Stránka 2 z 3

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 14 črc 2013 18:58
od yozefb
Logfile of random's system information tool 1.09 (written by random/random)
Run by YozefB at 2013-07-14 19:57:46
Microsoft Windows XP Professional Service Pack 3
System drive C: has 13 GB (10%) free of 128 GB
Total RAM: 3070 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:57:51, on 14. 7. 2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\PicPick\picpick.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
C:\Program Files\Dokan\DokanLibrary\mounter.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\TeamViewer\Version7\TeamViewer.exe
C:\Program Files\TeamViewer\Version7\tv_w32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\YozefB\Desktop\RSIT.exe
C:\Program Files\trend micro\YozefB.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKCU\..\Run: [PicPick Start] C:\Program Files\PicPick\picpick.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %SystemRoot%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %SystemRoot%\Network Diagnostic\xpnetdiag.exe (file missing)
O16 - DPF: {41EF3CD2-D8CC-4438-84B1-280BB4E77C8E} (F5 Networks Dynamic Application Tunnel Control) - https://labs.usa.hp.com/vdesk/terminal/ ... ,1204,1610
O16 - DPF: {45B69029-F3AB-4204-92DE-D5140C3E8E74} (F5 Networks Auto Update) - C:\DOCUME~1\YozefB\LOCALS~1\Temp\IXP000.TMP\InstallerControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 1182253468
O16 - DPF: {E0FF21FA-B857-45C5-8621-F120A0C17FF2} (F5 Networks Host Control) - https://labs.usa.hp.com/vdesk/terminal/ ... ,1204,1604
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)
O23 - Service: DokanMounter - Unknown owner - C:\Program Files\Dokan\DokanLibrary\mounter.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe

--
End of file - 8861 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default

prefs.js - "extensions.enabledItems" - "{B13721C7-F507-4982-B2E5-502A71474FED}:3.3.0.3971, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.4.48, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, jqs@sun.com:1.0, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, bkmrksync@nokia.com:1.0.0.732, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}"=C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{B13721C7-F507-4982-B2E5-502A71474FED}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
npwachk.dll
QuickTimePlugin.class

C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\
50e803249daa6@50e803249dae0.com
firefox@ghostery.com
jid1-yZwVFzbsyfMrqQ@jetpack
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-04 462752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-11-15 151552]
"P17Helper"=Rundll32 P17.dll,P17Helper []
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-09-06 413696]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2012-04-24 20065896]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2013-01-31 15517472]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2013-01-31 108832]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2013-02-21 2238704]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 947152]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PicPick Start"=C:\Program Files\PicPick\picpick.exe [2011-04-09 10804224]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ad-Aware Antivirus]
C:\Program Files\Ad-Aware Antivirus\AdAwareLauncher --windows-run []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ad-Aware Browsing Protection]
C:\Documents and Settings\All Users.WINDOWS\Application Data\Ad-Aware Browsing Protection\adawarebp.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2009-04-24 203928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
C:\Program Files\Google\Google Talk\googletalk.exe [2007-01-01 3739648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Transfer Monitor]
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe [2009-09-15 479232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2010-12-20 697856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Remote Server]
C:\Program Files\PC Remote\PC Remote\PCRemote.exe [2012-09-09 606720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2013-02-08 66800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 239496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Google\Google Talk\googletalk.exe"="C:\Program Files\Google\Google Talk\googletalk.exe:*:Enabled:Google Talk"
"C:\temp\utorrent\utorrent.exe"="C:\temp\utorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\QIP\qip.exe"="C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\WINDOWS\system32\dpnsvr.exe"="C:\WINDOWS\system32\dpnsvr.exe:*:Disabled:Microsoft DirectPlay8 Server"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe"="C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe"="C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\Program Files\Microsoft Games\Microsoft Flight Simulator X\fsx.exe"="C:\Program Files\Microsoft Games\Microsoft Flight Simulator X\fsx.exe:*:Enabled:Microsoft Flight Simulator®"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\WINDOWS\Downloaded Program Files\TunnelServer.exe"="C:\WINDOWS\Downloaded Program Files\TunnelServer.exe:*:Enabled:TunnelServer"
"C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe"="C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe:*:Enabled:Nokia Ovi Suite 2"
"C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe"="C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe:*:Enabled:Update Engine"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Documents and Settings\YozefB\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe"="C:\Documents and Settings\YozefB\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin"
"C:\Program Files\TeamViewer\Version7\TeamViewer.exe"="C:\Program Files\TeamViewer\Version7\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\Program Files\Counter-Strike 1.6\hl.exe"="C:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\YozefB\Local Settings\Application Data\AntikVirtualSTB\AntikVirtualSTB.exe"="C:\Documents and Settings\YozefB\Local Settings\Application Data\AntikVirtualSTB\AntikVirtualSTB.exe:*:Enabled:AntikVirtualSTB"
"C:\Program Files\Antik Phone\AntikSIPsoftPhone.atk"="C:\Program Files\Antik Phone\AntikSIPsoftPhone.atk:*:Enabled:AntikSIPsoftPhone"
"C:\Program Files\Antik Phone\AntikSIPsoftPhone.exe"="C:\Program Files\Antik Phone\AntikSIPsoftPhone.exe:*:Enabled:AntikSIPsoftPhone"
"C:\Program Files\EA GAMES\Battlefield 2\BF2.exe"="C:\Program Files\EA GAMES\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2"
"C:\Games\World_of_Tanks\WoTLauncher.exe"="C:\Games\World_of_Tanks\WoTLauncher.exe:*:Enabled:World of Tanks Launcher"
"C:\Games\World_of_Tanks\WorldOfTanks.exe"="C:\Games\World_of_Tanks\WorldOfTanks.exe:*:Enabled:World of Tanks"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\World_of_Tanks_CT\WoTLauncher.exe"="C:\World_of_Tanks_CT\WoTLauncher.exe:*:Enabled:World of Tanks Launcher"
"C:\World_of_Tanks_CT\WorldOfTanks.exe"="C:\World_of_Tanks_CT\WorldOfTanks.exe:*:Enabled:World of Tanks"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=C:\WINDOWS\system32\ir32_32.dll
"vidc.iv32"=C:\WINDOWS\system32\ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 2 months======

2013-07-14 14:45:25 ----SHD---- C:\found.000
2013-07-14 01:06:47 ----D---- C:\Documents and Settings\YozefB\Application Data\Malwarebytes
2013-07-14 01:06:28 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
2013-07-14 00:59:00 ----A---- C:\AdwCleaner[S3].txt
2013-07-13 22:14:17 ----A---- C:\AdwCleaner[R3].txt
2013-07-13 22:06:33 ----A---- C:\adwcleaner.exe
2013-07-11 08:36:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-07-11 08:35:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2013-07-11 08:35:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2850851$
2013-07-11 08:35:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2013-06-27 09:34:56 ----D---- C:\Program Files\Mozilla Firefox
2013-06-16 20:22:23 ----D---- C:\Program Files\Windows Installer Clean Up
2013-06-13 14:47:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2839229$
2013-06-08 13:11:49 ----D---- C:\Documents and Settings\YozefB\Application Data\Leadertech
2013-06-08 13:11:35 ----A---- C:\WINDOWS\system32\drivers\hidserv.dll
2013-06-08 13:11:28 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2013-06-08 13:11:12 ----A---- C:\WINDOWS\system32\drivers\LBeepKE.sys
2013-06-08 13:11:01 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Logishrd
2013-06-08 13:10:56 ----D---- C:\Program Files\Logitech
2013-06-08 13:10:37 ----D---- C:\Program Files\Common Files\Logishrd
2013-06-08 13:07:24 ----D---- C:\Documents and Settings\YozefB\Application Data\Logitech
2013-06-08 13:07:24 ----D---- C:\Documents and Settings\YozefB\Application Data\Logishrd
2013-06-01 18:47:47 ----D---- C:\Documents and Settings\YozefB\Application Data\TS3Client
2013-06-01 18:47:35 ----D---- C:\Program Files\TeamSpeak 3 Client
2013-05-26 21:50:22 ----SHD---- C:\RECYCLER
2013-05-25 19:35:10 ----A---- C:\TDSSKiller.2.7.11.0_25.05.2013_19.35.10_log.txt
2013-05-25 15:02:24 ----A---- C:\ComboFix.txt
2013-05-25 14:55:48 ----D---- C:\WINDOWS\temp
2013-05-25 00:50:26 ----A---- C:\WINDOWS\zip.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\SWXCACLS.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\SWSC.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\SWREG.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\sed.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\PEV.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\NIRCMD.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\MBR.exe
2013-05-25 00:50:26 ----A---- C:\WINDOWS\grep.exe
2013-05-25 00:50:16 ----AD---- C:\Qoobox
2013-05-25 00:50:04 ----D---- C:\WINDOWS\erdnt
2013-05-17 22:09:27 ----D---- C:\Documents and Settings\YozefB\Application Data\LavasoftStatistics
2013-05-17 21:42:43 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Downloaded Installations
2013-05-17 21:42:30 ----D---- C:\Program Files\Toolbar Cleaner
2013-05-17 21:41:17 ----A---- C:\WINDOWS\system32\sbbd.exe
2013-05-17 21:41:17 ----A---- C:\WINDOWS\system32\drivers\gfibto.sys
2013-05-16 03:00:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2820197$
2013-05-16 03:00:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2829361$

======List of files/folders modified in the last 2 months======

2013-07-14 19:57:49 ----D---- C:\Program Files\trend micro
2013-07-14 19:55:58 ----D---- C:\WINDOWS\system32\CatRoot2
2013-07-14 17:39:26 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-07-14 17:27:06 ----D---- C:\WINDOWS\system32
2013-07-14 17:14:47 ----D---- C:\WINDOWS\system32\drivers
2013-07-14 17:12:45 ----SD---- C:\WINDOWS\Tasks
2013-07-14 14:58:09 ----D---- C:\Program Files
2013-07-14 14:50:46 ----D---- C:\WINDOWS\Prefetch
2013-07-14 14:40:59 ----D---- C:\WINDOWS\OemDir
2013-07-14 10:00:53 ----D---- C:\Documents and Settings\YozefB\Application Data\Skype
2013-07-14 09:42:54 ----SHD---- C:\WINDOWS\Installer
2013-07-14 09:42:54 ----D---- C:\Config.Msi
2013-07-14 09:42:46 ----D---- C:\WINDOWS
2013-07-14 00:23:32 ----D---- C:\World_of_Tanks_CT
2013-07-13 22:45:49 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype
2013-07-13 22:45:48 ----RD---- C:\Program Files\Skype
2013-07-13 22:42:34 ----D---- C:\Program Files\Common Files\Skype
2013-07-13 21:27:00 ----D---- C:\rsit
2013-07-11 08:39:30 ----RSD---- C:\WINDOWS\assembly
2013-07-11 08:38:24 ----D---- C:\WINDOWS\Microsoft.NET
2013-07-11 08:36:27 ----HD---- C:\WINDOWS\inf
2013-07-11 08:35:47 ----D---- C:\WINDOWS\WinSxS
2013-07-11 08:35:44 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-07-11 08:35:10 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-07-11 08:33:09 ----D---- C:\Program Files\Microsoft Security Client
2013-07-11 08:21:07 ----A---- C:\WINDOWS\system32\MRT.exe
2013-07-11 08:21:00 ----D---- C:\Program Files\Internet Explorer
2013-07-11 08:17:57 ----D---- C:\WINDOWS\system32\XPSViewer
2013-07-10 23:22:18 ----D---- C:\Documents and Settings\YozefB\Application Data\vlc
2013-06-29 18:23:21 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-06-29 18:22:08 ----D---- C:\bpm
2013-06-29 13:06:22 ----D---- C:\Documents and Settings\YozefB\Application Data\Mp3tag
2013-06-28 19:31:08 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-06-16 20:26:10 ----D---- C:\WINDOWS\system32\CatRoot
2013-06-16 20:22:06 ----D---- C:\Program Files\MSECache
2013-06-12 11:10:52 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-06-09 09:09:31 ----D---- C:\Program Files\PicPick
2013-06-08 13:10:37 ----D---- C:\Program Files\Common Files
2013-06-07 23:56:06 ----N---- C:\WINDOWS\system32\occache.dll
2013-06-07 23:56:06 ----N---- C:\WINDOWS\system32\mstime.dll
2013-06-07 23:56:06 ----N---- C:\WINDOWS\system32\jsproxy.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\wininet.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\urlmon.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\url.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\mshtmled.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\mshtml.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\msfeeds.dll
2013-06-07 23:56:06 ----A---- C:\WINDOWS\system32\licmgr10.dll
2013-06-07 23:56:05 ----N---- C:\WINDOWS\system32\iedkcs32.dll
2013-06-07 23:56:05 ----A---- C:\WINDOWS\system32\iertutil.dll
2013-06-07 23:56:05 ----A---- C:\WINDOWS\system32\iepeers.dll
2013-06-07 23:56:05 ----A---- C:\WINDOWS\system32\ieframe.dll
2013-06-07 20:26:09 ----N---- C:\WINDOWS\system32\ie4uinit.exe
2013-06-04 09:23:02 ----A---- C:\WINDOWS\system32\qedit.dll
2013-06-01 11:16:36 ----SH---- C:\boot.ini
2013-05-25 14:58:46 ----A---- C:\WINDOWS\system.ini
2013-05-25 14:58:40 ----D---- C:\WINDOWS\system32\drivers\etc
2013-05-25 14:53:47 ----D---- C:\WINDOWS\AppPatch
2013-05-25 08:39:43 ----SHD---- C:\System Volume Information
2013-05-25 08:39:43 ----D---- C:\WINDOWS\system32\Restore
2013-05-22 20:17:49 ----D---- C:\Program Files\JDownloader
2013-05-17 21:43:16 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-05-16 03:00:32 ----HD---- C:\WINDOWS\$hf_mig$

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 gfibto;gfibto; C:\WINDOWS\system32\drivers\gfibto.sys [2013-05-17 13560]
R0 iaStor;Intel RAID Controller; C:\WINDOWS\system32\drivers\iaStor.sys [2006-10-31 250368]
R0 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2013-01-20 195296]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-08-07 721904]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 MpKsl10f73ad0;MpKsl10f73ad0; \??\C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{5A80AD76-E736-4FC3-B03A-FED441759463}\MpKsl10f73ad0.sys []
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-04 12032]
R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [1997-12-23 23936]
R2 Dokan;Dokan; \??\C:\WINDOWS\system32\drivers\dokan.sys []
R2 LBeepKE;Logitech Beep Suppression Driver; C:\WINDOWS\System32\Drivers\LBeepKE.sys [2013-01-03 12808]
R2 MarxDev1;MarxDev1; C:\WINDOWS\system32\drivers\MarxDev1.sys [2001-05-28 8864]
R2 MarxDev2;MarxDev2; C:\WINDOWS\system32\drivers\MarxDev2.sys [2001-05-28 8864]
R2 MarxDev3;MarxDev3; C:\WINDOWS\system32\drivers\MarxDev3.sys [2001-05-28 8864]
R2 Tdlpt;Tdlpt; \??\C:\WINDOWS\system32\drivers\Tdlpt.sys []
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-01-10 138752]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2013-01-03 44680]
R3 MMRTKRNL;MMRTKRNL; C:\WINDOWS\system32\drivers\mmrtkrnl.sys [2001-11-05 32960]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-04 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-01-31 12648960]
R3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-01-10 106496]
R3 P17;SB Live! 24-bit; C:\WINDOWS\system32\drivers\P17.sys [2007-06-15 1127936]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-09-05 47360]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-11-22 250496]
S0 vasumo;vasumo; C:\WINDOWS\System32\drivers\jjca.sys []
S1 NetworkX;NetworkX; C:\WINDOWS\system32\ckldrv.sys []
S1 SBRE;SBRE; C:\WINDOWS\system32\drivers\SBREDrv.sys []
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-13 48128]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 axhcpiry;axhcpiry; C:\WINDOWS\system32\drivers\axhcpiry.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 esihdrv;esihdrv; \??\C:\DOCUME~1\YozefB\LOCALS~1\Temp\esihdrv.sys []
S3 ggflt;SEMC USB Flash Driver Filter; C:\WINDOWS\system32\DRIVERS\ggflt.sys [2011-01-06 13224]
S3 ggsemc;SEMC USB Flash Driver; C:\WINDOWS\system32\DRIVERS\ggsemc.sys [2011-01-06 25512]
S3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
S3 HTCAND32;HTC Device Driver; C:\WINDOWS\System32\Drivers\ANDROIDUSB.sys [2009-06-10 24576]
S3 htcnprot;HTC NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [2010-06-22 21248]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2012-05-22 6118544]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 PnkBstrK;PnkBstrK; \??\C:\WINDOWS\system32\drivers\PnkBstrK.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2012-07-02 25088]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe [2007-12-06 660768]
R2 DokanMounter;DokanMounter; C:\Program Files\Dokan\DokanLibrary\mounter.exe [2011-01-10 25088]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-11-15 81920]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-04-04 181664]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 20456]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2013-01-31 156448]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [2011-08-12 87040]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2012-12-28 75064]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [2012-12-28 189472]
R2 TeamViewer7;TeamViewer 7; C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe [2012-07-16 2673064]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 Crypkey License;Crypkey License; crypserv.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-08-14 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-01-31 1259296]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-21 162408]
S2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12 256904]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-08-14 136176]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2013-02-08 295664]
S3 MatSvc;Microsoft Automated Troubleshooting Service; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [2011-06-13 267568]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-06-27 117144]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2012-01-18 155320]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 15 črc 2013 01:54
od Márty84
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe , ulozte na plochu a spustte.
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 15 črc 2013 18:43
od yozefb
TL logfile created on: 15. 7. 2013 18:54:30 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\YozefB\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d. M. yyyy

3,00 Gb Total Physical Memory | 2,03 Gb Available Physical Memory | 67,66% Memory free
7,07 Gb Paging File | 6,31 Gb Available in Paging File | 89,13% Paging File free
Paging file location(s): C:\pagefile.sys 256 256E:\pagefil [Binary data over 200 bytes]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 125,00 Gb Total Space | 11,82 Gb Free Space | 9,45% Space Free | Partition Type: NTFS
Drive D: | 806,51 Gb Total Space | 48,26 Gb Free Space | 5,98% Space Free | Partition Type: NTFS
Drive E: | 298,09 Gb Total Space | 65,69 Gb Free Space | 22,04% Space Free | Partition Type: NTFS

Computer Name: YOZEF | User Name: YozefB | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days

========== Processes (SafeList) ==========

PRC - [2013.07.15 18:52:39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\YozefB\Desktop\OTL.exe
PRC - [2013.06.27 09:35:35 | 000,920,472 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2013.04.04 05:32:53 | 000,181,664 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe
PRC - [2013.02.21 04:44:22 | 002,238,704 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe
PRC - [2013.02.08 20:32:00 | 000,150,768 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
PRC - [2013.01.27 11:11:46 | 000,020,456 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2013.01.27 11:11:06 | 000,947,152 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2012.07.16 16:31:32 | 007,445,416 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\TeamViewer.exe
PRC - [2012.07.16 16:31:32 | 002,673,064 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
PRC - [2012.07.16 16:22:42 | 000,106,408 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\tv_w32.exe
PRC - [2011.08.12 18:13:26 | 000,087,040 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
PRC - [2011.04.09 04:24:36 | 010,804,224 | ---- | M] () -- C:\Program Files\PicPick\picpick.exe
PRC - [2011.01.10 14:50:16 | 000,025,088 | ---- | M] () -- C:\Program Files\Dokan\DokanLibrary\mounter.exe
PRC - [2008.04.14 02:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.12.06 22:03:41 | 000,660,768 | ---- | M] (ABBYY (BIT Software)) -- C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
PRC - [2006.11.15 16:58:26 | 000,151,552 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2006.11.15 16:57:58 | 000,081,920 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe


========== Modules (No Company Name) ==========

MOD - [2013.06.27 09:35:13 | 003,285,912 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2013.06.12 11:10:50 | 016,033,160 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll
MOD - [2011.08.12 18:13:26 | 000,087,040 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
MOD - [2011.04.09 04:24:36 | 010,804,224 | ---- | M] () -- C:\Program Files\PicPick\picpick.exe
MOD - [2011.02.17 19:13:34 | 000,125,952 | ---- | M] () -- C:\WINDOWS\system32\ZLhp2600.DLL
MOD - [2011.01.10 14:50:16 | 000,025,088 | ---- | M] () -- C:\Program Files\Dokan\DokanLibrary\mounter.exe
MOD - [2008.04.14 02:11:59 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2008.04.14 02:11:51 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
MOD - [2005.05.03 19:38:42 | 000,064,512 | ---- | M] () -- C:\WINDOWS\system32\P17.dll


========== Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- crypserv.exe -- (Crypkey License)
SRV - [2013.06.27 09:35:34 | 000,117,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.06.21 09:53:36 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.06.12 11:10:53 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.04.04 05:32:53 | 000,181,664 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013.02.08 20:29:56 | 000,295,664 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2013.01.31 13:22:47 | 001,259,296 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013.01.27 11:11:46 | 000,020,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2012.07.16 16:31:32 | 002,673,064 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2012.06.11 12:33:26 | 000,724,376 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2012.01.18 15:38:28 | 000,155,320 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion)
SRV - [2011.08.12 18:13:26 | 000,087,040 | ---- | M] () [Auto | Running] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2011.06.13 23:09:22 | 000,267,568 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Fix it Center\Matsvc.exe -- (MatSvc)
SRV - [2011.01.10 14:50:16 | 000,025,088 | ---- | M] () [Auto | Running] -- C:\Program Files\Dokan\DokanLibrary\mounter.exe -- (DokanMounter)
SRV - [2007.12.06 22:03:41 | 000,660,768 | ---- | M] (ABBYY (BIT Software)) [Auto | Running] -- C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Professional.9.0)
SRV - [2007.05.28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Stopped] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2006.11.15 16:57:58 | 000,081,920 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | Boot | Stopped] -- System32\drivers\jjca.sys -- (vasumo)
DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\SBREDrv.sys -- (SBRE)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\system32\ckldrv.sys -- (NetworkX)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\YozefB\LOCALS~1\Temp\esihdrv.sys -- (esihdrv)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (a1kw0xq3)
DRV - [2013.05.17 21:41:16 | 000,013,560 | ---- | M] (GFI Software) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\gfibto.sys -- (gfibto)
DRV - [2013.01.03 10:18:00 | 000,044,680 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2013.01.03 10:18:00 | 000,012,808 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
DRV - [2012.12.28 23:26:55 | 000,138,168 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PnkBstrK.sys -- (PnkBstrK)
DRV - [2012.07.02 12:23:04 | 000,025,088 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\teamviewervpn.sys -- (teamviewervpn)
DRV - [2012.06.11 12:33:46 | 000,019,072 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2012.05.22 12:21:04 | 006,118,544 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2012.01.09 18:28:20 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2012.01.09 18:28:20 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2012.01.09 18:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2012.01.09 18:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011.01.10 14:50:18 | 000,091,904 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\dokan.sys -- (Dokan)
DRV - [2011.01.06 00:14:46 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2011.01.06 00:14:46 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2010.08.07 18:18:25 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2010.06.22 19:01:50 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot)
DRV - [2009.11.18 01:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009.11.18 01:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2009.06.10 01:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32)
DRV - [2007.06.15 10:47:26 | 001,127,936 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\P17.sys -- (P17)
DRV - [2006.11.22 08:01:00 | 000,250,496 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
DRV - [2005.01.10 18:15:30 | 000,106,496 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2005.01.10 18:15:24 | 000,138,752 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2001.11.05 11:56:00 | 000,032,960 | ---- | M] (ALCATech GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mmrtkrnl.sys -- (MMRTKRNL)
DRV - [2001.10.16 11:58:54 | 000,008,012 | ---- | M] (Sven Goers Software) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TDLPT.SYS -- (Tdlpt)
DRV - [2001.05.28 15:30:00 | 000,008,864 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\MARXDEV3.SYS -- (MarxDev3)
DRV - [2001.05.28 15:30:00 | 000,008,864 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\MARXDEV2.SYS -- (MarxDev2)
DRV - [2001.05.28 15:30:00 | 000,008,864 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\MARXDEV1.SYS -- (MarxDev1)
DRV - [1997.12.23 02:00:00 | 000,023,936 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\ASPI32.SYS -- (Aspi32)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-343818398-448539723-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
IE - HKU\S-1-5-21-343818398-448539723-682003330-1003\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-343818398-448539723-682003330-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-343818398-448539723-682003330-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-343818398-448539723-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultthis.engineName: ""
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..extensions.enabledAddons: firefox%40ghostery.com:2.9.6
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0
FF - prefs.js..extensions.enabledItems: {B13721C7-F507-4982-B2E5-502A71474FED}:3.3.0.3971
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.4.48
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.732
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.7: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Documents and Settings\YozefB\Application Data\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Documents and Settings\YozefB\Application Data\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\YozefB\Local Settings\Application Data\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\YozefB\Local Settings\Application Data\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2011.01.01 13:50:58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013.06.27 09:34:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013.06.27 09:35:09 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2011.01.01 13:50:58 | 000,000,000 | ---D | M]

[2010.08.07 15:29:02 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Extensions
[2013.06.29 10:16:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions
[2010.08.08 22:00:41 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2013.01.05 12:38:32 | 000,000,000 | ---D | M] (continuetosave) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\50e803249daa6@50e803249dae0.com
[2013.06.29 10:16:28 | 000,000,000 | ---D | M] (Ghostery) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\firefox@ghostery.com
[2013.05.17 21:42:27 | 000,000,000 | ---D | M] (Lavasoft Search Plugin) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack
[2012.08.15 23:26:56 | 000,005,133 | ---- | M] () (No name found) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\502c13f3d88d5@502c13f3d890e.info.xpi
[2013.05.09 17:40:30 | 000,870,680 | ---- | M] () (No name found) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013.06.27 09:34:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2013.06.27 09:34:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2013.06.27 09:34:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013.06.27 09:34:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
[2013.06.27 09:34:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}
[2013.06.27 09:34:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2013.06.27 09:35:35 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2012.06.28 17:42:00 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll

========== Chrome ==========

CHR - homepage: http://websearch.searchmainia.info/?unqvl=15

O1 HOSTS File: ([2013.07.14 17:15:01 | 000,000,741 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4 - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (Intel Corporation)
O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [P17Helper] C:\WINDOWS\System32\P17.dll ()
O4 - HKU\S-1-5-21-343818398-448539723-682003330-1003..\Run: [PicPick Start] C:\Program Files\PicPick\picpick.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe (Nikon Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-343818398-448539723-682003330-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-343818398-448539723-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-343818398-448539723-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-343818398-448539723-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O16 - DPF: {41EF3CD2-D8CC-4438-84B1-280BB4E77C8E} https://labs.usa.hp.com/vdesk/terminal/ ... ,1204,1610 (F5 Networks Dynamic Application Tunnel Control)
O16 - DPF: {45B69029-F3AB-4204-92DE-D5140C3E8E74} C:\DOCUME~1\YozefB\LOCALS~1\Temp\IXP000.TMP\InstallerControl.cab (F5 Networks Auto Update)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 1182253468 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.21.2)
O16 - DPF: {CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_39)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.21.2)
O16 - DPF: {E0FF21FA-B857-45C5-8621-F120A0C17FF2} https://labs.usa.hp.com/vdesk/terminal/ ... ,1204,1604 (F5 Networks Host Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 208.67.222.222 208.67.220.220 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3462486C-A519-405E-8C2E-FD4122352859}: DhcpNameServer = 208.67.222.222 208.67.220.220 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.09.16 23:00:04 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\system32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\system32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 60 Days ==========

[2013.07.15 18:52:37 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\YozefB\Desktop\OTL.exe
[2013.07.14 19:56:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Desktop\Unused Desktop Shortcuts
[2013.07.14 16:58:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Desktop\RK_Quarantine
[2013.07.14 14:45:25 | 000,000,000 | -HSD | C] -- C:\found.000
[2013.07.14 01:06:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Application Data\Malwarebytes
[2013.07.14 01:06:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
[2013.07.14 01:04:29 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\YozefB\Desktop\mbam-setup-1.75.0.1300.exe
[2013.07.13 22:42:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Skype
[2013.06.29 18:22:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\WINDOWS
[2013.06.27 09:34:56 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2013.06.22 23:47:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\VideoLAN
[2013.06.22 17:39:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Desktop\Kandračovci - Sinu muj, sinu muj Ľudovky
[2013.06.22 16:42:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Desktop\LH-Kandracovci---Dva-duby-
[2013.06.16 20:22:23 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Installer Clean Up
[2013.06.16 17:34:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Desktop\kb
[2013.06.13 23:42:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Desktop\tonka
[2013.06.08 13:11:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Documents\Logishrd
[2013.06.08 13:11:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Application Data\Leadertech
[2013.06.08 13:11:35 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\hidserv.dll
[2013.06.08 13:11:28 | 000,016,400 | ---- | C] (Logitech, Inc.) -- C:\WINDOWS\System32\drivers\LNonPnP.sys
[2013.06.08 13:11:12 | 000,012,808 | ---- | C] (Logitech, Inc.) -- C:\WINDOWS\System32\drivers\LBeepKE.sys
[2013.06.08 13:11:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Logitech
[2013.06.08 13:11:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Logishrd
[2013.06.08 13:10:56 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
[2013.06.08 13:10:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logishrd
[2013.06.08 13:07:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Application Data\Logitech
[2013.06.08 13:07:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Application Data\Logishrd
[2013.06.04 21:35:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\My Documents\ondrusmix
[2013.06.01 18:47:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Application Data\TS3Client
[2013.06.01 18:47:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\TeamSpeak 3 Client
[2013.06.01 18:47:35 | 000,000,000 | ---D | C] -- C:\Program Files\TeamSpeak 3 Client
[2013.05.29 19:51:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Desktop\Bastlecs Headamp
[2013.05.26 21:50:22 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2013.05.25 14:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2013.05.25 00:50:26 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2013.05.25 00:50:26 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2013.05.25 00:50:26 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2013.05.25 00:50:26 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2013.05.25 00:50:16 | 000,000,000 | ---D | C] -- C:\Qoobox
[2013.05.25 00:50:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt
[2013.05.20 22:54:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\My Documents\wot-dumps
[2013.05.17 22:09:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\YozefB\Application Data\LavasoftStatistics
[2013.05.17 21:42:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Downloaded Installations
[2013.05.17 21:42:30 | 000,000,000 | ---D | C] -- C:\Program Files\Toolbar Cleaner
[2013.05.17 21:41:17 | 000,044,424 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\sbbd.exe
[2013.05.17 21:41:17 | 000,013,560 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\drivers\gfibto.sys
[2013.05.17 21:40:59 | 005,577,352 | ---- | C] (Lavasoft Limited) -- C:\Documents and Settings\YozefB\My Documents\Adaware_Installer.exe
[2010.09.05 23:17:00 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\YozefB\Application Data\pcouffin.sys
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 60 Days ==========

[2013.07.15 18:57:09 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.07.15 18:57:05 | 000,000,924 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.15 18:52:39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\YozefB\Desktop\OTL.exe
[2013.07.15 18:40:23 | 000,000,384 | -H-- | M] () -- C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job
[2013.07.15 18:30:25 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013.07.15 18:30:09 | 000,000,920 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013.07.15 18:30:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013.07.14 22:10:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013.07.14 17:15:01 | 000,000,741 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2013.07.14 16:58:32 | 000,915,456 | ---- | M] () -- C:\Documents and Settings\YozefB\Desktop\RogueKiller.exe
[2013.07.14 11:31:20 | 000,002,880 | ---- | M] () -- C:\Documents and Settings\YozefB\Local Settings\Application Data\config.dat
[2013.07.14 01:04:57 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\YozefB\Desktop\mbam-setup-1.75.0.1300.exe
[2013.07.14 00:03:32 | 001,072,544 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2013.07.14 00:03:32 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin
[2013.07.13 23:00:44 | 001,072,544 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2013.07.13 22:13:57 | 000,662,345 | ---- | M] () -- C:\Documents and Settings\YozefB\Desktop\adwcleaner.exe
[2013.07.13 22:06:44 | 000,662,345 | ---- | M] () -- C:\adwcleaner.exe
[2013.07.13 21:26:48 | 000,781,383 | ---- | M] () -- C:\Documents and Settings\YozefB\Desktop\RSIT.exe
[2013.07.11 11:06:36 | 000,280,536 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013.07.11 08:35:10 | 000,444,746 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013.07.11 08:35:10 | 000,072,900 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013.07.11 08:33:11 | 000,001,919 | ---- | M] () -- C:\WINDOWS\epplauncher.mif
[2013.06.29 23:57:33 | 000,016,400 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\System32\drivers\LNonPnP.sys
[2013.06.29 18:23:06 | 000,000,790 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\BPM Studio 4 Profi.lnk
[2013.06.27 15:13:04 | 000,047,035 | ---- | M] () -- C:\Documents and Settings\YozefB\My Documents\chomjak.jpg
[2013.06.22 23:42:00 | 007,954,259 | ---- | M] () -- C:\Documents and Settings\YozefB\Desktop\Kandrá_ovci- Z Top_anskej doliny.mp3
[2013.06.22 23:40:38 | 007,413,211 | ---- | M] () -- C:\Documents and Settings\YozefB\Desktop\Anka Porá_ová - Bila mene mati _ Nepij ko_u.mp3
[2013.06.22 17:39:20 | 109,478,042 | ---- | M] () -- C:\Documents and Settings\YozefB\Desktop\Kandračovci - Sinu muj, sinu muj Ľudovky.rar
[2013.06.12 11:10:52 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2013.06.12 11:10:52 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2013.06.07 23:56:06 | 006,017,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll
[2013.06.07 23:56:06 | 001,215,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll
[2013.06.07 23:56:06 | 000,920,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll
[2013.06.07 23:56:06 | 000,759,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vgx.dll
[2013.06.07 23:56:06 | 000,630,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeeds.dll
[2013.06.07 23:56:06 | 000,630,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2013.06.07 23:56:06 | 000,611,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mstime.dll
[2013.06.07 23:56:06 | 000,611,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstime.dll
[2013.06.07 23:56:06 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsdbgui.dll
[2013.06.07 23:56:06 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\occache.dll
[2013.06.07 23:56:06 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\url.dll
[2013.06.07 23:56:06 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\url.dll
[2013.06.07 23:56:06 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtmled.dll
[2013.06.07 23:56:06 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeedsbs.dll
[2013.06.07 23:56:06 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2013.06.07 23:56:06 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\licmgr10.dll
[2013.06.07 23:56:06 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\licmgr10.dll
[2013.06.07 23:56:06 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jsproxy.dll
[2013.06.07 23:56:06 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsproxy.dll
[2013.06.07 23:56:05 | 011,112,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2013.06.07 23:56:05 | 002,005,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2013.06.07 23:56:05 | 001,469,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcpl.cpl
[2013.06.07 23:56:05 | 001,469,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcpl.cpl
[2013.06.07 23:56:05 | 000,743,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2013.06.07 23:56:05 | 000,387,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iedkcs32.dll
[2013.06.07 23:56:05 | 000,387,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedkcs32.dll
[2013.06.07 23:56:05 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iepeers.dll
[2013.06.07 23:56:05 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iepeers.dll
[2013.06.07 23:55:44 | 000,385,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\html.iec
[2013.06.07 20:26:09 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe
[2013.06.07 20:26:09 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe
[2013.06.04 09:23:02 | 000,562,688 | ---- | M] () -- C:\WINDOWS\System32\dllcache\qedit.dll
[2013.06.04 03:40:45 | 001,876,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\win32k.sys
[2013.06.04 03:40:45 | 001,876,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\win32k.sys
[2013.06.03 23:57:24 | 000,001,190 | ---- | M] () -- C:\WINDOWS\System32\ServiceConfig.xml
[2013.06.02 23:56:31 | 000,000,438 | ---- | M] () -- C:\WINDOWS\System32\WSCConfig.xml
[2013.06.01 11:16:36 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2013.05.24 17:07:54 | 000,172,452 | ---- | M] () -- C:\Documents and Settings\YozefB\Desktop\mail-foto.jpg
[2013.05.17 21:41:16 | 000,044,424 | ---- | M] (GFI Software) -- C:\WINDOWS\System32\sbbd.exe
[2013.05.17 21:41:16 | 000,013,560 | ---- | M] (GFI Software) -- C:\WINDOWS\System32\drivers\gfibto.sys
[2013.05.17 21:41:10 | 005,577,352 | ---- | M] (Lavasoft Limited) -- C:\Documents and Settings\YozefB\My Documents\Adaware_Installer.exe
[2013.05.17 21:30:32 | 000,000,020 | -H-- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PKP_DLdu.DAT
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013.07.15 18:57:09 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.07.14 16:58:24 | 000,915,456 | ---- | C] () -- C:\Documents and Settings\YozefB\Desktop\RogueKiller.exe
[2013.07.13 22:13:50 | 000,662,345 | ---- | C] () -- C:\Documents and Settings\YozefB\Desktop\adwcleaner.exe
[2013.07.13 22:06:33 | 000,662,345 | ---- | C] () -- C:\adwcleaner.exe
[2013.07.13 21:26:43 | 000,781,383 | ---- | C] () -- C:\Documents and Settings\YozefB\Desktop\RSIT.exe
[2013.07.11 08:43:12 | 000,000,384 | -H-- | C] () -- C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job
[2013.07.08 23:47:52 | 000,000,924 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.08 23:47:52 | 000,000,920 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013.06.29 18:23:06 | 000,000,790 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\BPM Studio 4 Profi.lnk
[2013.06.27 15:13:03 | 000,047,035 | ---- | C] () -- C:\Documents and Settings\YozefB\My Documents\chomjak.jpg
[2013.06.22 23:41:41 | 007,954,259 | ---- | C] () -- C:\Documents and Settings\YozefB\Desktop\Kandrá_ovci- Z Top_anskej doliny.mp3
[2013.06.22 23:40:20 | 007,413,211 | ---- | C] () -- C:\Documents and Settings\YozefB\Desktop\Anka Porá_ová - Bila mene mati _ Nepij ko_u.mp3
[2013.06.22 17:08:08 | 109,478,042 | ---- | C] () -- C:\Documents and Settings\YozefB\Desktop\Kandračovci - Sinu muj, sinu muj Ľudovky.rar
[2013.06.16 20:22:23 | 000,002,329 | ---- | C] () -- C:\Documents and Settings\YozefB\Start Menu\Programs\Windows Install Clean Up.lnk
[2013.06.04 09:23:02 | 000,562,688 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedit.dll
[2013.06.03 23:57:24 | 000,001,190 | ---- | C] () -- C:\WINDOWS\System32\ServiceConfig.xml
[2013.06.02 23:56:31 | 000,000,438 | ---- | C] () -- C:\WINDOWS\System32\WSCConfig.xml
[2013.05.25 00:50:26 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2013.05.25 00:50:26 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2013.05.25 00:50:26 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2013.05.25 00:50:26 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2013.05.25 00:50:26 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2013.05.24 17:07:53 | 000,172,452 | ---- | C] () -- C:\Documents and Settings\YozefB\Desktop\mail-foto.jpg
[2013.02.17 23:05:34 | 000,000,281 | ---- | C] () -- C:\WINDOWS\EReg072.dat
[2012.12.28 23:26:56 | 000,138,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2012.12.28 23:25:58 | 000,189,472 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2012.12.28 23:25:18 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2012.10.08 20:43:52 | 000,008,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\MARXDEV3.SYS
[2012.10.08 20:43:52 | 000,008,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\MARXDEV2.SYS
[2012.10.08 20:43:52 | 000,008,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\MARXDEV1.SYS
[2012.10.08 20:43:49 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2012.10.08 20:09:19 | 000,025,548 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
[2012.09.09 13:46:59 | 000,002,880 | ---- | C] () -- C:\Documents and Settings\YozefB\Local Settings\Application Data\config.dat
[2012.08.13 20:41:40 | 000,125,952 | ---- | C] () -- C:\WINDOWS\System32\ZLhp2600.DLL
[2012.08.13 20:40:53 | 000,339,968 | ---- | C] () -- C:\WINDOWS\System32\ZSHP2600.EXE
[2010.12.09 08:10:26 | 006,973,340 | ---- | C] () -- C:\Documents and Settings\YozefB\Sheena Is A Punk Rocker457_-_The_Ramones_-_Sheena_Is_A_Punk_Rocker__1977_.mp3
[2010.10.06 20:54:41 | 000,000,473 | ---- | C] () -- C:\Documents and Settings\YozefB\Application Data\mdbu.bin
[2010.09.07 21:50:26 | 000,000,905 | ---- | C] () -- C:\Documents and Settings\YozefB\jlgui.ini
[2010.09.07 21:50:26 | 000,000,082 | ---- | C] () -- C:\Documents and Settings\YozefB\default.m3u
[2010.09.05 23:17:00 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\YozefB\Application Data\pcouffin.cat
[2010.09.05 23:17:00 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\YozefB\Application Data\pcouffin.inf
[2010.08.07 23:26:55 | 000,041,984 | ---- | C] () -- C:\Documents and Settings\YozefB\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.08.07 22:54:04 | 000,000,268 | RH-- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Pipe Organ
[2010.08.07 22:54:04 | 000,000,268 | RH-- | C] () -- C:\Documents and Settings\YozefB\Application Data\Piano Hard
[2010.08.07 22:54:04 | 000,000,012 | RH-- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Podcasting
[2010.08.07 22:54:03 | 000,000,020 | -H-- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PKP_DLdu.DAT
[2010.07.05 15:47:09 | 000,122,238 | ---- | C] () -- C:\Program Files\Uninstal.exe

========== ZeroAccess Check ==========

[2010.08.07 15:35:05 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008.04.14 02:12:05 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009.02.09 14:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008.04.14 02:12:08 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2009.10.04 19:53:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Acronis
[2010.07.05 12:13:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Applications
[2009.11.30 23:55:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Blumentals
[2010.05.07 21:56:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EnterNHelp
[2009.09.16 23:16:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010.05.07 21:56:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Filters
[2010.07.17 12:20:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Installations
[2010.05.07 21:56:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nikon
[2009.10.16 21:00:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2010.04.24 08:36:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OviInstallerCache
[2009.10.16 21:28:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2009.12.03 22:13:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony
[2010.07.25 22:00:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Spyware Terminator
[2009.10.11 10:13:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2010.05.07 21:56:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ultima_T15
[2010.03.14 20:50:28 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{55A29068-F2CE-456C-9148-C869879E2357}
[2011.12.30 11:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Alwil Software
[2013.05.17 21:42:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Downloaded Installations
[2010.08.07 22:54:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\EnterNHelp
[2010.10.06 20:54:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\HappyFoto
[2012.12.02 15:19:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations
[2010.08.07 22:54:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Nikon
[2010.08.23 19:54:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Nokia
[2010.08.28 17:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache
[2010.11.13 20:59:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PC Suite
[2010.10.14 22:10:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PDF Writer
[2012.11.24 23:20:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Sony
[2013.05.14 22:08:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\StarApp
[2010.08.07 23:31:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\TuneUp Software
[2010.08.07 22:54:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Ultima_T15
[2010.09.05 19:39:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Video Strip Poker Supreme
[2010.09.06 01:07:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\vsosdk
[2013.01.05 12:38:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\WoW Worldwide Software LTD
[2010.08.07 23:31:11 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010.08.08 00:00:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService.NT AUTHORITY\Application Data\TuneUp Software
[2011.05.28 10:00:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\UpdatusUser\Application Data\TuneUp Software
[2010.06.27 20:51:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\111 Pix Ltd
[2009.10.04 22:58:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Acronis
[2009.11.29 00:06:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Any Video Converter Professional
[2010.07.05 21:13:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\DBAirport
[2009.10.12 23:09:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\eLanguage
[2010.01.16 00:40:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\eroboxxx
[2010.03.04 16:01:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Facebook
[2009.10.12 19:47:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\GHISLER
[2010.06.18 23:28:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\HDRsoft
[2010.02.08 13:05:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\JAM Software
[2010.05.07 22:02:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Nikon
[2009.12.19 10:05:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Nokia
[2009.12.19 10:05:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Nokia Ovi Suite
[2009.10.16 21:28:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\PC Suite
[2009.09.19 08:39:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Publish Providers
[2010.03.28 19:39:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Sony
[2010.03.15 00:10:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Sony Creative Software
[2010.07.25 22:00:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Spyware Terminator
[2010.01.14 22:46:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\TeamViewer
[2009.10.11 10:13:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\TuneUp Software
[2009.09.17 23:17:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\VitySoft
[2009.11.06 22:25:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Vso
[2009.09.17 23:21:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\yozef\Application Data\Windows Search
[2011.05.12 21:12:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\CadSoft
[2010.09.13 20:20:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Digital Red
[2013.01.24 22:08:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\ElevatedDiagnostics
[2010.08.13 22:57:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\ESDG
[2013.02.10 11:18:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\foobar2000
[2010.09.13 20:17:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\funkitron
[2010.08.22 00:12:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\GHISLER
[2010.12.05 23:08:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\JAM Software
[2010.10.30 10:10:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\KeePass
[2013.06.08 13:11:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Leadertech
[2013.06.29 13:06:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Mp3tag
[2012.12.27 01:44:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Navdata
[2010.08.07 23:12:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nikon
[2011.01.04 23:29:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nokia
[2010.08.28 20:23:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nokia Ovi Suite
[2011.04.11 21:25:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nordic Games
[2013.01.12 15:25:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Notepad++
[2010.10.06 19:47:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\OpenDNS Updater
[2010.09.13 19:08:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Opera
[2012.09.23 13:36:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\PC Remote
[2012.12.02 15:16:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\PC Suite
[2010.10.14 22:10:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\PDF Writer
[2010.08.07 16:46:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Publish Providers
[2011.04.26 22:18:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\RibbonSoft
[2012.11.09 16:26:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Sony
[2010.11.09 00:36:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Sony Creative Software
[2012.09.20 23:31:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Sony Creative Software Inc
[2012.07.29 22:02:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\TeamViewer
[2013.06.01 18:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\TS3Client
[2010.08.07 23:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\TuneUp Software
[2012.08.11 21:39:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\uTorrent
[2011.05.26 22:41:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\VitySoft
[2012.08.11 21:39:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Vso
[2012.12.27 17:42:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Wargaming.net
[2012.12.04 11:47:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\webex

========== Purity Check ==========

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 15 črc 2013 18:44
od yozefb
========== Custom Scans ==========

< >
[2010.08.07 13:23:45 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2010.08.07 13:31:37 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2012.05.24 08:06:54 | 000,000,830 | ---- | C] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2013.07.08 23:47:52 | 000,000,920 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2013.07.08 23:47:52 | 000,000,924 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
[2013.07.11 08:43:12 | 000,000,384 | -H-- | C] () -- C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job

< >

< MD5 for: AGP440.SYS >
[2004.08.04 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\erdnt\cache\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

< MD5 for: ATAPI.SYS >
[2004.08.04 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\erdnt\cache\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.04 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 02:12:12 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 02:12:12 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\system32\autochk.exe
[2004.08.04 14:00:00 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=B3415B9D6026F65E43089ABED096C38C -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe

< MD5 for: CDROM.SYS >
[2004.08.04 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2009.12.22 20:39:20 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2004.08.04 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2004.08.04 14:00:00 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=10654F9DDCEA9C46CFB77554231BE73B -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.04.14 02:11:51 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\erdnt\cache\cryptsvc.dll
[2008.04.14 02:11:51 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 02:11:51 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\system32\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 02:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\erdnt\cache\eventlog.dll
[2008.04.14 02:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 02:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004.08.04 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 02:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\erdnt\cache\explorer.exe
[2008.04.14 02:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\explorer.exe
[2008.04.14 02:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.04 14:00:00 | 001,032,192 | ---- | M] (Microsoft Corporation) MD5=A0732187050030AE399B241436565E64 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe

< MD5 for: HAL.DLL >
[2004.08.04 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 20:31:28 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2004.08.04 14:00:00 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=DFCE51FD96909D1B97D4A1A72D060D77 -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll

< MD5 for: CHANGER.SYS >
[2004.08.04 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.13 20:40:58 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys

< MD5 for: IASTOR.SYS >
[2006.10.31 14:13:46 | 000,495,896 | ---- | M] (Intel Corporation) MD5=81EC16AFD70E3432B8C573782CCFEE6D -- C:\Program Files\Intel\Intel Matrix Storage Manager\Driver64\IaStor.sys
[2006.10.31 13:46:36 | 000,250,368 | ---- | M] (Intel Corporation) MD5=DE01BF14FFB150C779FD561BD0E3C5C5 -- C:\Program Files\Intel\Intel Matrix Storage Manager\Driver\iaStor.sys
[2006.10.31 13:46:36 | 000,250,368 | ---- | M] (Intel Corporation) MD5=DE01BF14FFB150C779FD561BD0E3C5C5 -- C:\WINDOWS\system32\drivers\iaStor.sys
[2006.09.29 07:59:58 | 000,250,368 | ---- | M] (Intel Corporation) MD5=E9F704CA833BD24BFAA3B4A59707633A -- C:\WINDOWS\OemDir\iaStor.sys
[2006.09.29 07:59:58 | 000,250,368 | ---- | M] (Intel Corporation) MD5=E9F704CA833BD24BFAA3B4A59707633A -- C:\WINDOWS\system32\ReinstallBackups\0026\DriverFiles\iaStor.sys

< MD5 for: ISAPNP.SYS >
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2010.08.07 14:50:48 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2008.04.13 20:36:41 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=05A299EC56E52649B1CF2FC52D20F2D7 -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.13 20:36:41 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=05A299EC56E52649B1CF2FC52D20F2D7 -- C:\WINDOWS\system32\drivers\isapnp.sys
[2004.08.04 14:00:00 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=E504F706CCB699C2596E9A3DA1596E87 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys

< MD5 for: LSASS.EXE >
[2004.08.04 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=84885F9B82F4D55C6146EBF6065D75D2 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 02:12:24 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=BF2466B3E18E970D8A976FB95FC1CA85 -- C:\WINDOWS\erdnt\cache\lsass.exe
[2008.04.14 02:12:24 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=BF2466B3E18E970D8A976FB95FC1CA85 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 02:12:24 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=BF2466B3E18E970D8A976FB95FC1CA85 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\erdnt\cache\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.04 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2008.04.14 02:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\erdnt\cache\netlogon.dll
[2008.04.14 02:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 02:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2009.02.06 20:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2009.02.06 20:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[2004.08.04 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004.08.04 14:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 02:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\erdnt\cache\scecli.dll
[2008.04.14 02:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 02:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2008.04.14 02:12:36 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=5F816C1F539266D2D4C78694239DA0B5 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 02:12:36 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=5F816C1F539266D2D4C78694239DA0B5 -- C:\WINDOWS\system32\smss.exe
[2004.08.04 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=BD7FB0957C716F1A60333AEE04DE2178 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe

< MD5 for: SVCHOST.EXE >
[2008.04.14 02:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\erdnt\cache\svchost.exe
[2008.04.14 02:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 02:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\system32\svchost.exe
[2004.08.04 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=8F078AE4ED187AAABC0A305146DE6716 -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.06.20 12:45:13 | 000,360,320 | ---- | M] (Microsoft Corporation) MD5=2A5554FC5B1E04E131230E3CE035C3F9 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 12:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\erdnt\cache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.04 14:00:00 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2004.08.04 14:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=39B1FFB03C2296323832ACBAE50D2AFF -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
[2008.04.14 02:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\erdnt\cache\userinit.exe
[2008.04.14 02:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 02:12:38 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2004.08.04 14:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=01C3346C241652F43AED8E2149881BFE -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 02:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\erdnt\cache\winlogon.exe
[2008.04.14 02:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 02:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2008.04.14 02:12:10 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\erdnt\cache\ws2_32.dll
[2008.04.14 02:12:10 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 02:12:10 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\system32\ws2_32.dll
[2004.08.04 14:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=2ED0B7F12A60F90092081C50FA0EC2B2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[22 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[2 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >
[2013.07.13 22:06:44 | 000,662,345 | ---- | M] () -- C:\adwcleaner.exe
[2013.02.13 20:22:52 | 000,587,671 | ---- | M] () -- C:\adwcleaner0.exe

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 15 črc 2013 18:46
od yozefb
< %ALLUSERSPROFILE%\Application Data\*. >
[2012.11.10 22:11:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\ABBYY
[2013.03.16 22:19:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe
[2011.12.30 11:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Alwil Software
[2011.04.19 20:08:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Apple
[2011.04.19 20:08:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Apple Computer
[2013.05.17 21:42:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Downloaded Installations
[2013.01.16 21:38:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\DVD Shrink
[2010.08.07 22:54:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\EnterNHelp
[2011.05.08 11:40:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Google
[2010.10.06 20:54:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\HappyFoto
[2012.12.02 15:19:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations
[2013.06.08 13:11:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Logishrd
[2013.07.14 01:06:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
[2011.03.20 17:50:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\McAfee
[2011.12.30 11:39:55 | 000,000,000 | --SD | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft
[2012.11.23 10:18:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft Help
[2012.07.29 22:08:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Mozilla
[2010.08.07 22:54:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Nikon
[2010.08.23 19:54:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Nokia
[2010.08.28 17:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache
[2013.04.14 10:08:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NVIDIA
[2010.08.07 13:35:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NVIDIA Corporation
[2010.11.13 20:59:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PC Suite
[2010.10.14 22:10:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\PDF Writer
[2013.07.13 22:45:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype
[2011.06.20 20:17:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype Extras
[2012.11.24 23:20:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Sony
[2012.11.24 23:20:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Sony Ericsson
[2013.05.14 22:08:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\StarApp
[2010.08.10 23:52:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Sun
[2010.08.07 23:31:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\TuneUp Software
[2010.08.07 22:54:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Ultima_T15
[2010.09.05 19:39:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Video Strip Poker Supreme
[2010.09.06 01:07:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\vsosdk
[2010.08.07 14:00:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Windows Genuine Advantage
[2013.01.05 12:38:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\WoW Worldwide Software LTD
[2010.08.07 23:31:11 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2013.04.04 23:06:36 | 000,353,912 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\ARM\Reader_11.0.02\3568\AcrobatUpdater.exe
[2013.04.04 23:06:36 | 000,958,576 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\ARM\Reader_11.0.02\3568\AdobeARM.exe
[2013.04.04 23:06:36 | 000,353,912 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\ARM\Reader_11.0.02\3568\AdobeARMHelper.exe
[2013.04.04 23:06:36 | 000,353,912 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\ARM\Reader_11.0.02\3568\ReaderUpdater.exe
[2010.09.21 20:37:40 | 000,338,856 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.3\ARM\1698\AcrobatUpdater.exe
[2010.09.21 20:37:40 | 000,932,288 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.3\ARM\1698\AdobeARM.exe
[2010.09.21 20:37:40 | 000,338,856 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.3\ARM\1698\ReaderUpdater.exe
[2012.01.04 09:08:53 | 033,560,984 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.4\ARM\AdbeRdr950_en_US.exe
[2012.01.03 09:37:53 | 000,320,456 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.4\ARM\20496\AcrobatUpdater.exe
[2012.01.03 09:37:53 | 000,843,712 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.4\ARM\20496\AdobeARM.exe
[2012.01.03 09:37:53 | 000,320,456 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.4\ARM\20496\AdobeARMHelper.exe
[2012.01.03 09:37:53 | 000,320,456 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.4\ARM\20496\ReaderUpdater.exe
[2012.12.03 09:35:28 | 000,352,960 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.5\ARM\9078\AcrobatUpdater.exe
[2012.12.03 09:35:28 | 000,946,352 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.5\ARM\9078\AdobeARM.exe
[2012.12.03 09:35:28 | 000,352,960 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.5\ARM\9078\AdobeARMHelper.exe
[2012.12.03 09:35:28 | 000,352,960 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Reader\9.5\ARM\9078\ReaderUpdater.exe
[2012.01.03 19:46:15 | 000,345,520 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Setup\{AC76BA86-7AD7-1033-7B44-A95000000001}\Setup.exe
[2012.09.24 05:47:39 | 000,364,224 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Adobe\Setup\{AC76BA86-7AD7-1033-7B44-AB0000000001}\setup.exe
[2011.01.04 23:14:52 | 036,365,624 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}\Nokia_PC_Suite_eng_web.exe
[2011.01.04 23:15:08 | 000,095,232 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}\Installer\CommonCustomActions\pcswpcsi.exe
[2011.01.04 23:15:08 | 000,008,192 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}\Installer\CommonCustomActions\UninstCCD.exe
[2011.01.04 23:15:08 | 000,010,240 | ---- | M] (Nokia) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}\Installer\CommonCustomActions\UninstPCS.exe
[2011.01.04 23:15:08 | 000,061,440 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}\Installer\CommonCustomActions\UninstPCSFEMsi.exe
[2010.08.22 23:49:16 | 036,598,408 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{4ECA710C-B818-4751-A3B8-42C2D93922A8}\NokiaSoftwareUpdaterSetup_sk.exe
[2010.08.22 23:49:28 | 003,351,812 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{4ECA710C-B818-4751-A3B8-42C2D93922A8}\Installer\CommonCustomActions\msxml6Exec.exe
[2010.08.22 23:49:28 | 000,036,864 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{4ECA710C-B818-4751-A3B8-42C2D93922A8}\Installer\CommonCustomActions\Sleep.exe
[2010.08.22 23:49:28 | 003,203,453 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{4ECA710C-B818-4751-A3B8-42C2D93922A8}\Installer\CommonCustomActions\vcredistExec.exe
[2012.12.02 15:19:23 | 067,963,216 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Nokia_PC_Suite_ALL.exe
[2012.12.02 15:19:40 | 000,090,504 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\pcswpcsi.exe
[2012.12.02 15:19:40 | 000,008,192 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\UninstCCD.exe
[2012.12.02 15:19:40 | 000,010,240 | ---- | M] (Nokia) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\UninstPCS.exe
[2012.12.02 15:19:40 | 000,061,440 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\UninstPCSFEMsi.exe
[2010.09.08 11:46:53 | 102,913,480 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\Installer.exe
[2010.12.29 14:13:26 | 075,714,392 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}\Installer.exe
[2011.01.01 13:49:48 | 000,119,296 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}\Installer\InstallerService.exe
[2011.01.01 13:49:48 | 000,053,760 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}\Installer\InstallerServiceExec.exe
[2011.01.01 13:49:48 | 000,054,272 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}\Installer\IsPinned.exe
[2011.01.01 13:49:54 | 000,106,496 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}\Installer\CommonCustomActions\pcswpc.exe
[2011.01.01 13:49:54 | 000,077,824 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}\Installer\CommonCustomActions\Run_XML6_SP1.exe
[2010.12.19 12:47:09 | 000,050,000 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\Installer\CommonCustomActions\pcswpc.exe
[2010.12.19 12:47:09 | 000,077,824 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\Installer\CommonCustomActions\Run_XML6_SP1.exe
[2010.12.19 12:47:09 | 000,038,912 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\Installer\CommonCustomActions\WMF11Runx64.exe
[2010.12.19 12:47:09 | 000,038,912 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\Installer\CommonCustomActions\WMF11Runx86.exe
[2010.12.19 12:47:12 | 013,930,312 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X64-ENU.exe
[2010.12.19 12:47:15 | 012,212,040 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X86-ENU.exe
[2011.04.08 07:14:00 | 000,194,152 | ---- | M] (NVIDIA Corporation) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\NVIDIA\Updatus\WLMerger.exe
[2011.01.06 00:24:33 | 000,154,744 | ---- | M] (Sony Ericsson Mobile Communications) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Sony Ericsson\Update Engine\configuration\org.eclipse.osgi\bundles\37\1\.cp\lib\win32\DeviceRemover.exe
[2011.01.06 00:14:44 | 000,158,840 | ---- | M] (Sony Ericsson Mobile Communications) -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Sony Ericsson\Update Engine\configuration\org.eclipse.osgi\bundles\39\1\.cp\lib\win32\DriverInstaller.exe

< %APPDATA%\*. >
[2012.11.10 22:12:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\ABBYY
[2013.03.16 22:19:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Adobe
[2013.04.01 20:38:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\ArcSoft
[2011.05.12 21:12:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\CadSoft
[2010.09.13 20:20:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Digital Red
[2013.03.10 00:32:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\dvdcss
[2013.01.24 22:08:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\ElevatedDiagnostics
[2010.08.13 22:57:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\ESDG
[2010.08.07 20:48:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\FastStone
[2013.02.10 11:18:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\foobar2000
[2010.09.13 20:17:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\funkitron
[2010.08.22 00:12:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\GHISLER
[2011.05.08 11:53:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Google
[2011.06.30 21:43:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Help
[2012.08.13 20:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\HP
[2010.08.07 13:32:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Identities
[2010.08.07 13:52:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\InstallShield
[2010.12.05 23:08:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\JAM Software
[2010.10.30 10:10:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\KeePass
[2013.05.17 22:09:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\LavasoftStatistics
[2013.06.08 13:11:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Leadertech
[2013.06.08 13:07:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Logishrd
[2013.06.08 13:11:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Logitech
[2010.08.07 15:29:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Macromedia
[2013.07.14 01:06:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Malwarebytes
[2013.02.03 20:35:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Media Player Classic
[2012.11.23 10:18:14 | 000,000,000 | --SD | M] -- C:\Documents and Settings\YozefB\Application Data\Microsoft
[2012.08.03 20:43:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Mozilla
[2013.06.29 13:06:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Mp3tag
[2012.12.27 01:44:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Navdata
[2010.09.06 23:19:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nero
[2010.08.07 23:12:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nikon
[2011.01.04 23:29:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nokia
[2010.08.28 20:23:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nokia Ovi Suite
[2011.04.11 21:25:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Nordic Games
[2013.01.12 15:25:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Notepad++
[2010.10.06 19:47:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\OpenDNS Updater
[2010.09.13 19:08:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Opera
[2012.09.23 13:36:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\PC Remote
[2012.12.02 15:16:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\PC Suite
[2010.10.14 22:10:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\PDF Writer
[2010.08.07 16:46:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Publish Providers
[2011.04.26 22:18:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\RibbonSoft
[2013.07.14 10:00:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Skype
[2011.07.20 20:30:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\skypePM
[2012.11.09 16:26:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Sony
[2010.11.09 00:36:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Sony Creative Software
[2012.09.20 23:31:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Sony Creative Software Inc
[2010.08.10 23:52:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Sun
[2012.07.29 22:02:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\TeamViewer
[2013.06.01 18:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\TS3Client
[2010.08.07 23:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\TuneUp Software
[2011.06.26 20:20:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\U3
[2012.08.11 21:39:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\uTorrent
[2011.05.26 22:41:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\VitySoft
[2013.07.10 23:22:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\vlc
[2012.08.11 21:39:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Vso
[2012.12.27 17:42:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Wargaming.net
[2012.12.04 11:47:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\webex
[2011.08.08 19:40:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\Winamp
[2010.08.17 22:50:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\YozefB\Application Data\WinRAR

< %APPDATA%\*.exe /s >
[2011.01.04 23:14:53 | 000,053,632 | ---- | M] (Adobe Systems Inc.) -- C:\Documents and Settings\YozefB\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2010.10.11 13:08:19 | 002,826,192 | ---- | M] (Adobe Systems, Inc.) -- C:\Documents and Settings\YozefB\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe
[2013.06.16 20:22:23 | 000,003,584 | R--- | M] () -- C:\Documents and Settings\YozefB\Application Data\Microsoft\Installer\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}\Icon386ED4E3.exe
[2010.08.07 22:54:57 | 000,335,872 | R--- | M] (InstallShield Software Corp.) -- C:\Documents and Settings\YozefB\Application Data\Microsoft\Installer\{237CD223-1B9D-47E8-A76C-E478B83CCEA2}\ARPPRODUCTICON.exe
[2013.06.08 13:11:48 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Documents and Settings\YozefB\Application Data\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
[2010.08.07 22:55:11 | 000,049,152 | R--- | M] (InstallShield Software Corp.) -- C:\Documents and Settings\YozefB\Application Data\Microsoft\Installer\{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}\ARPPRODUCTICON.exe
[2011.02.28 23:43:42 | 000,009,062 | R--- | M] () -- C:\Documents and Settings\YozefB\Application Data\Microsoft\Installer\{E51E4E3E-62B9-4A99-868D-B05B2DA3F4BF}\ARPPRODUCTICON.exe
[2011.02.28 23:43:42 | 000,049,152 | R--- | M] (InstallShield Software Corp.) -- C:\Documents and Settings\YozefB\Application Data\Microsoft\Installer\{E51E4E3E-62B9-4A99-868D-B05B2DA3F4BF}\NewShortcut1_E51E4E3E62B94A99868DB05B2DA3F4BF.exe
[2010.09.16 23:17:27 | 000,875,296 | ---- | M] (Sun Microsystems, Inc.) -- C:\Documents and Settings\YozefB\Application Data\Sun\Java\JRERunOnce.exe
[2007.06.28 16:26:02 | 000,110,592 | ---- | M] () -- C:\Documents and Settings\YozefB\Application Data\U3\temp\cleanup.exe
[2007.06.28 16:21:08 | 003,096,576 | -H-- | M] (SanDisk Corporation) -- C:\Documents and Settings\YozefB\Application Data\U3\temp\Launchpad Removal.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2010.08.07 18:18:25 | 000,721,904 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >
[2010.08.07 15:13:04 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010.08.07 15:13:04 | 000,659,456 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010.08.07 15:13:04 | 000,909,312 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2013.07.13 23:00:44 | 001,072,544 | ---- | M] () -- C:\WINDOWS\system32\nvdrsdb0.bin
[2013.07.14 00:03:32 | 001,072,544 | ---- | M] () -- C:\WINDOWS\system32\nvdrsdb1.bin
[2013.07.14 00:03:32 | 000,000,001 | ---- | M] () -- C:\WINDOWS\system32\nvdrssel.bin
[2013.07.15 18:30:25 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >
[2013.07.13 22:06:44 | 000,662,345 | ---- | M] () -- C:\adwcleaner.exe
[2013.02.13 20:22:52 | 000,587,671 | ---- | M] () -- C:\adwcleaner0.exe

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"PicPick Start" = C:\Program Files\PicPick\picpick.exe -- [2011.04.09 04:24:36 | 010,804,224 | ---- | M] ()
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 02:12:16 | 000,015,360 | ---- | M] (Microsoft Corporation)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.07.15 18:57:09 | 000,000,512 | ---- | M] () MD5=F1B0E2AC56F15C69CBB207E7ED8BD97F -- C:\PhysicalMBR.bin

< >

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 15 črc 2013 18:47
od yozefb
< *crack* /s >
[2009.10.11 12:52:39 | 000,012,020 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrack.cfx
[2009.10.11 12:52:46 | 000,012,072 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackalphatest.cfx
[2009.10.11 12:52:46 | 000,012,440 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2009.10.11 12:52:49 | 000,012,756 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2009.10.11 12:52:52 | 000,012,340 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2009.10.11 12:52:49 | 000,012,392 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackalphatestshadow.cfx
[2009.10.11 12:52:39 | 000,012,388 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcracklightmap.cfx
[2009.10.11 12:52:42 | 000,012,704 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcracklightmapshadow.cfx
[2009.10.11 12:52:41 | 000,012,624 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrack.cfx
[2009.10.11 12:52:48 | 000,012,660 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2009.10.11 12:52:48 | 000,013,000 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2009.10.11 12:52:51 | 000,013,372 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2009.10.11 12:52:53 | 000,012,720 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2009.10.11 12:52:51 | 000,013,048 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2009.10.11 12:52:41 | 000,012,964 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2009.10.11 12:52:44 | 000,013,336 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2009.10.11 12:52:41 | 000,012,740 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetail.cfx
[2009.10.11 12:52:48 | 000,012,776 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatest.cfx
[2009.10.11 12:52:48 | 000,013,116 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2009.10.11 12:52:51 | 000,013,488 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2009.10.11 12:52:53 | 000,012,828 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2009.10.11 12:52:51 | 000,013,164 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2009.10.11 12:52:41 | 000,013,080 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmap.cfx
[2009.10.11 12:52:44 | 000,013,452 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2009.10.11 12:52:46 | 000,012,792 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetailpointlight.cfx
[2009.10.11 12:52:44 | 000,013,128 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackparallaxdetailshadow.cfx
[2009.10.11 12:52:45 | 000,012,684 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2009.10.11 12:52:44 | 000,013,012 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2009.10.11 12:52:45 | 000,012,304 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackpointlight.cfx
[2009.10.11 12:52:42 | 000,012,340 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetailcrackshadow.cfx
[2009.10.11 12:52:39 | 000,012,200 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrack.cfx
[2009.10.11 12:52:46 | 000,012,252 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackalphatest.cfx
[2009.10.11 12:52:46 | 000,012,620 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2009.10.11 12:52:49 | 000,012,936 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2009.10.11 12:52:52 | 000,012,516 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2009.10.11 12:52:49 | 000,012,572 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2009.10.11 12:52:39 | 000,012,568 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcracklightmap.cfx
[2009.10.11 12:52:42 | 000,012,884 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2009.10.11 12:52:41 | 000,012,804 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2009.10.11 12:52:48 | 000,012,840 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2009.10.11 12:52:48 | 000,013,180 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2009.10.11 12:52:51 | 000,013,552 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2009.10.11 12:52:53 | 000,012,900 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2009.10.11 12:52:51 | 000,013,228 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2009.10.11 12:52:41 | 000,013,144 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2009.10.11 12:52:44 | 000,013,516 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2009.10.11 12:52:41 | 000,012,920 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetail.cfx
[2009.10.11 12:52:49 | 000,012,956 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatest.cfx
[2009.10.11 12:52:49 | 000,013,296 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2009.10.11 12:52:51 | 000,013,668 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2009.10.11 12:52:53 | 000,013,008 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2009.10.11 12:52:51 | 000,013,344 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2009.10.11 12:52:41 | 000,013,260 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmap.cfx
[2009.10.11 12:52:44 | 000,013,632 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2009.10.11 12:52:46 | 000,012,972 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailpointlight.cfx
[2009.10.11 12:52:44 | 000,013,308 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailshadow.cfx
[2009.10.11 12:52:46 | 000,012,864 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2009.10.11 12:52:44 | 000,013,192 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2009.10.11 12:52:45 | 000,012,480 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackpointlight.cfx
[2009.10.11 12:52:42 | 000,012,520 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-2340-0B2000C2CB35}_3153_2\rashaderstmbasedetaildirtcrackshadow.cfx
[2009.10.09 21:59:07 | 000,012,116 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrack.cfx
[2009.10.09 21:59:14 | 000,012,168 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatest.cfx
[2009.10.09 21:59:14 | 000,012,536 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2009.10.09 21:59:16 | 000,012,852 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2009.10.09 21:59:19 | 000,012,436 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2009.10.09 21:59:16 | 000,012,488 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestshadow.cfx
[2009.10.09 21:59:07 | 000,012,484 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcracklightmap.cfx
[2009.10.09 21:59:10 | 000,012,800 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcracklightmapshadow.cfx
[2009.10.09 21:59:09 | 000,012,720 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrack.cfx
[2009.10.09 21:59:15 | 000,012,756 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2009.10.09 21:59:15 | 000,013,096 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2009.10.09 21:59:18 | 000,013,468 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2009.10.09 21:59:20 | 000,012,816 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2009.10.09 21:59:18 | 000,013,144 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2009.10.09 21:59:09 | 000,013,060 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2009.10.09 21:59:11 | 000,013,432 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2009.10.09 21:59:09 | 000,012,836 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetail.cfx
[2009.10.09 21:59:16 | 000,012,872 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatest.cfx
[2009.10.09 21:59:16 | 000,013,212 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2009.10.09 21:59:18 | 000,013,584 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2009.10.09 21:59:20 | 000,012,924 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2009.10.09 21:59:18 | 000,013,260 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2009.10.09 21:59:09 | 000,013,176 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmap.cfx
[2009.10.09 21:59:12 | 000,013,548 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2009.10.09 21:59:13 | 000,012,888 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailpointlight.cfx
[2009.10.09 21:59:12 | 000,013,224 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailshadow.cfx
[2009.10.09 21:59:13 | 000,012,780 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2009.10.09 21:59:11 | 000,013,108 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2009.10.09 21:59:12 | 000,012,400 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackpointlight.cfx
[2009.10.09 21:59:10 | 000,012,436 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetailcrackshadow.cfx
[2009.10.09 21:59:07 | 000,012,296 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrack.cfx
[2009.10.09 21:59:14 | 000,012,348 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatest.cfx
[2009.10.09 21:59:14 | 000,012,716 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2009.10.09 21:59:17 | 000,013,032 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2009.10.09 21:59:19 | 000,012,612 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2009.10.09 21:59:17 | 000,012,668 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2009.10.09 21:59:07 | 000,012,664 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcracklightmap.cfx
[2009.10.09 21:59:10 | 000,012,980 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2009.10.09 21:59:09 | 000,012,900 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2009.10.09 21:59:16 | 000,012,936 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2009.10.09 21:59:16 | 000,013,276 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2009.10.09 21:59:18 | 000,013,648 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2009.10.09 21:59:20 | 000,012,996 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2009.10.09 21:59:18 | 000,013,324 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2009.10.09 21:59:09 | 000,013,240 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2009.10.09 21:59:12 | 000,013,612 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2009.10.09 21:59:09 | 000,013,016 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetail.cfx
[2009.10.09 21:59:16 | 000,013,052 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatest.cfx
[2009.10.09 21:59:16 | 000,013,392 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2009.10.09 21:59:19 | 000,013,764 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2009.10.09 21:59:20 | 000,013,104 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2009.10.09 21:59:18 | 000,013,440 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2009.10.09 21:59:09 | 000,013,356 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmap.cfx
[2009.10.09 21:59:12 | 000,013,728 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2009.10.09 21:59:13 | 000,013,068 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailpointlight.cfx
[2009.10.09 21:59:12 | 000,013,404 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailshadow.cfx
[2009.10.09 21:59:13 | 000,012,960 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2009.10.09 21:59:11 | 000,013,288 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2009.10.09 21:59:12 | 000,012,576 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackpointlight.cfx
[2009.10.09 21:59:10 | 000,012,616 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-D640-0B2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackshadow.cfx
[2011.07.03 22:00:05 | 000,000,529 | ---- | M] () -- \Documents and Settings\YozefB\Application Data\Microsoft\Office\Naposledy otevřené\Crack.LNK
[2012.10.14 19:14:56 | 000,012,116 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrack.cfx
[2012.10.14 19:15:03 | 000,012,168 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackalphatest.cfx
[2012.10.14 19:15:03 | 000,012,536 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2012.10.14 19:15:06 | 000,012,852 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2012.10.14 19:15:08 | 000,012,436 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2012.10.14 19:15:06 | 000,012,488 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackalphatestshadow.cfx
[2012.10.14 19:14:56 | 000,012,484 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcracklightmap.cfx
[2012.10.14 19:14:59 | 000,012,800 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcracklightmapshadow.cfx
[2012.10.14 19:14:57 | 000,012,720 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrack.cfx
[2012.10.14 19:15:05 | 000,012,756 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2012.10.14 19:15:05 | 000,013,096 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2012.10.14 19:15:08 | 000,013,468 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2012.10.14 19:15:09 | 000,012,816 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2012.10.14 19:15:07 | 000,013,144 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2012.10.14 19:14:58 | 000,013,060 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2012.10.14 19:15:00 | 000,013,432 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2012.10.14 19:14:58 | 000,012,880 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetail.cfx
[2012.10.14 19:15:05 | 000,012,916 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatest.cfx
[2012.10.14 19:15:05 | 000,013,256 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2012.10.14 19:15:08 | 000,013,628 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2012.10.14 19:15:09 | 000,012,940 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2012.10.14 19:15:08 | 000,013,304 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2012.10.14 19:14:58 | 000,013,220 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmap.cfx
[2012.10.14 19:15:01 | 000,013,592 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2012.10.14 19:15:02 | 000,012,904 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailpointlight.cfx
[2012.10.14 19:15:01 | 000,013,268 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailshadow.cfx
[2012.10.14 19:15:02 | 000,012,780 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2012.10.14 19:15:00 | 000,013,108 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2012.10.14 19:15:01 | 000,012,400 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackpointlight.cfx
[2012.10.14 19:14:59 | 000,012,436 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetailcrackshadow.cfx
[2012.10.14 19:14:56 | 000,012,296 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrack.cfx
[2012.10.14 19:15:03 | 000,012,348 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackalphatest.cfx
[2012.10.14 19:15:03 | 000,012,716 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2012.10.14 19:15:06 | 000,013,032 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2012.10.14 19:15:08 | 000,012,612 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2012.10.14 19:15:06 | 000,012,668 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2012.10.14 19:14:56 | 000,012,664 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcracklightmap.cfx
[2012.10.14 19:14:59 | 000,012,980 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2012.10.14 19:14:58 | 000,012,900 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2012.10.14 19:15:05 | 000,012,936 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2012.10.14 19:15:05 | 000,013,276 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2012.10.14 19:15:08 | 000,013,648 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2012.10.14 19:15:09 | 000,012,996 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2012.10.14 19:15:08 | 000,013,324 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2012.10.14 19:14:58 | 000,013,240 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2012.10.14 19:15:01 | 000,013,612 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2012.10.14 19:14:58 | 000,013,060 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetail.cfx
[2012.10.14 19:15:05 | 000,013,096 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatest.cfx
[2012.10.14 19:15:05 | 000,013,436 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2012.10.14 19:15:08 | 000,013,808 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2012.10.14 19:15:09 | 000,013,120 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2012.10.14 19:15:08 | 000,013,484 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2012.10.14 19:14:58 | 000,013,400 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmap.cfx
[2012.10.14 19:15:01 | 000,013,772 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2012.10.14 19:15:02 | 000,013,084 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailpointlight.cfx
[2012.10.14 19:15:01 | 000,013,448 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailshadow.cfx
[2012.10.14 19:15:02 | 000,012,960 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2012.10.14 19:15:01 | 000,013,288 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2012.10.14 19:15:01 | 000,012,576 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackpointlight.cfx
[2012.10.14 19:14:59 | 000,012,616 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_2442_3\rashaderstmbasedetaildirtcrackshadow.cfx
[2012.10.16 21:17:35 | 000,012,116 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrack.cfx
[2012.10.16 21:17:42 | 000,012,168 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatest.cfx
[2012.10.16 21:17:42 | 000,012,536 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestlightmap.cfx
[2012.10.16 21:17:46 | 000,012,852 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
[2012.10.16 21:17:48 | 000,012,436 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestpointlight.cfx
[2012.10.16 21:17:45 | 000,012,488 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackalphatestshadow.cfx
[2012.10.16 21:17:35 | 000,012,484 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcracklightmap.cfx
[2012.10.16 21:17:38 | 000,012,800 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcracklightmapshadow.cfx
[2012.10.16 21:17:37 | 000,012,720 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrack.cfx
[2012.10.16 21:17:44 | 000,012,756 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2012.10.16 21:17:44 | 000,013,096 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2012.10.16 21:17:47 | 000,013,468 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2012.10.16 21:17:49 | 000,012,816 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2012.10.16 21:17:47 | 000,013,144 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2012.10.16 21:17:37 | 000,013,060 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2012.10.16 21:17:40 | 000,013,432 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2012.10.16 21:17:37 | 000,012,836 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetail.cfx
[2012.10.16 21:17:45 | 000,012,872 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatest.cfx
[2012.10.16 21:17:45 | 000,013,212 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2012.10.16 21:17:48 | 000,013,584 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2012.10.16 21:17:49 | 000,012,924 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2012.10.16 21:17:48 | 000,013,260 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2012.10.16 21:17:37 | 000,013,176 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmap.cfx
[2012.10.16 21:17:40 | 000,013,548 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2012.10.16 21:17:42 | 000,012,888 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailpointlight.cfx
[2012.10.16 21:17:40 | 000,013,224 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackparallaxdetailshadow.cfx
[2012.10.16 21:17:42 | 000,012,780 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2012.10.16 21:17:40 | 000,013,108 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2012.10.16 21:17:41 | 000,012,400 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackpointlight.cfx
[2012.10.16 21:17:38 | 000,012,436 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetailcrackshadow.cfx
[2012.10.16 21:17:35 | 000,012,296 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrack.cfx
[2012.10.16 21:17:43 | 000,012,348 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatest.cfx
[2012.10.16 21:17:43 | 000,012,716 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestlightmap.cfx
[2012.10.16 21:17:46 | 000,013,032 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestlightmapshadow.cfx
[2012.10.16 21:17:48 | 000,012,612 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestpointlight.cfx
[2012.10.16 21:17:46 | 000,012,668 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackalphatestshadow.cfx
[2012.10.16 21:17:35 | 000,012,664 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcracklightmap.cfx
[2012.10.16 21:17:38 | 000,012,980 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcracklightmapshadow.cfx
[2012.10.16 21:17:37 | 000,012,900 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2012.10.16 21:17:45 | 000,012,936 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2012.10.16 21:17:45 | 000,013,276 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2012.10.16 21:17:47 | 000,013,648 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2012.10.16 21:17:49 | 000,012,996 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2012.10.16 21:17:47 | 000,013,324 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2012.10.16 21:17:37 | 000,013,240 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2012.10.16 21:17:40 | 000,013,612 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2012.10.16 21:17:37 | 000,013,016 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetail.cfx
[2012.10.16 21:17:45 | 000,013,052 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatest.cfx
[2012.10.16 21:17:45 | 000,013,392 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmap.cfx
[2012.10.16 21:17:48 | 000,013,764 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestlightmapshadow.cfx
[2012.10.16 21:17:49 | 000,013,104 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestpointlight.cfx
[2012.10.16 21:17:48 | 000,013,440 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailalphatestshadow.cfx
[2012.10.16 21:17:37 | 000,013,356 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmap.cfx
[2012.10.16 21:17:40 | 000,013,728 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetaillightmapshadow.cfx
[2012.10.16 21:17:42 | 000,013,068 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailpointlight.cfx
[2012.10.16 21:17:40 | 000,013,404 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackparallaxdetailshadow.cfx
[2012.10.16 21:17:42 | 000,012,960 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2012.10.16 21:17:40 | 000,013,288 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2012.10.16 21:17:41 | 000,012,576 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackpointlight.cfx
[2012.10.16 21:17:38 | 000,012,616 | ---- | M] () -- \Documents and Settings\YozefB\My Documents\Battlefield 2\mods\bf2\cache\{D7B71E3E-40D2-11CF-DD7E-0C2000C2CB35}_3153_3\rashaderstmbasedetaildirtcrackshadow.cfx
[2013.05.22 20:17:44 | 000,004,125 | ---- | M] () -- \Program Files\JDownloader\jd\plugins\hoster\CrackedCom.class
[2010.08.10 23:59:13 | 000,015,960 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\Gauges\DCrack_Concorde.dll
[2004.06.28 17:08:30 | 001,486,848 | ---- | M] () -- \Program Files\Waves\Plug-Ins\XCrackle.dll
[2010.08.18 20:50:03 | 000,000,030 | ---- | M] () -- \Program Files\Waves\Plug-Ins\Plug-In Settings\X-Crackle Settings.xps
[2011.09.05 21:20:30 | 000,018,281 | ---- | M] () -- \temp\utorrent\Adobe Photoshop Lightroom 3.4 incld crack.rar.torrent
[2011.09.05 21:30:22 | 000,018,139 | ---- | M] () -- \temp\utorrent\Adobe Photoshop Lightroom v3.4 crack3d.rar.torrent
[2011.09.05 21:55:26 | 000,018,382 | ---- | M] () -- \temp\utorrent\Adobe Photoshop Lightroom v3.4 cracked.rar.torrent
[2011.06.22 22:21:40 | 000,001,847 | ---- | M] () -- \temp\utorrent\Protel 99 SE + crack.torrent
[2012.09.14 21:08:02 | 000,018,422 | ---- | M] () -- \temp\utorrent\Sony.Vegas.Pro.10.x86-x64.Cracked-Torrentleech.torrent
[2011.05.14 23:07:13 | 000,001,902 | ---- | M] () -- \temp\utorrent\Sprint - Layout 5.0 + Crack [h33t] [Original].torrent

< *keygen* /s >
[2008.09.06 07:24:45 | 000,044,544 | ---- | M] () -- \Program Files\Lavalys\EVEREST Ultimate Edition\keygen.exe
[2012.09.25 21:23:09 | 000,015,243 | ---- | M] () -- \temp\utorrent\Adobe Photoshop Lightroom 4.0 Final Multilingual (keygen-CORE) [ChingLiu].torrent
[2011.09.06 21:51:42 | 000,012,863 | ---- | M] () -- \temp\utorrent\Nero 10.0 + Serials en Keygen - DivXNL-Team.torrent

< *AntiWPA* /s >

< *loader* /s >
[2012.10.24 14:03:00 | 000,306,936 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Application Data\Adobe\AIH.216498abadc4ec372d41ba98ffda710c0f7b00ea\downloader.bundle
[2012.10.17 22:34:00 | 000,511,944 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Application Data\Adobe\AIH.216498abadc4ec372d41ba98ffda710c0f7b00ea\downloader.dll
[2013.03.26 14:13:12 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Application Data\Skype\Apps\login\images\loader.gif
[2013.03.26 14:13:12 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Application Data\Skype\Apps\login\images\loader.png
[2013.03.26 14:13:12 | 000,009,772 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2010.08.17 07:20:02 | 000,000,344 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2010.08.17 07:20:02 | 000,000,824 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Start Menu\Programs\JDownloader\JDownloader.lnk
[2010.08.17 07:20:03 | 000,000,814 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2010.02.26 08:41:34 | 000,847,040 | ---- | M] () -- \Documents and Settings\yozef\Application Data\Facebook\axfbootloader.dll
[2012.03.22 15:09:48 | 000,005,379 | ---- | M] () -- \Documents and Settings\yozef\Application Data\Mozilla\Firefox\Profiles\kcdc6ags.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\content\loader.js
[2012.03.22 15:09:48 | 000,004,163 | ---- | M] () -- \Documents and Settings\yozef\Application Data\Mozilla\Firefox\Profiles\kcdc6ags.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\windows\loader.js
[2010.08.18 20:54:41 | 000,000,824 | ---- | M] () -- \Documents and Settings\YozefB\Application Data\Microsoft\Internet Explorer\Quick Launch\JDownloader.lnk
[2012.03.22 15:09:48 | 000,005,379 | ---- | M] () -- \Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\content\loader.js
[2012.03.22 15:09:48 | 000,004,163 | ---- | M] () -- \Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\windows\loader.js
[2013.06.16 17:33:52 | 000,001,232 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\0TAVBXEX\oneMscomJsCssLoader[1].js
[2013.07.07 20:07:33 | 000,002,545 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\GCPNDWOX\loader[1].gif
[2013.07.07 21:53:05 | 000,003,061 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\GCPNDWOX\rmsloaderdelayeddiv[1].js
[2013.07.13 22:43:06 | 000,109,448 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\KL1Q33LU\AdLoader-b3e321cab5fbc3c4ed10b513bb467bae.min[1].js
[2013.07.14 10:00:42 | 000,001,511 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\KL1Q33LU\AdLoader[2].htm
[2013.07.07 21:53:25 | 000,002,971 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\KL1Q33LU\loader[1].gif
[2013.06.16 17:34:37 | 000,002,140 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\KL1Q33LU\loader[1].js
[2013.06.16 17:32:04 | 000,001,102 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\KL1Q33LU\oneMscomJsCssLoader[1].js
[2013.06.16 17:32:56 | 000,001,103 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\KL1Q33LU\oneMscomJsCssLoader[2].js
[2013.06.16 17:31:54 | 000,003,061 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Temporary Internet Files\Content.IE5\KL1Q33LU\rmsloaderdelayeddiv[1].js
[2012.10.25 12:06:16 | 000,071,208 | ---- | M] () -- \Games\World_of_Tanks\PhysXLoader.dll
[2013.02.26 18:36:29 | 000,003,668 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\helpers\rssdownloader.pyc
[2013.06.12 13:05:20 | 000,006,463 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\tutorial\loader.pyc
[2009.03.18 16:41:24 | 000,176,128 | ---- | M] () -- \Inetpub\HPManagedPrintAdmin\Components\MPAUploader.dll
[2009.03.18 16:41:24 | 000,005,962 | ---- | M] () -- \Inetpub\HPManagedPrintAdmin\Scripts\formUploader.js
[2009.03.18 16:41:24 | 000,005,724 | ---- | M] () -- \Inetpub\HPManagedPrintAdmin\Scripts\mdbLoader.js
[2009.03.18 16:41:24 | 000,028,866 | ---- | M] () -- \Inetpub\HPManagedPrintAdmin\Scripts\policyLoader.js
[2006.10.26 14:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006.10.26 14:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2008.02.28 13:26:06 | 000,111,912 | ---- | M] () -- \Program Files\Common Files\Nero\Shared\NSCLoader.dll
[2009.12.07 15:00:36 | 000,688,128 | ---- | M] () -- \Program Files\Common Files\Nikon\File Uploader\NkFileUploader.exe
[2009.12.07 15:00:12 | 000,011,776 | ---- | M] () -- \Program Files\Common Files\Nikon\File Uploader\NkFileUploaderLang.dll
[2010.11.04 11:37:28 | 000,335,872 | ---- | M] () -- \Program Files\Common Files\Nokia\Service Layer\A\nsl_loader.dll
[2010.10.28 15:29:30 | 000,131,072 | ---- | M] () -- \Program Files\Common Files\Nokia\Tss\ProductApiLoader\ta_productapiloader.dll
[2004.12.28 18:40:02 | 000,169,384 | ---- | M] () -- \Program Files\Counter-Strike 1.6\cstrike\models\qloader.mdl
[2003.09.15 14:55:50 | 000,352,548 | ---- | M] () -- \Program Files\Counter-Strike 1.6\valve\models\loader.mdl
[2003.09.15 14:56:04 | 000,012,764 | ---- | M] () -- \Program Files\Counter-Strike 1.6\valve\sound\ambience\loader_hydra1.wav
[2003.09.15 14:56:04 | 000,012,164 | ---- | M] () -- \Program Files\Counter-Strike 1.6\valve\sound\ambience\loader_step1.wav
[2012.05.11 14:44:18 | 000,004,176 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Resources\en-US\searching\ajax-loader.gif
[2012.05.11 14:45:20 | 000,000,214 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\AdvancedCameraTools\actloader.rb
[2012.05.11 14:44:20 | 000,000,500 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\DynamicComponents\ruby\dcloader.rb
[2012.05.11 14:44:20 | 000,001,871 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\ShadowStringsFix\shadowstringsfix_loader.rb
[2012.05.11 14:44:20 | 000,003,949 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\SolarNorth\solarnorth_loader.rb
[2012.05.11 14:44:20 | 000,029,567 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\WebTextures\webtextures_loader.rb
[2009.07.03 10:15:16 | 000,001,315 | ---- | M] () -- \Program Files\HappyFoto\HF Designer\Loader.elf
[2009.04.15 16:46:10 | 000,308,224 | ---- | M] () -- \Program Files\HappyFoto\HF Designer\Loader.exe
[2010.07.14 09:28:02 | 000,214,528 | ---- | M] () -- \Program Files\JDownloader\JDownloader.exe
[2011.01.28 07:38:32 | 000,593,293 | ---- | M] () -- \Program Files\JDownloader\JDownloader.jar
[2010.08.17 07:20:26 | 000,000,105 | ---- | M] () -- \Program Files\JDownloader\jd\img\hosterlogos\uploader.pl.png
[2013.01.04 22:31:22 | 000,011,071 | ---- | M] () -- \Program Files\JDownloader\jd\plugins\hoster\MyDownloaderNet.class
[2013.03.06 00:03:40 | 000,004,584 | ---- | M] () -- \Program Files\JDownloader\jd\plugins\hoster\OmpLoaderOrg.class
[2013.01.04 22:30:59 | 000,007,073 | ---- | M] () -- \Program Files\JDownloader\jd\plugins\hoster\UploaderPl.class
[2010.08.17 07:21:19 | 000,032,222 | ---- | M] () -- \Program Files\JDownloader\licenses\jdownloader.license
[1999.01.14 05:10:56 | 000,029,184 | ---- | M] () -- \Program Files\Maxis\SimCity 3000\loader.exe
[1999.01.14 05:10:56 | 000,029,184 | ---- | M] () -- \Program Files\Maxis\SimCity 3000\Game\loader.exe
[2007.01.06 22:10:29 | 000,152,064 | ---- | M] () -- \Program Files\Microsoft Games\cs_727_200_11_loader.exe
[2006.08.16 04:25:58 | 000,174,888 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue.dds
[2006.08.16 04:25:58 | 000,262,272 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue_bump.dds
[2006.08.16 04:26:00 | 000,174,888 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue_lm.dds
[2006.08.16 04:26:00 | 000,349,648 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderBlue_specular.dds
[2006.08.16 04:26:04 | 000,174,888 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderGrey.dds
[2006.08.16 04:26:04 | 000,174,888 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\Scenery\Global\Texture\VEH_Air_BagLoaderGrey_lm.dds
[2006.09.04 21:21:28 | 000,301,367 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\SimObjects\GroundVehicles\VEH_Air_BagLoaderBlue\model\VEH_Air_BagLoaderBlue.mdl
[2006.09.04 21:21:30 | 000,301,815 | ---- | M] () -- \Program Files\Microsoft Games\Microsoft Flight Simulator X\SimObjects\GroundVehicles\VEH_Air_BagLoaderGrey\model\VEH_Air_BagLoaderGrey.mdl
[2012.06.26 13:36:44 | 000,002,560 | ---- | M] () -- \Program Files\Nokia\Nokia PC Suite 7\Lang\MapLoader_eng-us.NLR
[2009.01.21 15:30:04 | 000,003,072 | ---- | M] () -- \Program Files\Nokia\Nokia PC Suite 7\Lang\MapLoader_eng.NLR
[2011.07.18 23:33:32 | 000,008,787 | ---- | M] () -- \Program Files\Notepad++\user.manual\sites\all\modules\fancy_login\images\ajax-loader.gif
[2010.12.27 19:49:24 | 000,001,702 | ---- | M] () -- \Program Files\Sony Ericsson\Update Engine\licenses\loaderbinarylegal.txt
[2010.03.15 11:28:23 | 000,045,056 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2004.08.04 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2010.09.03 21:25:59 | 000,082,784 | ---- | M] () -- \WINDOWS\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2008.04.14 02:11:52 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 20:31:43 | 000,230,400 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 20:31:44 | 000,278,016 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 02:11:52 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[1 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2013.04.02 18:40:46 | 000,071,208 | ---- | M] () -- \World_of_Tanks_CT\PhysXLoader.dll
[2013.04.02 18:40:46 | 000,003,668 | ---- | M] () -- \World_of_Tanks_CT\res\scripts\client\helpers\rssdownloader.pyc
[2013.04.02 18:40:46 | 000,006,407 | ---- | M] () -- \World_of_Tanks_CT\res\scripts\client\tutorial\loader.pyc

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >

< *activator* /s >

< *serial* /s >
[2011.01.06 00:24:33 | 000,057,344 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Application Data\Sony Ericsson\Update Engine\configuration\org.eclipse.osgi\bundles\17\1\.cp\lib\serialio.dll
[2010.06.07 18:35:02 | 000,000,036 | ---- | M] () -- \Documents and Settings\yozef\Local Settings\Application Data\Google\Picasa2\cache\cacheindex_serial.pmp
[2010.07.05 20:21:02 | 000,000,028 | ---- | M] () -- \Documents and Settings\yozef\My Documents\Downloads\Wilco - Airbus Series v1 Deluxe + SP3e (FSX)\Serial.txt
[2011.12.19 17:34:32 | 000,000,064 | ---- | M] () -- \Documents and Settings\YozefB\Local Settings\Application Data\Google\Picasa2\cache\cacheindex_serial.pmp
[2012.12.07 11:08:57 | 000,003,206 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\Scaleform\gui_items\serializers.pyc
[2012.03.29 06:01:00 | 000,413,696 | ---- | M] () -- \Program Files\Microsoft Silverlight\4.1.10329.0\System.Runtime.Serialization.dll
[2012.05.19 14:11:38 | 001,186,816 | ---- | M] () -- \Program Files\Microsoft Silverlight\4.1.10329.0\System.Runtime.Serialization.ni.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2010.12.27 19:48:30 | 000,026,761 | ---- | M] () -- \Program Files\Sony Ericsson\Update Engine\plugins\com.serialio.win32.x86_2.10.2.0.jar
[2010.12.27 19:48:30 | 000,049,506 | ---- | M] () -- \Program Files\Sony Ericsson\Update Engine\plugins\com.serialio_2.11.1.9.jar
[2010.12.27 19:49:52 | 000,002,239 | ---- | M] () -- \Program Files\Sony Ericsson\Update Engine\plugins\com.sonyericsson.cs.serialcommunication_2.11.1.9.jar
[2010.12.27 12:47:00 | 000,315,392 | ---- | M] () -- \Program Files\Sony\Vegas Pro 10.0\CoreUI.XmlSerializers.dll
[2010.12.27 12:46:58 | 000,454,656 | ---- | M] () -- \Program Files\Sony\Vegas Pro 10.0\Sony.MediaSoftware.TextGen.CoreGraphics.XmlSerializers.dll
[2010.05.12 11:22:54 | 000,311,296 | ---- | M] () -- \Program Files\Sony\Vegas Pro 9.0\CoreUI.XmlSerializers.dll
[2010.05.12 11:22:50 | 000,450,560 | ---- | M] () -- \Program Files\Sony\Vegas Pro 9.0\Sony.MediaSoftware.TextGen.CoreGraphics.XmlSerializers.dll
[2011.09.06 21:51:42 | 000,012,863 | ---- | M] () -- \temp\utorrent\Nero 10.0 + Serials en Keygen - DivXNL-Team.torrent
[2004.08.04 14:00:00 | 000,064,896 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\serial.sys
[2013.01.24 23:28:52 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.07.11 08:34:55 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.01.24 23:59:00 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2012.05.19 14:21:59 | 000,864,768 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\CoreUI.XmlSerialize#\4184d5a3f2b086ebc811b93205af4714\CoreUI.XmlSerializers.ni.dll
[2012.07.01 21:13:02 | 000,864,768 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\CoreUI.XmlSerialize#\512bcf4851a15becdc6d807c1a8e0d66\CoreUI.XmlSerializers.ni.dll
[2013.07.11 08:38:30 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\afbff0c4df2ddd1e111f9e594279cb19\System.Runtime.Serialization.ni.dll
[2010.04.08 00:48:30 | 000,970,752 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\0DC1503A46F231838AD88BCDDC8E8F7C\3.2.30729\FL_System_Runtime_Serialization_dll_133675_____x86.3643236F_FC70_11D3_A536_0090278A1BB8
[2010.04.08 00:48:30 | 000,970,752 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\0DC1503A46F231838AD88BCDDC8E8F7C\3.2.30729\FL_System_Runtime_Serialization_dll_147207_____x86.3643236F_FC70_11D3_A536_0090278A1BB8
[2004.07.15 15:31:54 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
[2008.07.25 12:17:00 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2008.04.13 20:40:21 | 000,028,288 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\grserial.sys
[2008.04.13 21:15:45 | 000,064,512 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\serial.sys
[2007.06.27 14:59:02 | 000,131,072 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\system.runtime.serialization.formatters.soap.dll
[2004.08.04 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2004.08.04 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[1 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2004.08.04 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2004.08.04 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.13 21:15:45 | 000,064,512 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys
[2013.04.02 18:40:46 | 000,003,206 | ---- | M] () -- \World_of_Tanks_CT\res\scripts\client\gui\scaleform\gui_items\serializers.pyc

< *w7lxe* /s >

< End of report >

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 15 črc 2013 18:47
od yozefb
OTL Extras logfile created on: 15. 7. 2013 18:54:30 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\YozefB\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d. M. yyyy

3,00 Gb Total Physical Memory | 2,03 Gb Available Physical Memory | 67,66% Memory free
7,07 Gb Paging File | 6,31 Gb Available in Paging File | 89,13% Paging File free
Paging file location(s): C:\pagefile.sys 256 256E:\pagefil [Binary data over 200 bytes]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 125,00 Gb Total Space | 11,82 Gb Free Space | 9,45% Space Free | Partition Type: NTFS
Drive D: | 806,51 Gb Total Space | 48,26 Gb Free Space | 5,98% Space Free | Partition Type: NTFS
Drive E: | 298,09 Gb Total Space | 65,69 Gb Free Space | 22,04% Space Free | Partition Type: NTFS

Computer Name: YOZEF | User Name: YozefB | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-343818398-448539723-682003330-1003\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Browse with FastStone] -- "C:\Program Files\FastStone Image Viewer\FSViewer.exe" "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"61314:TCP" = 61314:TCP:*:Enabled:PC Remote Server XP
"61314:UDP" = 61314:UDP:*:Enabled:PC Remote Server XP

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\Google\Google Talk\googletalk.exe" = C:\Program Files\Google\Google Talk\googletalk.exe:*:Enabled:Google Talk -- (Google)
"C:\temp\utorrent\utorrent.exe" = C:\temp\utorrent\utorrent.exe:*:Enabled:µTorrent -- (BitTorrent Inc.)
"C:\Program Files\QIP\qip.exe" = C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager -- (The Author of QIP)
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe" = C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth -- (Google)
"C:\WINDOWS\system32\dpnsvr.exe" = C:\WINDOWS\system32\dpnsvr.exe:*:Disabled:Microsoft DirectPlay8 Server -- (Microsoft Corporation)
"C:\Program Files\Java\jre6\bin\javaw.exe" = C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe" = C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process -- (Nokia Corporation)
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe" = C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater -- (Nokia Corporation)
"C:\Program Files\Microsoft Games\Microsoft Flight Simulator X\fsx.exe" = C:\Program Files\Microsoft Games\Microsoft Flight Simulator X\fsx.exe:*:Enabled:Microsoft Flight Simulator® -- (Microsoft Corp.)
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\WINDOWS\Downloaded Program Files\TunnelServer.exe" = C:\WINDOWS\Downloaded Program Files\TunnelServer.exe:*:Enabled:TunnelServer -- ()
"C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" = C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe:*:Enabled:Nokia Ovi Suite 2 -- (Nokia)
"C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe" = C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe:*:Enabled:Update Engine -- ()
"C:\Program Files\Winamp\winamp.exe" = C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp -- (Nullsoft, Inc.)
"C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe" = C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe -- (NVIDIA Corporation)
"C:\Documents and Settings\YozefB\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe" = C:\Documents and Settings\YozefB\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin -- (Google)
"C:\Program Files\TeamViewer\Version7\TeamViewer.exe" = C:\Program Files\TeamViewer\Version7\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application -- (TeamViewer GmbH)
"C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe" = C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service -- (TeamViewer GmbH)
"C:\Program Files\Counter-Strike 1.6\hl.exe" = C:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher -- (Valve)
"C:\Documents and Settings\YozefB\Local Settings\Application Data\AntikVirtualSTB\AntikVirtualSTB.exe" = C:\Documents and Settings\YozefB\Local Settings\Application Data\AntikVirtualSTB\AntikVirtualSTB.exe:*:Enabled:AntikVirtualSTB -- ()
"C:\Program Files\Antik Phone\AntikSIPsoftPhone.atk" = C:\Program Files\Antik Phone\AntikSIPsoftPhone.atk:*:Enabled:AntikSIPsoftPhone -- ()
"C:\Program Files\Antik Phone\AntikSIPsoftPhone.exe" = C:\Program Files\Antik Phone\AntikSIPsoftPhone.exe:*:Enabled:AntikSIPsoftPhone -- ()
"C:\Program Files\EA GAMES\Battlefield 2\BF2.exe" = C:\Program Files\EA GAMES\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2 -- ()
"C:\Games\World_of_Tanks\WoTLauncher.exe" = C:\Games\World_of_Tanks\WoTLauncher.exe:*:Enabled:World of Tanks Launcher -- (Wargaming.net)
"C:\Games\World_of_Tanks\WorldOfTanks.exe" = C:\Games\World_of_Tanks\WorldOfTanks.exe:*:Enabled:World of Tanks -- (Wargaming.net)
"C:\Program Files\Java\jre7\bin\javaw.exe" = C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Oracle Corporation)
"C:\World_of_Tanks_CT\WoTLauncher.exe" = C:\World_of_Tanks_CT\WoTLauncher.exe:*:Enabled:World of Tanks Launcher -- (Wargaming.net)
"C:\World_of_Tanks_CT\WorldOfTanks.exe" = C:\World_of_Tanks_CT\WorldOfTanks.exe:*:Enabled:World of Tanks -- (Wargaming.net)
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" = C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe -- (NVIDIA Corporation)
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"[[FSX]] Carenado MegaPack" = [[FSX]] Carenado MegaPack
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{08600005-5228-4BF6-845E-E9A957AFDCB4}" = OviMPlatform
"{0DC9C45C-966C-488D-B97E-5C68E161CDCC}" = SceneryTech South America Landclass v1.0
"{0F842B77-56EA-4AAF-8295-81A022350B5E}" = Microsoft Security Client
"{121634B0-2F4B-11D3-ADA3-00C04F52DD52}" = Windows Installer Clean Up
"{14CCAED2-5140-44F3-991D-DA9AC7C9A3AB}_is1" = AntikVirtualSTB 10.1.7
"{18A5DFF2-8A95-49F3-873F-743CB5549F3D}" = Canon ScanGear Starter
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812CT}_is1" = World of Tanks - Common Test
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1" = World of Tanks
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{21203029-9038-40F2-8EE0-68B83523CF1F}" = PC Remote
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"{2336573C-3213-48AA-A306-8309BA9BD92C}" = Aerosoft's - Airbus X
"{237CD223-1B9D-47E8-A76C-E478B83CCEA2}" = File Uploader
"{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java(TM) 6 Update 39
"{26A24AE4-039D-4CA4-87B4-2F83217017FF}" = Java 7 Update 21
"{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth
"{31A559C1-9E4D-423B-9DD3-34A6C5398752}" = HTC BMP USB Driver
"{346BC016-4B9A-46F9-B4D4-E40C652F88DD}" = Aerosoft's - DA-20 Katana X
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3553E875-F00E-4031-BDEC-75FB1DFEB093}" = Nokia Ovi Suite Software Updater
"{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}" = Nokia Ovi Suite
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{468D22C0-8080-11E2-B86E-B8AC6F98CCE3}" = Google Earth
"{4818E804-E461-4EBC-A11C-D2DE2B5B8F46}_is1" = Aerosoft - Kos X
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6
"{4ECA710C-B818-4751-A3B8-42C2D93922A8}" = Nokia Software Updater
"{521F829A-CBDD-4525-A94C-05D4650E9F71}" = DVD Architect Pro 5.0
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{644F4910-E812-49AD-93EC-86828CB81A0D}" = PC Connectivity Solution
"{64996B10-0B55-4625-A124-551CB65F09CE}" = aerosoft's - London City Airport X
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{69916AD2-3710-4C86-895E-8F475290AA64}" = Ovi Desktop Sync Engine
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6D592E30-11EC-11E0-859C-0013D3D69929}" = Vegas Pro 10.0
"{6D6664A9-3342-4948-9B7E-034EFE366F0F}" = HTC Driver Installer
"{7032B400-11EC-11E0-A9BF-0013D3D69929}" = MSVCRT Redists
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7E20EFE6-E604-48C6-8B39-BA4742F2CDB4}" = Zune Desktop Theme
"{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}" = Nokia PC Suite
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}" = Opera 10.63
"{88A47643-0A80-4FA8-A568-E9A63AAA98F4}" = Google SketchUp Pro 8
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C1D4735-84E4-41E2-A1DB-70EADE27633C}" = Adobe Photoshop Lightroom 3.3
"{8DDD9A95-43C2-420F-B188-A1A62B202201}" = Addit! Pro For Flight Simulator X
"{90120000-0010-0405-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Czech) 12
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel(R) Matrix Storage Manager
"{908B5359-244E-4E09-AA9F-DBF240679B46}" = VOB2MPG v3
"{95120000-003F-0409-0000-0000000FF1CE}" = Microsoft Office Excel Viewer
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9729B90-D37B-4A69-B66A-7436AC1F7274}" = Microsoft Flight Simulator X: Acceleration
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.03)
"{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}" = Adobe AIR
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 307.83
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 307.83
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView" = NVIDIA nView 136.53
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.10.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B7588D45-AFDC-4C93-9E2E-A100F3554B64}" = Microsoft Fix it Center
"{BA31F48A-C811-30B4-AD93-1986C7838442}" = Google Talk Plugin
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C0A6901F-C919-47A3-A4D9-E2056314086B}" = aerosoft's - London Heathrow 2008
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{c9920352-04e6-469d-bab8-e2b9c7c75415}.sdb" = Microsoft Automated Troubleshooting Services Shim
"{CA9BCD4D-B782-4637-8F1F-F9A328D3C244}" = Canon CanoScan Toolbox 4.9
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D22002ED-EE2A-4CB1-A63D-430E62A2E8D8}" = Google SketchUp 8
"{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}" = Nikon Message Center
"{D9D1A2FD-56B2-4F21-B959-745FE43CAB8C}" = Vegas Pro 9.0
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.3.311
"{E51E4E3E-62B9-4A99-868D-B05B2DA3F4BF}" = ILLUSION リアル彼女
"{E9757890-7EC5-46C8-99AB-B00F07B6525C}" = Nikon Transfer
"{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony PC Companion 2.10.108
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F71E702A-7677-40C4-8989-BF3D652B7F45}" = Antik Phone
"{F9000000-0001-0000-0000-074957833700}" = ABBYY FineReader 9.0 Professional Edition
"{FCCC0BAD-386F-4866-9877-F78428CB0E37}" = aerosoft's - Rotterdam X
"{FE3997D3-6B56-4AC4-A99C-9DDFC45359BF}" = TuneUp Utilities Language Pack (en-US)
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{FF990174-A68E-4B91-91C5-98C07785A62D}}_is1" = ImageGrab 5.0.6 en
"17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382" = Windows Driver Package - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0)
"72A50F48CC5601190B9C4E74D81161693133E7F7" = Windows Driver Package - Nokia Modem (02/25/2011 7.01.0.9)
"777 'The Modern Airliner Collection'" = 777 'The Modern Airliner Collection'
"Ac3Tool" = Ac3Tool (remove only)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Airbus Series Vol.1 (FS X)" = Airbus Series Vol.1 (FS X)
"AirTrafficFX" = AirTrafficFX
"Beech Duke 2009F1.dl.1.502 (V1.5)" = RealAir Beech Duke 2009
"BPM-Studio 4 Profi" = BPM-Studio 4 Profi
"Bullzip PDF Printer_is1" = Bullzip PDF Printer 7.1.0.1218
"Carenado C 152 II" = Carenado C 152 II
"Carenado F33A Bonanza" = Carenado F33A Bonanza
"CCleaner" = CCleaner
"Counter-Strike 1.6" = Counter-Strike 1.6
"Device Control" = Device Control
"DokanLibrary" = Dokan Library 0.6.0
"DVD Decrypter" = DVD Decrypter (Remove Only)
"DVD Shrink_is1" = DVD Shrink 3.2
"E0AC723A3DE3A04256288CADBBB011B112AED454" = Windows Driver Package - Nokia Modem (02/25/2011 4.7)
"Easy CD-DA Extractor 11" = Easy CD-DA Extractor 11
"EAXSet" = Creative EAX Settings
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v4.60
"FastStone Image Viewer" = FastStone Image Viewer 4.6
"ffdshow_is1" = ffdshow [rev 3026] [2009-07-05]
"FlightSim_{A9729B90-D37B-4A69-B66A-7436AC1F7274}" = Microsoft Flight Simulator X: Acceleration
"Fly The B717-200" = Fly The B717-200
"foobar2000" = foobar2000 v1.1.7
"Formica Layout_is1" = Formica 4.40 Layout, Free / Evaluation Edition
"Formica Schematic_is1" = Formica 4.40 Schematic, Free / Evaluation Edition
"FreePCB_is1" = FreePCB 1.2
"GPL Ghostscript Lite_is1" = GPL Ghostscript Lite 8.70
"HaaliMkx" = Haali Media Splitter
"HF Designer_is1" = HF Designer
"HP Color LaserJet 2600 series" = HP Color LaserJet 2600 series
"Hugin_release_is1" = Hugin 2009.4.0
"ID3-TagIT_is1" = ID3-TagIT
"ie8" = Windows Internet Explorer 8
"InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X
"JDownloader" = JDownloader
"KeePass Password Safe_is1" = KeePass Password Safe 1.18
"LTspice IV" = LTspice IV
"Magic Bullet Editors 2.0 Vegas" = Magic Bullet Editors 2.0 Vegas
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft Security Client" = Microsoft Security Essentials
"Mozilla Firefox 22.0 (x86 sk)" = Mozilla Firefox 22.0 (x86 sk)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Mp3tag" = Mp3tag v2.53
"Nokia Ovi Suite" = Nokia Ovi Suite
"Nokia PC Suite" = Nokia PC Suite
"Notepad++" = Notepad++
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"PA34 200T SENECA II FSX" = PA34 200T SENECA II FSX
"Picasa 3" = Picasa 3
"PicPick" = PicPick
"popoluska" = Popoluška
"PSP MixPack 1.8.5" = PSP MixPack 1.8.5
"RTMshadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}" = Flight Simulator X
"SimCity 3000" = SimCity 3000
"SP_09b71135" =
"SP_562fe2da" = Search Assistant SoftQuick 1.66
"SP_7699c875" = Search Assistant SimpleSpeedy 1.74
"SP1_9527A496-5DF9-412A-ADC7-168BA5379CA6" = Microsoft Flight Simulator X Service Pack 1
"SP1shadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}" = Flight Simulator X Service Pack 1
"sp6" = Logitech SetPoint 6.52
"SPEAKER" = Creative Speaker Settings
"Sprint-Layout_50_Demo_is1" = Sprint-Layout 5.0 (Demo)
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TeamViewer 7" = TeamViewer 7
"TreeSize Professional_is1" = TreeSize Professional 5.2.3
"Update Engine" = Sony Ericsson Update Engine
"uTorrent" = µTorrent
"VLC media player" = VLC media player 2.0.7
"WAV to AC3 Encoder_is1" = WAV to AC3 Encoder 5.0
"Waves Diamond Bundle v5.0" = Waves Diamond Bundle v5.0
"Waves IR1 v5.1" = Waves IR1 v5.1
"Waves Musicians Bundle v5.0" = Waves Musicians Bundle v5.0
"Waves Transform Bundle v5.0" = Waves Transform Bundle v5.0
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR archiver
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01009" = Microsoft User-Mode Driver Framework Feature Pack 1.9
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-343818398-448539723-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"A380v2 (FSX)" = A380v2 (FSX)
"Aerosoft Mega Airport Munich v 1.00 for FSX" = Aerosoft Mega Airport Munich v 1.00 for FSX
"Airbus Series Vol.2 (FS X)" = Airbus Series Vol.2 (FS X)
"Aviation & Mission - 737PIC - Base (FSX)" = Aviation & Mission - 737PIC - Base (FSX)
"Eaglesoft Development Group Cirrus SR22 1.5 FSX" = Eaglesoft Development Group Cirrus SR22 1.5 FSX
"FsxAdventures United Missions v1.00" = FsxAdventures United Missions v1.00
"Google Chrome" = Google Chrome
"Lotus Simulations L-39 Albatros" = Lotus Simulations L-39 Albatros
"MiG-17 for FSX" = MiG-17 for FSX
"Ultimate Terrain X - Europe" = Ultimate Terrain X - Europe

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 13. 7. 2013 15:34:45 | Computer Name = YOZEF | Source = Application Error | ID = 1000
Description = Faulting application acrord32.exe, version 11.0.3.37, faulting module
msvcr100.dll, version 10.0.40219.1, fault address 0x00002008.

Error - 14. 7. 2013 3:42:53 | Computer Name = YOZEF | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft .NET Framework 1.1 -- Error 1706.No valid source
could be found for product Microsoft .NET Framework 1.1. The Windows installer
cannot continue.

Error - 14. 7. 2013 3:42:54 | Computer Name = YOZEF | Source = MsiInstaller | ID = 1023
Description = Product: Microsoft .NET Framework 1.1 - Update '{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}'
could not be installed. Error code 1603. Additional information is available in
the log file C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log.

Error - 14. 7. 2013 3:42:55 | Computer Name = YOZEF | Source = NativeWrapper | ID = 5000
Description =

Error - 15. 7. 2013 5:25:32 | Computer Name = YOZEF | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft .NET Framework 1.1 -- Error 1706.No valid source
could be found for product Microsoft .NET Framework 1.1. The Windows installer
cannot continue.

Error - 15. 7. 2013 5:25:34 | Computer Name = YOZEF | Source = MsiInstaller | ID = 1023
Description = Product: Microsoft .NET Framework 1.1 - Update '{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}'
could not be installed. Error code 1603. Additional information is available in
the log file C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log.

Error - 15. 7. 2013 5:25:35 | Computer Name = YOZEF | Source = NativeWrapper | ID = 5000
Description =

Error - 15. 7. 2013 6:09:12 | Computer Name = YOZEF | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft .NET Framework 1.1 -- Error 1706.No valid source
could be found for product Microsoft .NET Framework 1.1. The Windows installer
cannot continue.

Error - 15. 7. 2013 6:09:14 | Computer Name = YOZEF | Source = MsiInstaller | ID = 1023
Description = Product: Microsoft .NET Framework 1.1 - Update '{C0F0DCDC-99EA-4405-BDAE-CACABD3D2DF0}'
could not be installed. Error code 1603. Additional information is available in
the log file C:\WINDOWS\TEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log.

Error - 15. 7. 2013 6:09:15 | Computer Name = YOZEF | Source = NativeWrapper | ID = 5000
Description =

[ System Events ]
Error - 15. 7. 2013 6:08:50 | Computer Name = YOZEF | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Security Update for Microsoft Silverlight (KB2847559).

Error - 15. 7. 2013 6:09:15 | Computer Name = YOZEF | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Security Update for Microsoft .NET Framework 1.1 SP1 on
Windows XP, Windows Vista, and Windows Server 2008 x86 (KB2833941).

Error - 15. 7. 2013 12:30:11 | Computer Name = YOZEF | Source = dmboot | ID = 5242883
Description = dmboot: Failed to start volume Volume3 (W:)

Error - 15. 7. 2013 12:30:15 | Computer Name = YOZEF | Source = SRService | ID = 104
Description = The System Restore initialization process failed.

Error - 15. 7. 2013 12:30:20 | Computer Name = YOZEF | Source = Service Control Manager | ID = 7000
Description = The Crypkey License service failed to start due to the following error:
%%2

Error - 15. 7. 2013 12:30:20 | Computer Name = YOZEF | Source = Service Control Manager | ID = 7023
Description = The Help and Support service terminated with the following error:
%%126

Error - 15. 7. 2013 12:30:20 | Computer Name = YOZEF | Source = Service Control Manager | ID = 7038
Description = The nvUpdatusService service was unable to log on as .\UpdatusUser
with the currently configured password due to the following error: %%1330 To ensure
that the service is configured properly, use the Services snap-in in Microsoft Management
Console
(MMC).

Error - 15. 7. 2013 12:30:20 | Computer Name = YOZEF | Source = Service Control Manager | ID = 7000
Description = The NVIDIA Update Service Daemon service failed to start due to the
following error: %%1069

Error - 15. 7. 2013 12:30:20 | Computer Name = YOZEF | Source = Service Control Manager | ID = 7023
Description = The System Restore Service service terminated with the following error:
%%2

Error - 15. 7. 2013 12:30:22 | Computer Name = YOZEF | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
NetworkX


< End of report >

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 16 črc 2013 01:47
od Márty84
:???: Znate tyto IP adresy? 208.67.222.222 208.67.220.220 192.168.1.1


:arrow: Najdete tento soubor C:\Program Files\trend micro\Elinka.exe a spustte ho.
Kliknete na Main menu a na Do a system scan only
U techto radku dejte vlevo zatrzitko

Kód: Vybrat vše

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
Kliknete na nápis Fix checked a potvrdte




:arrow: Znovu spustte OTL
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
[CreateRestorePoint]

:services
vasumo
NetworkX
SBRE
esihdrv
JavaQuickStarterService
Crypkey License
gupdate
SkypeUpdate
AdobeFlashPlayerUpdateSvc
gupdatem
gusvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-343818398-448539723-682003330-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-343818398-448539723-682003330-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[2013.05.17 21:42:27 | 000,000,000 | ---D | M] (Lavasoft Search Plugin) -- C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack
O4 - HKU\S-1-5-21-343818398-448539723-682003330-1003..\Run: [PicPick Start] C:\Program Files\PicPick\picpick.exe ()
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[22 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[2 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

:reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ad-Aware Antivirus]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ad-Aware Browsing Protection]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 16 črc 2013 22:34
od yozefb
Márty84 píše::???: Znate tyto IP adresy? 208.67.222.222 208.67.220.220 192.168.1.1


:arrow: Najdete tento soubor C:\Program Files\trend micro\Elinka.exe a spustte ho.
no subor elinka.exe tam nie je len yozefb.exe a hijackthis.exe :oops:

ad IP su to Open DNS, ktory som uz davno odisnstaloval, TCP/IP mam nastavene na auto a furt su tie DNS tam ? :shock:

na routry odkial PC berie DNS je DNS mojho internet providera.

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 17 črc 2013 01:29
od Márty84
Mate pravdu, ten soubor tam mit nemuzete, spatne jsem to zkopiroval (z jineho pc) :oops: Tento je spravne C:\Program Files\trend micro\YozefB.exe

V zaznamech jsou, ale pokud je znate, nicemu tam nevadi :)

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 17 črc 2013 20:03
od yozefb
OK, je to spravene, ale tie okna este stale naskakuju :cry:

to s tymi DNS je zarazajuce, nemaju tam co robit, a neviem ci nahodu s tym problemom nesuvisia vid.http://www.opendns.com/support/article/90

a

http://botcrawl.com/how-to-disable-and- ... t-browser/




All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56502 bytes

User: All Users

User: All Users.WINDOWS

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 41620 bytes

User: Default User.WINDOWS
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56475 bytes

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: LocalService.NT AUTHORITY
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService.NT AUTHORITY
->Temp folder emptied: 677184 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56502 bytes

User: yozef
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 36097996 bytes
->Flash cache emptied: 1965023 bytes

User: YozefB
->Temp folder emptied: 124342932 bytes
->Temporary Internet Files folder emptied: 297447281 bytes
->Java cache emptied: 1603845 bytes
->FireFox cache emptied: 1131434340 bytes
->Google Chrome cache emptied: 21191429 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 2970553 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 2577 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 4098289 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 41830392 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 4648440 bytes

Total Files Cleaned = 1 591,00 mb


[EMPTYFLASH]

User: Administrator
->Flash cache emptied: 0 bytes

User: All Users

User: All Users.WINDOWS

User: Default User
->Flash cache emptied: 0 bytes

User: Default User.WINDOWS
->Flash cache emptied: 0 bytes

User: LocalService

User: LocalService.NT AUTHORITY

User: NetworkService

User: NetworkService.NT AUTHORITY

User: UpdatusUser
->Flash cache emptied: 0 bytes

User: yozef
->Flash cache emptied: 0 bytes

User: YozefB
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service vasumo stopped successfully!
Service vasumo deleted successfully!
Service NetworkX stopped successfully!
Service NetworkX deleted successfully!
Service SBRE stopped successfully!
Service SBRE deleted successfully!
Service esihdrv stopped successfully!
Service esihdrv deleted successfully!
Service JavaQuickStarterService stopped successfully!
Service JavaQuickStarterService deleted successfully!
Service Crypkey License stopped successfully!
Service Crypkey License deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
Service gusvc stopped successfully!
Service gusvc deleted successfully!
========== FILES ==========
File/Folder %SystemRoot%\system32\*.tmp.dll not found.
File/Folder %SystemRoot%\system32\SET*.tmp not found.
File/Folder %SystemRoot%\*.tmp not found.
C:\WINDOWS\tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-343818398-448539723-682003330-1003\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-343818398-448539723-682003330-1003\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\lavasoft_search_plugin\tests folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\lavasoft_search_plugin\lib folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\lavasoft_search_plugin\data folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\lavasoft_search_plugin folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\windows folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\utils folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\traits folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\tabs folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\events folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\dom folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib\content folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\lib folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils\data folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\api-utils folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\addon-kit\lib folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\addon-kit\data folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources\addon-kit folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\resources folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\locale folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\defaults\preferences folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack\defaults folder moved successfully.
C:\Documents and Settings\YozefB\Application Data\Mozilla\Firefox\Profiles\l4hig8dk.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack folder moved successfully.
Registry value HKEY_USERS\S-1-5-21-343818398-448539723-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Run\\PicPick Start deleted successfully.
C:\Program Files\PicPick\picpick.exe moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP103.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP10E.tmp\PresentationFramework.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP10E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP150.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP17A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP242.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP256.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP270.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP27B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP28A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP28C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP36F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP370.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP397.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP471.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP493.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5775.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5B59.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP78E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8F3.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP903.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP91F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPB5.tmp folder deleted successfully.
C:\WINDOWS\Installer\MSI20.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2A.tmp deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ad-Aware Antivirus\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ad-Aware Browsing Protection\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray\ deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 07172013_205017

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 18 črc 2013 01:52
od Márty84
Zkuste firefox preinstalovat.

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 19 črc 2013 08:27
od yozefb
zda sa ze reinstal pomohol, este to budem cez vikend testovat a dam vediet.

zatial velmi pekne dakujem :)

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 19 črc 2013 10:05
od Márty84
:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak pc poradne vyzkousejte, dejte novy log z RSIT a napiste, jak je na tom pc :)

Re: samovolne odvaranie okien vo FF po kliknuti na odkaz

Napsal: 19 črc 2013 18:54
od yozefb
T-Cleaner mi vypisuje toto:
Nekompatibilni operacni system.
T-Cleaner lze spustit pouze na operacnich systemech Windows 2000/XP/Vista.

Press any key to continue . . .