CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.ac3acm - C:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\WINDOWS\System32\lameACM.acm (
http://www.mp3dev.org/)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.WMV3 - C:\WINDOWS\System32\wmv9vcm.dll (Microsoft Corporation)
Drivers32: VIDC.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2012.12.17 06:35:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Dokumenty\Foto\Nabídka Start\Programy\Pokki
[2012.12.17 06:35:33 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2012.12.17 06:35:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Local Settings\Data aplikací\Pokki
[2012.12.17 06:35:20 | 000,000,000 | ---D | C] -- C:\Program Files\DVDVideoSoftTB
[2012.12.17 06:34:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Data aplikací\DVDVideoSoftIEHelpers
[2012.12.17 06:34:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Data aplikací\OpenCandy
[2012.12.17 01:12:04 | 000,000,000 | ---D | C] -- C:\_OTL
[2012.12.16 22:28:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Data aplikací\PhotoFiltre 7
[2012.12.16 22:27:58 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2012.12.16 22:27:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Local Settings\Data aplikací\AskToolbar
[2012.12.16 22:27:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Local Settings\Data aplikací\APN
[2012.12.16 22:27:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Dokumenty\Foto\Nabídka Start\Programy\PhotoFiltre 7
[2012.12.16 22:27:20 | 000,000,000 | ---D | C] -- C:\Program Files\PhotoFiltre 7
[2012.12.15 22:20:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Plocha\mbar
[2012.12.15 22:09:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kamča\Data aplikací\Malwarebytes
[2012.12.15 22:09:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes' Anti-Malware
[2012.12.15 22:09:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2012.12.15 22:09:44 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012.12.15 22:09:43 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012.06.29 00:32:58 | 000,332,288 | ---- | C] (Jacek Pazera) -- C:\Program Files\mp4toavi.exe
[2012.06.29 00:24:35 | 000,410,624 | ---- | C] (Please suggest one. I haven't come up with a good one yet.) -- C:\Program Files\VirtualDub.exe
========== Files - Modified Within 7 Days ==========
[2012.12.19 00:58:35 | 000,023,388 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace.JPG
[2012.12.19 00:58:00 | 000,000,234 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2012.12.19 00:54:13 | 000,150,528 | ---- | M] () -- C:\Documents and Settings\Kamča\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.12.19 00:53:31 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.12.18 20:31:31 | 000,000,406 | ---- | M] () -- C:\WINDOWS\tasks\RNUpgradeHelperLogonPrompt_Kamča.job
[2012.12.18 20:31:03 | 000,002,278 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.12.18 20:29:02 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.12.18 20:29:01 | 2111,094,784 | -HS- | M] () -- C:\hiberfil.sys
[2012.12.18 20:23:55 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
[2012.12.18 20:22:14 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012.12.18 15:06:52 | 000,000,127 | ---- | M] () -- C:\Documents and Settings\Kamča\Dokumenty\1Click.cfg
[2012.12.17 07:22:00 | 000,261,632 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace.MSWMM
[2012.12.17 06:38:09 | 000,000,400 | ---- | M] () -- C:\WINDOWS\tasks\ReclaimerUpdateFiles_Kamča.job
[2012.12.17 06:37:58 | 000,000,009 | ---- | M] () -- C:\END
[2012.12.17 06:36:08 | 000,000,396 | ---- | M] () -- C:\WINDOWS\tasks\ReclaimerUpdateXML_Kamča.job
[2012.12.17 06:34:48 | 000,001,058 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Free YouTube to MP3 Converter.lnk
[2012.12.17 06:34:48 | 000,000,899 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\DVDVideoSoft Free Studio.lnk
[2012.12.17 06:28:04 | 000,022,261 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_ZÁVĚR2.JPG
[2012.12.17 06:22:57 | 000,023,216 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_ZÁVĚR.JPG
[2012.12.17 06:01:12 | 000,017,081 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\ER.JPG
[2012.12.17 06:00:11 | 000,080,435 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Erik.jpg
[2012.12.17 05:55:06 | 000,078,872 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\kája2.jpg
[2012.12.17 05:53:18 | 000,074,499 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\kája.jpg
[2012.12.17 05:49:01 | 000,017,678 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\ANin.jpg
[2012.12.17 05:37:49 | 000,045,579 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\kmín.jpg
[2012.12.17 05:30:28 | 000,023,739 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\nOMINACE_ÚDRŽBÁŘ.JPG
[2012.12.17 05:28:51 | 000,023,202 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_TECHNIK.JPG
[2012.12.17 05:27:25 | 000,024,455 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_PODNIKOVÝ PSYCHLOG.JPG
[2012.12.17 05:23:17 | 000,022,572 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_účetní.JPG
[2012.12.17 05:21:04 | 000,024,624 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_SEKRETÁŘKA.JPG
[2012.12.17 05:11:51 | 000,021,938 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\oscari-2012-nominace-vyhlaseny.jpg
[2012.12.17 04:25:55 | 000,089,677 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\5_FIN.JPG
[2012.12.16 22:30:35 | 000,010,366 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\Vánocečb.jpg
[2012.12.16 22:27:22 | 000,000,744 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\PhotoFiltre 7.lnk
[2012.12.15 22:20:07 | 013,485,902 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\mbar-1.01.0.1011.zip
[2012.12.15 22:09:47 | 000,000,791 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
[2012.12.13 03:57:05 | 000,271,784 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.12.12 21:02:25 | 000,063,551 | ---- | M] () -- C:\Documents and Settings\Kamča\Plocha\4.JPG
[2012.12.12 16:19:53 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
========== Files Created - No Company Name ==========
[2012.12.18 20:25:19 | 2111,094,784 | -HS- | C] () -- C:\hiberfil.sys
[2012.12.18 20:22:14 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012.12.17 07:11:46 | 000,261,632 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace.MSWMM
[2012.12.17 06:37:56 | 000,000,009 | ---- | C] () -- C:\END
[2012.12.17 06:37:34 | 000,001,644 | ---- | C] () -- C:\Documents and Settings\Kamča\Dokumenty\Foto\Nabídka Start\Programy\Instagrille.lnk
[2012.12.17 06:36:07 | 000,000,406 | ---- | C] () -- C:\WINDOWS\tasks\RNUpgradeHelperLogonPrompt_Kamča.job
[2012.12.17 06:36:07 | 000,000,400 | ---- | C] () -- C:\WINDOWS\tasks\ReclaimerUpdateFiles_Kamča.job
[2012.12.17 06:36:06 | 000,000,396 | ---- | C] () -- C:\WINDOWS\tasks\ReclaimerUpdateXML_Kamča.job
[2012.12.17 06:34:48 | 000,001,058 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Free YouTube to MP3 Converter.lnk
[2012.12.17 06:34:48 | 000,000,899 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\DVDVideoSoft Free Studio.lnk
[2012.12.17 06:28:04 | 000,022,261 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_ZÁVĚR2.JPG
[2012.12.17 06:22:57 | 000,023,216 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_ZÁVĚR.JPG
[2012.12.17 06:01:12 | 000,017,081 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\ER.JPG
[2012.12.17 06:00:11 | 000,080,435 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Erik.jpg
[2012.12.17 05:55:06 | 000,078,872 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\kája2.jpg
[2012.12.17 05:53:17 | 000,074,499 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\kája.jpg
[2012.12.17 05:47:55 | 000,017,678 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\ANin.jpg
[2012.12.17 05:37:11 | 000,045,579 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\kmín.jpg
[2012.12.17 05:30:28 | 000,023,739 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\nOMINACE_ÚDRŽBÁŘ.JPG
[2012.12.17 05:27:25 | 000,024,455 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_PODNIKOVÝ PSYCHLOG.JPG
[2012.12.17 05:25:34 | 000,023,202 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_TECHNIK.JPG
[2012.12.17 05:23:17 | 000,022,572 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_účetní.JPG
[2012.12.17 05:21:04 | 000,024,624 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace_SEKRETÁŘKA.JPG
[2012.12.17 05:19:03 | 000,024,510 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Nominace.JPG
[2012.12.17 05:11:51 | 000,021,938 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\oscari-2012-nominace-vyhlaseny.jpg
[2012.12.17 04:21:31 | 000,089,677 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\5_FIN.JPG
[2012.12.16 22:30:32 | 000,010,366 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\Vánocečb.jpg
[2012.12.16 22:28:08 | 000,000,234 | ---- | C] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2012.12.16 22:27:22 | 000,000,744 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\PhotoFiltre 7.lnk
[2012.12.15 22:19:42 | 013,485,902 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\mbar-1.01.0.1011.zip
[2012.12.15 22:09:47 | 000,000,791 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
[2012.12.12 18:11:42 | 000,063,551 | ---- | C] () -- C:\Documents and Settings\Kamča\Plocha\4.JPG
[2012.12.12 16:19:12 | 000,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012.06.29 00:43:03 | 000,000,336 | ---- | C] () -- C:\Program Files\mp4toavi.ini
[2012.06.29 00:32:59 | 002,537,472 | ---- | C] () -- C:\Program Files\ffmpeg.exe
[2012.06.29 00:24:35 | 000,038,912 | ---- | C] ( ) -- C:\Program Files\AuxSetup.exe
[2012.06.29 00:24:34 | 000,007,680 | ---- | C] ( ) -- C:\Program Files\vdremote.dll
[2012.06.29 00:24:34 | 000,005,632 | ---- | C] ( ) -- C:\Program Files\vdsvrlnk.dll
[2012.06.29 00:24:33 | 000,054,094 | ---- | C] () -- C:\Program Files\VirtualDub.vdi
[2012.06.29 00:24:33 | 000,027,648 | ---- | C] ( ) -- C:\Program Files\sylia.dll
[2012.06.29 00:24:33 | 000,023,040 | ---- | C] ( ) -- C:\Program Files\vdicmdrv.dll
[2012.06.29 00:24:33 | 000,018,321 | ---- | C] () -- C:\Program Files\Copying
[2012.02.15 21:31:16 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2011.10.10 20:53:49 | 000,043,008 | ---- | C] () -- C:\WINDOWS\System32\winbri21.dll
[2011.07.16 19:26:47 | 000,430,080 | ---- | C] () -- C:\WINDOWS\System32\ZSHP1018.EXE
[2011.02.12 18:17:59 | 000,001,269 | ---- | C] () -- C:\Documents and Settings\Kamča\meter001.png
[2011.02.12 18:17:54 | 000,001,269 | ---- | C] () -- C:\Documents and Settings\Kamča\meter000.png
[2008.11.23 16:50:51 | 000,008,891 | ---- | C] () -- C:\Documents and Settings\Kamča\Data aplikací\SmarThruOptions.xml
[2008.10.12 15:18:06 | 000,012,288 | ---- | C] () -- C:\Documents and Settings\Kamča\Data aplikací\Settings.cfg
[2008.10.09 21:08:25 | 000,150,528 | ---- | C] () -- C:\Documents and Settings\Kamča\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.10.08 00:05:47 | 000,000,125 | ---- | C] () -- C:\Documents and Settings\Kamča\Local Settings\Data aplikací\fusioncache.dat
========== ZeroAccess Check ==========
[2006.04.06 10:40:44 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008.04.14 04:21:55 | 001,499,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 11:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 04:22:05 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2008.10.07 23:59:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Data aplikací\Lenovo
[2012.12.06 10:14:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2012.12.15 22:01:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
[2012.02.13 23:29:56 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2008.10.12 15:18:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\EmailNotifier
[2011.08.14 19:43:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ImTOO
[2009.06.01 11:00:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Lenovo
[2012.12.08 22:17:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2011.02.13 00:10:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Musicnotes
[2009.01.04 21:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Camera Device
[2008.10.07 23:52:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC-Doctor
[2012.06.16 20:43:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TuneUpMedia
[2008.10.08 06:37:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\UIB
[2008.10.07 23:46:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Uninstall
[2012.01.08 00:32:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Vodafone
[2008.10.07 23:59:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Data aplikací\Lenovo
[2012.11.08 19:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Data aplikací\TuneUp Software
[2012.12.17 06:41:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Audacity
[2012.06.29 00:25:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\avidemux
[2009.06.01 11:00:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Downloaded Installations
[2012.12.17 06:37:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\DVDVideoSoft
[2012.12.17 06:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\DVDVideoSoftIEHelpers
[2008.10.12 15:18:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Dynamic
[2008.10.12 15:18:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\EmailNotifier
[2012.01.28 17:39:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Garritan
[2011.08.14 19:44:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\ImTOO
[2008.10.08 00:38:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\InterVideo
[2008.10.07 23:59:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Lenovo
[2011.01.30 15:54:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Local
[2012.12.17 06:34:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\OpenCandy
[2012.06.29 00:06:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Oracle
[2012.12.17 00:30:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\PhotoFiltre 7
[2012.01.28 18:02:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Plogue
[2008.10.12 15:18:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\SiteClasses
[2008.10.12 15:18:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Sites
[2008.11.23 16:50:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\SmarThru4
[2012.06.28 22:42:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Sony
[2012.11.03 14:49:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\TuneUp Software
[2012.12.17 06:50:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\TuneUpMedia
[2012.12.18 20:15:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\uTorrent
[2009.03.27 23:31:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\VitySoft
[2012.09.22 14:53:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\vmntoolbar
[2012.01.06 18:55:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Vodafone
[2009.05.18 19:25:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\Avaya
[2012.01.06 18:53:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\Vodafone
[2009.05.26 19:50:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Avaya
[2012.01.16 18:01:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Vodafone
========== Purity Check ==========
========== Custom Scans ==========
< >
[2008.10.08 06:56:31 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2008.10.08 06:56:40 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2012.12.16 22:28:08 | 000,000,234 | ---- | C] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
[2012.12.17 06:36:06 | 000,000,396 | ---- | C] () -- C:\WINDOWS\Tasks\ReclaimerUpdateXML_Kamča.job
[2012.12.17 06:36:07 | 000,000,400 | ---- | C] () -- C:\WINDOWS\Tasks\ReclaimerUpdateFiles_Kamča.job
[2012.12.17 06:36:07 | 000,000,406 | ---- | C] () -- C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_Kamča.job
< >
< MD5 for: ATAPI.SYS >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\I386\sp2.cab:atapi.sys
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.10.21 20:16:23 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.10.21 20:16:23 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2007.04.03 11:39:42 | 000,096,384 | ---- | M] (Microsoft Corporation) MD5=2218E3FD674DC284CE98C807086CAB14 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.18 13:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\I386\AUTOCHK.EXE
[2004.08.18 13:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\I386\sp2.cab:cdrom.sys
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.10.21 20:16:23 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.10.21 20:16:23 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2004.08.18 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.18 13:00:00 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\I386\sp2.cab:hal.dll
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.10.21 20:16:23 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.10.21 20:16:23 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 19:31:28 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.13 19:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2005.09.29 00:35:25 | 000,134,272 | ---- | M] (Microsoft Corporation) MD5=A3961B9456DE472D2F152C9DE950FFA5 -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
[2004.11.16 02:37:04 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=BE7A7927F3BE8068C81577771D33762F -- C:\I386\hal.dll
< MD5 for: SCECLI.DLL >
[2004.08.18 13:00:00 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SERVICES.EXE >
[2009.02.09 12:18:56 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=3D107D45CCFDB266E91D84B52CD7F430 -- C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe
[2004.08.18 13:00:00 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=6E401E61F952FBBF708AFBECEFAFAE81 -- C:\WINDOWS\$NtServicePackUninstall$\services.exe
[2009.02.09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS\system32\dllcache\services.exe
[2009.02.09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS\system32\services.exe
[2008.04.14 04:22:45 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=F0D2AE69035092BF22DAD6B50FAB85C2 -- C:\WINDOWS\$NtUninstallKB956572$\services.exe
[2008.04.14 04:22:45 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=F0D2AE69035092BF22DAD6B50FAB85C2 -- C:\WINDOWS\ServicePackFiles\i386\services.exe
< MD5 for: SVCHOST.EXE >
[2012.09.29 19:54:26 | 000,218,184 | ---- | M] () MD5=8846E87210AD131CF71E3E2E49F647B0 -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.18 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: TCPIP.SYS >
[2006.01.13 18:07:08 | 000,360,448 | ---- | M] (Microsoft Corporation) MD5=5562CC0A47B2AEF06D3417B733F3C195 -- C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys
[2005.05.25 20:07:12 | 000,359,936 | ---- | M] (Microsoft Corporation) MD5=63FDFEA54EB53DE2D863EE454937CE1E -- C:\I386\tcpip.sys
[2008.06.20 11:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.18 13:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2005.04.01 19:35:00 | 000,502,784 | ---- | M] (Microsoft Corporation) MD5=67E4879024A3D0D7AA0A60D3DEDCED06 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2012.09.29 19:54:26 | 000,218,184 | ---- | M] () MD5=8846E87210AD131CF71E3E2E49F647B0 -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< >
< %systemroot%*.* /U /s >
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2012.12.06 17:27:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Adobe
[2012.06.08 18:27:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Apple Computer
[2012.12.17 06:41:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Audacity
[2012.06.29 00:25:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\avidemux
[2011.02.06 20:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\DivX
[2009.06.01 11:00:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Downloaded Installations
[2012.12.17 06:37:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\DVDVideoSoft
[2012.12.17 06:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\DVDVideoSoftIEHelpers
[2008.10.12 15:18:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Dynamic
[2008.10.12 15:18:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\EmailNotifier
[2010.05.11 19:04:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\FastStone
[2012.01.06 19:02:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\FLEXnet
[2012.01.28 17:39:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Garritan
[2011.06.22 12:21:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Google
[2008.10.08 06:56:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Identities
[2011.08.14 19:44:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\ImTOO
[2008.10.08 06:28:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\InstallShield
[2008.10.08 06:27:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Intel
[2008.10.08 00:38:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\InterVideo
[2008.10.07 23:59:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Lenovo
[2011.01.30 15:54:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Local
[2008.10.08 00:10:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Macromedia
[2012.12.15 22:09:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Malwarebytes
[2009.01.10 19:20:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Media Player Classic
[2012.12.06 17:27:36 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Kamča\Data aplikací\Microsoft
[2012.06.16 19:57:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Mozilla
[2012.12.17 06:34:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\OpenCandy
[2012.12.18 20:32:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\OpenOffice.org2
[2012.06.29 00:06:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Oracle
[2012.12.17 00:30:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\PhotoFiltre 7
[2012.01.28 18:02:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Plogue
[2012.06.28 21:48:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Real
[2012.11.24 20:23:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Roxio
[2011.02.13 00:21:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Sibelius Software
[2008.10.12 15:18:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\SiteClasses
[2008.10.12 15:18:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Sites
[2012.12.19 00:50:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Skype
[2011.07.11 23:22:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\skypePM
[2008.11.23 16:50:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\SmarThru4
[2012.06.28 22:42:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Sony
[2008.11.19 16:18:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Sun
[2012.11.03 14:49:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\TuneUp Software
[2012.12.17 06:50:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\TuneUpMedia
[2012.12.18 20:15:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\uTorrent
[2009.03.27 23:31:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\VitySoft
[2012.09.22 14:53:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\vmntoolbar
[2012.01.06 18:55:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Vodafone
[2012.12.09 13:57:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\Winamp
[2008.10.21 22:31:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamča\Data aplikací\WinRAR
< %APPDATA%\*.exe /s >
[2008.10.07 23:43:35 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\Kamča\Data aplikací\Microsoft\Installer\{098122AB-C605-4853-B441-C0A4EB359B75}\ARPPRODUCTICON.exe
[2012.10.22 19:55:34 | 032,487,624 | ---- | M] (SweetLabs,Inc.) -- C:\Documents and Settings\Kamča\Data aplikací\OpenCandy\109C0BEF797C4DED914AD202ED74797B\version507de75649d32.exe
[2012.12.17 03:35:31 | 000,449,176 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Kamča\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.30\agent\rnupgagent.exe
[2012.12.17 06:38:08 | 039,416,288 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Kamča\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.30\agent\stub_data\RealPlayer.exe
[2012.12.17 06:36:13 | 000,765,248 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Kamča\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.30\agent\stub_exe\RealPlayer.exe
[2009.09.12 22:20:28 | 000,245,248 | ---- | M] (
www.half-open.com) -- C:\Documents and Settings\Kamča\Data aplikací\uTorrent\half-open-fix.exe
[2012.12.18 15:08:08 | 000,697,965 | ---- | M] () -- C:\Documents and Settings\Kamča\Data aplikací\uTorrent\unins000.exe
[2012.12.18 19:55:32 | 000,969,104 | ---- | M] (BitTorrent, Inc.) -- C:\Documents and Settings\Kamča\Data aplikací\uTorrent\utorrent.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job >
[2012.12.17 06:38:09 | 000,000,400 | ---- | M] () -- C:\WINDOWS\Tasks\ReclaimerUpdateFiles_Kamča.job
[2012.12.17 06:36:08 | 000,000,396 | ---- | M] () -- C:\WINDOWS\Tasks\ReclaimerUpdateXML_Kamča.job
[2012.12.18 20:31:31 | 000,000,406 | ---- | M] () -- C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_Kamča.job
[2012.12.19 01:08:05 | 000,000,234 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2006.04.06 12:17:32 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2006.04.06 12:17:32 | 000,663,552 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2006.04.06 12:17:32 | 000,466,944 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2012.12.18 20:22:14 | 000,000,664 | ---- | M] () -- C:\WINDOWS\system32\d3d9caps.dat
[2012.12.18 20:29:01 | 000,001,040 | ---- | M] () -- C:\WINDOWS\system32\ICAutoUpdate.log.bak
[2012.12.19 01:10:34 | 009,603,136 | ---- | M] () -- C:\WINDOWS\system32\TPAPSLOG.LOG
[2012.12.19 00:50:16 | 001,724,544 | ---- | M] () -- C:\WINDOWS\system32\TPHDLOG0.LOG
[2012.12.18 20:31:03 | 000,002,278 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Pokki" = "C:\Documents and Settings\Kamča\Local Settings\Data aplikací\Pokki\v0.260.8.396\pokki.exe" -- [2012.11.28 18:23:22 | 005,453,656 | ---- | M] (Pokki)
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 04:22:17 | 000,015,360 | ---- | M] (Microsoft Corporation)
< >
< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2012.09.07 15:36:25 | 000,917,984 | ---- | M] (Mozilla Corporation) MD5=9C376F42BDE37F18D0A39AF7415D9BE6 -- C:\Program Files\Mozilla Firefox\firefox.exe
< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2012.11.01 00:07:10 | 000,643,104 | ---- | M] (Microsoft Corporation) MD5=F77E696991FED3B92E09AC0CE91E9BCA -- C:\Program Files\Internet Explorer\iexplore.exe
< %PROGRAMFILES%\Opera\opera.exe /md5 >
< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2012.12.05 02:15:17 | 001,242,728 | ---- | M] (Google Inc.) MD5=2D08AC1443FFA7FBED9A5EA5FD49AEB3 -- C:\Program Files\Google\Chrome\Application\chrome.exe
< >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.12.19 00:53:31 | 000,000,512 | ---- | M] () MD5=1F7BEF536F6AAE27219F26306F1E457C -- C:\PhysicalMBR.bin
< >
< *crack* /s >
< *keygen* /s >
< *loader* /s >
[2012.12.05 17:05:16 | 000,000,847 | ---- | M] () -- \_OTL\MovedFiles\12182012_202337\C_Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\chrome\CT2269050\content\tb\al\ac\img\ajax-loader.gif
[2012.12.05 17:05:16 | 000,001,135 | ---- | M] () -- \_OTL\MovedFiles\12182012_202337\C_Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\chrome\CT2269050\content\tb\al\ac\img\loader-icon.png
[2012.12.05 17:05:16 | 000,003,208 | ---- | M] () -- \_OTL\MovedFiles\12182012_202337\C_Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\chrome\CT2269050\content\tb\al\ui\gf\img\loader.gif
[2012.12.05 17:05:18 | 000,001,849 | ---- | M] () -- \_OTL\MovedFiles\12182012_202337\C_Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\chrome\CT2269050\content\tb\al\wa\TWITTER\resources\ajax-loader.gif
[2012.08.26 15:01:12 | 000,010,145 | ---- | M] () -- \_OTL\MovedFiles\12182012_202337\C_Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\modules\ExternalLibraryLoader.jsm
[2012.05.29 21:29:48 | 000,012,512 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2012.05.29 21:29:48 | 000,000,319 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012.11.08 15:16:50 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.gif
[2012.11.08 15:16:50 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.png
[2012.11.08 15:16:50 | 000,009,772 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\retina\
loader@2x.png
[2012.12.17 06:38:13 | 000,011,148 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\DVDVideoSoft\logs\YTVDownloader_extra2.log
[2011.06.20 13:07:48 | 000,009,767 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\conduitCommon\modules\3.5.0.12\ExternalLibraryLoader.jsm
[2011.08.15 19:55:28 | 000,010,145 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\conduitCommon\modules\3.6.0.10\ExternalLibraryLoader.jsm
[2011.10.02 11:57:40 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\conduitCommon\modules\3.7.0.6\ExternalLibraryLoader.jsm
[2011.11.08 06:53:58 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\conduitCommon\modules\3.8.0.8\ExternalLibraryLoader.jsm
[2011.12.06 05:04:42 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\conduitCommon\modules\3.8.1.0\ExternalLibraryLoader.jsm
[2012.01.11 11:53:08 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\conduitCommon\modules\3.9.0.3\ExternalLibraryLoader.jsm
[2012.05.08 08:18:02 | 000,005,469 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\extensions\
OneClickDownload@OneClickDownload.com\resources\api-utils\lib\content\loader.js
[2012.05.08 08:18:02 | 000,004,163 | ---- | M] () -- \Documents and Settings\Kamča\Data aplikací\Mozilla\Firefox\Profiles\ozkpb2ok.default\extensions\
OneClickDownload@OneClickDownload.com\resources\api-utils\lib\windows\loader.js
[2012.12.17 06:37:12 | 000,003,487 | ---- | M] () -- \Documents and Settings\Kamča\Local Settings\Data aplikací\Pokki\Pokkies\83453a3d886e527a470b5bb8291dd338de4b1e44\d0d77660f5d44982e5596df6c243188829587859\img\loader.gif
[2012.12.17 06:37:09 | 000,003,030 | ---- | M] () -- \Documents and Settings\Kamča\Local Settings\Data aplikací\Pokki\Pokkies\83453a3d886e527a470b5bb8291dd338de4b1e44\d0d77660f5d44982e5596df6c243188829587859\js\lib\downloader.js
[2012.10.08 20:01:34 | 000,004,613 | ---- | M] () -- \Documents and Settings\Kamča\Local Settings\Data aplikací\Pokki\Pokkies\f22abfeae27a67446927d078890381efc546d3e1\664a3b0c4e63cec28da744182558fd1b0ac78bfa\img\store\loader.gif
[2012.10.25 00:34:24 | 000,004,613 | ---- | M] () -- \Documents and Settings\Kamča\Local Settings\Data aplikací\Pokki\v0.260.8.396\frames\frame\loader.gif
[2012.12.18 23:50:59 | 000,105,903 | ---- | M] () -- \Documents and Settings\Kamča\Local Settings\Temporary Internet Files\Content.IE5\BNYEHBW0\AdLoader-427d9fd2a91e2f2c023aefe9f69a01d0.min[1].js
[2012.12.18 23:50:57 | 000,000,753 | ---- | M] () -- \Documents and Settings\Kamča\Local Settings\Temporary Internet Files\Content.IE5\BNYEHBW0\AdLoader[1].htm
[2004.08.18 13:00:00 | 000,017,423 | ---- | M] () -- \I386\DMLOADER.DL_
[2004.08.18 13:00:00 | 000,115,153 | ---- | M] () -- \I386\OSLOADER.EX_
[2004.08.18 13:00:00 | 000,132,757 | ---- | M] () -- \I386\OSLOADER.NT_
[2012.08.21 20:36:30 | 001,910,376 | ---- | M] () -- \Program Files\1ClickDownload\1ClickDownloader.exe
[2012.08.07 12:10:22 | 000,042,949 | ---- | M] () -- \Program Files\1ClickDownload\oneclickdownloader11.crx
[2012.10.15 15:47:06 | 000,905,376 | ---- | M] () -- \Program Files\Common Files\DVDVideoSoft\lib\DVSVideoDownloader.dll
[2008.04.25 05:32:26 | 000,053,511 | R--- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\Common Resources\Shared\Generic\Images\themeloader_default_chapter.jpg
[2008.04.25 05:32:26 | 000,053,511 | R--- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\Common Resources\Shared\Generic\Images\themeloader_default_menu.jpg
[2008.04.25 06:06:06 | 000,007,307 | R--- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\Common Resources\Shared\Locale\1033\Strings\RCMFormatLoaderStrings.xml
[2008.04.25 07:11:54 | 000,215,536 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFileLoader.dll
[2008.04.25 07:12:08 | 000,084,464 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderBMP.dll
[2008.04.25 07:12:14 | 000,072,176 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderECDC.dll
[2008.04.25 07:12:20 | 000,092,656 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderGIF.dll
[2008.04.25 07:12:26 | 000,207,344 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderJPG2.dll
[2008.04.25 07:16:48 | 000,072,176 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderMDC.dll
[2008.04.25 07:12:32 | 000,133,616 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderPNG.dll
[2008.04.25 07:12:38 | 000,104,944 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderTIFF.dll
[2008.04.25 07:14:52 | 000,154,096 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\LeResourceLoader.dll
[2012.10.15 15:47:04 | 000,041,096 | ---- | M] () -- \Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.DVSVideoDownloader.dll
[2011.06.23 06:25:46 | 000,143,872 | ---- | M] () -- \Program Files\ImTOO\MOV Converter 6\vcloader.exe
[2011.06.23 06:26:20 | 000,005,932 | ---- | M] () -- \Program Files\ImTOO\MOV Converter 6\plugins\loader.avsi
[2008.05.30 08:41:12 | 000,022,528 | ---- | M] () -- \Program Files\OpenOffice.org 2.4\program\javaloader.uno.dll
[2008.05.30 23:03:18 | 000,006,528 | ---- | M] () -- \Program Files\OpenOffice.org 2.4\program\pythonloader.py
[2008.05.30 13:41:00 | 000,016,384 | ---- | M] () -- \Program Files\OpenOffice.org 2.4\program\pythonloader.uno.dll
[2008.05.31 00:10:48 | 000,000,171 | ---- | M] () -- \Program Files\OpenOffice.org 2.4\program\pythonloader.uno.ini
[2008.05.30 13:26:44 | 000,004,064 | ---- | M] () -- \Program Files\OpenOffice.org 2.4\program\classes\unoloader.jar
[2008.04.24 07:27:22 | 000,059,888 | ---- | M] () -- \Program Files\Roxio\PhotoSuite 10\FormatLoaderMPS.dll
[2008.04.24 07:28:28 | 000,055,792 | ---- | M] () -- \Program Files\Roxio\PhotoSuite 10\PPSFormatLoaderPZP.dll
[2008.04.25 09:58:24 | 000,141,808 | ---- | M] () -- \Program Files\Roxio\VideoCore 10\VOBLoader.ax
[2008.04.25 09:24:12 | 000,170,480 | ---- | M] () -- \Program Files\Roxio\VideoUI 10\DSThemeLoader.dll
[2008.04.25 09:25:08 | 000,113,136 | ---- | M] () -- \Program Files\Roxio\VideoUI 10\DVDFormatLoaderPlugIn.dll
[2008.04.25 08:26:08 | 000,053,511 | R--- | M] () -- \Program Files\Roxio\VideoUI 10\Skins\Default\Generic\Images\themeloader_default_chapter.jpg
[2008.04.25 08:26:08 | 000,053,511 | R--- | M] () -- \Program Files\Roxio\VideoUI 10\Skins\Default\Generic\Images\themeloader_default_menu.jpg
[2008.04.25 08:26:08 | 000,040,000 | R--- | M] () -- \Program Files\Roxio\VideoUI 10\Skins\Default\Generic\Images\themeloader_hourglass.jpg
[2006.08.18 17:50:06 | 000,110,592 | ---- | M] () -- \Program Files\SmarThru 4\WebUploaderLib.dll
[2006.08.18 17:41:14 | 000,000,200 | ---- | M] () -- \Program Files\SmarThru 4\English\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:16 | 000,000,190 | ---- | M] () -- \Program Files\SmarThru 4\French\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:18 | 000,000,196 | ---- | M] () -- \Program Files\SmarThru 4\German\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:38 | 000,000,189 | ---- | M] () -- \Program Files\SmarThru 4\Hungarian\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:34 | 000,000,184 | ---- | M] () -- \Program Files\SmarThru 4\Chinese (Traditional)\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:12 | 000,000,178 | ---- | M] () -- \Program Files\SmarThru 4\Chinese\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:20 | 000,000,194 | ---- | M] () -- \Program Files\SmarThru 4\Italian\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:22 | 000,000,191 | ---- | M] () -- \Program Files\SmarThru 4\Korean\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:40 | 000,000,194 | ---- | M] () -- \Program Files\SmarThru 4\Polish\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:28 | 000,000,190 | ---- | M] () -- \Program Files\SmarThru 4\Portuguese (Brazilian)\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:30 | 000,000,192 | ---- | M] () -- \Program Files\SmarThru 4\Portuguese\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:24 | 000,000,200 | ---- | M] () -- \Program Files\SmarThru 4\Russian\SmarThruRes-WebUploaderLib.xml
[2006.08.18 17:41:26 | 000,000,193 | ---- | M] () -- \Program Files\SmarThru 4\Spanish\SmarThruRes-WebUploaderLib.xml
[2012.03.11 00:30:23 | 000,002,716 | ---- | M] () -- \Program Files\TuneUpMedia\xre\components\uriloader.xpt
[2012.03.11 00:30:21 | 000,000,039 | ---- | M] () -- \Program Files\TuneUpMedia\xre\chrome\pageloader.manifest
[2012.03.11 00:30:21 | 000,012,337 | ---- | M] () -- \Program Files\TuneUpMedia\xre\chrome\pageloader\content\pageloader.js
[2012.03.11 00:30:21 | 000,002,492 | ---- | M] () -- \Program Files\TuneUpMedia\xre\chrome\pageloader\content\pageloader.xul
[2008.06.20 18:13:32 | 000,044,032 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2008.01.09 16:34:02 | 000,462,848 | ---- | M] () -- \SWTOOLS\Apps\skypedl\LenovoApplicationDownloader.exe
[2008.01.14 17:00:54 | 000,000,504 | ---- | M] () -- \SWTOOLS\Apps\skypedl\LenovoApplicationDownloader.ini
[2008.01.14 17:00:26 | 000,000,510 | ---- | M] () -- \SWTOOLS\Apps\skypedl\LenovoApplicationDownloader64.ini
[2008.01.14 17:00:54 | 000,000,504 | ---- | M] () -- \SWTOOLS\Apps\skypedl\LenovoApplicationDownloader86.ini
[2004.08.18 13:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2008.10.09 18:30:20 | 000,082,784 | ---- | M] () -- \WINDOWS\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2012.12.18 15:06:39 | 000,024,966 | ---- | M] () -- \WINDOWS\Prefetch\1CLICKDOWNLOADER.EXE-208A49F1.pf
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 19:31:47 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 19:31:48 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
< End of report >