package_OCTOBER.zip
[2014.09.17 02:26:22 | 000,002,334 | ---- | C] () -- C:\Users\Jakub\Desktop\Ochrana financí.lnk
[2014.09.17 02:25:29 | 000,001,214 | ---- | C] () -- C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
[2014.09.17 02:18:20 | 000,055,452 | ---- | C] () -- C:\aaa.xml
[2014.09.16 20:25:26 | 290,186,837 | ---- | C] () -- C:\Users\Jakub\Desktop\Prinovis_C14B23_Christmas 1.zip
[2014.09.16 06:59:52 | 001,373,475 | ---- | C] () -- C:\Users\Jakub\Desktop\adwcleaner_3.310.exe
[2014.09.12 16:13:34 | 1288,305,236 | ---- | C] () -- C:\Users\Jakub\Desktop\C14B23_Christmass.zip
[2014.09.12 08:47:54 | 000,001,301 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
[2014.09.12 08:12:46 | 000,001,310 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Update Management Tool.lnk
[2014.09.11 18:31:19 | 000,000,893 | ---- | C] () -- C:\Users\Jakub\Desktop\µTorrent.lnk
[2014.09.11 16:51:43 | 000,001,139 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2014.09.11 16:51:43 | 000,001,139 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
[2014.09.11 15:49:12 | 000,010,040 | ---- | C] () -- C:\Users\Jakub\Documents\cc_20140911_154911.reg
[2014.09.11 15:49:02 | 000,029,870 | ---- | C] () -- C:\Users\Jakub\Documents\cc_20140911_154902.reg
[2014.09.11 15:35:43 | 000,000,270 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014.09.08 22:02:28 | 000,001,783 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014.05.30 20:22:22 | 000,000,132 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\Filtr IIIExport Adobe CC – předvolby
[2014.05.20 02:42:42 | 000,000,770 | ---- | C] () -- C:\Users\Jakub\AppData\Local\recently-used.xbel
[2014.03.07 09:21:58 | 000,342,944 | ---- | C] () -- C:\Windows\SysWow64\igdmd32.dll
[2014.03.07 09:15:00 | 000,183,296 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2014.03.07 09:14:56 | 000,142,848 | ---- | C] () -- C:\Windows\SysWow64\igdail32.dll
[2014.03.07 09:14:56 | 000,068,608 | ---- | C] () -- C:\Windows\SysWow64\igfxexps32.dll
[2014.02.23 04:33:59 | 001,559,340 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.01.24 12:14:23 | 004,769,280 | ---- | C] () -- C:\Windows\SysWow64\ColoristaRenderer_x64.dll
[2014.01.24 12:14:22 | 004,078,080 | ---- | C] () -- C:\Windows\SysWow64\ColoristaRenderer.dll
[2014.01.24 12:14:21 | 004,890,624 | ---- | C] () -- C:\Windows\SysWow64\LS3Renderer_x64.dll
[2014.01.03 09:29:39 | 004,168,704 | ---- | C] () -- C:\Windows\SysWow64\PhotoLooksRenderer.dll
[2013.09.12 22:57:24 | 145,672,688 | ---- | C] () -- C:\Users\Jakub\AppData\Local\ACCCx2_1_2_232.zip
[2013.08.04 11:29:08 | 004,165,632 | ---- | C] () -- C:\Windows\SysWow64\LS3Renderer.dll
[2013.08.02 13:42:40 | 000,001,480 | ---- | C] () -- C:\Users\Jakub\AppData\Local\Adobe Uložit pro web 13.0 Prefs
[2013.07.15 10:38:50 | 000,000,132 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\Adobe AIFF Format CS5 Prefs
[2013.07.14 22:19:29 | 000,064,759 | ---- | C] () -- C:\Program Files (x86)\EULA.eng
[2013.05.14 17:28:57 | 000,007,859 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\pcouffin.cat
[2013.05.14 17:28:56 | 000,001,167 | ---- | C] () -- C:\Users\Jakub\AppData\Roaming\pcouffin.inf
[2013.05.14 17:15:31 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2013.05.14 17:15:30 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2013.05.14 17:14:01 | 000,033,019 | ---- | C] () -- C:\Windows\SysWow64\CoreAAC-uninstall.exe
[2013.04.06 00:01:44 | 000,178,688 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2013.03.31 20:11:40 | 000,000,000 | ---- | C] () -- C:\Windows\HMHud.INI
[2013.03.31 20:06:49 | 000,000,045 | ---- | C] () -- C:\Users\Jakub\AppData\Local\machpro.dat
[2013.03.26 09:28:00 | 000,001,456 | ---- | C] () -- C:\Users\Jakub\AppData\Local\Adobe Save for Web 12.0 Prefs
[2013.02.16 14:58:58 | 000,938,157 | ---- | C] () -- C:\Windows\SysWow64\WPShellExt64.dll
[2013.02.01 02:49:42 | 000,000,600 | ---- | C] () -- C:\Users\Jakub\AppData\Local\PUTTY.RND
[2013.01.31 19:20:10 | 000,734,772 | ---- | C] () -- C:\Windows\SysWow64\igkrng700.bin
[2013.01.31 19:20:10 | 000,479,528 | ---- | C] () -- C:\Windows\SysWow64\igfcg700m.bin
[2013.01.30 23:32:34 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2013.01.30 23:32:30 | 000,039,644 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2012.12.14 02:42:24 | 000,754,652 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng700.bin
[2012.12.14 02:42:24 | 000,598,384 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng700.bin
Re: reklama v prohlizeci "Ads by Info"
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014.06.25 04:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014.06.25 03:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2014.05.04 12:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aescripts
[2013.05.14 17:31:33 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aHisoft
[2013.04.28 12:13:15 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\avidemux
[2014.08.13 16:39:12 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Battle.net
[2014.09.11 16:26:40 | 000,000,000 | RHSD | M] -- C:\Users\Jakub\AppData\Roaming\CapsLock
[2013.09.18 15:05:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc
[2013.03.04 00:03:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2014.02.09 15:56:57 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\com.adobe.amp
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite
[2014.09.18 23:51:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Dropbox
[2014.09.16 18:18:18 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\FileZilla
[2014.03.23 11:04:53 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GeoVisu Suite
[2014.01.29 00:41:41 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GHISLER
[2013.03.31 19:52:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\HEM Data
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\inkscape
[2014.03.04 16:42:07 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mael
[2013.10.05 21:11:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\MAXON
[2013.06.14 20:54:59 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mumble
[2013.02.13 22:19:51 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\OpenOffice.org
[2014.09.11 16:51:47 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Opera Software
[2014.05.25 11:31:35 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Oracle
[2013.02.01 00:43:32 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PACE Anti-Piracy
[2013.02.01 00:43:52 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PDAppFlex
[2013.02.01 02:58:46 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\postgresql
[2013.02.01 00:29:24 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Publish Providers
[2014.02.12 14:17:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant
[2013.03.04 21:33:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant Link
[2013.08.03 02:25:30 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Seznam.cz
[2013.02.01 00:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Sony
[2013.02.05 04:40:55 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2014.09.18 01:03:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\TS3Client
[2014.09.11 18:36:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\uTorrent
[2013.05.19 19:28:16 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Vso
[2013.04.10 23:24:10 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Wargaming.net
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,032,564 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2013.07.14 22:18:59 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
< >
< MD5 for: AGP440.SYS >
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\erdnt\cache64\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_552ea5111ec825a6\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_3b457059383c66e6\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_3be7afc0514717fa\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: CNGAUDIT.DLL >
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\erdnt\cache86\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\erdnt\cache64\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
< MD5 for: CRYPTSVC.DLL >
[2012.06.02 06:52:32 | 000,142,336 | ---- | M] (Microsoft Corporation) MD5=063DD65889D21035311463337BD268E7 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_788c7cc71232cc19\cryptsvc.dll
[2010.11.21 05:24:16 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=15597883FBE9B056F276ADA3AD87D9AF -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_d4259ed3b16ed82a\cryptsvc.dll
[2013.05.10 06:49:59 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=33ADF6E0853AB39EA1723BE82842C1D3 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_77d7a417f9359661\cryptsvc.dll
[2013.05.13 06:45:55 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_77d8a461f934afb8\cryptsvc.dll
[2013.07.09 16:47:30 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=434CCE8E7150CD1324C5FAA088D1D061 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22380_none_d45f6e88cac8f85b\cryptsvc.dll
[2013.10.05 04:25:30 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=509D31797A4B8A3D6ED78A330B19A919 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22473_none_d46d4138cabe2596\cryptsvc.dll
[2013.07.09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=6B400F211BEE880A37A1ED0368776BF4 -- C:\Windows\erdnt\cache64\cryptsvc.dll
[2013.07.09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=6B400F211BEE880A37A1ED0368776BF4 -- C:\Windows\SysNative\cryptsvc.dll
[2013.07.09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=6B400F211BEE880A37A1ED0368776BF4 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18205_none_d431528fb165f7bc\cryptsvc.dll
[2013.07.09 15:57:37 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=6DB499DEFCC827317C5371164A7CDB27 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22380_none_7840d305126b8725\cryptsvc.dll
[2013.07.09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\erdnt\cache86\cryptsvc.dll
[2013.07.09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\SysWOW64\cryptsvc.dll
[2013.07.09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18205_none_7812b70bf9088686\cryptsvc.dll
[2012.06.04 09:52:35 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=7E7D2DACF65D750D466F36BD3D09AE20 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_d4ab184aca903d4f\cryptsvc.dll
[2013.05.10 07:49:28 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=7FDC4626B01106A8EF328C88C7C0DEE3 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_d3f63f9bb1930797\cryptsvc.dll
[2013.05.11 07:18:23 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=8122252F0A4ACFA92FA0C1D50D18493B -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_d4a24ea4ca968363\cryptsvc.dll
[2012.06.02 06:36:29 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=96C0E38905CFD788313BE8E11DAE3F2F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_77ddc9e5f93000db\cryptsvc.dll
[2012.06.02 07:41:28 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=9C01375BE382E834CC26D1B7EAF2C4FE -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_d3fc6569b18d7211\cryptsvc.dll
[2010.11.21 05:24:32 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll
[2013.05.11 06:59:05 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=AC04D05309BB2C418D0D80B9FB014642 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_7883b3211239122d\cryptsvc.dll
[2013.05.10 07:18:53 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=CA13C4F92BEE66DB48E58AB3223DDF6E -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_d4a14e5aca976a0c\cryptsvc.dll
[2013.05.13 07:51:01 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_d3f73fe5b19220ee\cryptsvc.dll
[2013.05.10 07:06:21 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=E122AA1C9A3CC46FF9DDDE46E5EB0C58 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_7882b2d71239f8d6\cryptsvc.dll
[2013.10.05 03:52:03 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=F2D9242C3BBD1C36467FCAE1AE01733F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22473_none_784ea5b51260b460\cryptsvc.dll
< MD5 for: EXPLORER.EXE >
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\erdnt\cache86\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.21 05:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.11.21 05:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
< MD5 for: HAL.DLL >
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: IASTORV.SYS >
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
[2011.03.11 08:19:16 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
[2011.03.11 08:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\drivers\iaStorV.sys
[2011.03.11 08:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0bcee2057afcc090\iaStorV.sys
[2011.03.11 08:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
< MD5 for: ISAPNP.SYS >
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\drivers\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\isapnp.sys
< MD5 for: LSASS.EXE >
[2014.05.30 10:00:12 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=04F6C08B30C599D301CE8530A6F6A703 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22705_none_0505e8508c7f766f\lsass.exe
[2009.07.14 03:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_04709031736ac277\lsass.exe
[2011.11.17 08:20:34 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0A10B74FBB437FF9A23F1D5DE4446A83 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.21861_none_04c1204e8cb39c3f\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\erdnt\cache64\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\SysNative\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18443_none_044f07757384196d\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18496_none_041bf8b773a9f127\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18526_none_0467aa1173712ab7\lsass.exe
[2013.09.25 03:03:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=4D71227301DD8D09097B9E4CC6527E5A -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18270_none_042b9307739f26ed\lsass.exe
[2014.04.12 04:31:33 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=6598EBC4D209318EBD81F76833ECBEDB -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22653_none_04cdd63a8ca9d24f\lsass.exe
[2014.04.12 04:31:33 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=6598EBC4D209318EBD81F76833ECBEDB -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22712_none_04f817868c8a465b\lsass.exe
[2014.04.12 04:31:33 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=6598EBC4D209318EBD81F76833ECBEDB -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22736_none_04e678d68c96e399\lsass.exe
[2012.08.24 19:43:36 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=77119F1F9B492B260030C34F9BE327FA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22099_none_04a88ce28cc4eb33\lsass.exe
[2012.06.04 09:51:10 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=79C908CAA6F43021EB05F4C733A927D1 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22010_none_04f609a88c8c279c\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17725_none_0466c45b7371f20d\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17856_none_044756c773895c5e\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17940_none_044c26dd7386a58a\lsass.exe
[2013.09.25 03:08:17 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=F021DAFB1F87616FCEBA159C2ED7042F -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22465_none_04c503168cb026a0\lsass.exe
[2014.05.30 10:07:57 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=F23812F9F7B130854E4BC0389F7C688C -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18489_none_0429c981739f213b\lsass.exe
< MD5 for: NDIS.SYS >
[2012.08.22 20:06:07 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=5E74508FCB5820B29EEAFE24E6035BCF -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.22097_none_06232d534c0a8d67\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\erdnt\cache64\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\SysNative\drivers\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17939_none_05dc9a6832ba428a\ndis.sys
[2010.11.21 05:23:55 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
< MD5 for: NETLOGON.DLL >
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\erdnt\cache64\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\erdnt\cache86\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
< MD5 for: NVRAID.SYS >
[2011.03.11 08:41:34 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\drivers\nvraid.sys
[2011.03.11 08:41:34 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvraid.sys
[2011.03.11 08:41:34 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvraid.sys
[2011.03.11 08:19:21 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=666CA16F17914C1CD3616CF16DE0A6EA -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvraid.sys
< MD5 for: NVSTOR.SYS >
[2011.03.11 08:19:21 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
[2011.03.11 08:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\drivers\nvstor.sys
[2011.03.11 08:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvstor.sys
[2011.03.11 08:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys
< MD5 for: SCECLI.DLL >
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\erdnt\cache86\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\erdnt\cache64\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SMSS.EXE >
[2009.07.14 03:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe
[2014.04.12 04:31:44 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=3442A918386D4716D74C661543151746 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22653_none_0abdf375491039d3\smss.exe
[2013.03.19 04:57:17 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=498E2A20E145199709CD100CDBA8603D -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22280_none_0a9a7b3b492b4d05\smss.exe
[2013.08.29 03:04:30 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=B2B31D4C79EFD883097FA24D02E79C12 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22436_none_0ad6905f48fd53a8\smss.exe
[2013.08.02 07:06:34 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=CB5DA3E44456D1084BCD87F5B1B3152B -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22411_none_0ae72ec548f19d13\smss.exe
[2013.07.08 04:50:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=E65601CF4BC0CF3718AFBE56A9AD846F -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22379_none_0aae4fa7491b124a\smss.exe
[2013.03.19 05:06:33 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0371DE302FFFF8F086661611BE60848 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_0a5f8ec22fd235a9\smss.exe
[2013.08.02 02:59:09 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0970A4BC8395659C22BF53D0FADF16F -- C:\Windows\SysNative\smss.exe
[2013.08.02 02:59:09 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0970A4BC8395659C22BF53D0FADF16F -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18229_none_0a5ac2782fd4e6cb\smss.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\erdnt\cache64\tcpip.sys
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\SysNative\drivers\tcpip.sys
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18438_none_113260637d1284ef\tcpip.sys
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.05.08 08:14:42 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2013.09.08 04:30:37 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=40AF23633D197905F03AB5628C558C51 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_1118bb977d265d27\tcpip.sys
[2014.04.05 04:37:43 | 001,897,408 | ---- | M] (Microsoft Corporation) MD5=4F80944B03112F486212DC20BE166079 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22648_none_11b12f2896383dd1\tcpip.sys
[2010.11.21 05:24:08 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2013.09.07 04:27:48 | 001,896,896 | ---- | M] (Microsoft Corporation) MD5=75F9106B74585D38C8FF6BB5CAD262D7 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_11ad2a34963bde27\tcpip.sys
[2012.08.22 20:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013.07.06 07:20:38 | 001,900,992 | ---- | M] (Microsoft Corporation) MD5=B27F13153343BC37A27EAE01634D94E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22378_none_1190b9b296509a2f\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2013.07.06 08:03:53 | 001,910,208 | ---- | M] (Microsoft Corporation) MD5=DB74544B75566C974815E79A62433F29 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18203_none_114dcae97cfeb81b\tcpip.sys
[2013.11.26 13:34:34 | 001,897,408 | ---- | M] (Microsoft Corporation) MD5=F55B41AA6114568AC558ADBABDA85620 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22525_none_11c3cc3c962abcc3\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2014.03.04 13:08:14 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=6CE2AE073BD21C542FC2C707CAE944CC -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_ce748d1d04acf24f\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\erdnt\cache64\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\SysNative\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_cdf8bf35eb848572\winlogon.exe
< MD5 for: WS2_32.DLL >
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\erdnt\cache64\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\SysNative\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_50ddb631e4f59005\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\erdnt\cache86\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\SysWOW64\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_f4bf1aae2c981ecf\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[3 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[9 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2014.09.12 08:49:06 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Adobe
[2014.05.04 12:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aescripts
[2013.05.14 17:31:33 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aHisoft
[2014.03.18 23:17:33 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Apple Computer
[2013.04.28 12:13:15 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\avidemux
[2014.08.13 16:39:12 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Battle.net
[2014.09.11 16:26:40 | 000,000,000 | RHSD | M] -- C:\Users\Jakub\AppData\Roaming\CapsLock
[2013.09.18 15:05:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc
[2013.03.04 00:03:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2014.02.09 15:56:57 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\com.adobe.amp
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite
[2014.09.18 23:51:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Dropbox
[2014.09.16 18:18:18 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\FileZilla
[2014.03.23 11:04:53 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GeoVisu Suite
[2014.01.29 00:41:41 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GHISLER
[2013.03.31 19:52:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\HEM Data
[2013.01.30 23:31:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Identities
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\inkscape
[2013.01.31 00:14:31 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\InstallShield
[2013.01.31 22:14:45 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Macromedia
[2014.03.04 16:42:07 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mael
[2014.01.24 14:51:32 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Malwarebytes
[2013.10.05 21:11:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\MAXON
[2011.04.12 10:45:23 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Media Center Programs
[2013.07.11 06:17:26 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Media Player Classic
[2014.07.02 21:23:43 | 000,000,000 | --SD | M] -- C:\Users\Jakub\AppData\Roaming\Microsoft
[2013.07.11 06:21:54 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mozilla
[2013.06.14 20:54:59 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mumble
[2013.02.13 22:19:51 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\OpenOffice.org
[2014.09.11 16:51:47 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Opera Software
[2014.05.25 11:31:35 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Oracle
[2013.02.01 00:43:32 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PACE Anti-Piracy
[2013.02.01 00:43:52 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PDAppFlex
[2013.02.01 02:58:46 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\postgresql
[2013.02.01 00:29:24 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Publish Providers
[2014.02.12 14:17:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant
[2013.03.04 21:33:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant Link
[2013.08.03 02:25:30 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Seznam.cz
[2014.09.19 09:45:48 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Skype
[2013.02.01 00:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Sony
[2013.02.05 04:40:55 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2014.09.18 01:03:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\TS3Client
[2014.09.11 18:36:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\uTorrent
[2014.09.19 09:27:07 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\vlc
[2013.05.19 19:28:16 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Vso
[2013.04.10 23:24:10 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Wargaming.net
[2013.01.31 23:19:10 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\WinRAR
< %APPDATA%\*.exe /s >
[2014.09.11 11:45:49 | 000,061,952 | RHS- | M] (Adobe Systems, Incorporated) -- C:\Users\Jakub\AppData\Roaming\CapsLock\CapsL.exe
[2014.09.13 02:52:04 | 036,414,624 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
[2014.09.13 02:55:10 | 000,262,160 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
[2014.09.13 02:52:08 | 000,225,256 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\DropboxUpdateHelper.exe
[2014.01.19 21:58:55 | 000,054,632 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Jakub\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2013.03.31 19:46:32 | 000,013,406 | R--- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{4A5D68E3-CFE0-4235-9796-C2F60E1A8A84}\_250851E303C0C1199D04D4.exe
[2013.03.31 19:46:32 | 000,013,406 | R--- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{4A5D68E3-CFE0-4235-9796-C2F60E1A8A84}\_DF6427BFA61C2AF0982D9C.exe
[2014.01.22 00:58:38 | 000,123,828 | R--- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{909B5F80-F839-4F09-A55D-2029893308F3}\ResolveIcon.exe
[2014.06.01 11:11:45 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{A876EBF9-9046-4953-888D-8A60B8777027}\ARPPRODUCTICON.exe
[2014.09.11 16:33:46 | 029,677,080 | ---- | M] (Mozilla) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\hotfix-update\Firefox Setup 30.0.exe
[2014.09.11 16:33:47 | 000,344,586 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\hotfix-update\FirefoxInstallLauncher.exe
[2013.06.02 20:52:35 | 000,271,360 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Red Giant Link\tools\RGLicenseCheck.exe
[2014.04.14 00:00:00 | 000,042,496 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\uTorrent\uninstall.exe
[2014.04.14 00:00:00 | 000,398,760 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Jakub\AppData\Roaming\uTorrent\utorrent.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2014.09.18 23:52:39 | 000,000,018 | ---- | M] () -- C:\Windows\system32\log.txt
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014.09.19 09:38:08 | 000,000,512 | ---- | M] () MD5=98499819A698CF219D3439E5C29AF031 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2010.05.29 22:41:56 | 000,114,899 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\numpy\f2py\crackfortran.py
[2014.09.12 09:17:40 | 001,159,409 | R--- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2014.05.22 03:58:45 | 001,159,409 | R--- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2014.05.14 02:43:04 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\de_DE\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:04 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\de_DE\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:04 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\de_DE\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:04 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:04 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:04 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:06 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\es_ES\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:06 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\es_ES\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:06 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\es_ES\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:06 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\fr_FR\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:06 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\fr_FR\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:06 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\fr_FR\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\it_IT\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\it_IT\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\it_IT\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ja_JP\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ja_JP\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ja_JP\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ko_KR\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ko_KR\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ko_KR\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\pt_BR\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\pt_BR\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\pt_BR\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ru_RU\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ru_RU\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ru_RU\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:14 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\zh_CN\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:14 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\zh_CN\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:14 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\zh_CN\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:50 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\de_DE\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:50 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\de_DE\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:50 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\de_DE\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:50 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:52 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:52 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:52 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\es_ES\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:52 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\es_ES\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:52 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\es_ES\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:54 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\fr_FR\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:54 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\fr_FR\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:54 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\fr_FR\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:54 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\it_IT\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:54 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\it_IT\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:54 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\it_IT\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:56 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ja_JP\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:56 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ja_JP\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:56 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ja_JP\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ko_KR\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ko_KR\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ko_KR\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\zh_CN\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\zh_CN\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\zh_CN\VSTPlugins\DeCrackler6.dll
[2013.04.22 22:21:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2013.04.22 22:21:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2013.04.22 22:21:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2014.03.20 23:51:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler1.dll
[2014.03.20 23:51:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler2.dll
[2014.03.20 23:51:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler6.dll
[2014.03.20 23:51:24 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler1.dll
[2014.03.20 23:51:24 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler2.dll
[2014.03.20 23:51:24 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler6.dll
[2011.03.03 19:42:04 | 001,159,409 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2012.03.02 06:24:04 | 001,159,409 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2012.03.27 02:37:40 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2012.03.27 02:37:42 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2012.03.27 02:37:44 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2012.03.27 02:58:54 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler1.dll
[2012.03.27 02:58:56 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler2.dll
[2012.03.27 02:59:00 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler6.dll
[2007.08.22 19:10:16 | 012,824,220 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX1_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox121v4.rar
[2007.08.22 19:11:06 | 014,557,674 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX2_V2.1V4_FOR_AE_CS3-XFORCE\THE_FOUNDRY_TINDERBOX2_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox221v4.rar
[2007.08.22 19:12:06 | 013,037,609 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX3_V2.1V4_FOR_AE_CS3-XFORCE\THE_FOUNDRY_TINDERBOX3_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox321v4.rar
[2007.08.22 19:13:08 | 014,243,977 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX4_V2.1V4_FOR_AE_CS3-XFORCE\THE_FOUNDRY_TINDERBOX4_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox421v4.rar
[2013.06.26 02:10:34 | 001,857,321 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Crack Adobe CC.zip
[2013.03.11 03:50:24 | 000,000,590 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Optical Flares\Crack\crack.txt
[2013.07.30 18:28:51 | 003,841,013 | ---- | M] () -- \Users\Jakub\Downloads\bordel\element-3d-lience-crack.rar
[2007.06.29 22:13:39 | 000,667,308 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Freeze icy crackling.wav
[2007.06.29 13:46:00 | 000,836,580 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Ice crackling 01, thin ice.wav
[2007.06.29 13:46:00 | 001,785,908 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Ice crackling 02, thin ice, louder.wav
[2007.06.29 14:44:16 | 000,127,540 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Window crack 01.wav
[2007.06.29 14:44:16 | 000,199,220 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Window crack 02.wav
[2007.06.29 17:50:12 | 000,141,120 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Freeze icy crackling.mp3
[2007.06.29 17:50:12 | 000,176,640 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Ice crackling 01, thin ice.mp3
[2007.06.29 17:50:12 | 000,374,400 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Ice crackling 02, thin ice, louder.mp3
[2007.06.30 01:13:40 | 000,028,800 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Window crack 01.mp3
[2007.06.30 01:13:40 | 000,043,200 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Window crack 02.mp3
[2007.06.29 21:58:13 | 000,241,920 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 01.mp3
[2007.06.29 21:58:13 | 000,192,000 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 02.mp3
[2007.06.29 21:58:13 | 000,133,440 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 03.mp3
[2007.06.29 21:58:13 | 000,194,880 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 04.mp3
[2007.06.29 21:58:13 | 000,130,560 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 05.mp3
[2007.06.29 21:58:13 | 000,099,840 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 06.mp3
[2007.06.29 21:58:13 | 000,162,240 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 07.mp3
[2007.06.29 13:11:16 | 001,151,328 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 01.wav
[2007.06.29 13:11:16 | 000,913,460 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 02.wav
[2007.06.29 14:56:09 | 000,632,480 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 03.wav
[2007.06.29 14:56:09 | 000,924,212 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 04.wav
[2007.06.29 14:56:09 | 000,617,416 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 05.wav
[2007.06.29 14:56:09 | 000,469,556 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 06.wav
[2007.06.29 14:57:24 | 000,767,540 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 07.wav
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014.06.25 04:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014.06.25 03:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2014.05.04 12:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aescripts
[2013.05.14 17:31:33 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aHisoft
[2013.04.28 12:13:15 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\avidemux
[2014.08.13 16:39:12 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Battle.net
[2014.09.11 16:26:40 | 000,000,000 | RHSD | M] -- C:\Users\Jakub\AppData\Roaming\CapsLock
[2013.09.18 15:05:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc
[2013.03.04 00:03:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2014.02.09 15:56:57 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\com.adobe.amp
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite
[2014.09.18 23:51:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Dropbox
[2014.09.16 18:18:18 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\FileZilla
[2014.03.23 11:04:53 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GeoVisu Suite
[2014.01.29 00:41:41 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GHISLER
[2013.03.31 19:52:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\HEM Data
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\inkscape
[2014.03.04 16:42:07 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mael
[2013.10.05 21:11:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\MAXON
[2013.06.14 20:54:59 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mumble
[2013.02.13 22:19:51 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\OpenOffice.org
[2014.09.11 16:51:47 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Opera Software
[2014.05.25 11:31:35 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Oracle
[2013.02.01 00:43:32 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PACE Anti-Piracy
[2013.02.01 00:43:52 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PDAppFlex
[2013.02.01 02:58:46 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\postgresql
[2013.02.01 00:29:24 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Publish Providers
[2014.02.12 14:17:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant
[2013.03.04 21:33:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant Link
[2013.08.03 02:25:30 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Seznam.cz
[2013.02.01 00:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Sony
[2013.02.05 04:40:55 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2014.09.18 01:03:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\TS3Client
[2014.09.11 18:36:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\uTorrent
[2013.05.19 19:28:16 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Vso
[2013.04.10 23:24:10 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Wargaming.net
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,032,564 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2013.07.14 22:18:59 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
< >
< MD5 for: AGP440.SYS >
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\erdnt\cache64\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_552ea5111ec825a6\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_3b457059383c66e6\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_3be7afc0514717fa\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
< MD5 for: CNGAUDIT.DLL >
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\erdnt\cache86\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\erdnt\cache64\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
< MD5 for: CRYPTSVC.DLL >
[2012.06.02 06:52:32 | 000,142,336 | ---- | M] (Microsoft Corporation) MD5=063DD65889D21035311463337BD268E7 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_788c7cc71232cc19\cryptsvc.dll
[2010.11.21 05:24:16 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=15597883FBE9B056F276ADA3AD87D9AF -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_d4259ed3b16ed82a\cryptsvc.dll
[2013.05.10 06:49:59 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=33ADF6E0853AB39EA1723BE82842C1D3 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_77d7a417f9359661\cryptsvc.dll
[2013.05.13 06:45:55 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_77d8a461f934afb8\cryptsvc.dll
[2013.07.09 16:47:30 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=434CCE8E7150CD1324C5FAA088D1D061 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22380_none_d45f6e88cac8f85b\cryptsvc.dll
[2013.10.05 04:25:30 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=509D31797A4B8A3D6ED78A330B19A919 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22473_none_d46d4138cabe2596\cryptsvc.dll
[2013.07.09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=6B400F211BEE880A37A1ED0368776BF4 -- C:\Windows\erdnt\cache64\cryptsvc.dll
[2013.07.09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=6B400F211BEE880A37A1ED0368776BF4 -- C:\Windows\SysNative\cryptsvc.dll
[2013.07.09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=6B400F211BEE880A37A1ED0368776BF4 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18205_none_d431528fb165f7bc\cryptsvc.dll
[2013.07.09 15:57:37 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=6DB499DEFCC827317C5371164A7CDB27 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22380_none_7840d305126b8725\cryptsvc.dll
[2013.07.09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\erdnt\cache86\cryptsvc.dll
[2013.07.09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\SysWOW64\cryptsvc.dll
[2013.07.09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18205_none_7812b70bf9088686\cryptsvc.dll
[2012.06.04 09:52:35 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=7E7D2DACF65D750D466F36BD3D09AE20 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_d4ab184aca903d4f\cryptsvc.dll
[2013.05.10 07:49:28 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=7FDC4626B01106A8EF328C88C7C0DEE3 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_d3f63f9bb1930797\cryptsvc.dll
[2013.05.11 07:18:23 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=8122252F0A4ACFA92FA0C1D50D18493B -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_d4a24ea4ca968363\cryptsvc.dll
[2012.06.02 06:36:29 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=96C0E38905CFD788313BE8E11DAE3F2F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_77ddc9e5f93000db\cryptsvc.dll
[2012.06.02 07:41:28 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=9C01375BE382E834CC26D1B7EAF2C4FE -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_d3fc6569b18d7211\cryptsvc.dll
[2010.11.21 05:24:32 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll
[2013.05.11 06:59:05 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=AC04D05309BB2C418D0D80B9FB014642 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_7883b3211239122d\cryptsvc.dll
[2013.05.10 07:18:53 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=CA13C4F92BEE66DB48E58AB3223DDF6E -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_d4a14e5aca976a0c\cryptsvc.dll
[2013.05.13 07:51:01 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=D8129C49798CBBFB2E4351D4B7B8EF9C -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_d3f73fe5b19220ee\cryptsvc.dll
[2013.05.10 07:06:21 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=E122AA1C9A3CC46FF9DDDE46E5EB0C58 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_7882b2d71239f8d6\cryptsvc.dll
[2013.10.05 03:52:03 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=F2D9242C3BBD1C36467FCAE1AE01733F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22473_none_784ea5b51260b460\cryptsvc.dll
< MD5 for: EXPLORER.EXE >
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\erdnt\cache86\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.21 05:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.11.21 05:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
< MD5 for: HAL.DLL >
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll
< MD5 for: IASTORV.SYS >
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys
[2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
[2011.03.11 08:19:16 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
[2011.03.11 08:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\drivers\iaStorV.sys
[2011.03.11 08:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0bcee2057afcc090\iaStorV.sys
[2011.03.11 08:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
< MD5 for: ISAPNP.SYS >
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\drivers\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\isapnp.sys
[2009.07.14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\isapnp.sys
< MD5 for: LSASS.EXE >
[2014.05.30 10:00:12 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=04F6C08B30C599D301CE8530A6F6A703 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22705_none_0505e8508c7f766f\lsass.exe
[2009.07.14 03:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_04709031736ac277\lsass.exe
[2011.11.17 08:20:34 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0A10B74FBB437FF9A23F1D5DE4446A83 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.21861_none_04c1204e8cb39c3f\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\erdnt\cache64\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\SysNative\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18443_none_044f07757384196d\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18496_none_041bf8b773a9f127\lsass.exe
[2014.04.12 04:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=204F3F58212B3E422C90BD9691A2DF28 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18526_none_0467aa1173712ab7\lsass.exe
[2013.09.25 03:03:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=4D71227301DD8D09097B9E4CC6527E5A -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18270_none_042b9307739f26ed\lsass.exe
[2014.04.12 04:31:33 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=6598EBC4D209318EBD81F76833ECBEDB -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22653_none_04cdd63a8ca9d24f\lsass.exe
[2014.04.12 04:31:33 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=6598EBC4D209318EBD81F76833ECBEDB -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22712_none_04f817868c8a465b\lsass.exe
[2014.04.12 04:31:33 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=6598EBC4D209318EBD81F76833ECBEDB -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22736_none_04e678d68c96e399\lsass.exe
[2012.08.24 19:43:36 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=77119F1F9B492B260030C34F9BE327FA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22099_none_04a88ce28cc4eb33\lsass.exe
[2012.06.04 09:51:10 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=79C908CAA6F43021EB05F4C733A927D1 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22010_none_04f609a88c8c279c\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17725_none_0466c45b7371f20d\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17856_none_044756c773895c5e\lsass.exe
[2011.11.17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17940_none_044c26dd7386a58a\lsass.exe
[2013.09.25 03:08:17 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=F021DAFB1F87616FCEBA159C2ED7042F -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22465_none_04c503168cb026a0\lsass.exe
[2014.05.30 10:07:57 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=F23812F9F7B130854E4BC0389F7C688C -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.18489_none_0429c981739f213b\lsass.exe
< MD5 for: NDIS.SYS >
[2012.08.22 20:06:07 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=5E74508FCB5820B29EEAFE24E6035BCF -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.22097_none_06232d534c0a8d67\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\erdnt\cache64\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\SysNative\drivers\ndis.sys
[2012.08.22 20:12:40 | 000,950,128 | ---- | M] (Microsoft Corporation) MD5=760E38053BF56E501D562B70AD796B88 -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17939_none_05dc9a6832ba428a\ndis.sys
[2010.11.21 05:23:55 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
< MD5 for: NETLOGON.DLL >
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\erdnt\cache64\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll
[2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\erdnt\cache86\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll
[2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
< MD5 for: NVRAID.SYS >
[2011.03.11 08:41:34 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\drivers\nvraid.sys
[2011.03.11 08:41:34 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvraid.sys
[2011.03.11 08:41:34 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvraid.sys
[2010.11.21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvraid.sys
[2011.03.11 08:19:21 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=666CA16F17914C1CD3616CF16DE0A6EA -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvraid.sys
< MD5 for: NVSTOR.SYS >
[2011.03.11 08:19:21 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
[2011.03.11 08:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\drivers\nvstor.sys
[2011.03.11 08:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvstor.sys
[2011.03.11 08:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys
[2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys
< MD5 for: SCECLI.DLL >
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\erdnt\cache86\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\erdnt\cache64\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
< MD5 for: SMSS.EXE >
[2009.07.14 03:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe
[2014.04.12 04:31:44 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=3442A918386D4716D74C661543151746 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22653_none_0abdf375491039d3\smss.exe
[2013.03.19 04:57:17 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=498E2A20E145199709CD100CDBA8603D -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22280_none_0a9a7b3b492b4d05\smss.exe
[2013.08.29 03:04:30 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=B2B31D4C79EFD883097FA24D02E79C12 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22436_none_0ad6905f48fd53a8\smss.exe
[2013.08.02 07:06:34 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=CB5DA3E44456D1084BCD87F5B1B3152B -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22411_none_0ae72ec548f19d13\smss.exe
[2013.07.08 04:50:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=E65601CF4BC0CF3718AFBE56A9AD846F -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22379_none_0aae4fa7491b124a\smss.exe
[2013.03.19 05:06:33 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0371DE302FFFF8F086661611BE60848 -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_0a5f8ec22fd235a9\smss.exe
[2013.08.02 02:59:09 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0970A4BC8395659C22BF53D0FADF16F -- C:\Windows\SysNative\smss.exe
[2013.08.02 02:59:09 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=F0970A4BC8395659C22BF53D0FADF16F -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18229_none_0a5ac2782fd4e6cb\smss.exe
< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
< MD5 for: TCPIP.SYS >
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\erdnt\cache64\tcpip.sys
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\SysNative\drivers\tcpip.sys
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18438_none_113260637d1284ef\tcpip.sys
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.05.08 08:14:42 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2013.09.08 04:30:37 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=40AF23633D197905F03AB5628C558C51 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_1118bb977d265d27\tcpip.sys
[2014.04.05 04:37:43 | 001,897,408 | ---- | M] (Microsoft Corporation) MD5=4F80944B03112F486212DC20BE166079 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22648_none_11b12f2896383dd1\tcpip.sys
[2010.11.21 05:24:08 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2013.09.07 04:27:48 | 001,896,896 | ---- | M] (Microsoft Corporation) MD5=75F9106B74585D38C8FF6BB5CAD262D7 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_11ad2a34963bde27\tcpip.sys
[2012.08.22 20:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2013.05.08 08:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013.07.06 07:20:38 | 001,900,992 | ---- | M] (Microsoft Corporation) MD5=B27F13153343BC37A27EAE01634D94E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22378_none_1190b9b296509a2f\tcpip.sys
[2013.01.03 08:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 07:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2013.07.06 08:03:53 | 001,910,208 | ---- | M] (Microsoft Corporation) MD5=DB74544B75566C974815E79A62433F29 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18203_none_114dcae97cfeb81b\tcpip.sys
[2013.11.26 13:34:34 | 001,897,408 | ---- | M] (Microsoft Corporation) MD5=F55B41AA6114568AC558ADBABDA85620 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22525_none_11c3cc3c962abcc3\tcpip.sys
[2012.08.22 20:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
< MD5 for: USERINIT.EXE >
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
< MD5 for: WINLOGON.EXE >
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2014.03.04 13:08:14 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=6CE2AE073BD21C542FC2C707CAE944CC -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_ce748d1d04acf24f\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\erdnt\cache64\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\SysNative\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_cdf8bf35eb848572\winlogon.exe
< MD5 for: WS2_32.DLL >
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\erdnt\cache64\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\SysNative\ws2_32.dll
[2010.11.21 05:24:28 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_50ddb631e4f59005\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\erdnt\cache86\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\SysWOW64\ws2_32.dll
[2010.11.21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_f4bf1aae2c981ecf\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[3 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[9 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2014.09.12 08:49:06 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Adobe
[2014.05.04 12:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aescripts
[2013.05.14 17:31:33 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\aHisoft
[2014.03.18 23:17:33 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Apple Computer
[2013.04.28 12:13:15 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\avidemux
[2014.08.13 16:39:12 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Battle.net
[2014.09.11 16:26:40 | 000,000,000 | RHSD | M] -- C:\Users\Jakub\AppData\Roaming\CapsLock
[2013.09.18 15:05:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc
[2013.03.04 00:03:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2014.02.09 15:56:57 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\com.adobe.amp
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite
[2014.09.18 23:51:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Dropbox
[2014.09.16 18:18:18 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\FileZilla
[2014.03.23 11:04:53 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GeoVisu Suite
[2014.01.29 00:41:41 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\GHISLER
[2013.03.31 19:52:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\HEM Data
[2013.01.30 23:31:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Identities
[2013.08.31 00:21:00 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\inkscape
[2013.01.31 00:14:31 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\InstallShield
[2013.01.31 22:14:45 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Macromedia
[2014.03.04 16:42:07 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mael
[2014.01.24 14:51:32 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Malwarebytes
[2013.10.05 21:11:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\MAXON
[2011.04.12 10:45:23 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Media Center Programs
[2013.07.11 06:17:26 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Media Player Classic
[2014.07.02 21:23:43 | 000,000,000 | --SD | M] -- C:\Users\Jakub\AppData\Roaming\Microsoft
[2013.07.11 06:21:54 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mozilla
[2013.06.14 20:54:59 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Mumble
[2013.02.13 22:19:51 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\OpenOffice.org
[2014.09.11 16:51:47 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Opera Software
[2014.05.25 11:31:35 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Oracle
[2013.02.01 00:43:32 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PACE Anti-Piracy
[2013.02.01 00:43:52 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\PDAppFlex
[2013.02.01 02:58:46 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\postgresql
[2013.02.01 00:29:24 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Publish Providers
[2014.02.12 14:17:29 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant
[2013.03.04 21:33:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Red Giant Link
[2013.08.03 02:25:30 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Seznam.cz
[2014.09.19 09:45:48 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Skype
[2013.02.01 00:40:36 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Sony
[2013.02.05 04:40:55 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2014.09.18 01:03:22 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\TS3Client
[2014.09.11 18:36:13 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\uTorrent
[2014.09.19 09:27:07 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\vlc
[2013.05.19 19:28:16 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Vso
[2013.04.10 23:24:10 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Wargaming.net
[2013.01.31 23:19:10 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\WinRAR
< %APPDATA%\*.exe /s >
[2014.09.11 11:45:49 | 000,061,952 | RHS- | M] (Adobe Systems, Incorporated) -- C:\Users\Jakub\AppData\Roaming\CapsLock\CapsL.exe
[2014.09.13 02:52:04 | 036,414,624 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\Dropbox.exe
[2014.09.13 02:55:10 | 000,262,160 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
[2014.09.13 02:52:08 | 000,225,256 | ---- | M] (Dropbox, Inc.) -- C:\Users\Jakub\AppData\Roaming\Dropbox\bin\DropboxUpdateHelper.exe
[2014.01.19 21:58:55 | 000,054,632 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Jakub\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2013.03.31 19:46:32 | 000,013,406 | R--- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{4A5D68E3-CFE0-4235-9796-C2F60E1A8A84}\_250851E303C0C1199D04D4.exe
[2013.03.31 19:46:32 | 000,013,406 | R--- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{4A5D68E3-CFE0-4235-9796-C2F60E1A8A84}\_DF6427BFA61C2AF0982D9C.exe
[2014.01.22 00:58:38 | 000,123,828 | R--- | M] () -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{909B5F80-F839-4F09-A55D-2029893308F3}\ResolveIcon.exe
[2014.06.01 11:11:45 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Users\Jakub\AppData\Roaming\Microsoft\Installer\{A876EBF9-9046-4953-888D-8A60B8777027}\ARPPRODUCTICON.exe
[2014.09.11 16:33:46 | 029,677,080 | ---- | M] (Mozilla) -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\hotfix-update\Firefox Setup 30.0.exe
[2014.09.11 16:33:47 | 000,344,586 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\profiles\nr1spd6m.default\hotfix-update\FirefoxInstallLauncher.exe
[2013.06.02 20:52:35 | 000,271,360 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\Red Giant Link\tools\RGLicenseCheck.exe
[2014.04.14 00:00:00 | 000,042,496 | ---- | M] () -- C:\Users\Jakub\AppData\Roaming\uTorrent\uninstall.exe
[2014.04.14 00:00:00 | 000,398,760 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Jakub\AppData\Roaming\uTorrent\utorrent.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2014.09.18 23:52:39 | 000,000,018 | ---- | M] () -- C:\Windows\system32\log.txt
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014.09.19 09:38:08 | 000,000,512 | ---- | M] () MD5=98499819A698CF219D3439E5C29AF031 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2010.05.29 22:41:56 | 000,114,899 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\numpy\f2py\crackfortran.py
[2014.09.12 09:17:40 | 001,159,409 | R--- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2014.05.22 03:58:45 | 001,159,409 | R--- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2014.05.14 02:43:04 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\de_DE\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:04 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\de_DE\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:04 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\de_DE\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:04 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:04 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:04 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:06 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\es_ES\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:06 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\es_ES\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:06 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\es_ES\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:06 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\fr_FR\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:06 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\fr_FR\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:06 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\fr_FR\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\it_IT\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\it_IT\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\it_IT\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ja_JP\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ja_JP\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:08 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ja_JP\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ko_KR\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ko_KR\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ko_KR\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\pt_BR\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:10 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\pt_BR\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\pt_BR\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ru_RU\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ru_RU\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:12 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\ru_RU\VSTPlugins\DeCrackler6.dll
[2014.05.14 02:43:14 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\zh_CN\VSTPlugins\DeCrackler1.dll
[2014.05.14 02:43:14 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\zh_CN\VSTPlugins\DeCrackler2.dll
[2014.05.14 02:43:14 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\Plug-ins\zh_CN\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:50 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\de_DE\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:50 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\de_DE\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:50 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\de_DE\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:50 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:52 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:52 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:52 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\es_ES\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:52 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\es_ES\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:52 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\es_ES\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:54 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\fr_FR\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:54 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\fr_FR\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:54 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\fr_FR\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:54 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\it_IT\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:54 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\it_IT\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:54 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\it_IT\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:56 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ja_JP\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:56 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ja_JP\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:56 | 000,817,152 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ja_JP\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ko_KR\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ko_KR\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ko_KR\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:19:58 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler6.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\zh_CN\VSTPlugins\DeCrackler1.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\zh_CN\VSTPlugins\DeCrackler2.dll
[2014.03.24 23:20:00 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\Plug-ins\zh_CN\VSTPlugins\DeCrackler6.dll
[2013.04.22 22:21:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2013.04.22 22:21:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2013.04.22 22:21:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2014.03.20 23:51:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler1.dll
[2014.03.20 23:51:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler2.dll
[2014.03.20 23:51:22 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\pt_BR\VSTPlugins\DeCrackler6.dll
[2014.03.20 23:51:24 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler1.dll
[2014.03.20 23:51:24 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler2.dll
[2014.03.20 23:51:24 | 000,816,640 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\Plug-ins\ru_RU\VSTPlugins\DeCrackler6.dll
[2011.03.03 19:42:04 | 001,159,409 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2012.03.02 06:24:04 | 001,159,409 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2012.03.27 02:37:40 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2012.03.27 02:37:42 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2012.03.27 02:37:44 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2012.03.27 02:58:54 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler1.dll
[2012.03.27 02:58:56 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler2.dll
[2012.03.27 02:59:00 | 000,822,440 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler6.dll
[2007.08.22 19:10:16 | 012,824,220 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX1_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox121v4.rar
[2007.08.22 19:11:06 | 014,557,674 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX2_V2.1V4_FOR_AE_CS3-XFORCE\THE_FOUNDRY_TINDERBOX2_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox221v4.rar
[2007.08.22 19:12:06 | 013,037,609 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX3_V2.1V4_FOR_AE_CS3-XFORCE\THE_FOUNDRY_TINDERBOX3_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox321v4.rar
[2007.08.22 19:13:08 | 014,243,977 | ---- | M] () -- \Users\Jakub\Downloads\AAE_PluginsMegaPack_[RH]\Adobe After Effects Plugins MegaPack\THE_FOUNDRY_TINDERBOX4_V2.1V4_FOR_AE_CS3-XFORCE\THE_FOUNDRY_TINDERBOX4_V2.1V4_FOR_AE_CS3-XFORCE\Crack\crack-tinderbox421v4.rar
[2013.06.26 02:10:34 | 001,857,321 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Crack Adobe CC.zip
[2013.03.11 03:50:24 | 000,000,590 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Optical Flares\Crack\crack.txt
[2013.07.30 18:28:51 | 003,841,013 | ---- | M] () -- \Users\Jakub\Downloads\bordel\element-3d-lience-crack.rar
[2007.06.29 22:13:39 | 000,667,308 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Freeze icy crackling.wav
[2007.06.29 13:46:00 | 000,836,580 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Ice crackling 01, thin ice.wav
[2007.06.29 13:46:00 | 001,785,908 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Ice crackling 02, thin ice, louder.wav
[2007.06.29 14:44:16 | 000,127,540 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Window crack 01.wav
[2007.06.29 14:44:16 | 000,199,220 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Abstract (100)\Sounds (80)\Window crack 02.wav
[2007.06.29 17:50:12 | 000,141,120 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Freeze icy crackling.mp3
[2007.06.29 17:50:12 | 000,176,640 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Ice crackling 01, thin ice.mp3
[2007.06.29 17:50:12 | 000,374,400 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Ice crackling 02, thin ice, louder.mp3
[2007.06.30 01:13:40 | 000,028,800 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Window crack 01.mp3
[2007.06.30 01:13:40 | 000,043,200 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Abstract (100)\Sounds (80)\Window crack 02.mp3
[2007.06.29 21:58:13 | 000,241,920 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 01.mp3
[2007.06.29 21:58:13 | 000,192,000 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 02.mp3
[2007.06.29 21:58:13 | 000,133,440 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 03.mp3
[2007.06.29 21:58:13 | 000,194,880 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 04.mp3
[2007.06.29 21:58:13 | 000,130,560 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 05.mp3
[2007.06.29 21:58:13 | 000,099,840 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 06.mp3
[2007.06.29 21:58:13 | 000,162,240 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Extras\Designer Sound FX MP3's\Impacts (100)\Evil crack 07.mp3
[2007.06.29 13:11:16 | 001,151,328 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 01.wav
[2007.06.29 13:11:16 | 000,913,460 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 02.wav
[2007.06.29 14:56:09 | 000,632,480 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 03.wav
[2007.06.29 14:56:09 | 000,924,212 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 04.wav
[2007.06.29 14:56:09 | 000,617,416 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 05.wav
[2007.06.29 14:56:09 | 000,469,556 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 06.wav
[2007.06.29 14:57:24 | 000,767,540 | ---- | M] () -- \Users\Jakub\Downloads\Designer-Sound-FX\Designer Sound FX\Impacts (100)\Evil crack 07.wav
Re: reklama v prohlizeci "Ads by Info"
< *keygen* /s >
< *AntiWPA* /s >
< *loader* /s >
[2012.07.26 02:37:27 | 000,715,776 | ---- | M] () -- \ESD\Windows\sources\upgloader.dll
[2012.07.26 09:44:10 | 000,022,016 | ---- | M] () -- \ESD\Windows\sources\cs-cz\upgloader.dll.mui
[2013.05.09 11:49:37 | 000,000,885 | ---- | M] () -- \PRACE\mamka\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader.gif
[2013.05.09 11:49:37 | 000,001,156 | ---- | M] () -- \PRACE\mamka\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader@2x.gif
[2013.05.09 11:49:17 | 000,006,778 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2013.05.09 11:49:21 | 000,006,460 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\admin\functions\functions.mediauploader.php
[2013.05.09 11:49:13 | 000,002,892 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\loader.gif
[2013.05.09 11:49:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2013.05.09 11:49:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2013.05.09 11:49:14 | 000,006,331 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\default\loader.gif
[2013.05.09 11:49:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\facebook\loader.gif
[2013.05.09 11:49:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2013.05.09 11:49:14 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_square\loader.gif
[2013.05.09 11:47:57 | 000,042,202 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\script-loader.php
[2013.05.09 11:48:06 | 000,002,109 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\template-loader.php
[2013.05.09 11:48:35 | 000,003,915 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\images\uploader-icons-2x.png
[2013.05.09 11:48:34 | 000,001,593 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\images\uploader-icons.png
[2013.05.09 11:48:09 | 000,004,408 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\js\customize-loader.js
[2013.05.09 11:48:07 | 000,002,642 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\js\customize-loader.min.js
[2013.05.23 17:20:01 | 000,000,885 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\plugins\woocommerce\assets\images\ajax-loader.gif
[2013.05.23 17:20:01 | 000,001,156 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\plugins\woocommerce\assets\images\ajax-loader@2x.gif
[2013.05.23 17:19:18 | 000,006,778 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2013.05.23 17:19:24 | 000,006,460 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\admin\functions\functions.mediauploader.php
[2013.05.23 17:19:14 | 000,002,892 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\loader.gif
[2013.05.23 17:19:17 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2013.05.23 17:19:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2013.05.23 17:19:15 | 000,006,331 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\default\loader.gif
[2013.05.23 17:19:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\facebook\loader.gif
[2013.05.23 17:19:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2013.05.23 17:19:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\light_square\loader.gif
[2013.05.23 17:23:43 | 000,042,202 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\script-loader.php
[2013.05.23 17:24:05 | 000,002,109 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\template-loader.php
[2013.05.23 17:24:55 | 000,003,915 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\images\uploader-icons-2x.png
[2013.05.23 17:24:53 | 000,001,593 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\images\uploader-icons.png
[2013.05.23 17:24:13 | 000,004,408 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\js\customize-loader.js
[2013.05.23 17:24:08 | 000,002,642 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\js\customize-loader.min.js
[2012.11.14 11:59:10 | 000,000,847 | ---- | M] () -- \PRACE\web\web_pirati\themeforest-2732248-gymbase-responsive-gym-fitness-wordpress-theme\gymbase\admin\images\ajax-loader.gif
[2012.07.10 17:43:34 | 000,009,427 | ---- | M] () -- \PRACE\web\web_pirati\themeforest-2732248-gymbase-responsive-gym-fitness-wordpress-theme\gymbase\images\preloader.gif
[2013.06.21 09:29:58 | 000,041,107 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\script-loader.php
[2012.10.31 23:01:14 | 000,002,060 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\template-loader.php
[2012.11.30 02:18:08 | 000,003,915 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\images\uploader-icons-2x.png
[2012.11.30 02:18:08 | 000,001,593 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\images\uploader-icons.png
[2012.11.21 22:31:56 | 000,004,244 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\js\customize-loader.js
[2012.11.21 22:31:56 | 000,002,642 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\js\customize-loader.min.js
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_rounded\._loader.gif
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_square\._loader.gif
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\facebook\._loader.gif
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_rounded\._loader.gif
[2010.01.11 20:13:00 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_square\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\dark_rounded\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\dark_square\._loader.gif
[2011.03.17 04:06:28 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\default\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\facebook\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\light_rounded\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\light_square\._loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_rounded\loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_square\loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\facebook\loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_rounded\loader.gif
[2010.01.11 20:13:00 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_square\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\dark_rounded\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\dark_square\loader.gif
[2011.03.17 04:06:28 | 000,006,331 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\default\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\facebook\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\light_rounded\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\light_square\loader.gif
[2012.09.23 20:43:52 | 000,012,278 | ---- | M] () -- \Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\WebPublish\BootStrapLoader.swf
[2013.05.13 18:21:06 | 000,062,414 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\%preloader_pattern.png
[2013.05.13 18:21:06 | 000,008,119 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-3d-snake.gif
[2013.05.13 18:21:06 | 000,010,819 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-bar.gif
[2013.05.13 18:21:06 | 000,003,992 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-drop.gif
[2013.05.13 18:21:06 | 000,000,743 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-wheel.gif
[2013.05.13 18:21:06 | 000,004,412 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader1.gif
[2013.05.13 18:21:06 | 000,001,392 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader2.gif
[2013.05.13 18:21:06 | 000,009,629 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader3.gif
[2013.05.13 18:21:06 | 000,028,557 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader4.gif
[2013.05.13 18:21:06 | 000,004,640 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader5.gif
[2013.05.13 18:21:06 | 000,003,020 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader_pattern.png
[2013.04.24 11:46:46 | 000,008,962 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CC\Presets\multimedia\HTMLLoader\HTMLLoader-app.xml
[2013.04.24 11:46:46 | 000,268,719 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CC\Presets\multimedia\HTMLLoader\HTMLLoader.swf
[2013.04.24 11:44:48 | 000,003,754 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CC\Scripts\converturltohyperlink\startup scripts\ConvertURLToHyperlinkMenuItemLoader.jsx
[2013.04.24 11:46:46 | 000,008,962 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Installers\AdobeInDesign9\ExtraFiles\INSTALLDIR\Presets\multimedia\HTMLLoader\HTMLLoader-app.xml
[2013.04.24 11:46:46 | 000,268,719 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Installers\AdobeInDesign9\ExtraFiles\INSTALLDIR\Presets\multimedia\HTMLLoader\HTMLLoader.swf
[2013.04.24 11:44:48 | 000,003,754 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Installers\AdobeInDesign9\ExtraFiles\INSTALLDIR\Scripts\converturltohyperlink\startup scripts\ConvertURLToHyperlinkMenuItemLoader.jsx
[2014.02.12 21:58:20 | 000,007,281 | ---- | M] () -- \Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\HeapSnapshotLoader.js
[2010.03.06 10:24:56 | 000,003,614 | ---- | M] () -- \Program Files (x86)\Inkscape\etc\gtk-2.0\gdk-pixbuf.loaders
[2010.03.06 10:24:56 | 000,030,804 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2010.03.06 10:24:56 | 000,027,898 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2010.03.06 10:24:56 | 000,042,058 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2010.03.06 10:24:56 | 000,023,145 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2010.03.06 10:24:56 | 000,028,692 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2010.03.06 10:24:56 | 000,034,496 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2010.03.06 10:24:56 | 000,022,435 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2010.03.06 10:24:56 | 000,036,528 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2010.03.06 10:24:56 | 000,026,252 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2010.03.06 10:24:56 | 000,020,063 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2010.03.06 10:24:56 | 000,024,412 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2010.03.06 10:24:56 | 000,029,401 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2010.03.06 10:24:56 | 000,019,399 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2010.03.06 10:24:56 | 000,025,270 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2010.03.06 10:24:56 | 000,042,114 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2010.03.06 10:24:56 | 000,018,909 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2010.08.16 11:41:40 | 000,032,958 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\ailoader.py
[2010.08.16 11:41:40 | 000,001,847 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\bziploader.py
[2010.08.16 11:41:40 | 000,057,685 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\ccxloader.py
[2010.08.16 11:41:40 | 000,029,336 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrloader.py
[2013.08.18 15:01:49 | 000,030,071 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrloader.pyc
[2010.08.16 11:41:40 | 000,001,341 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrziploader.py
[2010.08.16 11:41:40 | 000,028,643 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cgmloader.py
[2010.08.16 11:41:40 | 000,055,918 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cmxloader.py
[2010.08.16 11:41:40 | 000,038,308 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\dxfloader.py
[2010.08.16 11:41:40 | 000,001,949 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\gziploader.py
[2010.08.16 11:41:40 | 000,007,779 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\pltloader.py
[2010.08.16 11:41:40 | 000,017,301 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\sk1loader.py
[2010.08.16 11:41:40 | 000,015,416 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\skloader.py
[2010.08.16 11:41:40 | 000,015,832 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\stitchloader.py
[2010.08.16 11:41:40 | 000,038,937 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\svgloader.py
[2010.08.16 11:41:40 | 000,014,300 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\wmfloader.py
[2010.08.16 11:41:40 | 000,017,550 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\xfigloader.py
[2012.12.30 17:58:56 | 002,108,928 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloader.exe
[2013.02.16 14:58:54 | 000,000,070 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloader.url
[2013.02.16 14:58:54 | 000,000,070 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloaderHelp.url
[2013.02.16 14:58:54 | 000,000,070 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloaderOrder.url
[2012.12.30 17:56:40 | 000,033,152 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\SVRFirefoxExt\chrome\ISAllmytubeDownloader.jar
[2014.04.20 16:15:24 | 001,090,208 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\kasperskylab.kis.ui.loader.dll
[2014.03.27 15:35:20 | 000,226,496 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\kas_loader.dll
[2014.04.16 19:32:54 | 000,201,920 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\remote_eka_prague_loader.dll
[1 \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\*.tmp files -> \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\*.tmp -> ]
[2014.04.20 15:47:48 | 000,006,957 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\skin\resources\neutral\templates\images\safe_banking\preloader.gif
[2014.04.16 19:33:08 | 000,246,976 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\remote_eka_prague_loader.dll
[2012.08.13 11:52:58 | 000,006,081 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.py
[2012.08.10 17:50:58 | 000,020,992 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.uno.dll
[2012.08.13 12:04:18 | 000,000,171 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.uno.ini
[2012.08.10 17:50:54 | 000,029,696 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\URE\bin\javaloader.uno.dll
[2012.08.13 11:12:36 | 000,003,868 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\URE\java\unoloader.jar
[2014.06.04 00:40:58 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.4.33_vs10.dll
[2014.06.04 00:41:00 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.4.33_vs10.dll
[2014.06.04 00:41:00 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.4.33_vs10.dll
[2014.01.28 22:11:02 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.01.28 22:11:02 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.01.28 22:11:02 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2013.03.02 04:41:26 | 000,001,702 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2013.03.02 04:41:26 | 000,006,153 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2013.03.02 04:41:26 | 000,010,395 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2013.08.31 16:35:58 | 000,001,702 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.8\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2013.08.31 16:35:58 | 000,006,153 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.8\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2013.08.31 16:35:58 | 000,010,395 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.8\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2013.04.26 19:00:18 | 000,044,219 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\display\ProLoader.as
[2013.04.26 19:00:18 | 000,027,387 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\display\ProLoaderInfo.as
[2013.04.26 19:00:18 | 000,000,951 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\events\ProLoaderRSLPreloaderSandboxEvent.as
[2013.04.26 19:00:18 | 000,018,626 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\rsl\RSLPreloader.as
[2013.04.26 19:00:18 | 000,010,604 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\rsls\loader_animation.fla
[2013.04.26 19:00:18 | 000,001,253 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\rsls\loader_animation.swf
[2013.04.26 19:00:18 | 000,027,163 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\Component Source\ActionScript 3.0\User Interface\fl\containers\UILoader.as
[2013.04.26 19:00:20 | 000,000,544 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\FP7\MovieClipLoader.as
[2013.04.26 19:00:20 | 000,000,544 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\FP8\MovieClipLoader.as
[2013.04.26 19:00:22 | 000,000,576 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\FP9\MovieClipLoader.as
[2013.04.26 19:00:22 | 000,010,454 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\mx\controls\Loader.as
[2013.12.17 18:48:14 | 000,033,267 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\cs_CZ\Configuration\Templates\Sample Files\Preloader for External File.fla
[2013.12.17 18:48:14 | 000,036,225 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\cs_CZ\Configuration\Templates\Sample Files\Preloader for SWF.fla
[2013.04.24 11:47:26 | 000,008,962 | ---- | M] () -- \Program Files\Adobe\Adobe InDesign CC (64 bit)\Presets\multimedia\HTMLLoader\HTMLLoader-app.xml
[2013.04.24 11:47:26 | 000,268,719 | ---- | M] () -- \Program Files\Adobe\Adobe InDesign CC (64 bit)\Presets\multimedia\HTMLLoader\HTMLLoader.swf
[2013.04.24 11:44:48 | 000,003,754 | ---- | M] () -- \Program Files\Adobe\Adobe InDesign CC (64 bit)\Scripts\converturltohyperlink\startup scripts\ConvertURLToHyperlinkMenuItemLoader.jsx
[2014.05.13 22:12:58 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\MXF_SDK_MetaMetadata_BinaryLoader_4.4.33_vs10.dll
[2014.05.13 22:12:58 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\MXF_SDK_MetaMetadata_XSDLoader2_4.4.33_vs10.dll
[2014.05.13 22:12:58 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\MXF_SDK_MetaMetadata_XSDLoader_4.4.33_vs10.dll
[2014.03.24 18:18:42 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.03.24 18:18:42 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.03.24 18:18:44 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2013.09.05 10:28:04 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 5.2\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.20.dll
[2013.09.05 10:28:04 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 5.2\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.20.dll
[2013.09.05 10:28:04 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 5.2\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.20.dll
[2014.03.20 23:53:04 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.03.20 23:53:04 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.03.20 23:53:04 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2014.03.24 19:10:10 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe SpeedGrade CC\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.03.24 19:10:10 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe SpeedGrade CC\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.03.24 19:10:10 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe SpeedGrade CC\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2011.03.23 06:36:20 | 000,105,984 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.23 06:36:20 | 000,196,608 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.23 06:36:20 | 000,144,896 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2012.03.24 03:01:06 | 000,115,712 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.24 03:01:06 | 000,225,280 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.24 03:01:06 | 000,163,840 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2012.03.13 13:10:54 | 003,297,128 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012.03.13 11:42:26 | 000,011,161 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,011,161 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,324 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2012.03.27 04:04:08 | 000,121,504 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.27 04:04:18 | 000,231,072 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.27 04:04:30 | 000,169,632 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2011.03.15 12:23:50 | 000,105,984 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.15 12:23:50 | 000,196,608 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.15 12:23:50 | 000,144,896 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2012.03.16 01:17:30 | 000,115,712 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.16 01:17:30 | 000,225,280 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.16 01:17:30 | 000,163,840 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2012.03.26 23:19:56 | 000,115,712 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.26 23:19:56 | 000,225,280 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.26 23:19:56 | 000,163,840 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2013.06.25 23:30:28 | 000,099,328 | ---- | M] () -- \Program Files\Common Files\Adobe\dynamiclinkmediaserver\7.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.22.dll
[2013.06.25 23:30:28 | 000,196,608 | ---- | M] () -- \Program Files\Common Files\Adobe\dynamiclinkmediaserver\7.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.22.dll
[2013.06.25 23:30:28 | 000,148,480 | ---- | M] () -- \Program Files\Common Files\Adobe\dynamiclinkmediaserver\7.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.22.dll
[2013.04.02 04:23:56 | 000,000,648 | ---- | M] () -- \Program Files\PostgreSQL\9.2\include\server\utils\dynamic_loader.h
[2013.04.02 05:48:47 | 000,000,673 | ---- | M] () -- \Program Files\PostgreSQL\9.2\pgAdmin III\docs\en_US\_static\ajax-loader.gif
[2012.06.09 20:19:38 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2014.04.07 21:12:14 | 000,001,660 | ---- | M] () -- \ProgramData\iSkysoft Free video Downloader\FreeYouTubeDownloader.ini
[2013.02.17 03:49:37 | 000,000,110 | ---- | M] () -- \ProgramData\ISkySoft Free YouTube Downloader\FreeYouTubeDownloader.ini
[2013.02.16 14:58:54 | 000,001,302 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\iSkysoft Free Video Downloader.lnk
[2013.02.16 14:58:54 | 000,002,181 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\Uninstall iSkysoft Free Video Downloader.lnk
[2014.04.07 21:12:14 | 000,001,660 | ---- | M] () -- \Users\All Users\iSkysoft Free video Downloader\FreeYouTubeDownloader.ini
[2013.02.17 03:49:37 | 000,000,110 | ---- | M] () -- \Users\All Users\ISkySoft Free YouTube Downloader\FreeYouTubeDownloader.ini
[2013.02.16 14:58:54 | 000,001,302 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\iSkysoft Free Video Downloader.lnk
[2013.02.16 14:58:54 | 000,002,181 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\Uninstall iSkysoft Free Video Downloader.lnk
[2014.09.18 16:58:38 | 000,005,913 | ---- | M] () -- \Users\Jakub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\afapmikcgbhfkecdhiokcgledjcpfbfd\3.0.0_0\wsYoutubeDownloader.js
[2014.09.18 16:58:38 | 000,005,913 | ---- | M] () -- \Users\Jakub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\afapmikcgbhfkecdhiokcgledjcpfbfd\3.0.0_0\.svn\text-base\wsYoutubeDownloader.js.svn-base
[2014.08.13 13:14:30 | 000,009,418 | ---- | M] () -- \Users\Jakub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.13_0\img\gifloader.gif
[2012.07.26 09:44:10 | 000,022,016 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\WebSetup\PreCopiedMediaSources\cs-cz\upgloader.dll.mui
[2013.07.12 10:09:44 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2013.07.12 10:09:48 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2013.07.12 10:09:50 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2013.07.12 10:09:50 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin3\dt_dadget_loader.png
[2013.07.12 10:09:51 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin4\dt_dadget_loader.png
[2013.07.12 10:09:51 | 000,061,770 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin5\dt_dadget_loader.png
[2013.07.12 10:09:54 | 000,061,770 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin6\dt_dadget_loader.png
[2014.09.19 00:00:16 | 000,001,980 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8HQFZA92\AdLoader[1].htm
[2014.09.19 00:00:16 | 000,018,715 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LAMYGAGN\AdLoader-a5fa12058ddb9a8919d6906ba95d7c57.min[1].js
[2014.07.01 11:46:16 | 000,072,638 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\loader.gif
[2014.07.01 11:46:16 | 000,003,032 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\loader.png
[2014.07.01 11:46:16 | 000,006,012 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif
[2014.07.01 11:46:16 | 000,021,956 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif
[2014.07.01 11:46:16 | 000,009,772 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\retina\loader@2x.png
[2013.02.16 14:58:54 | 000,001,322 | ---- | M] () -- \Users\Jakub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iSkysoft Free video Downloader.lnk
[2013.04.19 21:53:04 | 000,000,885 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader.gif
[2013.04.19 21:53:04 | 000,001,156 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader@2x.gif
[2013.04.19 21:52:48 | 000,006,778 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2013.04.19 21:52:51 | 000,006,460 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\admin\functions\functions.mediauploader.php
[2013.04.19 21:52:44 | 000,002,892 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\loader.gif
[2013.04.19 21:52:46 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2013.04.19 21:52:46 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2013.04.19 21:52:45 | 000,006,331 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\default\loader.gif
[2013.04.19 21:52:45 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\facebook\loader.gif
[2013.04.19 21:52:46 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2013.04.19 21:52:45 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_square\loader.gif
[2013.04.19 21:51:29 | 000,042,202 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\script-loader.php
[2013.04.19 21:51:38 | 000,002,109 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\template-loader.php
[2013.04.19 21:52:05 | 000,003,915 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\images\uploader-icons-2x.png
[2013.04.19 21:52:04 | 000,001,593 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\images\uploader-icons.png
[2013.04.19 21:51:41 | 000,004,408 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\js\customize-loader.js
[2013.04.19 21:51:39 | 000,002,642 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\js\customize-loader.min.js
[2013.04.18 06:09:30 | 000,000,885 | ---- | M] () -- \Users\Jakub\Downloads\bordel\woocommerce-all-in-one-seo-pack\woothemes-woocommerce-v2.0.8-0-g1c28c48\woothemes-woocommerce-1c28c48\assets\images\ajax-loader.gif
[2013.04.18 06:09:30 | 000,001,156 | ---- | M] () -- \Users\Jakub\Downloads\bordel\woocommerce-all-in-one-seo-pack\woothemes-woocommerce-v2.0.8-0-g1c28c48\woothemes-woocommerce-1c28c48\assets\images\ajax-loader@2x.gif
[2012.12.12 14:30:44 | 000,006,611 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2012.12.12 14:30:44 | 000,006,248 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\admin\functions\functions.mediauploader.php
[2012.06.06 11:57:00 | 000,002,892 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2011.11.10 01:21:38 | 000,006,331 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\default\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\facebook\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\light_square\loader.gif
[2014.05.05 16:55:46 | 000,010,644 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-3854385-fluxus-portfolio-theme-for-photographers\fluxus\fluxus\options-framework\options-medialibrary-uploader.php
[2014.05.05 16:55:46 | 000,008,202 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-3854385-fluxus-portfolio-theme-for-photographers\fluxus\fluxus\options-framework\js\of-medialibrary-uploader.js
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013.01.30 19:18:12 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2013.01.30 23:15:14 | 000,009,622 | R--- | M] () -- \Windows\System32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2013.01.30 19:18:12 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2013.01.30 23:15:14 | 000,009,622 | R--- | M] () -- \Windows\SysWOW64\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:38:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 04:12:19 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_68d20a7192733a4d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.07.08 07:11:20 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22379_none_692597a0abb965cc\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 08:20:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_695e76beab8ff095\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 04:18:31 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_694dd858ab9ba72a\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.03.04 13:03:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_69637bfcab8b6996\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.04.12 04:28:21 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_69353b6eabae8d55\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.04.12 10:34:35 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2011.04.12 10:34:35 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2011.04.12 10:34:35 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2011.04.12 10:34:35 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2011.04.12 10:34:35 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2013.01.31 00:18:49 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2013.01.31 00:18:49 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2013.01.31 00:18:49 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2013.01.31 00:18:49 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2013.01.31 00:18:49 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2011.04.12 10:33:23 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2010.11.21 05:16:35 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.07.08 06:59:24 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22379_none_0d06fc1cf35bf496\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 07:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 03:54:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_0d2f3cd4f33e35f4\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.03.04 12:35:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_0d44e078f32df860\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.04.12 04:03:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_0d169feaf3511c1f\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.09.11 18:45:18 | 000,001,046 | ---- | M] () -- \zoek_backup\C_Users_Jakub_Desktop_Torntv Downloader.lnk.vir
[2014.04.07 21:19:36 | 000,001,293 | ---- | M] () -- \zoek_backup\C_Users_Public_Desktop_YTD Video Downloader.lnk.vir
[1 \zoek_backup\*.tmp files -> \zoek_backup\*.tmp -> ]
< *minodlogin* /s >
< *AntiWPA* /s >
< *loader* /s >
[2012.07.26 02:37:27 | 000,715,776 | ---- | M] () -- \ESD\Windows\sources\upgloader.dll
[2012.07.26 09:44:10 | 000,022,016 | ---- | M] () -- \ESD\Windows\sources\cs-cz\upgloader.dll.mui
[2013.05.09 11:49:37 | 000,000,885 | ---- | M] () -- \PRACE\mamka\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader.gif
[2013.05.09 11:49:37 | 000,001,156 | ---- | M] () -- \PRACE\mamka\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader@2x.gif
[2013.05.09 11:49:17 | 000,006,778 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2013.05.09 11:49:21 | 000,006,460 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\admin\functions\functions.mediauploader.php
[2013.05.09 11:49:13 | 000,002,892 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\loader.gif
[2013.05.09 11:49:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2013.05.09 11:49:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2013.05.09 11:49:14 | 000,006,331 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\default\loader.gif
[2013.05.09 11:49:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\facebook\loader.gif
[2013.05.09 11:49:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2013.05.09 11:49:14 | 000,002,545 | ---- | M] () -- \PRACE\mamka\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_square\loader.gif
[2013.05.09 11:47:57 | 000,042,202 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\script-loader.php
[2013.05.09 11:48:06 | 000,002,109 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\template-loader.php
[2013.05.09 11:48:35 | 000,003,915 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\images\uploader-icons-2x.png
[2013.05.09 11:48:34 | 000,001,593 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\images\uploader-icons.png
[2013.05.09 11:48:09 | 000,004,408 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\js\customize-loader.js
[2013.05.09 11:48:07 | 000,002,642 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\js\customize-loader.min.js
[2013.05.23 17:20:01 | 000,000,885 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\plugins\woocommerce\assets\images\ajax-loader.gif
[2013.05.23 17:20:01 | 000,001,156 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\plugins\woocommerce\assets\images\ajax-loader@2x.gif
[2013.05.23 17:19:18 | 000,006,778 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2013.05.23 17:19:24 | 000,006,460 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\admin\functions\functions.mediauploader.php
[2013.05.23 17:19:14 | 000,002,892 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\loader.gif
[2013.05.23 17:19:17 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2013.05.23 17:19:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2013.05.23 17:19:15 | 000,006,331 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\default\loader.gif
[2013.05.23 17:19:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\facebook\loader.gif
[2013.05.23 17:19:16 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2013.05.23 17:19:15 | 000,002,545 | ---- | M] () -- \PRACE\mamka\zaloha\wp-content\themes\organic_shop\images\prettyPhoto\light_square\loader.gif
[2013.05.23 17:23:43 | 000,042,202 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\script-loader.php
[2013.05.23 17:24:05 | 000,002,109 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\template-loader.php
[2013.05.23 17:24:55 | 000,003,915 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\images\uploader-icons-2x.png
[2013.05.23 17:24:53 | 000,001,593 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\images\uploader-icons.png
[2013.05.23 17:24:13 | 000,004,408 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\js\customize-loader.js
[2013.05.23 17:24:08 | 000,002,642 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\js\customize-loader.min.js
[2012.11.14 11:59:10 | 000,000,847 | ---- | M] () -- \PRACE\web\web_pirati\themeforest-2732248-gymbase-responsive-gym-fitness-wordpress-theme\gymbase\admin\images\ajax-loader.gif
[2012.07.10 17:43:34 | 000,009,427 | ---- | M] () -- \PRACE\web\web_pirati\themeforest-2732248-gymbase-responsive-gym-fitness-wordpress-theme\gymbase\images\preloader.gif
[2013.06.21 09:29:58 | 000,041,107 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\script-loader.php
[2012.10.31 23:01:14 | 000,002,060 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\template-loader.php
[2012.11.30 02:18:08 | 000,003,915 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\images\uploader-icons-2x.png
[2012.11.30 02:18:08 | 000,001,593 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\images\uploader-icons.png
[2012.11.21 22:31:56 | 000,004,244 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\js\customize-loader.js
[2012.11.21 22:31:56 | 000,002,642 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\js\customize-loader.min.js
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_rounded\._loader.gif
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_square\._loader.gif
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\facebook\._loader.gif
[2010.01.05 00:38:56 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_rounded\._loader.gif
[2010.01.11 20:13:00 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_square\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\dark_rounded\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\dark_square\._loader.gif
[2011.03.17 04:06:28 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\default\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\facebook\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\light_rounded\._loader.gif
[2011.01.31 15:33:42 | 000,000,197 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\__MACOSX\folder\js\prettyPhoto\images\prettyPhoto\light_square\._loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_rounded\loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\dark_square\loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\facebook\loader.gif
[2010.01.05 00:38:56 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_rounded\loader.gif
[2010.01.11 20:13:00 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\functions\scripts\prettyPhoto\images\prettyPhoto\light_square\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\dark_rounded\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\dark_square\loader.gif
[2011.03.17 04:06:28 | 000,006,331 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\default\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\facebook\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\light_rounded\loader.gif
[2011.01.31 15:33:42 | 000,002,545 | ---- | M] () -- \PRACE\web\wp-folder-files\wp-folder-files\folder\folder\js\prettyPhoto\images\prettyPhoto\light_square\loader.gif
[2012.09.23 20:43:52 | 000,012,278 | ---- | M] () -- \Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\WebPublish\BootStrapLoader.swf
[2013.05.13 18:21:06 | 000,062,414 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\%preloader_pattern.png
[2013.05.13 18:21:06 | 000,008,119 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-3d-snake.gif
[2013.05.13 18:21:06 | 000,010,819 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-bar.gif
[2013.05.13 18:21:06 | 000,003,992 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-drop.gif
[2013.05.13 18:21:06 | 000,000,743 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\loader-wheel.gif
[2013.05.13 18:21:06 | 000,004,412 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader1.gif
[2013.05.13 18:21:06 | 000,001,392 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader2.gif
[2013.05.13 18:21:06 | 000,009,629 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader3.gif
[2013.05.13 18:21:06 | 000,028,557 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader4.gif
[2013.05.13 18:21:06 | 000,004,640 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader5.gif
[2013.05.13 18:21:06 | 000,003,020 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Edge Animate CC\edgeApp\document_server\images\preloader_pattern.png
[2013.04.24 11:46:46 | 000,008,962 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CC\Presets\multimedia\HTMLLoader\HTMLLoader-app.xml
[2013.04.24 11:46:46 | 000,268,719 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CC\Presets\multimedia\HTMLLoader\HTMLLoader.swf
[2013.04.24 11:44:48 | 000,003,754 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CC\Scripts\converturltohyperlink\startup scripts\ConvertURLToHyperlinkMenuItemLoader.jsx
[2013.04.24 11:46:46 | 000,008,962 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Installers\AdobeInDesign9\ExtraFiles\INSTALLDIR\Presets\multimedia\HTMLLoader\HTMLLoader-app.xml
[2013.04.24 11:46:46 | 000,268,719 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Installers\AdobeInDesign9\ExtraFiles\INSTALLDIR\Presets\multimedia\HTMLLoader\HTMLLoader.swf
[2013.04.24 11:44:48 | 000,003,754 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Installers\AdobeInDesign9\ExtraFiles\INSTALLDIR\Scripts\converturltohyperlink\startup scripts\ConvertURLToHyperlinkMenuItemLoader.jsx
[2014.02.12 21:58:20 | 000,007,281 | ---- | M] () -- \Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\HeapSnapshotLoader.js
[2010.03.06 10:24:56 | 000,003,614 | ---- | M] () -- \Program Files (x86)\Inkscape\etc\gtk-2.0\gdk-pixbuf.loaders
[2010.03.06 10:24:56 | 000,030,804 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2010.03.06 10:24:56 | 000,027,898 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2010.03.06 10:24:56 | 000,042,058 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2010.03.06 10:24:56 | 000,023,145 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2010.03.06 10:24:56 | 000,028,692 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2010.03.06 10:24:56 | 000,034,496 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2010.03.06 10:24:56 | 000,022,435 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2010.03.06 10:24:56 | 000,036,528 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2010.03.06 10:24:56 | 000,026,252 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2010.03.06 10:24:56 | 000,020,063 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2010.03.06 10:24:56 | 000,024,412 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2010.03.06 10:24:56 | 000,029,401 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2010.03.06 10:24:56 | 000,019,399 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2010.03.06 10:24:56 | 000,025,270 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2010.03.06 10:24:56 | 000,042,114 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2010.03.06 10:24:56 | 000,018,909 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2010.08.16 11:41:40 | 000,032,958 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\ailoader.py
[2010.08.16 11:41:40 | 000,001,847 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\bziploader.py
[2010.08.16 11:41:40 | 000,057,685 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\ccxloader.py
[2010.08.16 11:41:40 | 000,029,336 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrloader.py
[2013.08.18 15:01:49 | 000,030,071 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrloader.pyc
[2010.08.16 11:41:40 | 000,001,341 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrziploader.py
[2010.08.16 11:41:40 | 000,028,643 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cgmloader.py
[2010.08.16 11:41:40 | 000,055,918 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cmxloader.py
[2010.08.16 11:41:40 | 000,038,308 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\dxfloader.py
[2010.08.16 11:41:40 | 000,001,949 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\gziploader.py
[2010.08.16 11:41:40 | 000,007,779 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\pltloader.py
[2010.08.16 11:41:40 | 000,017,301 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\sk1loader.py
[2010.08.16 11:41:40 | 000,015,416 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\skloader.py
[2010.08.16 11:41:40 | 000,015,832 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\stitchloader.py
[2010.08.16 11:41:40 | 000,038,937 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\svgloader.py
[2010.08.16 11:41:40 | 000,014,300 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\wmfloader.py
[2010.08.16 11:41:40 | 000,017,550 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\xfigloader.py
[2012.12.30 17:58:56 | 002,108,928 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloader.exe
[2013.02.16 14:58:54 | 000,000,070 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloader.url
[2013.02.16 14:58:54 | 000,000,070 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloaderHelp.url
[2013.02.16 14:58:54 | 000,000,070 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\FreeYouTubeDownloaderOrder.url
[2012.12.30 17:56:40 | 000,033,152 | ---- | M] () -- \Program Files (x86)\iSkysoft\Free Video Downloader\SVRFirefoxExt\chrome\ISAllmytubeDownloader.jar
[2014.04.20 16:15:24 | 001,090,208 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\kasperskylab.kis.ui.loader.dll
[2014.03.27 15:35:20 | 000,226,496 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\kas_loader.dll
[2014.04.16 19:32:54 | 000,201,920 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\remote_eka_prague_loader.dll
[1 \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\*.tmp files -> \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\*.tmp -> ]
[2014.04.20 15:47:48 | 000,006,957 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\skin\resources\neutral\templates\images\safe_banking\preloader.gif
[2014.04.16 19:33:08 | 000,246,976 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\remote_eka_prague_loader.dll
[2012.08.13 11:52:58 | 000,006,081 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.py
[2012.08.10 17:50:58 | 000,020,992 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.uno.dll
[2012.08.13 12:04:18 | 000,000,171 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.uno.ini
[2012.08.10 17:50:54 | 000,029,696 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\URE\bin\javaloader.uno.dll
[2012.08.13 11:12:36 | 000,003,868 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\URE\java\unoloader.jar
[2014.06.04 00:40:58 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.4.33_vs10.dll
[2014.06.04 00:41:00 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.4.33_vs10.dll
[2014.06.04 00:41:00 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.4.33_vs10.dll
[2014.01.28 22:11:02 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.01.28 22:11:02 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.01.28 22:11:02 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2013.03.02 04:41:26 | 000,001,702 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2013.03.02 04:41:26 | 000,006,153 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2013.03.02 04:41:26 | 000,010,395 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2013.08.31 16:35:58 | 000,001,702 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.8\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2013.08.31 16:35:58 | 000,006,153 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.8\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2013.08.31 16:35:58 | 000,010,395 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\AIR3.8\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2013.04.26 19:00:18 | 000,044,219 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\display\ProLoader.as
[2013.04.26 19:00:18 | 000,027,387 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\display\ProLoaderInfo.as
[2013.04.26 19:00:18 | 000,000,951 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\events\ProLoaderRSLPreloaderSandboxEvent.as
[2013.04.26 19:00:18 | 000,018,626 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\rsl\RSLPreloader.as
[2013.04.26 19:00:18 | 000,010,604 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\rsls\loader_animation.fla
[2013.04.26 19:00:18 | 000,001,253 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\ActionScript 3.0\rsls\loader_animation.swf
[2013.04.26 19:00:18 | 000,027,163 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\Configuration\Component Source\ActionScript 3.0\User Interface\fl\containers\UILoader.as
[2013.04.26 19:00:20 | 000,000,544 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\FP7\MovieClipLoader.as
[2013.04.26 19:00:20 | 000,000,544 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\FP8\MovieClipLoader.as
[2013.04.26 19:00:22 | 000,000,576 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\FP9\MovieClipLoader.as
[2013.04.26 19:00:22 | 000,010,454 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\mx\controls\Loader.as
[2013.12.17 18:48:14 | 000,033,267 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\cs_CZ\Configuration\Templates\Sample Files\Preloader for External File.fla
[2013.12.17 18:48:14 | 000,036,225 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\cs_CZ\Configuration\Templates\Sample Files\Preloader for SWF.fla
[2013.04.24 11:47:26 | 000,008,962 | ---- | M] () -- \Program Files\Adobe\Adobe InDesign CC (64 bit)\Presets\multimedia\HTMLLoader\HTMLLoader-app.xml
[2013.04.24 11:47:26 | 000,268,719 | ---- | M] () -- \Program Files\Adobe\Adobe InDesign CC (64 bit)\Presets\multimedia\HTMLLoader\HTMLLoader.swf
[2013.04.24 11:44:48 | 000,003,754 | ---- | M] () -- \Program Files\Adobe\Adobe InDesign CC (64 bit)\Scripts\converturltohyperlink\startup scripts\ConvertURLToHyperlinkMenuItemLoader.jsx
[2014.05.13 22:12:58 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\MXF_SDK_MetaMetadata_BinaryLoader_4.4.33_vs10.dll
[2014.05.13 22:12:58 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\MXF_SDK_MetaMetadata_XSDLoader2_4.4.33_vs10.dll
[2014.05.13 22:12:58 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC 2014\MXF_SDK_MetaMetadata_XSDLoader_4.4.33_vs10.dll
[2014.03.24 18:18:42 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.03.24 18:18:42 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.03.24 18:18:44 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CC\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2013.09.05 10:28:04 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 5.2\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.20.dll
[2013.09.05 10:28:04 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 5.2\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.20.dll
[2013.09.05 10:28:04 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 5.2\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.20.dll
[2014.03.20 23:53:04 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.03.20 23:53:04 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.03.20 23:53:04 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2014.03.24 19:10:10 | 000,099,328 | ---- | M] () -- \Program Files\Adobe\Adobe SpeedGrade CC\MXF_SDK_MetaMetadata_BinaryLoader_4.4.25.dll
[2014.03.24 19:10:10 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe SpeedGrade CC\MXF_SDK_MetaMetadata_XSDLoader2_4.4.25.dll
[2014.03.24 19:10:10 | 000,148,480 | ---- | M] () -- \Program Files\Adobe\Adobe SpeedGrade CC\MXF_SDK_MetaMetadata_XSDLoader_4.4.25.dll
[2011.03.23 06:36:20 | 000,105,984 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.23 06:36:20 | 000,196,608 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.23 06:36:20 | 000,144,896 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS5.5\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2012.03.24 03:01:06 | 000,115,712 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.24 03:01:06 | 000,225,280 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.24 03:01:06 | 000,163,840 | ---- | M] () -- \Program Files\AdobeB\Adobe After Effects CS6\Support Files\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2012.03.13 13:10:54 | 003,297,128 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012.03.13 11:42:26 | 000,011,161 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,011,161 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 11:42:28 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,324 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 11:42:30 | 000,000,011 | ---- | M] () -- \Program Files\AdobeB\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2012.03.27 04:04:08 | 000,121,504 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.27 04:04:18 | 000,231,072 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.27 04:04:30 | 000,169,632 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2011.03.15 12:23:50 | 000,105,984 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.15 12:23:50 | 000,196,608 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.15 12:23:50 | 000,144,896 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2012.03.16 01:17:30 | 000,115,712 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.16 01:17:30 | 000,225,280 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.16 01:17:30 | 000,163,840 | ---- | M] () -- \Program Files\AdobeB\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2012.03.26 23:19:56 | 000,115,712 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.26 23:19:56 | 000,225,280 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.26 23:19:56 | 000,163,840 | ---- | M] () -- \Program Files\AdobeB\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2013.06.25 23:30:28 | 000,099,328 | ---- | M] () -- \Program Files\Common Files\Adobe\dynamiclinkmediaserver\7.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.22.dll
[2013.06.25 23:30:28 | 000,196,608 | ---- | M] () -- \Program Files\Common Files\Adobe\dynamiclinkmediaserver\7.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.22.dll
[2013.06.25 23:30:28 | 000,148,480 | ---- | M] () -- \Program Files\Common Files\Adobe\dynamiclinkmediaserver\7.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.22.dll
[2013.04.02 04:23:56 | 000,000,648 | ---- | M] () -- \Program Files\PostgreSQL\9.2\include\server\utils\dynamic_loader.h
[2013.04.02 05:48:47 | 000,000,673 | ---- | M] () -- \Program Files\PostgreSQL\9.2\pgAdmin III\docs\en_US\_static\ajax-loader.gif
[2012.06.09 20:19:38 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2014.04.07 21:12:14 | 000,001,660 | ---- | M] () -- \ProgramData\iSkysoft Free video Downloader\FreeYouTubeDownloader.ini
[2013.02.17 03:49:37 | 000,000,110 | ---- | M] () -- \ProgramData\ISkySoft Free YouTube Downloader\FreeYouTubeDownloader.ini
[2013.02.16 14:58:54 | 000,001,302 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\iSkysoft Free Video Downloader.lnk
[2013.02.16 14:58:54 | 000,002,181 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\Uninstall iSkysoft Free Video Downloader.lnk
[2014.04.07 21:12:14 | 000,001,660 | ---- | M] () -- \Users\All Users\iSkysoft Free video Downloader\FreeYouTubeDownloader.ini
[2013.02.17 03:49:37 | 000,000,110 | ---- | M] () -- \Users\All Users\ISkySoft Free YouTube Downloader\FreeYouTubeDownloader.ini
[2013.02.16 14:58:54 | 000,001,302 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\iSkysoft Free Video Downloader.lnk
[2013.02.16 14:58:54 | 000,002,181 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\iSkysoft\Free Video Downloader\Uninstall iSkysoft Free Video Downloader.lnk
[2014.09.18 16:58:38 | 000,005,913 | ---- | M] () -- \Users\Jakub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\afapmikcgbhfkecdhiokcgledjcpfbfd\3.0.0_0\wsYoutubeDownloader.js
[2014.09.18 16:58:38 | 000,005,913 | ---- | M] () -- \Users\Jakub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\afapmikcgbhfkecdhiokcgledjcpfbfd\3.0.0_0\.svn\text-base\wsYoutubeDownloader.js.svn-base
[2014.08.13 13:14:30 | 000,009,418 | ---- | M] () -- \Users\Jakub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.13_0\img\gifloader.gif
[2012.07.26 09:44:10 | 000,022,016 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\WebSetup\PreCopiedMediaSources\cs-cz\upgloader.dll.mui
[2013.07.12 10:09:44 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2013.07.12 10:09:48 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2013.07.12 10:09:50 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2013.07.12 10:09:50 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin3\dt_dadget_loader.png
[2013.07.12 10:09:51 | 000,057,728 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin4\dt_dadget_loader.png
[2013.07.12 10:09:51 | 000,061,770 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin5\dt_dadget_loader.png
[2013.07.12 10:09:54 | 000,061,770 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin6\dt_dadget_loader.png
[2014.09.19 00:00:16 | 000,001,980 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8HQFZA92\AdLoader[1].htm
[2014.09.19 00:00:16 | 000,018,715 | ---- | M] () -- \Users\Jakub\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LAMYGAGN\AdLoader-a5fa12058ddb9a8919d6906ba95d7c57.min[1].js
[2014.07.01 11:46:16 | 000,072,638 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\loader.gif
[2014.07.01 11:46:16 | 000,003,032 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\loader.png
[2014.07.01 11:46:16 | 000,006,012 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif
[2014.07.01 11:46:16 | 000,021,956 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif
[2014.07.01 11:46:16 | 000,009,772 | ---- | M] () -- \Users\Jakub\AppData\Local\Skype\Apps\login\images\retina\loader@2x.png
[2013.02.16 14:58:54 | 000,001,322 | ---- | M] () -- \Users\Jakub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iSkysoft Free video Downloader.lnk
[2013.04.19 21:53:04 | 000,000,885 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader.gif
[2013.04.19 21:53:04 | 000,001,156 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\plugins\woocommerce\assets\images\ajax-loader@2x.gif
[2013.04.19 21:52:48 | 000,006,778 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2013.04.19 21:52:51 | 000,006,460 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\admin\functions\functions.mediauploader.php
[2013.04.19 21:52:44 | 000,002,892 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\loader.gif
[2013.04.19 21:52:46 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2013.04.19 21:52:46 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2013.04.19 21:52:45 | 000,006,331 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\default\loader.gif
[2013.04.19 21:52:45 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\facebook\loader.gif
[2013.04.19 21:52:46 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2013.04.19 21:52:45 | 000,002,545 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-content\themes\organic_shop\images\prettyPhoto\light_square\loader.gif
[2013.04.19 21:51:29 | 000,042,202 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\script-loader.php
[2013.04.19 21:51:38 | 000,002,109 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\template-loader.php
[2013.04.19 21:52:05 | 000,003,915 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\images\uploader-icons-2x.png
[2013.04.19 21:52:04 | 000,001,593 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\images\uploader-icons.png
[2013.04.19 21:51:41 | 000,004,408 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\js\customize-loader.js
[2013.04.19 21:51:39 | 000,002,642 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\js\customize-loader.min.js
[2013.04.18 06:09:30 | 000,000,885 | ---- | M] () -- \Users\Jakub\Downloads\bordel\woocommerce-all-in-one-seo-pack\woothemes-woocommerce-v2.0.8-0-g1c28c48\woothemes-woocommerce-1c28c48\assets\images\ajax-loader.gif
[2013.04.18 06:09:30 | 000,001,156 | ---- | M] () -- \Users\Jakub\Downloads\bordel\woocommerce-all-in-one-seo-pack\woothemes-woocommerce-v2.0.8-0-g1c28c48\woothemes-woocommerce-1c28c48\assets\images\ajax-loader@2x.gif
[2012.12.12 14:30:44 | 000,006,611 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\admin\assets\js\of-medialibrary-uploader.js
[2012.12.12 14:30:44 | 000,006,248 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\admin\functions\functions.mediauploader.php
[2012.06.06 11:57:00 | 000,002,892 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\dark_rounded\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\dark_square\loader.gif
[2011.11.10 01:21:38 | 000,006,331 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\default\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\facebook\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\light_rounded\loader.gif
[2011.01.31 22:33:42 | 000,002,545 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-2931436--organic-shop-responsive-woocommerce-theme\Organic_Shop_v1.8.1\organic_shop\images\prettyPhoto\light_square\loader.gif
[2014.05.05 16:55:46 | 000,010,644 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-3854385-fluxus-portfolio-theme-for-photographers\fluxus\fluxus\options-framework\options-medialibrary-uploader.php
[2014.05.05 16:55:46 | 000,008,202 | ---- | M] () -- \Users\Jakub\Downloads\themeforest-3854385-fluxus-portfolio-theme-for-photographers\fluxus\fluxus\options-framework\js\of-medialibrary-uploader.js
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013.01.30 19:18:12 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2013.01.30 23:15:14 | 000,009,622 | R--- | M] () -- \Windows\System32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2013.01.30 19:18:12 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2013.01.30 23:15:14 | 000,009,622 | R--- | M] () -- \Windows\SysWOW64\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:38:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 04:12:19 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_68d20a7192733a4d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 07:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.07.08 07:11:20 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22379_none_692597a0abb965cc\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 08:20:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_695e76beab8ff095\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 04:18:31 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_694dd858ab9ba72a\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.03.04 13:03:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_69637bfcab8b6996\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.04.12 04:28:21 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_69353b6eabae8d55\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.04.12 10:34:35 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2011.04.12 10:34:35 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2011.04.12 10:34:35 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2011.04.12 10:34:35 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2011.04.12 10:34:35 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2013.01.31 00:18:49 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2013.01.31 00:18:49 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2013.01.31 00:18:49 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2013.01.31 00:18:49 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2013.01.31 00:18:49 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2011.04.12 10:33:23 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2010.11.21 05:16:35 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.07.08 06:59:24 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22379_none_0d06fc1cf35bf496\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 07:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 03:54:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_0d2f3cd4f33e35f4\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.03.04 12:35:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_0d44e078f32df860\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.04.12 04:03:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_0d169feaf3511c1f\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.09.11 18:45:18 | 000,001,046 | ---- | M] () -- \zoek_backup\C_Users_Jakub_Desktop_Torntv Downloader.lnk.vir
[2014.04.07 21:19:36 | 000,001,293 | ---- | M] () -- \zoek_backup\C_Users_Public_Desktop_YTD Video Downloader.lnk.vir
[1 \zoek_backup\*.tmp files -> \zoek_backup\*.tmp -> ]
< *minodlogin* /s >
Re: reklama v prohlizeci "Ads by Info"
< *tnod* /s >
[2014.07.21 11:52:08 | 000,000,389 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32av4.ini
[2014.07.21 11:52:08 | 000,000,397 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32av4_x64.ini
[2014.07.21 11:52:08 | 000,000,385 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32smarts4.ini
[2014.07.21 11:52:08 | 000,000,420 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32smarts4_424_x64sp.ini
[2014.07.21 11:52:08 | 000,000,395 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32smarts4_x64.ini
< *AutoKMS* /s >
< *activator* /s >
[2013.04.26 19:00:24 | 000,002,319 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\mx\skins\halo\ActivatorSkin.as
[2013.04.26 19:00:24 | 000,001,806 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\mx\skins\sample\ActivatorSkin.as
< *serial* /s >
[2012.06.12 19:32:25 | 000,011,776 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.2.9200.16384_cs-cz_18f61258351a4915\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2012.06.12 19:32:31 | 000,090,112 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.2.9200.16384_cs-cz_b63db9f5dc430f52\System.RunTime.Serialization.Resources.dll
[2012.07.06 04:01:05 | 000,131,072 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.2.9200.16384_none_e04b053008b35686\system.runtime.serialization.formatters.soap.dll
[2012.07.06 04:02:29 | 000,847,872 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.2.9200.16384_none_8fbcf8a56818c79c\system.runtime.serialization.dll
[2012.07.06 04:02:29 | 000,847,872 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.2.9200.16384_none_ca94056fbc10c235\system.runtime.serialization.dll
[2012.07.06 04:01:14 | 000,131,072 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.2.9200.16384_none_5313850cd3a87f7b\system.runtime.serialization.formatters.soap.dll
[2012.06.12 19:32:25 | 000,011,776 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.2.9200.16384_cs-cz_0c3c9b78cd408874\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.07.06 04:02:29 | 000,970,752 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.2.9200.16384_none_dd235adf680f4fc6\system.runtime.serialization.dll
[2012.06.12 19:32:31 | 000,090,112 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.2.9200.16384_cs-cz_6acea198775b6fe0\System.RunTime.Serialization.Resources.dll
[2012.07.06 04:02:28 | 000,970,752 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.serialization_b77a5c561934e089_6.2.9200.16384_none_0d6690798fb650f9\system.runtime.serialization.dll
[2012.06.12 19:31:09 | 000,011,776 | ---- | M] () -- \ESD\Windows\sources\sxs\x86_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.2.9200.16384_cs-cz_bcd776d47cbcd7df\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.07.06 04:02:28 | 000,970,752 | ---- | M] () -- \ESD\Windows\sources\sxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.2.9200.16384_none_12413c46d08ceb3b\system.runtime.serialization.dll
[2013.05.09 11:48:26 | 000,000,814 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\js\jquery\jquery.serialize-object.js
[2013.05.23 17:24:37 | 000,000,814 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\js\jquery\jquery.serialize-object.js
[2011.01.20 23:09:38 | 000,000,783 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\js\jquery\jquery.serialize-object.js
[2013.12.20 05:39:12 | 000,833,936 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Illustrator CC\Support Files\Contents\Windows\boost_serialization.dll
[2014.05.13 23:17:02 | 000,434,368 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014.07.31 16:32:21 | 001,164,288 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2014.05.24 18:27:22 | 000,005,687 | ---- | M] () -- \Program Files (x86)\PokerStars\gx\tokenserial.jpg
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2014.08.05 06:43:56 | 000,791,768 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\boost_serialization.dll
[2014.01.28 23:39:44 | 000,814,504 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\boost_serialization.dll
[2013.12.20 04:29:18 | 000,814,480 | ---- | M] () -- \Program Files\Adobe\Adobe Illustrator CC (64 Bit)\Support Files\Contents\Windows\boost_serialization.dll
[2014.03.21 08:14:10 | 000,814,296 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\boost_serialization.dll
[2012.03.26 23:01:20 | 000,001,673 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\BadSerialNumberAlert.exv
[2012.03.26 23:01:20 | 000,001,561 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\CantChangeSerialNumberAlert.exv
[2012.03.26 23:01:20 | 000,001,639 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\InValidUpGradeSerialNumberAlert.exv
[2012.03.26 23:01:20 | 000,000,849 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\ReserializeAlert.exv
[2012.03.26 23:01:20 | 000,027,443 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\SerializationWF.exv
[2012.03.26 23:28:46 | 000,119,808 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\Plug-ins\Common\DeviceControlSerial.prm
[2014.01.17 02:00:32 | 000,016,016 | ---- | M] () -- \Program Files\Blackmagic Design\DaVinci Resolve\UI_Resource\Steinway\addSerial.bmp
[2014.05.13 23:48:16 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014.07.31 16:32:38 | 001,546,240 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2014.07.11 00:24:01 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2012.04.27 17:42:56 | 000,320,856 | ---- | M] () -- \Program Files\Sony\Vegas Pro 11.0\CoreUI.XmlSerializers.dll
[2012.04.27 17:42:58 | 000,460,120 | ---- | M] () -- \Program Files\Sony\Vegas Pro 11.0\Sony.MediaSoftware.TextGen.CoreGraphics.XmlSerializers.dll
[2013.04.19 21:51:54 | 000,000,814 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\js\jquery\jquery.serialize-object.js
[2013.06.26 03:42:39 | 000,002,505 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Serial Numbers for Red Giant.zip
[2013.06.17 16:29:38 | 000,002,636 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet Cosmo\Source_Files\serial.html
[2013.06.17 16:29:38 | 000,148,711 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet Denoiser II\images\support-serial-denoiser.png
[2013.06.17 16:30:02 | 000,002,693 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet Looks 2\Source_Files\help_serial.html
[2013.06.17 16:31:54 | 000,003,105 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet PhotoLooks 2\Source_Files\help_serial.html
[2013.06.17 16:11:00 | 000,002,700 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Trapcode Suite\TCSuite_Win_Full\Documentation and Presets\Trapcode Form\Files\help_serial.html
[2013.06.17 16:11:42 | 000,002,626 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Trapcode Suite\TCSuite_Win_Full\Documentation and Presets\Trapcode Mir\Files\help_serial.html
[2013.06.17 16:11:48 | 000,002,718 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Trapcode Suite\TCSuite_Win_Full\Documentation and Presets\Trapcode Particular\files\help_serial.html
[2013.07.15 17:37:18 | 000,000,171 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor 5.1.4- MartePietro\__MACOSX\Twixtor 5.1.4_ MartePietro\._Twixtor 5.1.4 SERIALE.txt
[2013.07.15 17:37:18 | 000,000,217 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor 5.1.4- MartePietro\Twixtor 5.1.4_ MartePietro\Twixtor 5.1.4 SERIALE.txt
[2012.04.07 12:52:38 | 000,000,127 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-a-PPro-Plugins\Twixtor a PPro Plugins\RED GIANT serials.txt
[2012.09.07 16:13:32 | 000,000,401 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-for-Adobe-AE-Premiere\Twixtor for Adobe AE Premiere\Twixtor PRO 5.1 WIN + MAC\WIN\serial.txt
[2013.01.18 10:07:38 | 000,000,109 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-for-Adobe-AE-Premiere\Twixtor for Adobe AE Premiere\Twixtor PRO 5.15 WIN + MAC\serial.txt
[2013.01.18 10:15:08 | 000,000,184 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-for-Adobe-AE-Premiere\Twixtor for Adobe AE Premiere\Twixtor PRO 5.15 WIN + MAC\MAC\serial.txt
[2013.08.26 14:40:54 | 000,002,701 | ---- | M] () -- \Users\Jakub\Downloads\KSuite_Win_Full\KSuite_Win_Full\Documentation\Primatte Keyer 5\Source_Files\help_serial.html
[2010.10.29 11:05:58 | 000,005,428 | ---- | M] () -- \Users\Jakub\Downloads\Trapcode-Particular-2\Trapcode Particular 2\SERIALS - Read me First.txt
[2013.07.08 14:43:52 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2014.06.24 01:43:20 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.09.11 03:50:11 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\00c35eb74751496223e687c7f827836b\System.Runtime.Serialization.ni.dll
[2014.09.11 03:46:35 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\98ef60dc57d7118bcfada88a10a9f9c8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.08.15 03:40:39 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\3145191cc18ac203c38cb3708d914ddd\System.Runtime.Serialization.ni.dll
[2014.09.11 03:49:58 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\42223d4a72c5689046f135df444d6981\System.Runtime.Serialization.ni.dll
[2014.09.11 03:48:26 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\5308caa4ad872301e40b3d9ec8bf9037\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.08.15 03:37:13 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\63db8473882e5b945c5da27a45c4ee31\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.02 19:55:46 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP64FB.tmp\System.Runtime.Serialization.Formatters.Soap.dll
[2014.09.11 03:24:08 | 000,309,760 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\e67230bbca0858b6ff4caccfb4595fa8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.09.11 03:24:08 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\e67230bbca0858b6ff4caccfb4595fa8\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014.09.11 03:24:13 | 002,822,144 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\c2d1735e9f72e974cd34063a714a309f\System.Runtime.Serialization.ni.dll
[2014.09.11 03:24:13 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\c2d1735e9f72e974cd34063a714a309f\System.Runtime.Serialization.ni.dll.aux
[2014.02.27 04:12:23 | 000,026,624 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll
[2014.02.27 04:12:23 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll.aux
[2014.09.11 03:29:17 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\10cfe6422504c1beb7abe4f8f26aa6a8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.09.11 03:29:17 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\10cfe6422504c1beb7abe4f8f26aa6a8\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014.09.11 03:30:15 | 003,638,272 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\e9a7832eb99a0dc76d6a9e163cb2261b\System.Runtime.Serialization.ni.dll
[2014.09.11 03:30:15 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\e9a7832eb99a0dc76d6a9e163cb2261b\System.Runtime.Serialization.ni.dll.aux
[2014.02.27 04:10:46 | 000,028,672 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll
[2014.02.27 04:10:46 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll.aux
[2014.02.26 13:20:33 | 003,640,320 | ---- | M] () -- \Windows\assembly\temp\Q9JJP4C8YR\System.Runtime.Serialization.ni.dll
[2014.02.26 13:20:33 | 000,001,308 | ---- | M] () -- \Windows\assembly\temp\Q9JJP4C8YR\System.Runtime.Serialization.ni.dll.aux
[2013.09.11 23:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll.amd64
[2013.09.11 23:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll.x86
[2013.09.11 23:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll_gac_x86
[2013.09.11 23:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Json\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Json.dll
[2013.09.11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Primitives\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Primitives.dll
[2013.09.11 23:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Xml\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Xml.dll
[2014.07.23 01:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.09.11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2013.09.11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.XmlSerializer\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Xml.XmlSerializer.dll
[2014.06.24 01:43:20 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2014.07.11 00:24:11 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2014.07.23 01:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2013.09.11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013.09.11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013.09.11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2013.09.11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.XmlSerializer.dll
[2013.09.11 23:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 23:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2014.06.24 01:43:09 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2014.07.11 00:24:02 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2014.07.23 01:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2013.09.11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013.09.11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013.09.11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2013.09.11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.XmlSerializer.dll
[2013.09.11 21:32:16 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 21:32:16 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2014.07.14 05:53:34 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ar-sa_da645b15477ad9eb.manifest
[2014.07.14 06:06:27 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_da-dk_62279955a1ab0e32.manifest
[2014.07.14 05:56:22 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_de-de_626c7a05a176cbe8.manifest
[2014.07.14 05:52:56 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_el-gr_8f51c7b5bfc9c04a.manifest
[2014.07.14 04:07:18 | 000,000,531 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_en-us_8f4912f1bfcfe70b.manifest
[2014.07.14 06:02:31 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_es-es_8f4df603bfcb934e.manifest
[2014.07.14 06:05:56 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_fi-fi_bd1ae931dd735bf4.manifest
[2014.07.14 05:56:04 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_fr-fr_bcc29c7fddb43b7c.manifest
[2014.07.14 05:55:44 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_he-il_17cc27e0196f027e.manifest
[2014.07.14 06:06:17 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_hu-hu_177adb4e19a99640.manifest
[2014.07.14 06:02:19 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_it-it_44ef81ca37923e6e.manifest
[2014.07.14 06:01:05 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ja-jp_727292d65572caab.manifest
[2014.07.14 06:06:49 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ko-kr_9fd5cde4736642c5.manifest
[2014.07.14 05:52:14 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_nb-no_2829be74cd293de9.manifest
[2014.07.14 06:02:36 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_nl-nl_2854311ccd07e77c.manifest
[2014.07.14 06:06:57 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_pl-pl_8329ded108e7a268.manifest
[2014.07.14 06:02:11 | 000,001,635 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_pt-br_82f0e70509113ca4.manifest
[2014.07.14 05:59:37 | 000,001,632 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_pt-pt_82db61c109214ca8.manifest
[2014.07.14 06:02:09 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ru-ru_dda73fd345083cdc.manifest
[2014.07.14 05:55:38 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_sv-se_0bc015b762757499.manifest
[2014.07.14 05:55:38 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_tr-tr_389a5c6d80d257f0.manifest
[2014.07.14 06:03:57 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_zh-cn_493c76ac345a5d09.manifest
[2014.07.14 06:03:57 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_zh-tw_48db47a634a32819.manifest
[2014.07.14 06:05:41 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ar-sa_c3979db361216d3a.manifest
[2014.07.14 06:10:34 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_da-dk_4b5adbf3bb51a181.manifest
[2014.07.14 06:09:12 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_de-de_4b9fbca3bb1d5f37.manifest
[2014.07.14 06:03:01 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_el-gr_78850a53d9705399.manifest
[2014.07.14 03:56:59 | 000,000,531 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_en-us_787c558fd9767a5a.manifest
[2014.07.14 06:11:49 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_es-es_788138a1d972269d.manifest
[2014.07.14 06:11:35 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_fi-fi_a64e2bcff719ef43.manifest
[2014.07.14 06:02:38 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_fr-fr_a5f5df1df75acecb.manifest
[2014.07.14 06:04:14 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_he-il_00ff6a7e331595cd.manifest
[2014.07.14 06:03:42 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_hu-hu_00ae1dec3350298f.manifest
[2014.07.14 06:09:49 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_it-it_2e22c4685138d1bd.manifest
[2014.07.14 06:13:29 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ja-jp_5ba5d5746f195dfa.manifest
[2014.07.14 06:13:12 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ko-kr_890910828d0cd614.manifest
[2014.07.14 06:09:50 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_nb-no_115d0112e6cfd138.manifest
[2014.07.14 06:05:36 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_nl-nl_118773bae6ae7acb.manifest
[2014.07.14 06:10:32 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_pl-pl_6c5d216f228e35b7.manifest
[2014.07.14 06:12:27 | 000,001,635 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_pt-br_6c2429a322b7cff3.manifest
[2014.07.14 06:02:06 | 000,001,632 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_pt-pt_6c0ea45f22c7dff7.manifest
[2014.07.14 06:08:19 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ru-ru_c6da82715eaed02b.manifest
[2014.07.14 06:12:10 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_sv-se_f4f358557c1c07e8.manifest
[2014.07.14 06:04:36 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_tr-tr_21cd9f0b9a78eb3f.manifest
[2014.07.14 06:05:37 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_zh-cn_326fb94a4e00f058.manifest
[2014.07.14 06:05:37 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_zh-tw_320e8a444e49bb68.manifest
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2011.04.12 10:34:07 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2011.04.12 10:34:07 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_1e468964c1feb99a\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.22731_cs-cz_1ec35795db263fce\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.04.12 10:34:12 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 03:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_bb8e310269277fd7\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.22733_cs-cz_bc0cffc7824d38b9\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:13 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:09 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.18523_none_a9a7e561157d82e9\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:05 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.22733_none_92db3ec72f23fc97\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b\System.Runtime.Serialization.dll
[2014.03.09 23:48:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18523_none_5919d8d674e2f3ff\System.Runtime.Serialization.dll
[2014.07.11 00:24:02 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18532_none_591aefe874e1f3b5\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53\System.Runtime.Serialization.dll
[2014.03.17 16:38:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22733_none_424d323c8e896dad\System.Runtime.Serialization.dll
[2014.07.08 01:36:29 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22743_none_424e32868e888704\System.Runtime.Serialization.dll
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4\System.Runtime.Serialization.dll
[2014.03.09 23:48:50 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_93f0e5a0c8daee98\System.Runtime.Serialization.dll
[2014.07.11 00:24:01 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_93f1fcb2c8d9ee4e\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec\System.Runtime.Serialization.dll
[2014.03.17 16:38:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_7d243f06e2816846\System.Runtime.Serialization.dll
[2014.07.08 01:36:29 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_7d253f50e280819d\System.Runtime.Serialization.dll
[2013.01.31 00:18:49 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2013.01.31 00:18:49 | 000,017,792 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8_kdcom.dll_db5e7744
[2011.04.12 10:34:36 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23_serialui.dll.mui_7d29d2a3
[2009.07.14 04:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2011.04.12 10:34:35 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009.07.14 04:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009.07.14 04:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.02.05 19:35:45 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.02.05 15:11:05 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 04:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2010.11.21 05:17:50 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2012.10.05 20:18:30 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b.manifest
[2014.07.02 08:30:52 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18523_none_5919d8d674e2f3ff.manifest
[2014.07.14 04:24:48 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18532_none_591aefe874e1f3b5.manifest
[2012.10.05 20:10:31 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53.manifest
[2014.07.02 08:30:44 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22733_none_424d323c8e896dad.manifest
[2014.07.14 04:13:57 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22743_none_424e32868e888704.manifest
[2010.11.21 05:17:50 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2012.10.05 20:19:07 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4.manifest
[2014.07.02 08:31:00 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_93f0e5a0c8daee98.manifest
[2014.07.14 04:24:58 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_93f1fcb2c8d9ee4e.manifest
[2012.10.05 20:11:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec.manifest
[2014.07.02 08:30:53 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_7d243f06e2816846.manifest
[2014.07.14 04:14:06 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_7d253f50e280819d.manifest
[2010.11.21 05:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012.10.05 19:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2014.07.02 07:57:49 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18523_none_a6803b1074d97c29.manifest
[2014.07.14 04:04:09 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18532_none_a681522274d87bdf.manifest
[2012.10.05 19:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2014.07.02 08:07:46 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22733_none_8fb394768e7ff5d7.manifest
[2014.07.14 04:04:27 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22743_none_8fb494c08e7f0f2e.manifest
[2011.04.12 10:33:41 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012.10.05 22:12:17 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f.manifest
[2014.07.02 09:46:46 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18523_cs-cz_342b81c984259c43.manifest
[2014.07.14 06:02:27 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_cs-cz_342c98db84249bf9.manifest
[2012.10.05 21:59:28 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797.manifest
[2014.07.02 10:08:13 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22733_cs-cz_1d5edb2f9dcc15f1.manifest
[2014.07.14 06:06:58 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_cs-cz_1d5fdb799dcb2f48.manifest
[2010.11.21 05:17:50 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012.10.05 19:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2014.07.02 08:00:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18523_none_d6c370aa9c807d5c.manifest
[2014.07.14 04:06:40 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18532_none_d6c487bc9c7f7d12.manifest
[2012.10.05 19:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2014.07.02 08:10:04 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22733_none_bff6ca10b626f70a.manifest
[2014.07.14 04:06:53 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22743_none_bff7ca5ab6261061.manifest
[2010.11.21 05:18:20 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012.10.05 19:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2014.07.02 07:58:58 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_db9e1c77dd57179e.manifest
[2014.07.14 04:05:25 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_db9f3389dd561754.manifest
[2012.10.05 19:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2014.07.02 08:08:55 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_c4d175ddf6fd914c.manifest
[2014.07.14 04:05:41 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_c4d27627f6fcaaa3.manifest
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:20 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.18523_none_1c70653de072abde\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:36 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.22733_none_05a3bea3fa19258c\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.07.08 14:43:52 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7601.18523_cs-cz_d5997ba9da0ab4d7\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2014.03.09 23:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18523_none_a6803b1074d97c29\System.Runtime.Serialization.dll
[2014.07.11 00:24:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18532_none_a681522274d87bdf\System.Runtime.Serialization.dll
[2012.10.05 12:56:07 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2014.03.17 16:38:28 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22733_none_8fb394768e7ff5d7\System.Runtime.Serialization.dll
[2014.07.08 01:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22743_none_8fb494c08e7f0f2e\System.Runtime.Serialization.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18523_cs-cz_342b81c984259c43\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_cs-cz_342c98db84249bf9\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:37:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22733_cs-cz_1d5edb2f9dcc15f1\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_cs-cz_1d5fdb799dcb2f48\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2014.03.09 23:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18523_none_d6c370aa9c807d5c\System.Runtime.Serialization.dll
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18532_none_d6c487bc9c7f7d12\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2014.03.17 16:38:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22733_none_bff6ca10b626f70a\System.Runtime.Serialization.dll
[2014.07.08 01:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22743_none_bff7ca5ab6261061\System.Runtime.Serialization.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_289b33b6f65f7b95\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.22731_cs-cz_291801e80f8701c9\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.04.12 10:34:07 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_5f6f957eb0ca0ea1\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.22733_cs-cz_5fee6443c9efc783\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:25:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2014.03.09 23:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_db9e1c77dd57179e\System.Runtime.Serialization.dll
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_db9f3389dd561754\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll
[2014.03.17 16:38:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_c4d175ddf6fd914c\System.Runtime.Serialization.dll
[2014.07.08 01:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_c4d27627f6fcaaa3\System.Runtime.Serialization.dll
< *w7lxe* /s >
========== Alternate Data Streams ==========
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:C3306E71
< End of report >
[2014.07.21 11:52:08 | 000,000,389 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32av4.ini
[2014.07.21 11:52:08 | 000,000,397 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32av4_x64.ini
[2014.07.21 11:52:08 | 000,000,385 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32smarts4.ini
[2014.07.21 11:52:08 | 000,000,420 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32smarts4_424_x64sp.ini
[2014.07.21 11:52:08 | 000,000,395 | ---- | M] () -- \Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\Cleaner\esetnod32smarts4_x64.ini
< *AutoKMS* /s >
< *activator* /s >
[2013.04.26 19:00:24 | 000,002,319 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\mx\skins\halo\ActivatorSkin.as
[2013.04.26 19:00:24 | 000,001,806 | ---- | M] () -- \Program Files\Adobe\Adobe Flash CC\Common\First Run\Classes\mx\skins\sample\ActivatorSkin.as
< *serial* /s >
[2012.06.12 19:32:25 | 000,011,776 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.2.9200.16384_cs-cz_18f61258351a4915\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2012.06.12 19:32:31 | 000,090,112 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.2.9200.16384_cs-cz_b63db9f5dc430f52\System.RunTime.Serialization.Resources.dll
[2012.07.06 04:01:05 | 000,131,072 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.2.9200.16384_none_e04b053008b35686\system.runtime.serialization.formatters.soap.dll
[2012.07.06 04:02:29 | 000,847,872 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.2.9200.16384_none_8fbcf8a56818c79c\system.runtime.serialization.dll
[2012.07.06 04:02:29 | 000,847,872 | ---- | M] () -- \ESD\Windows\sources\sxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.2.9200.16384_none_ca94056fbc10c235\system.runtime.serialization.dll
[2012.07.06 04:01:14 | 000,131,072 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.2.9200.16384_none_5313850cd3a87f7b\system.runtime.serialization.formatters.soap.dll
[2012.06.12 19:32:25 | 000,011,776 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.2.9200.16384_cs-cz_0c3c9b78cd408874\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.07.06 04:02:29 | 000,970,752 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.2.9200.16384_none_dd235adf680f4fc6\system.runtime.serialization.dll
[2012.06.12 19:32:31 | 000,090,112 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.2.9200.16384_cs-cz_6acea198775b6fe0\System.RunTime.Serialization.Resources.dll
[2012.07.06 04:02:28 | 000,970,752 | ---- | M] () -- \ESD\Windows\sources\sxs\msil_system.runtime.serialization_b77a5c561934e089_6.2.9200.16384_none_0d6690798fb650f9\system.runtime.serialization.dll
[2012.06.12 19:31:09 | 000,011,776 | ---- | M] () -- \ESD\Windows\sources\sxs\x86_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.2.9200.16384_cs-cz_bcd776d47cbcd7df\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.07.06 04:02:28 | 000,970,752 | ---- | M] () -- \ESD\Windows\sources\sxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.2.9200.16384_none_12413c46d08ceb3b\system.runtime.serialization.dll
[2013.05.09 11:48:26 | 000,000,814 | ---- | M] () -- \PRACE\mamka\mom\wp-includes\js\jquery\jquery.serialize-object.js
[2013.05.23 17:24:37 | 000,000,814 | ---- | M] () -- \PRACE\mamka\zaloha\wp-includes\js\jquery\jquery.serialize-object.js
[2011.01.20 23:09:38 | 000,000,783 | ---- | M] () -- \PRACE\web\web_pirati\wordpress-3.5.2-cs_CZ\wordpress\wp-includes\js\jquery\jquery.serialize-object.js
[2013.12.20 05:39:12 | 000,833,936 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Illustrator CC\Support Files\Contents\Windows\boost_serialization.dll
[2014.05.13 23:17:02 | 000,434,368 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014.07.31 16:32:21 | 001,164,288 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2014.05.24 18:27:22 | 000,005,687 | ---- | M] () -- \Program Files (x86)\PokerStars\gx\tokenserial.jpg
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2014.08.05 06:43:56 | 000,791,768 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC 2014\Support Files\boost_serialization.dll
[2014.01.28 23:39:44 | 000,814,504 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CC\Support Files\boost_serialization.dll
[2013.12.20 04:29:18 | 000,814,480 | ---- | M] () -- \Program Files\Adobe\Adobe Illustrator CC (64 Bit)\Support Files\Contents\Windows\boost_serialization.dll
[2014.03.21 08:14:10 | 000,814,296 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CC\boost_serialization.dll
[2012.03.26 23:01:20 | 000,001,673 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\BadSerialNumberAlert.exv
[2012.03.26 23:01:20 | 000,001,561 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\CantChangeSerialNumberAlert.exv
[2012.03.26 23:01:20 | 000,001,639 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\InValidUpGradeSerialNumberAlert.exv
[2012.03.26 23:01:20 | 000,000,849 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\ReserializeAlert.exv
[2012.03.26 23:01:20 | 000,027,443 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\LMResources\SerializationWF.exv
[2012.03.26 23:28:46 | 000,119,808 | ---- | M] () -- \Program Files\AdobeB\Adobe Encore CS6\Plug-ins\Common\DeviceControlSerial.prm
[2014.01.17 02:00:32 | 000,016,016 | ---- | M] () -- \Program Files\Blackmagic Design\DaVinci Resolve\UI_Resource\Steinway\addSerial.bmp
[2014.05.13 23:48:16 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014.07.31 16:32:38 | 001,546,240 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2014.07.11 00:24:01 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2012.04.27 17:42:56 | 000,320,856 | ---- | M] () -- \Program Files\Sony\Vegas Pro 11.0\CoreUI.XmlSerializers.dll
[2012.04.27 17:42:58 | 000,460,120 | ---- | M] () -- \Program Files\Sony\Vegas Pro 11.0\Sony.MediaSoftware.TextGen.CoreGraphics.XmlSerializers.dll
[2013.04.19 21:51:54 | 000,000,814 | ---- | M] () -- \Users\Jakub\Desktop\mom_\mom\wp-includes\js\jquery\jquery.serialize-object.js
[2013.06.26 03:42:39 | 000,002,505 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Serial Numbers for Red Giant.zip
[2013.06.17 16:29:38 | 000,002,636 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet Cosmo\Source_Files\serial.html
[2013.06.17 16:29:38 | 000,148,711 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet Denoiser II\images\support-serial-denoiser.png
[2013.06.17 16:30:02 | 000,002,693 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet Looks 2\Source_Files\help_serial.html
[2013.06.17 16:31:54 | 000,003,105 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Magic Bullet Looks\MBSuite_Win_Full\User Guides and Extras\Magic Bullet PhotoLooks 2\Source_Files\help_serial.html
[2013.06.17 16:11:00 | 000,002,700 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Trapcode Suite\TCSuite_Win_Full\Documentation and Presets\Trapcode Form\Files\help_serial.html
[2013.06.17 16:11:42 | 000,002,626 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Trapcode Suite\TCSuite_Win_Full\Documentation and Presets\Trapcode Mir\Files\help_serial.html
[2013.06.17 16:11:48 | 000,002,718 | ---- | M] () -- \Users\Jakub\Downloads\After Effects CC Plugin Pack\Adobe After Effects CC Plugins\Trapcode Suite\TCSuite_Win_Full\Documentation and Presets\Trapcode Particular\files\help_serial.html
[2013.07.15 17:37:18 | 000,000,171 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor 5.1.4- MartePietro\__MACOSX\Twixtor 5.1.4_ MartePietro\._Twixtor 5.1.4 SERIALE.txt
[2013.07.15 17:37:18 | 000,000,217 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor 5.1.4- MartePietro\Twixtor 5.1.4_ MartePietro\Twixtor 5.1.4 SERIALE.txt
[2012.04.07 12:52:38 | 000,000,127 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-a-PPro-Plugins\Twixtor a PPro Plugins\RED GIANT serials.txt
[2012.09.07 16:13:32 | 000,000,401 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-for-Adobe-AE-Premiere\Twixtor for Adobe AE Premiere\Twixtor PRO 5.1 WIN + MAC\WIN\serial.txt
[2013.01.18 10:07:38 | 000,000,109 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-for-Adobe-AE-Premiere\Twixtor for Adobe AE Premiere\Twixtor PRO 5.15 WIN + MAC\serial.txt
[2013.01.18 10:15:08 | 000,000,184 | ---- | M] () -- \Users\Jakub\Downloads\bordel\Twixtor-for-Adobe-AE-Premiere\Twixtor for Adobe AE Premiere\Twixtor PRO 5.15 WIN + MAC\MAC\serial.txt
[2013.08.26 14:40:54 | 000,002,701 | ---- | M] () -- \Users\Jakub\Downloads\KSuite_Win_Full\KSuite_Win_Full\Documentation\Primatte Keyer 5\Source_Files\help_serial.html
[2010.10.29 11:05:58 | 000,005,428 | ---- | M] () -- \Users\Jakub\Downloads\Trapcode-Particular-2\Trapcode Particular 2\SERIALS - Read me First.txt
[2013.07.08 14:43:52 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2014.06.24 01:43:20 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.09.11 03:50:11 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\00c35eb74751496223e687c7f827836b\System.Runtime.Serialization.ni.dll
[2014.09.11 03:46:35 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\98ef60dc57d7118bcfada88a10a9f9c8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.08.15 03:40:39 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\3145191cc18ac203c38cb3708d914ddd\System.Runtime.Serialization.ni.dll
[2014.09.11 03:49:58 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\42223d4a72c5689046f135df444d6981\System.Runtime.Serialization.ni.dll
[2014.09.11 03:48:26 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\5308caa4ad872301e40b3d9ec8bf9037\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.08.15 03:37:13 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\63db8473882e5b945c5da27a45c4ee31\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.02.02 19:55:46 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP64FB.tmp\System.Runtime.Serialization.Formatters.Soap.dll
[2014.09.11 03:24:08 | 000,309,760 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\e67230bbca0858b6ff4caccfb4595fa8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.09.11 03:24:08 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\e67230bbca0858b6ff4caccfb4595fa8\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014.09.11 03:24:13 | 002,822,144 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\c2d1735e9f72e974cd34063a714a309f\System.Runtime.Serialization.ni.dll
[2014.09.11 03:24:13 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\c2d1735e9f72e974cd34063a714a309f\System.Runtime.Serialization.ni.dll.aux
[2014.02.27 04:12:23 | 000,026,624 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll
[2014.02.27 04:12:23 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll.aux
[2014.09.11 03:29:17 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\10cfe6422504c1beb7abe4f8f26aa6a8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.09.11 03:29:17 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\10cfe6422504c1beb7abe4f8f26aa6a8\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014.09.11 03:30:15 | 003,638,272 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\e9a7832eb99a0dc76d6a9e163cb2261b\System.Runtime.Serialization.ni.dll
[2014.09.11 03:30:15 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\e9a7832eb99a0dc76d6a9e163cb2261b\System.Runtime.Serialization.ni.dll.aux
[2014.02.27 04:10:46 | 000,028,672 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll
[2014.02.27 04:10:46 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll.aux
[2014.02.26 13:20:33 | 003,640,320 | ---- | M] () -- \Windows\assembly\temp\Q9JJP4C8YR\System.Runtime.Serialization.ni.dll
[2014.02.26 13:20:33 | 000,001,308 | ---- | M] () -- \Windows\assembly\temp\Q9JJP4C8YR\System.Runtime.Serialization.ni.dll.aux
[2013.09.11 23:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll.amd64
[2013.09.11 23:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll.x86
[2013.09.11 23:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll_gac_x86
[2013.09.11 23:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Json\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Json.dll
[2013.09.11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Primitives\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Primitives.dll
[2013.09.11 23:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Xml\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Xml.dll
[2014.07.23 01:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.09.11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2013.09.11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.XmlSerializer\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Xml.XmlSerializer.dll
[2014.06.24 01:43:20 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2014.07.11 00:24:11 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2014.07.23 01:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2013.09.11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013.09.11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013.09.11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2013.09.11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.XmlSerializer.dll
[2013.09.11 23:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 23:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2014.06.24 01:43:09 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2014.07.11 00:24:02 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2014.07.23 01:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2013.09.11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013.09.11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013.09.11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013.09.11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2013.09.11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.XmlSerializer.dll
[2013.09.11 21:32:16 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 21:32:16 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2014.07.14 05:53:34 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ar-sa_da645b15477ad9eb.manifest
[2014.07.14 06:06:27 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_da-dk_62279955a1ab0e32.manifest
[2014.07.14 05:56:22 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_de-de_626c7a05a176cbe8.manifest
[2014.07.14 05:52:56 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_el-gr_8f51c7b5bfc9c04a.manifest
[2014.07.14 04:07:18 | 000,000,531 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_en-us_8f4912f1bfcfe70b.manifest
[2014.07.14 06:02:31 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_es-es_8f4df603bfcb934e.manifest
[2014.07.14 06:05:56 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_fi-fi_bd1ae931dd735bf4.manifest
[2014.07.14 05:56:04 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_fr-fr_bcc29c7fddb43b7c.manifest
[2014.07.14 05:55:44 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_he-il_17cc27e0196f027e.manifest
[2014.07.14 06:06:17 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_hu-hu_177adb4e19a99640.manifest
[2014.07.14 06:02:19 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_it-it_44ef81ca37923e6e.manifest
[2014.07.14 06:01:05 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ja-jp_727292d65572caab.manifest
[2014.07.14 06:06:49 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ko-kr_9fd5cde4736642c5.manifest
[2014.07.14 05:52:14 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_nb-no_2829be74cd293de9.manifest
[2014.07.14 06:02:36 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_nl-nl_2854311ccd07e77c.manifest
[2014.07.14 06:06:57 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_pl-pl_8329ded108e7a268.manifest
[2014.07.14 06:02:11 | 000,001,635 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_pt-br_82f0e70509113ca4.manifest
[2014.07.14 05:59:37 | 000,001,632 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_pt-pt_82db61c109214ca8.manifest
[2014.07.14 06:02:09 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_ru-ru_dda73fd345083cdc.manifest
[2014.07.14 05:55:38 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_sv-se_0bc015b762757499.manifest
[2014.07.14 05:55:38 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_tr-tr_389a5c6d80d257f0.manifest
[2014.07.14 06:03:57 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_zh-cn_493c76ac345a5d09.manifest
[2014.07.14 06:03:57 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_zh-tw_48db47a634a32819.manifest
[2014.07.14 06:05:41 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ar-sa_c3979db361216d3a.manifest
[2014.07.14 06:10:34 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_da-dk_4b5adbf3bb51a181.manifest
[2014.07.14 06:09:12 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_de-de_4b9fbca3bb1d5f37.manifest
[2014.07.14 06:03:01 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_el-gr_78850a53d9705399.manifest
[2014.07.14 03:56:59 | 000,000,531 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_en-us_787c558fd9767a5a.manifest
[2014.07.14 06:11:49 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_es-es_788138a1d972269d.manifest
[2014.07.14 06:11:35 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_fi-fi_a64e2bcff719ef43.manifest
[2014.07.14 06:02:38 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_fr-fr_a5f5df1df75acecb.manifest
[2014.07.14 06:04:14 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_he-il_00ff6a7e331595cd.manifest
[2014.07.14 06:03:42 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_hu-hu_00ae1dec3350298f.manifest
[2014.07.14 06:09:49 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_it-it_2e22c4685138d1bd.manifest
[2014.07.14 06:13:29 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ja-jp_5ba5d5746f195dfa.manifest
[2014.07.14 06:13:12 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ko-kr_890910828d0cd614.manifest
[2014.07.14 06:09:50 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_nb-no_115d0112e6cfd138.manifest
[2014.07.14 06:05:36 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_nl-nl_118773bae6ae7acb.manifest
[2014.07.14 06:10:32 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_pl-pl_6c5d216f228e35b7.manifest
[2014.07.14 06:12:27 | 000,001,635 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_pt-br_6c2429a322b7cff3.manifest
[2014.07.14 06:02:06 | 000,001,632 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_pt-pt_6c0ea45f22c7dff7.manifest
[2014.07.14 06:08:19 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_ru-ru_c6da82715eaed02b.manifest
[2014.07.14 06:12:10 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_sv-se_f4f358557c1c07e8.manifest
[2014.07.14 06:04:36 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_tr-tr_21cd9f0b9a78eb3f.manifest
[2014.07.14 06:05:37 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_zh-cn_326fb94a4e00f058.manifest
[2014.07.14 06:05:37 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\9855831b512151c0fcf3328bb454d77a\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_zh-tw_320e8a444e49bb68.manifest
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2011.04.12 10:34:07 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2011.04.12 10:34:07 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_1e468964c1feb99a\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.04.12 10:34:10 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.22731_cs-cz_1ec35795db263fce\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.04.12 10:34:12 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 03:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_bb8e310269277fd7\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.22733_cs-cz_bc0cffc7824d38b9\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:13 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:09 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.18523_none_a9a7e561157d82e9\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:05 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.22733_none_92db3ec72f23fc97\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b\System.Runtime.Serialization.dll
[2014.03.09 23:48:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18523_none_5919d8d674e2f3ff\System.Runtime.Serialization.dll
[2014.07.11 00:24:02 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18532_none_591aefe874e1f3b5\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53\System.Runtime.Serialization.dll
[2014.03.17 16:38:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22733_none_424d323c8e896dad\System.Runtime.Serialization.dll
[2014.07.08 01:36:29 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22743_none_424e32868e888704\System.Runtime.Serialization.dll
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4\System.Runtime.Serialization.dll
[2014.03.09 23:48:50 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_93f0e5a0c8daee98\System.Runtime.Serialization.dll
[2014.07.11 00:24:01 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_93f1fcb2c8d9ee4e\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec\System.Runtime.Serialization.dll
[2014.03.17 16:38:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_7d243f06e2816846\System.Runtime.Serialization.dll
[2014.07.08 01:36:29 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_7d253f50e280819d\System.Runtime.Serialization.dll
[2013.01.31 00:18:49 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2013.01.31 00:18:49 | 000,017,792 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8_kdcom.dll_db5e7744
[2011.04.12 10:34:36 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23_serialui.dll.mui_7d29d2a3
[2009.07.14 04:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2011.04.12 10:34:35 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009.07.14 04:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009.07.14 04:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.02.05 19:35:45 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.02.05 15:11:05 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 04:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2010.11.21 05:17:50 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2012.10.05 20:18:30 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b.manifest
[2014.07.02 08:30:52 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18523_none_5919d8d674e2f3ff.manifest
[2014.07.14 04:24:48 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18532_none_591aefe874e1f3b5.manifest
[2012.10.05 20:10:31 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53.manifest
[2014.07.02 08:30:44 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22733_none_424d323c8e896dad.manifest
[2014.07.14 04:13:57 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22743_none_424e32868e888704.manifest
[2010.11.21 05:17:50 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2012.10.05 20:19:07 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4.manifest
[2014.07.02 08:31:00 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_93f0e5a0c8daee98.manifest
[2014.07.14 04:24:58 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_93f1fcb2c8d9ee4e.manifest
[2012.10.05 20:11:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec.manifest
[2014.07.02 08:30:53 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_7d243f06e2816846.manifest
[2014.07.14 04:14:06 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_7d253f50e280819d.manifest
[2010.11.21 05:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012.10.05 19:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2014.07.02 07:57:49 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18523_none_a6803b1074d97c29.manifest
[2014.07.14 04:04:09 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18532_none_a681522274d87bdf.manifest
[2012.10.05 19:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2014.07.02 08:07:46 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22733_none_8fb394768e7ff5d7.manifest
[2014.07.14 04:04:27 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22743_none_8fb494c08e7f0f2e.manifest
[2011.04.12 10:33:41 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012.10.05 22:12:17 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f.manifest
[2014.07.02 09:46:46 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18523_cs-cz_342b81c984259c43.manifest
[2014.07.14 06:02:27 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_cs-cz_342c98db84249bf9.manifest
[2012.10.05 21:59:28 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797.manifest
[2014.07.02 10:08:13 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22733_cs-cz_1d5edb2f9dcc15f1.manifest
[2014.07.14 06:06:58 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_cs-cz_1d5fdb799dcb2f48.manifest
[2010.11.21 05:17:50 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012.10.05 19:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2014.07.02 08:00:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18523_none_d6c370aa9c807d5c.manifest
[2014.07.14 04:06:40 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18532_none_d6c487bc9c7f7d12.manifest
[2012.10.05 19:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2014.07.02 08:10:04 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22733_none_bff6ca10b626f70a.manifest
[2014.07.14 04:06:53 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22743_none_bff7ca5ab6261061.manifest
[2010.11.21 05:18:20 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012.10.05 19:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2014.07.02 07:58:58 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_db9e1c77dd57179e.manifest
[2014.07.14 04:05:25 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_db9f3389dd561754.manifest
[2012.10.05 19:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2014.07.02 08:08:55 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_c4d175ddf6fd914c.manifest
[2014.07.14 04:05:41 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_c4d27627f6fcaaa3.manifest
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:20 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.18523_none_1c70653de072abde\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.24 01:43:36 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.22733_none_05a3bea3fa19258c\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.07.08 14:43:52 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7601.18523_cs-cz_d5997ba9da0ab4d7\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2014.03.09 23:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18523_none_a6803b1074d97c29\System.Runtime.Serialization.dll
[2014.07.11 00:24:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18532_none_a681522274d87bdf\System.Runtime.Serialization.dll
[2012.10.05 12:56:07 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2014.03.17 16:38:28 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22733_none_8fb394768e7ff5d7\System.Runtime.Serialization.dll
[2014.07.08 01:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22743_none_8fb494c08e7f0f2e\System.Runtime.Serialization.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18523_cs-cz_342b81c984259c43\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_cs-cz_342c98db84249bf9\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:37:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22733_cs-cz_1d5edb2f9dcc15f1\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_cs-cz_1d5fdb799dcb2f48\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2014.03.09 23:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18523_none_d6c370aa9c807d5c\System.Runtime.Serialization.dll
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18532_none_d6c487bc9c7f7d12\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2014.03.17 16:38:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22733_none_bff6ca10b626f70a\System.Runtime.Serialization.dll
[2014.07.08 01:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22743_none_bff7ca5ab6261061\System.Runtime.Serialization.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_289b33b6f65f7b95\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.04.12 10:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.22731_cs-cz_291801e80f8701c9\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.04.12 10:34:07 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.18523_cs-cz_5f6f957eb0ca0ea1\System.RunTime.Serialization.Resources.dll
[2011.04.12 10:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.22733_cs-cz_5fee6443c9efc783\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:25:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2014.03.09 23:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_db9e1c77dd57179e\System.Runtime.Serialization.dll
[2014.07.11 00:24:10 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_db9f3389dd561754\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll
[2014.03.17 16:38:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_c4d175ddf6fd914c\System.Runtime.Serialization.dll
[2014.07.08 01:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_c4d27627f6fcaaa3\System.Runtime.Serialization.dll
< *w7lxe* /s >
========== Alternate Data Streams ==========
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:C3306E71
< End of report >
Re: reklama v prohlizeci "Ads by Info"
OTL Extras logfile created on: 19.9.2014 9:36:55 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jakub\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17280)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
15,69 Gb Total Physical Memory | 13,36 Gb Available Physical Memory | 85,13% Memory free
31,38 Gb Paging File | 27,90 Gb Available in Paging File | 88,93% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698,54 Gb Total Space | 33,98 Gb Free Space | 4,86% Space Free | Partition Type: NTFS
Drive E: | 2794,39 Gb Total Space | 56,32 Gb Free Space | 2,02% Space Free | Partition Type: NTFS
Drive G: | 698,63 Gb Total Space | 65,31 Gb Free Space | 9,35% Space Free | Partition Type: NTFS
Computer Name: JAKUB-PC | User Name: Jakub | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)
[HKEY_USERS\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{66C8F9DC-C9B1-4B45-85F2-5C3C48B92232}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{9E3A9260-6F01-46F5-928E-478ECD8A9429}" = lport=5432 | protocol=6 | dir=in | name=postgres |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{002F6294-09B9-4C8C-AC17-7FB68FAA1D7C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{01A725F0-3D8A-4BB5-A45A-A1BCF11AF75A}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\bmdpaneld.exe |
"{0B38F09C-07EA-469E-A353-F9D6165F1059}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"{17C21A85-29F4-4FB3-87FD-22BB692C6ABD}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\euphonixpaneldaemon.exe |
"{2B54C0E8-848F-4E24-B258-D835C37484EE}" = dir=in | app=c:\programdata\blackmagic design\davinci resolve\support\qtdecoder\qtdecoder.exe |
"{30E45214-A88D-41AA-924A-3A0F705EF5C2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{3EB97CEF-9EAE-4568-A5EA-9F02D1FDF9BF}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\resolve.exe |
"{3F70033B-685A-4BE8-9679-8F947A1B35DC}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\jlcooperpaneldaemon.exe |
"{5848527C-8CC5-46A0-B819-F6F025F8B123}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{650B517D-9BE8-4DE1-92AC-9ECFAAC2D181}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\elementspaneldaemon.exe |
"{69372BDD-B838-4C03-8AD6-B017BBC04D00}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{6F8F6735-97BB-4C25-9C6E-05FA85243C96}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{77580B22-B523-4FC0-BBA7-43C45846948D}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\dpdecoder.exe |
"{84AC179C-BB57-43A2-A651-618E35C5696A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{8CFA4849-967B-4188-90B9-E13C8EED1045}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\tangentpaneldaemon.exe |
"{95551BEB-B7AE-4C53-A62E-EBF081BB7309}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{B2C33B42-0747-4736-A7DD-DCF5646E37D5}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\local\temp\svhost.exe |
"{BB8DD446-5DEB-43CF-B924-6A549EB1F9CF}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{BFD3C8A2-DE88-45FF-B4C8-128E37BA880E}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{CAB2A167-B7A6-4028-8DB8-C4705242B8D7}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{D5B0233D-D3AE-43DB-AD73-E490CD8A0A6D}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\local\temp\svhost.exe |
"{DFEC0970-3977-46ED-97BB-789B2F10CAE2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{E3780F27-9C3A-4F71-BE5C-89D73E82D885}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{E84C9BBC-5C16-47AE-931D-4E9D1EECE824}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{E9DE47A1-BE77-40DB-B314-698A7A523AF1}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"{ED95FA75-7555-46D4-A2C6-C5354E3C300F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"TCP Query User{0B205076-3622-4E7E-80CE-BCEB601D1594}C:\programdata\battle.net\agent\agent.3286\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3286\agent.exe |
"TCP Query User{204C0092-78BB-4B66-8D9F-630EFE9AC741}C:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe |
"TCP Query User{248A879F-57C6-4EF3-AF95-122F429ECCDC}C:\program files\blackmagic design\davinci resolve\resolve.exe" = protocol=6 | dir=in | app=c:\program files\blackmagic design\davinci resolve\resolve.exe |
"TCP Query User{3742DB58-E7E4-4F66-91AE-8E17782C2E36}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"TCP Query User{486DCF61-CC85-4EEC-9733-5AC8555595C3}C:\program files\adobe\adobe speedgrade cc\speedgrade.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe speedgrade cc\speedgrade.exe |
"TCP Query User{4A98862D-D2E6-480D-AAE2-83B9D9784185}C:\program files\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
"TCP Query User{562AAE07-5347-4FCC-84DF-AE759DB49D0B}C:\program files\adobe\adobe media encoder cc\adobe media encoder.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe media encoder cc\adobe media encoder.exe |
"TCP Query User{65953894-158D-4647-A1DA-D4403ED3B32E}C:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe |
"TCP Query User{786544E3-2C6E-46DE-92B1-FFF30D642B35}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"TCP Query User{8C6FA4C0-EBEC-425C-9DE8-0111E9D50E52}C:\users\jakub\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{A6AE4F3A-6FA0-486C-AA60-4C6D68C0230F}C:\program files\blackmagic design\davinci resolve\dpdecoder.exe" = protocol=6 | dir=in | app=c:\program files\blackmagic design\davinci resolve\dpdecoder.exe |
"TCP Query User{B642A3D7-3533-4CB5-BF93-2870A43EE156}C:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe" = protocol=6 | dir=in | app=c:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe |
"TCP Query User{D2FC622B-4D19-4914-AB27-6D91CDACA61C}C:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe |
"TCP Query User{DA0F694C-2644-41B0-A990-19AC8A7921B9}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe |
"TCP Query User{DCF2C336-57C7-4D37-9370-58A04DF6587C}C:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe |
"TCP Query User{F3939B16-EF30-4628-B923-332DF43D2F0E}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"TCP Query User{FDAF606B-C4C0-4683-BA9D-F3CB173FF2CA}C:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe |
"TCP Query User{FE02B07C-73EE-474F-928E-09DEDD4CFE22}C:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{0C27FB85-EBFC-4F7B-930F-8E3F2DEC02DF}C:\users\jakub\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{156135AA-8EFF-4633-B458-2BFA17EA8266}C:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{234AFEE8-105F-4201-B61F-276751DB95CA}C:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe |
"UDP Query User{5AB42AFF-EE98-4914-B5C6-E4747FEA3C0A}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"UDP Query User{6424E0BB-67FF-4A22-8325-F503D8E3BB7B}C:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe" = protocol=17 | dir=in | app=c:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe |
"UDP Query User{682B2256-57EE-4F4D-ADE5-BB5B17B173C7}C:\program files\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
"UDP Query User{722F726A-E2DD-47B8-986C-D7C2A7E51763}C:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe |
"UDP Query User{7DCECD42-7419-4BD9-81AF-5160959E7975}C:\program files\adobe\adobe speedgrade cc\speedgrade.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe speedgrade cc\speedgrade.exe |
"UDP Query User{7ED039E8-F891-4BB9-9368-3CD756DE0D85}C:\program files\blackmagic design\davinci resolve\resolve.exe" = protocol=17 | dir=in | app=c:\program files\blackmagic design\davinci resolve\resolve.exe |
"UDP Query User{81973390-E17C-490A-979B-DD6002B32D16}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe |
"UDP Query User{863E90B6-86D5-4925-B142-581B3A5668D4}C:\program files\adobe\adobe media encoder cc\adobe media encoder.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe media encoder cc\adobe media encoder.exe |
"UDP Query User{8787B355-CDA5-480E-975F-063B04EA484F}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"UDP Query User{8937FC48-FB1C-4819-B47B-94ED034612D3}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"UDP Query User{BD006C30-0481-4931-A432-079A1839239E}C:\programdata\battle.net\agent\agent.3286\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3286\agent.exe |
"UDP Query User{C1512585-4BBC-44DC-BD61-12F6A1A09036}C:\program files\blackmagic design\davinci resolve\dpdecoder.exe" = protocol=17 | dir=in | app=c:\program files\blackmagic design\davinci resolve\dpdecoder.exe |
"UDP Query User{C1837EBA-304F-4C4A-952C-CEEF13ED0F73}C:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe |
"UDP Query User{F0B8C5C8-0B6E-43B8-AD2C-73084BC0B594}C:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe |
"UDP Query User{F4A54BAC-679C-4B97-92B7-149ED5627806}C:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{04596C9E-F180-410D-86EA-F61DEE5FB9F4}" = Magic Bullet LUT Buddy 64-bit
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{09536BA1-E498-4CC3-B834-D884A67D7E34}" = Intel® Trusted Connect Service Client
"{11711DB2-1D91-4DE7-9F7B-1764E84E50EE}" = FilmConvert Pro 2 AE
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{273338D7-9088-41B0-B3FE-A79CE024431C}" = mocha Pro V3.2.1-7276
"{33E28B58-7BA0-47B7-AA01-9225ABA2B8A9}" = iTunes
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{43EBA222-8DF7-11E1-862B-F04DA23A5C58}" = Vegas Pro 11.0 (64-bit)
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{456BB962-D316-40BC-8949-4CEC32F2AA7A}" = Keying Suite 64-bit
"{49F6DFDE-8DF7-11E1-9E5F-F04DA23A5C58}" = MSVCRT Redists
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{50813B8C-FCBB-3C61-8039-EAAA93029066}" = Microsoft .NET Framework 4.5.1 (CSY)
"{54E6C675-3AD4-42E4-957F-31666ABF1603}" = Adobe Photoshop Lightroom 5.2 64-bit
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}" = Apple Mobile Device Support
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{909B5F80-F839-4F09-A55D-2029893308F3}" = DaVinci Resolve
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029" = Microsoft .NET Framework 4.5.1 (čeština)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{9497360C-4C41-4E05-81C0-BE56DF2ADFE8}" = Trapcode Particular 64 bit
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{E7676EF4-3896-4B7E-B030-1356EEC477CE}" = Magic Bullet Suite 64-bit
"CameraTracker 1.0v8-CC for AE_is1" = CameraTracker 1.0v8-CC for AE
"CCleaner" = CCleaner
"HUFFYUV" = Huffyuv AVI lossless video codec (Remove Only)
"PostgreSQL 9.2" = PostgreSQL 9.2
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"VLC media player" = VLC media player 2.1.1
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{04366673-BFFF-4604-93F6-400D9716187E}" = RAWanizer
"{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}" = System Requirements Lab for Intel
"{076762A3-8A69-4DBE-B380-9AB06E9B6933}_is1" = GeoVisu Suite 5.0.1
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{10F82E5B-B611-4C65-8F29-666A9EC5680A}_is1" = Red Giant Link
"{185F9795-9663-4F13-9EF9-307A282ADB5A}" = ph
"{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}" = OpenOffice.org 3.4.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBAE18D-4DE4-47AA-83EC-D1B046F262DC}" = PDF Settings CC
"{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A}" = Apple Application Support
"{23D3F585-AE29-4670-8E3E-64A0EFB29240}" = Adobe Acrobat XI Pro
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 55
"{29AA12E9-934C-485E-A9A1-D823FEB29880}" = Adobe SpeedGrade CC
"{2A075BB4-E976-4278-BF3F-E5C6945D84C0}" = bl
"{2B22C750-5C3B-4738-B621-BA786AC7A494}" = Adobe After Effects CC 2014
"{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}" = Adobe Photoshop CC
"{317243C1-6580-4F43-AED7-37D4438C3DD5}" = Adobe After Effects CC
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A5D68E3-CFE0-4235-9796-C2F60E1A8A84}" = TableNinja
"{505FF1AC-E7F5-4462-BBA7-08900E7E9EEF}" = Adobe Premiere Pro CC
"{52E225FC-FCB4-41F7-837B-6E37FB05BD7B}" = Adobe AIR
"{534A7A1A-7102-4AF6-23EA-7CD279C7B625}_is1" = Adobe Update Management Tool
"{6297487E-3778-4F72-B458-55690418DB98}" = Adobe ExtendScript Toolkit CC
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{653C1B5A-3287-47B1-8613-0745D4E771C4}" = Kaspersky Internet Security
"{663DEEEF-EF34-4DCB-8687-73A7AA146E02}" = Adobe Media Encoder CC 2014
"{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1" = Poedit
"{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call
"{6EACD963-139A-4DD5-B993-915AA9085DA5}" = Canon 7D Camera Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.18
"{7DFC5E36-8CC9-4EC5-9C24-A3770A669E3F}_is1" = Shooter Suite v12.3.0
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{99487911-8011-42BC-B594-8B02BFD32B1D}_is1" = Color Suite v11.0
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9bcd38e7-1f9a-4536-8cd4-96448263f367}" = Lightroom 5.2
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A876EBF9-9046-4953-888D-8A60B8777027}" = Avid Codecs LE
"{A8F90989-523C-450A-9793-E950D5E0F8C6}" = Adobe Edge Animate CC
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-1033-FFFF-7760-000000000006}" = Adobe Acrobat XI Pro
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.07) - Czech
"{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B56B95BF-7161-4166-8288-DB1BA9F6C9B8}" = Adobe Flash Professional CC
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{BA731FF4-DA48-D1D7-2BF6-E155339D9A27}" = Adobe® Content Viewer
"{BC448016-6F11-1014-B0EA-97CEE6E26CB6}" = Adobe InDesign CC
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{C28DD992-5B7B-D195-6841-4EC57DF512BD}" = Adobe Story
"{C87834EB-A2A0-B9D4-AA9A-C263D1191051}" = GOSavee
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DE1E055B-679C-42F8-B114-7B6ED0B8ED95}" = Adobe Audition CC
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F2321021-08A2-44D6-B1DF-BDB415F23EC3}" = Adobe Illustrator CC
"{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) OpenCL CPU Runtime
"{FF2A5498-4EFE-430F-A138-7EB365DBEBAD}" = Adobe Shockwave Player 12.0
"Adobe AIR" = Adobe AIR
"Adobe Creative Cloud" = Adobe Creative Cloud
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Advanced Port Scanner v1.3" = Advanced Port Scanner v1.3
"Avidemux 2.5 (64-bit)" = Avidemux 2.5
"AviSynth" = AviSynth 2.5
"Battle.net" = Battle.net
"CineForm NeoScene" = CineForm NeoScene 5.5
"com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Story
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.dmp.contentviewer" = Adobe® Content Viewer
"CoreAAC Audio Decoder" = CoreAAC Audio Decoder (remove only)
"DAEMON Tools Lite" = DAEMON Tools Lite
"Google Chrome" = Google Chrome
"Hugin" = Hugin 2012.0.0
"HxD Hex Editor_is1" = HxD Hex Editor verze 1.7.7.0
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager
"Inkscape" = Inkscape 0.48.4
"InstallShield_{04596C9E-F180-410D-86EA-F61DEE5FB9F4}" = Magic Bullet LUT Buddy 64-bit
"InstallShield_{456BB962-D316-40BC-8949-4CEC32F2AA7A}" = Keying Suite 64-bit
"InstallShield_{9497360C-4C41-4E05-81C0-BE56DF2ADFE8}" = Trapcode Particular 64 bit
"InstallShield_{E7676EF4-3896-4B7E-B030-1356EEC477CE}" = Magic Bullet Suite 64-bit
"InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4}" = Kaspersky Internet Security
"iSkysoft Free video Downloader_is1" = iSkysoft Free Video Downloader(Build 3.0.0.6)
"iTube Player_is1" = iTube Player(Build 1.0.0)
"Miro Video Converter" = Miro Video Converter
"Mozilla Firefox 24.0 (x86 cs)" = Mozilla Firefox 24.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Opera 24.0.1558.61" = Opera Stable 24.0.1558.61
"PDF Splitter and Merger Free_is1" = PDF Splitter and Merger Free 4.0
"ReelSmart Motion Blur 4, After Effects-compatible plugin set" = ReelSmart Motion Blur 4, After Effects-compatible plugin set
"SpeedFan" = SpeedFan (remove only)
"Twixtor 5, After Effects-compatible plugin set" = Twixtor 5, After Effects-compatible plugin set
"VLC media player" = VLC media player 2.1.0
"Xvid_is1" = Xvid 1.2.2 final uninstall
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 19.9.2014 3:34:16 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:38:01 | Computer Name = Jakub-PC | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = Služba Šifrování selhala při volání OnIdentity() v objektu System
Writer. Details: AddCoreCsiFiles : GetNextFileMapContent() failed. System Error: Parametr
není správný. .
Error - 19.9.2014 3:41:47 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:41:47 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:45:43 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:45:43 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:47:11 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:47:11 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:57:13 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:57:13 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
[ System Events ]
Error - 18.9.2014 10:04:57 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:04:58 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:04:58 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:04:59 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:57:30 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Flexlm Service 1 bylo dosaženo časového
limitu (30000 ms).
Error - 18.9.2014 10:57:30 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7000
Description = Služba Flexlm Service 1 neuspěla při spuštění v důsledku následující
chyby: %%1053
Error - 18.9.2014 13:23:50 | Computer Name = Jakub-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalace se nezdařila: Instalování následující aktualizace se nezdařilo
z důvodu chyby (0x800b0100): Aktualizace pro systém ovladače v režimu jádra verze
1.11 pro systém Windows 7 pro systémy pro platformu x64 (KB2685811).
Error - 18.9.2014 17:50:18 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Flexlm Service 1 bylo dosaženo časového
limitu (30000 ms).
Error - 18.9.2014 17:50:18 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7000
Description = Služba Flexlm Service 1 neuspěla při spuštění v důsledku následující
chyby: %%1053
Error - 18.9.2014 21:01:34 | Computer Name = Jakub-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalace se nezdařila: Instalování následující aktualizace se nezdařilo
z důvodu chyby (0x800b0100): Aktualizace pro systém ovladače v režimu jádra verze
1.11 pro systém Windows 7 pro systémy pro platformu x64 (KB2685811).
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jakub\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17280)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
15,69 Gb Total Physical Memory | 13,36 Gb Available Physical Memory | 85,13% Memory free
31,38 Gb Paging File | 27,90 Gb Available in Paging File | 88,93% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698,54 Gb Total Space | 33,98 Gb Free Space | 4,86% Space Free | Partition Type: NTFS
Drive E: | 2794,39 Gb Total Space | 56,32 Gb Free Space | 2,02% Space Free | Partition Type: NTFS
Drive G: | 698,63 Gb Total Space | 65,31 Gb Free Space | 9,35% Space Free | Partition Type: NTFS
Computer Name: JAKUB-PC | User Name: Jakub | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)
[HKEY_USERS\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{66C8F9DC-C9B1-4B45-85F2-5C3C48B92232}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{9E3A9260-6F01-46F5-928E-478ECD8A9429}" = lport=5432 | protocol=6 | dir=in | name=postgres |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{002F6294-09B9-4C8C-AC17-7FB68FAA1D7C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{01A725F0-3D8A-4BB5-A45A-A1BCF11AF75A}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\bmdpaneld.exe |
"{0B38F09C-07EA-469E-A353-F9D6165F1059}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"{17C21A85-29F4-4FB3-87FD-22BB692C6ABD}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\euphonixpaneldaemon.exe |
"{2B54C0E8-848F-4E24-B258-D835C37484EE}" = dir=in | app=c:\programdata\blackmagic design\davinci resolve\support\qtdecoder\qtdecoder.exe |
"{30E45214-A88D-41AA-924A-3A0F705EF5C2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{3EB97CEF-9EAE-4568-A5EA-9F02D1FDF9BF}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\resolve.exe |
"{3F70033B-685A-4BE8-9679-8F947A1B35DC}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\jlcooperpaneldaemon.exe |
"{5848527C-8CC5-46A0-B819-F6F025F8B123}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{650B517D-9BE8-4DE1-92AC-9ECFAAC2D181}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\elementspaneldaemon.exe |
"{69372BDD-B838-4C03-8AD6-B017BBC04D00}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{6F8F6735-97BB-4C25-9C6E-05FA85243C96}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{77580B22-B523-4FC0-BBA7-43C45846948D}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\dpdecoder.exe |
"{84AC179C-BB57-43A2-A651-618E35C5696A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{8CFA4849-967B-4188-90B9-E13C8EED1045}" = dir=in | app=c:\program files\blackmagic design\davinci resolve\tangentpaneldaemon.exe |
"{95551BEB-B7AE-4C53-A62E-EBF081BB7309}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{B2C33B42-0747-4736-A7DD-DCF5646E37D5}" = protocol=17 | dir=in | app=c:\users\jakub\appdata\local\temp\svhost.exe |
"{BB8DD446-5DEB-43CF-B924-6A549EB1F9CF}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{BFD3C8A2-DE88-45FF-B4C8-128E37BA880E}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{CAB2A167-B7A6-4028-8DB8-C4705242B8D7}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{D5B0233D-D3AE-43DB-AD73-E490CD8A0A6D}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\local\temp\svhost.exe |
"{DFEC0970-3977-46ED-97BB-789B2F10CAE2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{E3780F27-9C3A-4F71-BE5C-89D73E82D885}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{E84C9BBC-5C16-47AE-931D-4E9D1EECE824}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{E9DE47A1-BE77-40DB-B314-698A7A523AF1}" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"{ED95FA75-7555-46D4-A2C6-C5354E3C300F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"TCP Query User{0B205076-3622-4E7E-80CE-BCEB601D1594}C:\programdata\battle.net\agent\agent.3286\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3286\agent.exe |
"TCP Query User{204C0092-78BB-4B66-8D9F-630EFE9AC741}C:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe |
"TCP Query User{248A879F-57C6-4EF3-AF95-122F429ECCDC}C:\program files\blackmagic design\davinci resolve\resolve.exe" = protocol=6 | dir=in | app=c:\program files\blackmagic design\davinci resolve\resolve.exe |
"TCP Query User{3742DB58-E7E4-4F66-91AE-8E17782C2E36}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"TCP Query User{486DCF61-CC85-4EEC-9733-5AC8555595C3}C:\program files\adobe\adobe speedgrade cc\speedgrade.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe speedgrade cc\speedgrade.exe |
"TCP Query User{4A98862D-D2E6-480D-AAE2-83B9D9784185}C:\program files\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
"TCP Query User{562AAE07-5347-4FCC-84DF-AE759DB49D0B}C:\program files\adobe\adobe media encoder cc\adobe media encoder.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe media encoder cc\adobe media encoder.exe |
"TCP Query User{65953894-158D-4647-A1DA-D4403ED3B32E}C:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe |
"TCP Query User{786544E3-2C6E-46DE-92B1-FFF30D642B35}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"TCP Query User{8C6FA4C0-EBEC-425C-9DE8-0111E9D50E52}C:\users\jakub\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{A6AE4F3A-6FA0-486C-AA60-4C6D68C0230F}C:\program files\blackmagic design\davinci resolve\dpdecoder.exe" = protocol=6 | dir=in | app=c:\program files\blackmagic design\davinci resolve\dpdecoder.exe |
"TCP Query User{B642A3D7-3533-4CB5-BF93-2870A43EE156}C:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe" = protocol=6 | dir=in | app=c:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe |
"TCP Query User{D2FC622B-4D19-4914-AB27-6D91CDACA61C}C:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe |
"TCP Query User{DA0F694C-2644-41B0-A990-19AC8A7921B9}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe |
"TCP Query User{DCF2C336-57C7-4D37-9370-58A04DF6587C}C:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe |
"TCP Query User{F3939B16-EF30-4628-B923-332DF43D2F0E}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"TCP Query User{FDAF606B-C4C0-4683-BA9D-F3CB173FF2CA}C:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe |
"TCP Query User{FE02B07C-73EE-474F-928E-09DEDD4CFE22}C:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{0C27FB85-EBFC-4F7B-930F-8E3F2DEC02DF}C:\users\jakub\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{156135AA-8EFF-4633-B458-2BFA17EA8266}C:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{234AFEE8-105F-4201-B61F-276751DB95CA}C:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\roaming\torntv.com\torntv downloader.exe |
"UDP Query User{5AB42AFF-EE98-4914-B5C6-E4747FEA3C0A}C:\program files (x86)\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"UDP Query User{6424E0BB-67FF-4A22-8325-F503D8E3BB7B}C:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe" = protocol=17 | dir=in | app=c:\program files (x86)\iskysoft\free video downloader\urlreqservice.exe |
"UDP Query User{682B2256-57EE-4F4D-ADE5-BB5B17B173C7}C:\program files\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
"UDP Query User{722F726A-E2DD-47B8-986C-D7C2A7E51763}C:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\plug-ins\maxon cineware ae\(cineware support)\bin\cinerender 64bit.exe |
"UDP Query User{7DCECD42-7419-4BD9-81AF-5160959E7975}C:\program files\adobe\adobe speedgrade cc\speedgrade.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe speedgrade cc\speedgrade.exe |
"UDP Query User{7ED039E8-F891-4BB9-9368-3CD756DE0D85}C:\program files\blackmagic design\davinci resolve\resolve.exe" = protocol=17 | dir=in | app=c:\program files\blackmagic design\davinci resolve\resolve.exe |
"UDP Query User{81973390-E17C-490A-979B-DD6002B32D16}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe |
"UDP Query User{863E90B6-86D5-4925-B142-581B3A5668D4}C:\program files\adobe\adobe media encoder cc\adobe media encoder.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe media encoder cc\adobe media encoder.exe |
"UDP Query User{8787B355-CDA5-480E-975F-063B04EA484F}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"UDP Query User{8937FC48-FB1C-4819-B47B-94ED034612D3}C:\program files\adobe\adobe after effects cc\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc\support files\afterfx.exe |
"UDP Query User{BD006C30-0481-4931-A432-079A1839239E}C:\programdata\battle.net\agent\agent.3286\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3286\agent.exe |
"UDP Query User{C1512585-4BBC-44DC-BD61-12F6A1A09036}C:\program files\blackmagic design\davinci resolve\dpdecoder.exe" = protocol=17 | dir=in | app=c:\program files\blackmagic design\davinci resolve\dpdecoder.exe |
"UDP Query User{C1837EBA-304F-4C4A-952C-CEEF13ED0F73}C:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe premiere pro cc\adobe premiere pro.exe |
"UDP Query User{F0B8C5C8-0B6E-43B8-AD2C-73084BC0B594}C:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cc 2014\support files\afterfx.exe |
"UDP Query User{F4A54BAC-679C-4B97-92B7-149ED5627806}C:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe media encoder cc 2014\adobe media encoder.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{04596C9E-F180-410D-86EA-F61DEE5FB9F4}" = Magic Bullet LUT Buddy 64-bit
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{09536BA1-E498-4CC3-B834-D884A67D7E34}" = Intel® Trusted Connect Service Client
"{11711DB2-1D91-4DE7-9F7B-1764E84E50EE}" = FilmConvert Pro 2 AE
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{273338D7-9088-41B0-B3FE-A79CE024431C}" = mocha Pro V3.2.1-7276
"{33E28B58-7BA0-47B7-AA01-9225ABA2B8A9}" = iTunes
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{43EBA222-8DF7-11E1-862B-F04DA23A5C58}" = Vegas Pro 11.0 (64-bit)
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{456BB962-D316-40BC-8949-4CEC32F2AA7A}" = Keying Suite 64-bit
"{49F6DFDE-8DF7-11E1-9E5F-F04DA23A5C58}" = MSVCRT Redists
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{50813B8C-FCBB-3C61-8039-EAAA93029066}" = Microsoft .NET Framework 4.5.1 (CSY)
"{54E6C675-3AD4-42E4-957F-31666ABF1603}" = Adobe Photoshop Lightroom 5.2 64-bit
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}" = Apple Mobile Device Support
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{909B5F80-F839-4F09-A55D-2029893308F3}" = DaVinci Resolve
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029" = Microsoft .NET Framework 4.5.1 (čeština)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{9497360C-4C41-4E05-81C0-BE56DF2ADFE8}" = Trapcode Particular 64 bit
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{E7676EF4-3896-4B7E-B030-1356EEC477CE}" = Magic Bullet Suite 64-bit
"CameraTracker 1.0v8-CC for AE_is1" = CameraTracker 1.0v8-CC for AE
"CCleaner" = CCleaner
"HUFFYUV" = Huffyuv AVI lossless video codec (Remove Only)
"PostgreSQL 9.2" = PostgreSQL 9.2
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"VLC media player" = VLC media player 2.1.1
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{04366673-BFFF-4604-93F6-400D9716187E}" = RAWanizer
"{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}" = System Requirements Lab for Intel
"{076762A3-8A69-4DBE-B380-9AB06E9B6933}_is1" = GeoVisu Suite 5.0.1
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{10F82E5B-B611-4C65-8F29-666A9EC5680A}_is1" = Red Giant Link
"{185F9795-9663-4F13-9EF9-307A282ADB5A}" = ph
"{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}" = OpenOffice.org 3.4.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBAE18D-4DE4-47AA-83EC-D1B046F262DC}" = PDF Settings CC
"{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A}" = Apple Application Support
"{23D3F585-AE29-4670-8E3E-64A0EFB29240}" = Adobe Acrobat XI Pro
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 55
"{29AA12E9-934C-485E-A9A1-D823FEB29880}" = Adobe SpeedGrade CC
"{2A075BB4-E976-4278-BF3F-E5C6945D84C0}" = bl
"{2B22C750-5C3B-4738-B621-BA786AC7A494}" = Adobe After Effects CC 2014
"{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}" = Adobe Photoshop CC
"{317243C1-6580-4F43-AED7-37D4438C3DD5}" = Adobe After Effects CC
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A5D68E3-CFE0-4235-9796-C2F60E1A8A84}" = TableNinja
"{505FF1AC-E7F5-4462-BBA7-08900E7E9EEF}" = Adobe Premiere Pro CC
"{52E225FC-FCB4-41F7-837B-6E37FB05BD7B}" = Adobe AIR
"{534A7A1A-7102-4AF6-23EA-7CD279C7B625}_is1" = Adobe Update Management Tool
"{6297487E-3778-4F72-B458-55690418DB98}" = Adobe ExtendScript Toolkit CC
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{653C1B5A-3287-47B1-8613-0745D4E771C4}" = Kaspersky Internet Security
"{663DEEEF-EF34-4DCB-8687-73A7AA146E02}" = Adobe Media Encoder CC 2014
"{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1" = Poedit
"{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call
"{6EACD963-139A-4DD5-B993-915AA9085DA5}" = Canon 7D Camera Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.18
"{7DFC5E36-8CC9-4EC5-9C24-A3770A669E3F}_is1" = Shooter Suite v12.3.0
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{99487911-8011-42BC-B594-8B02BFD32B1D}_is1" = Color Suite v11.0
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9bcd38e7-1f9a-4536-8cd4-96448263f367}" = Lightroom 5.2
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A876EBF9-9046-4953-888D-8A60B8777027}" = Avid Codecs LE
"{A8F90989-523C-450A-9793-E950D5E0F8C6}" = Adobe Edge Animate CC
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-1033-FFFF-7760-000000000006}" = Adobe Acrobat XI Pro
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.07) - Czech
"{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B56B95BF-7161-4166-8288-DB1BA9F6C9B8}" = Adobe Flash Professional CC
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{BA731FF4-DA48-D1D7-2BF6-E155339D9A27}" = Adobe® Content Viewer
"{BC448016-6F11-1014-B0EA-97CEE6E26CB6}" = Adobe InDesign CC
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{C28DD992-5B7B-D195-6841-4EC57DF512BD}" = Adobe Story
"{C87834EB-A2A0-B9D4-AA9A-C263D1191051}" = GOSavee
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DE1E055B-679C-42F8-B114-7B6ED0B8ED95}" = Adobe Audition CC
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F2321021-08A2-44D6-B1DF-BDB415F23EC3}" = Adobe Illustrator CC
"{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) OpenCL CPU Runtime
"{FF2A5498-4EFE-430F-A138-7EB365DBEBAD}" = Adobe Shockwave Player 12.0
"Adobe AIR" = Adobe AIR
"Adobe Creative Cloud" = Adobe Creative Cloud
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Advanced Port Scanner v1.3" = Advanced Port Scanner v1.3
"Avidemux 2.5 (64-bit)" = Avidemux 2.5
"AviSynth" = AviSynth 2.5
"Battle.net" = Battle.net
"CineForm NeoScene" = CineForm NeoScene 5.5
"com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Story
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.dmp.contentviewer" = Adobe® Content Viewer
"CoreAAC Audio Decoder" = CoreAAC Audio Decoder (remove only)
"DAEMON Tools Lite" = DAEMON Tools Lite
"Google Chrome" = Google Chrome
"Hugin" = Hugin 2012.0.0
"HxD Hex Editor_is1" = HxD Hex Editor verze 1.7.7.0
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager
"Inkscape" = Inkscape 0.48.4
"InstallShield_{04596C9E-F180-410D-86EA-F61DEE5FB9F4}" = Magic Bullet LUT Buddy 64-bit
"InstallShield_{456BB962-D316-40BC-8949-4CEC32F2AA7A}" = Keying Suite 64-bit
"InstallShield_{9497360C-4C41-4E05-81C0-BE56DF2ADFE8}" = Trapcode Particular 64 bit
"InstallShield_{E7676EF4-3896-4B7E-B030-1356EEC477CE}" = Magic Bullet Suite 64-bit
"InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4}" = Kaspersky Internet Security
"iSkysoft Free video Downloader_is1" = iSkysoft Free Video Downloader(Build 3.0.0.6)
"iTube Player_is1" = iTube Player(Build 1.0.0)
"Miro Video Converter" = Miro Video Converter
"Mozilla Firefox 24.0 (x86 cs)" = Mozilla Firefox 24.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Opera 24.0.1558.61" = Opera Stable 24.0.1558.61
"PDF Splitter and Merger Free_is1" = PDF Splitter and Merger Free 4.0
"ReelSmart Motion Blur 4, After Effects-compatible plugin set" = ReelSmart Motion Blur 4, After Effects-compatible plugin set
"SpeedFan" = SpeedFan (remove only)
"Twixtor 5, After Effects-compatible plugin set" = Twixtor 5, After Effects-compatible plugin set
"VLC media player" = VLC media player 2.1.0
"Xvid_is1" = Xvid 1.2.2 final uninstall
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1581021673-1230494117-1272436122-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 19.9.2014 3:34:16 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:38:01 | Computer Name = Jakub-PC | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = Služba Šifrování selhala při volání OnIdentity() v objektu System
Writer. Details: AddCoreCsiFiles : GetNextFileMapContent() failed. System Error: Parametr
není správný. .
Error - 19.9.2014 3:41:47 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:41:47 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:45:43 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:45:43 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:47:11 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:47:11 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:57:13 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
Error - 19.9.2014 3:57:13 | Computer Name = Jakub-PC | Source = Bonjour Service | ID = 100
Description = AppendDNSNameString: Illegal empty label in name "."
[ System Events ]
Error - 18.9.2014 10:04:57 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:04:58 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:04:58 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:04:59 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 18.9.2014 10:57:30 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Flexlm Service 1 bylo dosaženo časového
limitu (30000 ms).
Error - 18.9.2014 10:57:30 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7000
Description = Služba Flexlm Service 1 neuspěla při spuštění v důsledku následující
chyby: %%1053
Error - 18.9.2014 13:23:50 | Computer Name = Jakub-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalace se nezdařila: Instalování následující aktualizace se nezdařilo
z důvodu chyby (0x800b0100): Aktualizace pro systém ovladače v režimu jádra verze
1.11 pro systém Windows 7 pro systémy pro platformu x64 (KB2685811).
Error - 18.9.2014 17:50:18 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Flexlm Service 1 bylo dosaženo časového
limitu (30000 ms).
Error - 18.9.2014 17:50:18 | Computer Name = Jakub-PC | Source = Service Control Manager | ID = 7000
Description = Služba Flexlm Service 1 neuspěla při spuštění v důsledku následující
chyby: %%1053
Error - 18.9.2014 21:01:34 | Computer Name = Jakub-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalace se nezdařila: Instalování následující aktualizace se nezdařilo
z důvodu chyby (0x800b0100): Aktualizace pro systém ovladače v režimu jádra verze
1.11 pro systém Windows 7 pro systémy pro platformu x64 (KB2685811).
< End of report >
Re: reklama v prohlizeci "Ads by Info"



Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)
Kód: Vybrat vše
:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]
:services
AdobeARMservice
AdobeFlashPlayerUpdateSvc
:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job
:otl
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes,DefaultScope = {012E1000-F331-11DB-8314-0800200C9A66}
IE - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
FF - prefs.js..browser.search.suggest.enabled: true
FF - prefs.js..browser.search.useDBForOrder: true
O4 - HKLM..\Run: [] File not found
O9:64bit: - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: localhost ([]http in Internet)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: mojebanka.cz ([etrading] https in Trusted sites)
O15 - HKU\S-1-5-21-1581021673-1230494117-1272436122-1000\..Trusted Domains: mojebanka.cz ([www] https in Trusted sites)
O18:64bit: - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2014.09.18 15:25:01 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe
[2014.09.18 15:05:02 | 001,290,240 | ---- | M] () -- C:\Users\Jakub\Desktop\zoek.exe
[2014.09.17 08:10:14 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\389C5208.sys
[2014.09.17 02:37:26 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\417F72B8.sys
[2014.09.16 17:01:22 | 017,292,760 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Jakub\Desktop\mbam-setup-2.0.2.1012.exe
[3 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[9 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[2014.01.24 14:51:32 | 000,000,000 | ---D | M] -- C:\Users\Jakub\AppData\Roaming\Malwarebytes
[1 \zoek_backup\*.tmp files -> \zoek_backup\*.tmp -> ]
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:C3306E71
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2f8a6adc-78a8-4091-aece-dd933e9d77d1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{69deaea4-521e-474a-8ff0-4272d7caf23a}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
"QuickTime Task"=-
""=-
"SunJavaUpdateSched"=-
"iTunesHelper"=-
"Adobe Creative Cloud"=-
Po restartu se objevi novy log, ten sem dejte.
11.10. pro neaktivitu

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).