Re: po nové instalaci Win XP je PC pomalé-prosím o kontrolu
Napsal: 13 kvě 2012 17:54
[2012.05.13 18:07:54 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.05.13 17:05:19 | 003,291,066 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\pokus (2).jpg
[2012.05.13 17:02:12 | 000,065,703 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\pokus.jpg
[2012.05.13 16:51:26 | 000,000,338 | ---- | C] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-PETR-Eva.job
[2012.05.13 16:44:20 | 000,095,266 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\LOGOBLOGG.JPG
[2012.05.13 10:27:54 | 002,450,623 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_7998.jpg
[2012.05.13 10:27:17 | 002,668,194 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_7986.jpg
[2012.05.13 10:27:09 | 002,463,174 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_7985.jpg
[2012.05.13 10:23:25 | 003,177,873 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8224.jpg
[2012.05.13 10:23:02 | 003,058,472 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8163.jpg
[2012.05.13 10:22:34 | 002,221,289 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8142.jpg
[2012.05.13 10:22:26 | 002,417,305 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8140.jpg
[2012.05.13 10:21:58 | 002,538,052 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8138.jpg
[2012.05.13 08:51:54 | 000,375,851 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8023.jpg
[2012.05.12 17:05:39 | 000,001,487 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\ICQ7.7.lnk
[2012.05.12 16:56:58 | 000,781,383 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\RSIT.exe
[2012.05.12 10:14:47 | 000,010,752 | ---- | C] () -- C:\Documents and Settings\Eva\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.05.12 09:27:13 | 000,016,152 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\hulala.pdf
[2012.05.12 09:01:13 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.err
[2012.05.11 19:48:27 | 000,000,854 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\Adobe Photoshop CS5.lnk
[2012.05.11 19:47:55 | 000,000,854 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Photoshop CS5.lnk
[2012.05.11 19:46:44 | 000,000,816 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Bridge CS5.lnk
[2012.05.11 19:46:08 | 000,000,909 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Device Central CS5.lnk
[2012.05.11 19:43:45 | 000,001,000 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Extension Manager CS5.lnk
[2012.05.11 19:43:31 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe ExtendScript Toolkit CS5.lnk
[2012.05.11 19:14:58 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2012.05.11 19:11:39 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\DAEMON Tools Lite.lnk
[2012.05.11 19:05:48 | 000,000,968 | ---- | C] () -- C:\Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.nast
[2012.05.11 12:27:25 | 000,001,822 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Adobe Photoshop Lightroom 2.lnk
[2012.05.11 12:27:24 | 000,001,816 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Photoshop Lightroom 2.lnk
[2012.05.11 12:20:40 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2012.05.11 12:18:39 | 000,000,067 | ---- | C] () -- C:\WINDOWS\DVDRegionFree.INI
[2012.05.11 12:16:20 | 000,000,670 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\DVD Shrink 3.2.lnk
[2012.05.11 12:10:47 | 000,002,369 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Nero StartSmart.lnk
[2012.05.11 11:55:11 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2012.05.11 11:46:41 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
[2012.05.11 11:42:17 | 000,000,821 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Revo Uninstaller Pro.lnk
[2012.05.11 11:38:08 | 000,001,704 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Zoner Photo Studio 14.lnk
[2012.05.10 23:21:38 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2012.05.10 23:21:37 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2012.05.10 23:18:03 | 000,021,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
[2012.05.10 22:43:27 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.05.10 22:43:27 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\dllcache\iacenc.dll
[2012.05.10 22:34:17 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012.05.10 22:34:13 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2012.05.10 22:34:10 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2012.05.10 22:34:10 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2012.05.10 22:34:09 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2012.05.10 22:34:09 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2012.05.10 22:33:46 | 000,001,592 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2012.05.10 22:33:33 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2012.05.10 22:33:33 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2012.05.10 22:33:33 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2012.05.10 22:33:33 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2012.05.10 22:33:33 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2012.05.10 22:33:32 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2012.05.10 22:33:32 | 000,809,394 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2012.05.10 22:33:32 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2012.05.10 22:32:46 | 003,569,128 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.05.10 22:31:57 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2012.05.10 22:31:53 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2012.05.10 22:24:15 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader X.lnk
[2012.05.10 21:54:06 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
[2012.05.10 21:52:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2012.05.10 21:52:20 | 000,000,724 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2012.05.10 21:41:40 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2012.05.10 21:41:40 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2012.05.10 21:41:40 | 000,001,746 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2012.05.10 21:41:40 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2012.05.10 21:41:39 | 000,674,168 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2012.05.10 21:41:39 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2012.05.10 21:41:39 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2012.05.10 21:41:39 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2012.05.10 21:41:39 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2012.05.10 21:41:39 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2012.05.10 21:41:39 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2012.05.10 21:41:39 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2012.05.10 21:41:39 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2012.05.10 21:41:39 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2012.05.10 21:41:39 | 000,071,732 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2012.05.10 21:41:39 | 000,058,456 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2012.05.10 21:41:39 | 000,028,164 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2012.05.10 21:41:38 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2012.05.10 21:41:38 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2012.05.10 21:41:37 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2012.05.10 21:41:37 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2012.05.10 21:41:37 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2012.05.10 21:41:37 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2012.05.10 21:41:37 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2012.05.10 21:41:37 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2012.05.10 21:41:37 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2012.05.10 21:41:37 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2012.05.10 21:41:37 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2012.05.10 21:41:37 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2012.05.10 21:41:37 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2012.05.10 21:41:37 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2012.05.10 21:41:37 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2012.05.10 21:41:37 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2012.05.10 21:41:37 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2012.05.10 21:41:37 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2012.05.10 21:41:37 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2012.05.10 21:41:37 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2012.05.10 21:41:37 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2012.05.10 21:41:37 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2012.05.10 21:41:37 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2012.05.10 21:41:37 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2012.05.10 21:41:37 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2012.05.10 21:41:37 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2012.05.10 21:41:36 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2012.05.10 21:41:36 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2012.05.10 21:41:36 | 000,086,446 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2012.05.10 21:41:36 | 000,066,170 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2012.05.10 21:41:36 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2012.05.10 21:41:36 | 000,001,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2012.05.10 21:41:36 | 000,001,480 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2012.05.10 21:41:36 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2012.05.10 21:41:36 | 000,001,465 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2012.05.10 21:41:36 | 000,001,462 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2012.05.10 21:41:36 | 000,001,263 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2012.05.10 21:41:36 | 000,001,059 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2012.05.10 21:41:36 | 000,001,042 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2012.05.10 21:41:36 | 000,001,034 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2012.05.10 21:41:36 | 000,000,809 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2012.05.10 21:41:36 | 000,000,806 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2012.05.10 21:41:36 | 000,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2012.05.10 21:41:36 | 000,000,777 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2012.05.10 21:41:36 | 000,000,774 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2012.05.10 21:41:36 | 000,000,722 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2012.05.10 21:41:36 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2012.05.10 21:41:35 | 000,036,870 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2012.05.10 21:41:35 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2012.05.10 21:41:35 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2012.05.10 21:41:34 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2012.05.10 21:41:34 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2012.05.10 21:41:34 | 000,184,130 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2012.05.10 21:41:34 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2012.05.10 21:41:34 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2012.05.10 21:41:34 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2012.05.10 21:41:34 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2012.05.10 21:41:34 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2012.05.10 21:41:34 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2012.05.10 21:41:34 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2012.05.10 21:41:34 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2012.05.10 21:41:34 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2012.05.10 21:41:33 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2012.05.10 21:35:22 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2012.05.10 21:35:21 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2012.05.10 21:35:18 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2012.05.10 21:16:51 | 000,040,960 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2012.05.10 21:07:11 | 000,520,192 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2012.05.10 21:07:04 | 000,006,005 | R--- | C] () -- C:\WINDOWS\System32\atifglpf.xml
[2012.05.10 21:07:00 | 000,112,421 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2012.05.10 21:06:57 | 001,114,674 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.cpa
[2012.05.10 21:06:57 | 000,058,560 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativckxx.vp
[2012.05.10 21:06:57 | 000,026,912 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativvpxx.vp
[2012.05.10 21:06:57 | 000,000,929 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.vp
[2012.05.10 20:57:15 | 000,001,689 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
[2012.05.10 20:53:32 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Outlook Express.lnk
[2012.05.10 20:53:29 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Internet Explorer.lnk
[2012.05.10 20:53:23 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Vzdálená pomoc.lnk
[2012.05.10 20:53:23 | 000,000,788 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Windows Media Player.lnk
[2012.05.10 20:50:49 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2012.05.10 20:50:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2012.05.10 20:49:22 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2012.05.10 20:49:05 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2012.05.10 20:48:57 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2012.05.10 20:48:56 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2012.05.10 20:48:52 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2012.05.10 20:48:35 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2012.05.10 20:48:26 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2012.05.10 20:48:10 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2012.05.10 20:47:10 | 000,002,552 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2012.05.10 20:47:10 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2012.05.10 20:47:10 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2012.05.10 20:47:10 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2012.05.10 20:47:10 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2012.05.10 20:47:01 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2012.05.10 20:47:01 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2012.05.10 20:47:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2012.05.10 20:45:26 | 000,000,786 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows Movie Maker.lnk
[2012.05.10 20:45:10 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2012.05.10 20:44:27 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2012.05.10 20:44:27 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2012.05.10 20:44:18 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2012.05.10 20:42:46 | 000,000,615 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows Messenger.lnk
[2012.05.10 20:42:45 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2012.05.10 20:41:45 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2012.05.10 20:41:44 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prérijní vítr.bmp
[2012.05.10 20:41:44 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Omítka Santa Fe.bmp
[2012.05.10 20:41:44 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Řeka Sumida.bmp
[2012.05.10 20:41:44 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Zelený kámen.bmp
[2012.05.10 20:41:44 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2012.05.10 20:41:44 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybách.bmp
[2012.05.10 20:41:44 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Zrnko kávy.bmp
[2012.05.10 20:41:44 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Textura peří.bmp
[2012.05.10 20:41:43 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Mýdlové bubliny.bmp
[2012.05.10 20:41:43 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Modrá krajka 16.bmp
[2012.05.10 20:41:40 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2012.05.10 20:41:39 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2012.05.10 20:41:38 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2012.05.10 20:41:29 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
========== LOP Check ==========
[2012.05.10 20:56:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2012.05.11 19:09:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2012.05.11 19:49:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\regid.1986-12.com.adobe
[2012.05.11 11:39:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Zoner
[2012.05.11 19:10:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\DAEMON Tools Lite
[2012.05.12 17:08:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\ICQ
[2012.05.11 11:39:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Zoner
========== Purity Check ==========
========== Custom Scans ==========
< >
< >
< MD5 for: AGP440.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.04 00:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.17 17:49:22 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2004.08.04 00:59:54 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
< MD5 for: CRYPTSVC.DLL >
[2004.08.17 17:49:04 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=70D2A1756F4B2067658A186C963FCABD -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.04.14 08:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 08:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll
< MD5 for: EVENTLOG.DLL >
[2008.04.14 08:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 08:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2004.08.17 17:49:08 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: EXPLORER.EXE >
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.17 17:49:24 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.14 00:01:34 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.14 00:01:30 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2004.08.04 00:59:10 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
< MD5 for: CHANGER.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.14 00:11:00 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys
< MD5 for: ISAPNP.SYS >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2004.09.24 10:31:01 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=1091528512E4DD7ED5FDDCC4DF1C53D7 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys
< MD5 for: LSASS.EXE >
[2004.08.17 17:49:24 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 08:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 08:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe
< MD5 for: NDIS.SYS >
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.04 01:14:30 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys
< MD5 for: NETLOGON.DLL >
[2004.08.17 17:49:14 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 08:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 08:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll
< MD5 for: SCECLI.DLL >
[2004.08.17 17:49:18 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SMSS.EXE >
[2004.08.17 17:49:28 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2008.04.14 08:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 08:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
< MD5 for: SVCHOST.EXE >
[2012.04.04 15:56:38 | 000,199,240 | ---- | M] () MD5=097D0E812D7A9A3101CE46CB2BE0474D -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.17 17:49:28 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: TCPIP.SYS >
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB2509553$\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\SoftwareDistribution\Download\fe608cd8d2b8f77abaee7a69a696bcf7\sp3gdr\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.04 01:14:42 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\SoftwareDistribution\Download\fe608cd8d2b8f77abaee7a69a696bcf7\sp3qfe\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.17 17:49:28 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2012.04.04 15:56:38 | 000,199,240 | ---- | M] () MD5=097D0E812D7A9A3101CE46CB2BE0474D -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2004.08.17 17:49:28 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< MD5 for: WS2_32.DLL >
[2004.08.17 17:49:22 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 08:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 08:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[1 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\2cfd959ccb60a23103082e7f0c8fee1c\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\2cfd959ccb60a23103082e7f0c8fee1c\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\482c3daa7530bcee9ee19a42e573f646\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\482c3daa7530bcee9ee19a42e573f646\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\741de8ed746d624fbf64b4b2dfcc6b20\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\741de8ed746d624fbf64b4b2dfcc6b20\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\851a69e5c9fef905f7724b836208b4e4\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\851a69e5c9fef905f7724b836208b4e4\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\afc0c6ad8d70f354180f357a6b65cf4a\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\afc0c6ad8d70f354180f357a6b65cf4a\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\cb0f38ed286b9b731b45e45765e59ca2\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\cb0f38ed286b9b731b45e45765e59ca2\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\f12cc915d5db471639c6d4bf58b18baf\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\f12cc915d5db471639c6d4bf58b18baf\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\f7209051c8f89b2168bc2707ba9bdfae\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\f7209051c8f89b2168bc2707ba9bdfae\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\fa5f3faa18dd78f73661bcbc7c66f517\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\fa5f3faa18dd78f73661bcbc7c66f517\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2012.05.12 09:18:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Adobe
[2012.05.11 12:14:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Ahead
[2012.05.10 21:14:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\ATI
[2012.05.11 19:10:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\DAEMON Tools Lite
[2012.05.12 17:08:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\ICQ
[2012.05.10 20:53:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Identities
[2012.05.10 22:25:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Macromedia
[2012.05.11 11:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Malwarebytes
[2012.05.12 16:49:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Media Player Classic
[2012.05.12 19:42:32 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Eva\Data aplikací\Microsoft
[2012.05.10 21:52:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Mozilla
[2012.05.10 21:25:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\WinRAR
[2012.05.11 11:39:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Zoner
< %APPDATA%\*.exe /s >
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2012.05.10 22:31:56 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2012.05.10 22:31:56 | 000,663,552 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2012.05.10 22:31:56 | 000,458,752 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
[2012.05.11 19:10:55 | 000,242,240 | ---- | M] (DT Soft Ltd) -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
< %systemroot%\system32\*.* /3 >
[2012.05.10 20:50:00 | 000,000,261 | ---- | M] () -- C:\WINDOWS\system32\$winnt$.inf
[2012.05.11 11:57:15 | 000,016,832 | ---- | M] () -- C:\WINDOWS\system32\amcompat.tlb
[2012.05.10 23:21:38 | 000,146,650 | ---- | M] () -- C:\WINDOWS\system32\BuzzingBee.wav
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\cdplayer.exe.manifest
[2012.05.10 20:57:11 | 000,002,552 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[2012.05.10 20:42:44 | 000,021,812 | ---- | M] () -- C:\WINDOWS\system32\emptyregdb.dat
[2012.05.10 23:05:26 | 000,419,488 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\system32\FlashPlayerApp.exe
[2012.05.10 23:05:25 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
[2012.05.11 21:20:07 | 003,569,128 | ---- | M] () -- C:\WINDOWS\system32\FNTCACHE.DAT
[2012.05.10 22:39:26 | 000,000,000 | ---- | M] () -- C:\WINDOWS\system32\h323log.txt
[2012.05.10 20:45:39 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\system32\logonui.exe.manifest
[2012.05.10 23:21:38 | 000,940,794 | ---- | M] () -- C:\WINDOWS\system32\LoopyMusic.wav
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\ncpa.cpl.manifest
[2012.05.11 11:57:15 | 000,023,392 | ---- | M] () -- C:\WINDOWS\system32\nscompat.tlb
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\nwc.cpl.manifest
[2012.05.13 18:01:53 | 000,068,916 | ---- | M] () -- C:\WINDOWS\system32\perfc005.dat
[2012.05.13 18:01:53 | 000,058,732 | ---- | M] () -- C:\WINDOWS\system32\perfc009.dat
[2012.05.13 18:01:53 | 000,389,938 | ---- | M] () -- C:\WINDOWS\system32\perfh005.dat
[2012.05.13 18:01:53 | 000,392,432 | ---- | M] () -- C:\WINDOWS\system32\perfh009.dat
[2012.05.13 18:01:51 | 000,920,954 | ---- | M] () -- C:\WINDOWS\system32\PerfStringBackup.INI
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\sapi.cpl.manifest
[2012.05.10 21:46:53 | 000,000,247 | ---- | M] () -- C:\WINDOWS\system32\spupdwxp.log
[2012.05.10 22:57:53 | 000,005,194 | ---- | M] () -- C:\WINDOWS\system32\TZLog.log
[2012.05.10 20:45:39 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\system32\WindowsLogon.manifest
[2012.05.13 17:57:30 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\wuaucpl.cpl.manifest
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 08:52:18 | 000,015,360 | ---- | M] (Microsoft Corporation)
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.05.13 18:07:54 | 000,000,512 | ---- | M] () MD5=409F20B6EBCB5AFD82B08F29A797597E -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2012.05.10 21:25:04 | 000,000,371 | ---- | M] () -- \Documents and Settings\Eva\Recent\Crack.lnk
< *keygen* /s >
< *loader* /s >
[2012.05.13 12:23:02 | 000,000,275 | ---- | M] () -- \Documents and Settings\Eva\Data aplikací\Macromedia\Flash Player\#SharedObjects\9BW7XR9R\cz.gamelicker.com\games\2011\11\11\truck-loader-3-1321006375-aa8ab6b5.swf\truckloader2.sol
[2012.05.13 11:39:26 | 000,000,730 | ---- | M] () -- \Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.err
[2012.05.13 11:46:51 | 000,000,968 | ---- | M] () -- \Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.nast
[2012.05.11 19:01:47 | 000,904,192 | ---- | M] () -- \Documents and Settings\Eva\Plocha\SRDownloader.exe
[2010.03.09 04:28:40 | 005,297,608 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\Photodownloader.exe
[2010.03.09 01:38:58 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 01:38:58 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,308 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2007.06.27 19:03:00 | 000,177,448 | ---- | M] () -- \Program Files\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2006.10.26 13:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006.10.26 13:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2012.05.12 17:04:43 | 000,005,795 | ---- | M] () -- \Program Files\ICQ7.7\imApp\theme\IMAGES\XtraPreloader\loader.jpg
[2012.05.12 17:04:44 | 000,004,180 | ---- | M] () -- \Program Files\ICQ7.7\imApp\theme\IMAGES\XtraPreloader\zlango-preloader.png
[2012.05.12 17:04:43 | 000,005,520 | ---- | M] () -- \Program Files\ICQ7.7\imApp\theme\MUICoreLib\xtraLoader.swf
[2012.05.12 17:06:57 | 000,000,402 | ---- | M] () -- \Program Files\ICQ7.7\Xtraz\icq\content\profile_lightboxs\preloader.html
[2012.03.30 16:03:44 | 000,430,080 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Facebook\ZPSFacebookUploader.exe
[2010.04.29 15:12:40 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Facebook\ZPSPluginLoader.exe
[2012.03.30 16:14:22 | 000,444,416 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Flickr\ZPSFlickrUploader.exe
[2010.04.29 15:12:42 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Flickr\ZPSPluginLoader.exe
[2011.03.08 18:09:04 | 000,194,048 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Picasa\ZPSPicasaUploader.exe
[2010.04.29 15:12:40 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Picasa\ZPSPluginLoader.exe
[2012.03.26 16:05:34 | 000,102,792 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Program32\8bfLoader.exe
[2012.03.26 16:05:48 | 000,016,776 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Program32\WICLoader.exe
[2004.08.17 17:49:06 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2012.05.11 06:34:22 | 000,082,784 | ---- | M] () -- \WINDOWS\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2012.05.13 11:28:30 | 000,081,636 | ---- | M] () -- \WINDOWS\Prefetch\SRDOWNLOADER.EXE-03D48170.pf
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.14 00:01:48 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.14 00:01:50 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
< *minodlogin* /s >
< *tnod* /s >
< *AutoKMS* /s >
< *activator* /s >
< *serial* /s >
[2012.05.11 11:58:25 | 000,000,593 | ---- | M] () -- \Documents and Settings\Eva\Recent\serial number.lnk
[2012.05.10 22:26:33 | 000,000,572 | ---- | M] () -- \Documents and Settings\Eva\Recent\Serial Zoner 14.lnk
[2012.05.11 12:28:14 | 000,000,733 | ---- | M] () -- \Documents and Settings\Eva\Recent\Serial.lnk
[2004.08.17 17:44:16 | 000,064,640 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\serial.sys
[2012.05.10 21:08:51 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2005.09.23 07:28:56 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2008.04.14 07:47:26 | 000,028,416 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\grserial.sys
[2008.04.14 07:51:10 | 000,064,256 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\serial.sys
[2007.06.27 18:29:04 | 000,131,072 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\system.runtime.serialization.formatters.soap.dll
[2004.09.24 10:30:36 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2004.09.24 10:31:31 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2004.09.24 10:30:36 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2004.09.24 10:31:31 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 07:51:10 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys
< *w7lxe* /s >
< End of report >
[2012.05.13 17:05:19 | 003,291,066 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\pokus (2).jpg
[2012.05.13 17:02:12 | 000,065,703 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\pokus.jpg
[2012.05.13 16:51:26 | 000,000,338 | ---- | C] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-PETR-Eva.job
[2012.05.13 16:44:20 | 000,095,266 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\LOGOBLOGG.JPG
[2012.05.13 10:27:54 | 002,450,623 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_7998.jpg
[2012.05.13 10:27:17 | 002,668,194 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_7986.jpg
[2012.05.13 10:27:09 | 002,463,174 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_7985.jpg
[2012.05.13 10:23:25 | 003,177,873 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8224.jpg
[2012.05.13 10:23:02 | 003,058,472 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8163.jpg
[2012.05.13 10:22:34 | 002,221,289 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8142.jpg
[2012.05.13 10:22:26 | 002,417,305 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8140.jpg
[2012.05.13 10:21:58 | 002,538,052 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8138.jpg
[2012.05.13 08:51:54 | 000,375,851 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\IMG_8023.jpg
[2012.05.12 17:05:39 | 000,001,487 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\ICQ7.7.lnk
[2012.05.12 16:56:58 | 000,781,383 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\RSIT.exe
[2012.05.12 10:14:47 | 000,010,752 | ---- | C] () -- C:\Documents and Settings\Eva\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.05.12 09:27:13 | 000,016,152 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\hulala.pdf
[2012.05.12 09:01:13 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.err
[2012.05.11 19:48:27 | 000,000,854 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\Adobe Photoshop CS5.lnk
[2012.05.11 19:47:55 | 000,000,854 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Photoshop CS5.lnk
[2012.05.11 19:46:44 | 000,000,816 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Bridge CS5.lnk
[2012.05.11 19:46:08 | 000,000,909 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Device Central CS5.lnk
[2012.05.11 19:43:45 | 000,001,000 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Extension Manager CS5.lnk
[2012.05.11 19:43:31 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe ExtendScript Toolkit CS5.lnk
[2012.05.11 19:14:58 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2012.05.11 19:11:39 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\DAEMON Tools Lite.lnk
[2012.05.11 19:05:48 | 000,000,968 | ---- | C] () -- C:\Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.nast
[2012.05.11 12:27:25 | 000,001,822 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Adobe Photoshop Lightroom 2.lnk
[2012.05.11 12:27:24 | 000,001,816 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Photoshop Lightroom 2.lnk
[2012.05.11 12:20:40 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2012.05.11 12:18:39 | 000,000,067 | ---- | C] () -- C:\WINDOWS\DVDRegionFree.INI
[2012.05.11 12:16:20 | 000,000,670 | ---- | C] () -- C:\Documents and Settings\Eva\Plocha\DVD Shrink 3.2.lnk
[2012.05.11 12:10:47 | 000,002,369 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Nero StartSmart.lnk
[2012.05.11 11:55:11 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2012.05.11 11:46:41 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
[2012.05.11 11:42:17 | 000,000,821 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Revo Uninstaller Pro.lnk
[2012.05.11 11:38:08 | 000,001,704 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Zoner Photo Studio 14.lnk
[2012.05.10 23:21:38 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2012.05.10 23:21:37 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2012.05.10 23:18:03 | 000,021,736 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
[2012.05.10 22:43:27 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.05.10 22:43:27 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\dllcache\iacenc.dll
[2012.05.10 22:34:17 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012.05.10 22:34:13 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2012.05.10 22:34:10 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2012.05.10 22:34:10 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2012.05.10 22:34:09 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2012.05.10 22:34:09 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2012.05.10 22:33:46 | 000,001,592 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2012.05.10 22:33:33 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2012.05.10 22:33:33 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2012.05.10 22:33:33 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2012.05.10 22:33:33 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2012.05.10 22:33:33 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2012.05.10 22:33:32 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2012.05.10 22:33:32 | 000,809,394 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2012.05.10 22:33:32 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2012.05.10 22:32:46 | 003,569,128 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.05.10 22:31:57 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2012.05.10 22:31:53 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2012.05.10 22:24:15 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader X.lnk
[2012.05.10 21:54:06 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
[2012.05.10 21:52:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2012.05.10 21:52:20 | 000,000,724 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2012.05.10 21:41:40 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2012.05.10 21:41:40 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2012.05.10 21:41:40 | 000,001,746 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2012.05.10 21:41:40 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2012.05.10 21:41:39 | 000,674,168 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2012.05.10 21:41:39 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2012.05.10 21:41:39 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2012.05.10 21:41:39 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2012.05.10 21:41:39 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2012.05.10 21:41:39 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2012.05.10 21:41:39 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2012.05.10 21:41:39 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2012.05.10 21:41:39 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2012.05.10 21:41:39 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2012.05.10 21:41:39 | 000,071,732 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2012.05.10 21:41:39 | 000,058,456 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2012.05.10 21:41:39 | 000,028,164 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2012.05.10 21:41:38 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2012.05.10 21:41:38 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2012.05.10 21:41:37 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2012.05.10 21:41:37 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2012.05.10 21:41:37 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2012.05.10 21:41:37 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2012.05.10 21:41:37 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2012.05.10 21:41:37 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2012.05.10 21:41:37 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2012.05.10 21:41:37 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2012.05.10 21:41:37 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2012.05.10 21:41:37 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2012.05.10 21:41:37 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2012.05.10 21:41:37 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2012.05.10 21:41:37 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2012.05.10 21:41:37 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2012.05.10 21:41:37 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2012.05.10 21:41:37 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2012.05.10 21:41:37 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2012.05.10 21:41:37 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2012.05.10 21:41:37 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2012.05.10 21:41:37 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2012.05.10 21:41:37 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2012.05.10 21:41:37 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2012.05.10 21:41:37 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2012.05.10 21:41:37 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2012.05.10 21:41:36 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2012.05.10 21:41:36 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2012.05.10 21:41:36 | 000,086,446 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2012.05.10 21:41:36 | 000,066,170 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2012.05.10 21:41:36 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2012.05.10 21:41:36 | 000,001,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2012.05.10 21:41:36 | 000,001,480 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2012.05.10 21:41:36 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2012.05.10 21:41:36 | 000,001,465 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2012.05.10 21:41:36 | 000,001,462 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2012.05.10 21:41:36 | 000,001,263 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2012.05.10 21:41:36 | 000,001,059 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2012.05.10 21:41:36 | 000,001,042 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2012.05.10 21:41:36 | 000,001,034 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2012.05.10 21:41:36 | 000,000,809 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2012.05.10 21:41:36 | 000,000,806 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2012.05.10 21:41:36 | 000,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2012.05.10 21:41:36 | 000,000,777 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2012.05.10 21:41:36 | 000,000,774 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2012.05.10 21:41:36 | 000,000,722 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2012.05.10 21:41:36 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2012.05.10 21:41:35 | 000,036,870 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2012.05.10 21:41:35 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2012.05.10 21:41:35 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2012.05.10 21:41:34 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2012.05.10 21:41:34 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2012.05.10 21:41:34 | 000,184,130 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2012.05.10 21:41:34 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2012.05.10 21:41:34 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2012.05.10 21:41:34 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2012.05.10 21:41:34 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2012.05.10 21:41:34 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2012.05.10 21:41:34 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2012.05.10 21:41:34 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2012.05.10 21:41:34 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2012.05.10 21:41:34 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2012.05.10 21:41:33 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2012.05.10 21:35:22 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2012.05.10 21:35:21 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2012.05.10 21:35:18 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2012.05.10 21:16:51 | 000,040,960 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2012.05.10 21:07:11 | 000,520,192 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2012.05.10 21:07:04 | 000,006,005 | R--- | C] () -- C:\WINDOWS\System32\atifglpf.xml
[2012.05.10 21:07:00 | 000,112,421 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2012.05.10 21:06:57 | 001,114,674 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.cpa
[2012.05.10 21:06:57 | 000,058,560 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativckxx.vp
[2012.05.10 21:06:57 | 000,026,912 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativvpxx.vp
[2012.05.10 21:06:57 | 000,000,929 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.vp
[2012.05.10 20:57:15 | 000,001,689 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
[2012.05.10 20:53:32 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Outlook Express.lnk
[2012.05.10 20:53:29 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Internet Explorer.lnk
[2012.05.10 20:53:23 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Vzdálená pomoc.lnk
[2012.05.10 20:53:23 | 000,000,788 | ---- | C] () -- C:\Documents and Settings\Eva\Nabídka Start\Programy\Windows Media Player.lnk
[2012.05.10 20:50:49 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2012.05.10 20:50:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2012.05.10 20:49:22 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2012.05.10 20:49:05 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2012.05.10 20:48:57 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2012.05.10 20:48:56 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2012.05.10 20:48:52 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2012.05.10 20:48:35 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2012.05.10 20:48:26 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2012.05.10 20:48:10 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2012.05.10 20:47:10 | 000,002,552 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2012.05.10 20:47:10 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2012.05.10 20:47:10 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2012.05.10 20:47:10 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2012.05.10 20:47:10 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2012.05.10 20:47:01 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2012.05.10 20:47:01 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2012.05.10 20:47:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2012.05.10 20:45:26 | 000,000,786 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows Movie Maker.lnk
[2012.05.10 20:45:10 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2012.05.10 20:44:27 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2012.05.10 20:44:27 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2012.05.10 20:44:18 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2012.05.10 20:42:46 | 000,000,615 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows Messenger.lnk
[2012.05.10 20:42:45 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2012.05.10 20:41:45 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2012.05.10 20:41:44 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prérijní vítr.bmp
[2012.05.10 20:41:44 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Omítka Santa Fe.bmp
[2012.05.10 20:41:44 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Řeka Sumida.bmp
[2012.05.10 20:41:44 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Zelený kámen.bmp
[2012.05.10 20:41:44 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2012.05.10 20:41:44 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybách.bmp
[2012.05.10 20:41:44 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Zrnko kávy.bmp
[2012.05.10 20:41:44 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Textura peří.bmp
[2012.05.10 20:41:43 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Mýdlové bubliny.bmp
[2012.05.10 20:41:43 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Modrá krajka 16.bmp
[2012.05.10 20:41:40 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2012.05.10 20:41:39 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2012.05.10 20:41:38 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2012.05.10 20:41:29 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
========== LOP Check ==========
[2012.05.10 20:56:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2012.05.11 19:09:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2012.05.11 19:49:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\regid.1986-12.com.adobe
[2012.05.11 11:39:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Zoner
[2012.05.11 19:10:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\DAEMON Tools Lite
[2012.05.12 17:08:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\ICQ
[2012.05.11 11:39:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Zoner
========== Purity Check ==========
========== Custom Scans ==========
< >
< >
< MD5 for: AGP440.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.04 00:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.17 17:49:22 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2004.08.04 00:59:54 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
< MD5 for: CRYPTSVC.DLL >
[2004.08.17 17:49:04 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=70D2A1756F4B2067658A186C963FCABD -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.04.14 08:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 08:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll
< MD5 for: EVENTLOG.DLL >
[2008.04.14 08:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 08:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2004.08.17 17:49:08 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: EXPLORER.EXE >
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.17 17:49:24 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.14 00:01:34 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.14 00:01:30 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2004.08.04 00:59:10 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
< MD5 for: CHANGER.SYS >
[2004.08.17 17:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.14 00:11:00 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys
< MD5 for: ISAPNP.SYS >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2004.09.24 10:31:01 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=1091528512E4DD7ED5FDDCC4DF1C53D7 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys
< MD5 for: LSASS.EXE >
[2004.08.17 17:49:24 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 08:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 08:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe
< MD5 for: NDIS.SYS >
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.04 01:14:30 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys
< MD5 for: NETLOGON.DLL >
[2004.08.17 17:49:14 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 08:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 08:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll
< MD5 for: SCECLI.DLL >
[2004.08.17 17:49:18 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SMSS.EXE >
[2004.08.17 17:49:28 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2008.04.14 08:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 08:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
< MD5 for: SVCHOST.EXE >
[2012.04.04 15:56:38 | 000,199,240 | ---- | M] () MD5=097D0E812D7A9A3101CE46CB2BE0474D -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.17 17:49:28 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: TCPIP.SYS >
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB2509553$\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\SoftwareDistribution\Download\fe608cd8d2b8f77abaee7a69a696bcf7\sp3gdr\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.04 01:14:42 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\SoftwareDistribution\Download\fe608cd8d2b8f77abaee7a69a696bcf7\sp3qfe\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.17 17:49:28 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2012.04.04 15:56:38 | 000,199,240 | ---- | M] () MD5=097D0E812D7A9A3101CE46CB2BE0474D -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2004.08.17 17:49:28 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< MD5 for: WS2_32.DLL >
[2004.08.17 17:49:22 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 08:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 08:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[1 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\2cfd959ccb60a23103082e7f0c8fee1c\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\2cfd959ccb60a23103082e7f0c8fee1c\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\482c3daa7530bcee9ee19a42e573f646\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\482c3daa7530bcee9ee19a42e573f646\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\741de8ed746d624fbf64b4b2dfcc6b20\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\741de8ed746d624fbf64b4b2dfcc6b20\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\851a69e5c9fef905f7724b836208b4e4\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\851a69e5c9fef905f7724b836208b4e4\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\afc0c6ad8d70f354180f357a6b65cf4a\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\afc0c6ad8d70f354180f357a6b65cf4a\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\cb0f38ed286b9b731b45e45765e59ca2\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\cb0f38ed286b9b731b45e45765e59ca2\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\f12cc915d5db471639c6d4bf58b18baf\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\f12cc915d5db471639c6d4bf58b18baf\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\f7209051c8f89b2168bc2707ba9bdfae\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\f7209051c8f89b2168bc2707ba9bdfae\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\fa5f3faa18dd78f73661bcbc7c66f517\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\fa5f3faa18dd78f73661bcbc7c66f517\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2012.05.12 09:18:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Adobe
[2012.05.11 12:14:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Ahead
[2012.05.10 21:14:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\ATI
[2012.05.11 19:10:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\DAEMON Tools Lite
[2012.05.12 17:08:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\ICQ
[2012.05.10 20:53:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Identities
[2012.05.10 22:25:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Macromedia
[2012.05.11 11:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Malwarebytes
[2012.05.12 16:49:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Media Player Classic
[2012.05.12 19:42:32 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Eva\Data aplikací\Microsoft
[2012.05.10 21:52:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Mozilla
[2012.05.10 21:25:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\WinRAR
[2012.05.11 11:39:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Eva\Data aplikací\Zoner
< %APPDATA%\*.exe /s >
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2012.05.10 22:31:56 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2012.05.10 22:31:56 | 000,663,552 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2012.05.10 22:31:56 | 000,458,752 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
[2012.05.11 19:10:55 | 000,242,240 | ---- | M] (DT Soft Ltd) -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
< %systemroot%\system32\*.* /3 >
[2012.05.10 20:50:00 | 000,000,261 | ---- | M] () -- C:\WINDOWS\system32\$winnt$.inf
[2012.05.11 11:57:15 | 000,016,832 | ---- | M] () -- C:\WINDOWS\system32\amcompat.tlb
[2012.05.10 23:21:38 | 000,146,650 | ---- | M] () -- C:\WINDOWS\system32\BuzzingBee.wav
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\cdplayer.exe.manifest
[2012.05.10 20:57:11 | 000,002,552 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[2012.05.10 20:42:44 | 000,021,812 | ---- | M] () -- C:\WINDOWS\system32\emptyregdb.dat
[2012.05.10 23:05:26 | 000,419,488 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\system32\FlashPlayerApp.exe
[2012.05.10 23:05:25 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
[2012.05.11 21:20:07 | 003,569,128 | ---- | M] () -- C:\WINDOWS\system32\FNTCACHE.DAT
[2012.05.10 22:39:26 | 000,000,000 | ---- | M] () -- C:\WINDOWS\system32\h323log.txt
[2012.05.10 20:45:39 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\system32\logonui.exe.manifest
[2012.05.10 23:21:38 | 000,940,794 | ---- | M] () -- C:\WINDOWS\system32\LoopyMusic.wav
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\ncpa.cpl.manifest
[2012.05.11 11:57:15 | 000,023,392 | ---- | M] () -- C:\WINDOWS\system32\nscompat.tlb
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\nwc.cpl.manifest
[2012.05.13 18:01:53 | 000,068,916 | ---- | M] () -- C:\WINDOWS\system32\perfc005.dat
[2012.05.13 18:01:53 | 000,058,732 | ---- | M] () -- C:\WINDOWS\system32\perfc009.dat
[2012.05.13 18:01:53 | 000,389,938 | ---- | M] () -- C:\WINDOWS\system32\perfh005.dat
[2012.05.13 18:01:53 | 000,392,432 | ---- | M] () -- C:\WINDOWS\system32\perfh009.dat
[2012.05.13 18:01:51 | 000,920,954 | ---- | M] () -- C:\WINDOWS\system32\PerfStringBackup.INI
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\sapi.cpl.manifest
[2012.05.10 21:46:53 | 000,000,247 | ---- | M] () -- C:\WINDOWS\system32\spupdwxp.log
[2012.05.10 22:57:53 | 000,005,194 | ---- | M] () -- C:\WINDOWS\system32\TZLog.log
[2012.05.10 20:45:39 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\system32\WindowsLogon.manifest
[2012.05.13 17:57:30 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[2012.05.10 20:45:32 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\system32\wuaucpl.cpl.manifest
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 08:52:18 | 000,015,360 | ---- | M] (Microsoft Corporation)
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.05.13 18:07:54 | 000,000,512 | ---- | M] () MD5=409F20B6EBCB5AFD82B08F29A797597E -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2012.05.10 21:25:04 | 000,000,371 | ---- | M] () -- \Documents and Settings\Eva\Recent\Crack.lnk
< *keygen* /s >
< *loader* /s >
[2012.05.13 12:23:02 | 000,000,275 | ---- | M] () -- \Documents and Settings\Eva\Data aplikací\Macromedia\Flash Player\#SharedObjects\9BW7XR9R\cz.gamelicker.com\games\2011\11\11\truck-loader-3-1321006375-aa8ab6b5.swf\truckloader2.sol
[2012.05.13 11:39:26 | 000,000,730 | ---- | M] () -- \Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.err
[2012.05.13 11:46:51 | 000,000,968 | ---- | M] () -- \Documents and Settings\Eva\Local Settings\Data aplikací\SRDownloader.nast
[2012.05.11 19:01:47 | 000,904,192 | ---- | M] () -- \Documents and Settings\Eva\Plocha\SRDownloader.exe
[2010.03.09 04:28:40 | 005,297,608 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\Photodownloader.exe
[2010.03.09 01:38:58 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 01:38:58 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,308 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2007.06.27 19:03:00 | 000,177,448 | ---- | M] () -- \Program Files\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2006.10.26 13:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006.10.26 13:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2012.05.12 17:04:43 | 000,005,795 | ---- | M] () -- \Program Files\ICQ7.7\imApp\theme\IMAGES\XtraPreloader\loader.jpg
[2012.05.12 17:04:44 | 000,004,180 | ---- | M] () -- \Program Files\ICQ7.7\imApp\theme\IMAGES\XtraPreloader\zlango-preloader.png
[2012.05.12 17:04:43 | 000,005,520 | ---- | M] () -- \Program Files\ICQ7.7\imApp\theme\MUICoreLib\xtraLoader.swf
[2012.05.12 17:06:57 | 000,000,402 | ---- | M] () -- \Program Files\ICQ7.7\Xtraz\icq\content\profile_lightboxs\preloader.html
[2012.03.30 16:03:44 | 000,430,080 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Facebook\ZPSFacebookUploader.exe
[2010.04.29 15:12:40 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Facebook\ZPSPluginLoader.exe
[2012.03.30 16:14:22 | 000,444,416 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Flickr\ZPSFlickrUploader.exe
[2010.04.29 15:12:42 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Flickr\ZPSPluginLoader.exe
[2011.03.08 18:09:04 | 000,194,048 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Picasa\ZPSPicasaUploader.exe
[2010.04.29 15:12:40 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Plugins\Picasa\ZPSPluginLoader.exe
[2012.03.26 16:05:34 | 000,102,792 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Program32\8bfLoader.exe
[2012.03.26 16:05:48 | 000,016,776 | ---- | M] () -- \Program Files\Zoner\Photo Studio 14\Program32\WICLoader.exe
[2004.08.17 17:49:06 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2012.05.11 06:34:22 | 000,082,784 | ---- | M] () -- \WINDOWS\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2012.05.13 11:28:30 | 000,081,636 | ---- | M] () -- \WINDOWS\Prefetch\SRDOWNLOADER.EXE-03D48170.pf
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.14 00:01:48 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.14 00:01:50 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
< *minodlogin* /s >
< *tnod* /s >
< *AutoKMS* /s >
< *activator* /s >
< *serial* /s >
[2012.05.11 11:58:25 | 000,000,593 | ---- | M] () -- \Documents and Settings\Eva\Recent\serial number.lnk
[2012.05.10 22:26:33 | 000,000,572 | ---- | M] () -- \Documents and Settings\Eva\Recent\Serial Zoner 14.lnk
[2012.05.11 12:28:14 | 000,000,733 | ---- | M] () -- \Documents and Settings\Eva\Recent\Serial.lnk
[2004.08.17 17:44:16 | 000,064,640 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\serial.sys
[2012.05.10 21:08:51 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2005.09.23 07:28:56 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2008.04.14 07:47:26 | 000,028,416 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\grserial.sys
[2008.04.14 07:51:10 | 000,064,256 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\serial.sys
[2007.06.27 18:29:04 | 000,131,072 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\system.runtime.serialization.formatters.soap.dll
[2004.09.24 10:30:36 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2004.09.24 10:31:31 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2004.09.24 10:30:36 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2004.09.24 10:31:31 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 07:51:10 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys
< *w7lxe* /s >
< End of report >