Stránka 2 z 3

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 18:47
od Márty84
zooh píše:ten OTL mi nefunguje, zkoušela jsem to 2x a když dojede na konec a chce asi vygenerovat Log tak mi hodí hlášku: "Cannot create file C:/Users/Zora Všelichová/ Desktop/ cmd.bat."
Obcas se to stane, ze OTL tuhle chybku vyhodi :roll:

Spustte ho podle stejneho navodu jeste jednou, ale s timto upravenym skriptem

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
zooh píše:Jinak ale už se mi tu dlouho nic neotevřelo, takže to asi bude ok :)))
Melo by byt, ale kdyz uz jsme to zacli, meli bychom to dotahnout do konce, at je to na 100% :)

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 20:51
od zooh
OTL - I. díl
----
OTL logfile created on: 7.1.2014 19:55:21 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Zora Všelichová\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,82 Gb Total Physical Memory | 1,02 Gb Available Physical Memory | 26,75% Memory free
7,64 Gb Paging File | 3,87 Gb Available in Paging File | 50,71% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465,66 Gb Total Space | 219,92 Gb Free Space | 47,23% Space Free | Partition Type: NTFS
Drive E: | 7,41 Gb Total Space | 1,70 Gb Free Space | 23,01% Space Free | Partition Type: FAT32

Computer Name: ZORAVŠELICHOVÁ | User Name: Zora Všelichová | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014.01.07 15:53:07 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Zora Všelichová\Desktop\OTL.exe
PRC - [2013.12.12 15:06:05 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013.12.11 11:10:34 | 001,862,536 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
PRC - [2013.12.04 14:28:26 | 000,223,112 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
PRC - [2013.12.04 03:48:06 | 000,863,184 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013.10.09 09:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2013.08.01 11:47:18 | 000,458,680 | ---- | M] (TomTom) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe
PRC - [2013.05.11 11:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013.05.09 09:58:30 | 004,858,968 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2013.05.09 09:58:30 | 000,046,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013.03.21 04:33:38 | 000,806,784 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
PRC - [2012.03.23 10:33:48 | 000,419,408 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe
PRC - [2012.03.23 10:33:46 | 000,355,920 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe
PRC - [2012.03.23 10:33:46 | 000,343,632 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LMworker.exe
PRC - [2012.03.23 10:33:44 | 001,105,488 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LManager.exe
PRC - [2012.02.08 03:03:36 | 000,363,800 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2012.02.08 03:03:34 | 000,277,784 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2012.02.08 03:03:16 | 000,161,560 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2012.02.01 15:29:58 | 000,013,592 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2012.02.01 15:29:56 | 000,284,440 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2011.10.31 13:25:08 | 001,058,400 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
PRC - [2010.01.15 05:18:58 | 035,836,360 | ---- | M] (Adobe Systems, Incorporated) -- C:\Users\Zora Všelichová\Desktop\Důležité\+Photoshop CS5 CZ Portable\Photoshop.exe
PRC - [2009.12.23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2009.05.14 16:07:14 | 000,759,048 | ---- | M] (ABBYY) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
PRC - [2006.12.19 17:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe


========== Modules (No Company Name) ==========

MOD - [2013.12.12 15:06:03 | 003,559,024 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013.12.11 11:10:33 | 016,242,056 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll
MOD - [2013.12.04 03:48:04 | 000,399,312 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppgooglenaclpluginchrome.dll
MOD - [2013.12.04 03:48:02 | 004,055,504 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll
MOD - [2013.12.04 03:47:11 | 000,702,416 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
MOD - [2013.12.04 03:47:11 | 000,099,792 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll
MOD - [2013.12.04 03:47:08 | 001,619,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
MOD - [2013.10.13 10:55:28 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ef0a534be135cd8f0d99d938d8b1814a\System.Windows.Forms.ni.dll
MOD - [2013.10.13 10:54:50 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\4eef5a3a4d0ed6d6fd882947a70df530\WindowsBase.ni.dll
MOD - [2013.10.13 10:54:42 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\29f3ae8d313e62b4daed1107ccd29f9f\System.Configuration.ni.dll
MOD - [2013.09.13 02:04:32 | 011,914,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\0cb40437ecbf8ab60a297ff419b7f830\System.Web.ni.dll
MOD - [2013.09.13 02:04:08 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\d473c19e69818875b9c739cad8f386a5\System.Runtime.Remoting.ni.dll
MOD - [2013.08.16 11:30:56 | 000,489,472 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\591b99d5681c59ed6c5e9544d7def0ea\IAStorUtil.ni.dll
MOD - [2013.08.16 11:10:49 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5aa44bce7933e4de09d935848f868a4b\System.Drawing.ni.dll
MOD - [2013.08.16 11:10:16 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\09db78d6068543df01862a023aca785a\System.Xml.ni.dll
MOD - [2013.08.16 11:10:07 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll
MOD - [2013.08.01 11:47:26 | 000,026,040 | ---- | M] () -- C:\Program Files (x86)\MyTomTom 3\DeviceDetection.dll
MOD - [2013.08.01 11:47:20 | 000,317,880 | ---- | M] () -- C:\Program Files (x86)\MyTomTom 3\TomTomSupporterProxy.dll
MOD - [2013.08.01 11:47:18 | 000,074,680 | ---- | M] () -- C:\Program Files (x86)\MyTomTom 3\TomTomSupporterBase.dll
MOD - [2013.07.15 12:37:09 | 000,014,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\45581138b36fd338c87813390775b65f\IAStorCommon.ni.dll
MOD - [2013.07.15 12:16:35 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll
MOD - [2012.03.27 01:47:54 | 013,212,672 | ---- | M] () -- C:\Windows\SysWOW64\ig4icd32.dll
MOD - [2011.04.12 09:34:12 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_cs_b77a5c561934e089\System.Runtime.Remoting.resources.dll
MOD - [2010.11.13 03:00:59 | 000,303,104 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
MOD - [2010.01.15 03:57:32 | 000,035,840 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\Důležité\+Photoshop CS5 CZ Portable\QuickTimeGlue.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013.11.26 10:18:09 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2013.09.05 16:10:00 | 000,653,888 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe -- (EpsonCustomerResearchParticipation)
SRV:64bit: - [2013.05.27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013.05.09 09:58:30 | 000,046,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2012.02.02 21:29:52 | 000,628,448 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:64bit: - [2011.12.11 23:00:00 | 000,135,824 | ---- | M] (Seiko Epson Corporation) [Auto | Running] -- C:\Windows\SysNative\escsvc64.exe -- (EpsonScanSvc)
SRV - [2013.12.12 15:06:04 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.12.11 11:10:35 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.10.09 09:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2013.09.05 10:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.05.11 11:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.04.23 05:25:32 | 000,276,248 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012.03.23 10:33:46 | 000,355,920 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2012.02.08 03:03:36 | 000,363,800 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012.02.08 03:03:34 | 000,277,784 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012.02.08 03:03:16 | 000,161,560 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2012.02.01 15:29:58 | 000,013,592 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2012.01.05 16:42:34 | 000,075,624 | ---- | M] (Alcohol Soft Development Team) [Auto | Stopped] -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe -- (AxAutoMntSrv)
SRV - [2010.03.18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.02.19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.12.23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Running] -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.05.14 16:07:14 | 000,759,048 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Sprint.9.0)
SRV - [2006.12.19 17:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe -- (EpsonBidirectionalService)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013.11.20 18:52:44 | 000,046,368 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:64bit: - [2013.06.30 12:42:36 | 001,030,952 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2013.06.30 12:42:36 | 000,378,944 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2013.06.30 12:42:36 | 000,189,936 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:64bit: - [2013.05.10 17:26:22 | 000,564,824 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2013.05.09 09:59:07 | 000,072,016 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2013.05.09 09:59:07 | 000,065,336 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:64bit: - [2013.05.09 09:59:07 | 000,064,288 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2013.05.09 09:59:06 | 000,080,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2013.05.09 09:59:06 | 000,033,400 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2013.05.09 09:59:06 | 000,022,600 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:64bit: - [2013.02.12 05:12:06 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2012.06.01 16:35:58 | 000,083,576 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bScsiSDa.sys -- (bScsiSDa)
DRV:64bit: - [2012.03.27 03:09:54 | 014,748,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.14 05:33:08 | 000,412,944 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2012.02.14 05:33:02 | 000,022,800 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver.sys -- (SmbDrv)
DRV:64bit: - [2012.02.01 15:16:40 | 000,568,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2012.01.18 23:30:42 | 000,435,240 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a)
DRV:64bit: - [2012.01.10 20:38:28 | 002,801,664 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2011.12.06 12:23:08 | 000,331,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2011.11.10 10:04:14 | 000,060,184 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2011.11.04 09:21:38 | 000,019,496 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\b57xdmp.sys -- (b57xdmp)
DRV:64bit: - [2011.11.04 09:21:36 | 000,068,648 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\b57xdbd.sys -- (b57xdbd)
DRV:64bit: - [2011.11.03 02:01:00 | 000,056,208 | ---- | M] (Rovi Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2011.09.02 13:36:58 | 000,051,752 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bScsiMSa.sys -- (bScsiMSa)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.21 04:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010.11.21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2009.12.15 13:05:42 | 000,117,248 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:64bit: - [2009.12.15 13:05:42 | 000,114,304 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ewusbdev.sys -- (hwusbdev)
DRV:64bit: - [2009.12.15 13:05:42 | 000,029,696 | ---- | M] (Huawei Tech. Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewdcsc.sys -- (Huawei)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2005.09.23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
IE - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\..\SearchScopes\{ED7164A6-76F1-4166-9EA8-FBCF98C75E32}: "URL" = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
IE - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: %7Bdb0832f2-613f-4afb-8b6a-155fe76eb32e%7D:0.1.20130924
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:8.0.1489
FF - prefs.js..extensions.enabledAddons: %7B02450914-cdd9-410f-b1da-db004e18c671%7D:0.97.18c
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@parallelgraphics.com/Cortona: C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona\npcortona.dll (ParallelGraphics)
FF - HKLM\Software\MozillaPlugins\@parallelgraphics.com/RapidView: C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona2D\npCortona2d.dll (Paragraphics)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013.06.30 12:42:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013.12.12 15:05:56 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013.12.12 15:05:56 | 000,000,000 | ---D | M]

[2013.05.04 22:40:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Extensions
[2014.01.06 22:01:47 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions
[2013.11.21 17:29:27 | 002,212,154 | ---- | M] () (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\firebug@software.joehewitt.com.xpi
[2013.12.12 20:59:05 | 000,222,814 | ---- | M] () (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\jid0-lW9gUBSnRfZgrKpg0RmiLTIco4I@jetpack.xpi
[2013.12.19 15:02:08 | 000,099,501 | ---- | M] () (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\{02450914-cdd9-410f-b1da-db004e18c671}.xpi
[2013.10.02 16:07:31 | 000,056,326 | ---- | M] () (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\{db0832f2-613f-4afb-8b6a-155fe76eb32e}.xpi
[2013.12.12 15:05:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013.12.12 15:05:54 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013.12.12 15:05:53 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013.12.12 15:05:53 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013.12.12 15:06:06 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013.06.30 12:42:06 | 000,000,000 | ---D | M] (avast! Online Security) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
File not found (No name found) -- C:\USERS\ZORA VšELICHOVá\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7G1A9GKQ.DEFAULT\EXTENSIONS\{02450914-CDD9-410F-B1DA-DB004E18C671}.XPI
File not found (No name found) -- C:\USERS\ZORA VšELICHOVá\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7G1A9GKQ.DEFAULT\EXTENSIONS\{DB0832F2-613F-4AFB-8B6A-155FE76EB32E}.XPI

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - Extension: Dokumenty Google = C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_1\
CHR - Extension: Disk Google = C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\
CHR - Extension: YouTube = C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: Skype Click to Call = C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.13.0.13771_2\
CHR - Extension: Pen\u011B\u017Eenka Google = C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\
CHR - Extension: Gmail = C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\

O1 HOSTS File: ([2014.01.07 11:08:32 | 000,000,741 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Deownload kEEepaeeR) - {673DBCE8-E819-7F03-4368-C8EAA7057BEF} - C:\Program Files (x86)\Deownload kEEepaeeR\uvwL.x64.dll File not found
O2:64bit: - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\EPSON Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (avast! Online Security) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\EPSON Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)
O4 - HKLM..\Run: [iSkysoft Helper Compact.exe] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe File not found
O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [seznam-listicka-distribuce] C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe ()
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe" File not found
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\Run: [AlcoholAutomount] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe (Alcohol Soft Development Team)
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-205 207 Series" File not found
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\Run: [GoogleDriveSync] C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google)
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\Run: [MyTomTomSA.exe] C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe (TomTom)
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\Run: [StickyPassword] "C:\Program Files (x86)\Sticky Password\stpass.exe" /autorunned File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\RunOnce: [SeznamInstall-uninstall:109723d3078d28757fa6a6d685989c23] C:\Users\Zora Všelichová\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\..Trusted Domains: localhost ([]http in Internet)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.228.41.113 160.218.161.54
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{46344A15-F541-4412-A961-FA49F3A5A251}: DhcpNameServer = 194.228.41.113 160.218.161.54
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{848f13c0-b98e-11e2-9c15-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{848f13c0-b98e-11e2-9c15-806e6f6e6963}\Shell\AutoRun\command - "" = F:\Setup.exe
O33 - MountPoints2\{848f13c0-b98e-11e2-9c15-806e6f6e6963}\Shell\setup\command - "" = F:\setup.exe
O33 - MountPoints2\{861934a4-db19-11e2-9436-208984577a4c}\Shell - "" = AutoRun
O33 - MountPoints2\{861934a4-db19-11e2-9436-208984577a4c}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{e178d4f3-b461-11e2-9ef9-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{e178d4f3-b461-11e2-9ef9-806e6f6e6963}\Shell\AutoRun\command - "" = D:\AutoRun\AutoRunX\AutoRunX.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point


Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.i420 - C:\Windows\SysWow64\i420vfw.dll (www.helixcommunity.org)
Drivers32: vidc.mjpg - pvmjpg30.dll File not found
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
Drivers32: vidc.yv12 - C:\Windows\SysWow64\yv12vfw.dll (www.helixcommunity.org)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2014.01.07 15:52:56 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Zora Všelichová\Desktop\OTL.exe
[2014.01.06 22:11:58 | 000,016,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\wmilib.sys.bak
[2014.01.06 22:11:57 | 000,054,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys.bak
[2014.01.06 22:11:57 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\watchdog.sys.bak
[2014.01.06 22:11:55 | 000,129,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\videoprt.sys.bak
[2014.01.06 22:11:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys.bak
[2014.01.06 22:11:53 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys.bak
[2014.01.06 22:11:53 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys.bak
[2014.01.06 22:11:52 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys.bak
[2014.01.06 22:11:52 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023x.sys.bak
[2014.01.06 22:11:52 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys.bak
[2014.01.06 22:11:51 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys.bak
[2014.01.06 22:11:51 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbGD.sys.bak
[2014.01.06 22:11:50 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys.bak
[2014.01.06 22:11:49 | 000,412,944 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\SynTP.sys.bak
[2014.01.06 22:11:49 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys.bak
[2014.01.06 22:11:49 | 000,068,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\stream.sys.bak
[2014.01.06 22:11:49 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tape.sys.bak
[2014.01.06 22:11:49 | 000,024,656 | ---- | C] (Promise Technology) -- C:\Windows\SysNative\drivers\stexstor.sys.bak
[2014.01.06 22:11:48 | 000,564,824 | ---- | C] (Duplex Secure Ltd.) -- C:\Windows\SysNative\drivers\sptd.sys.bak
[2014.01.06 22:11:48 | 000,426,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\spsys.sys.bak
[2014.01.06 22:11:47 | 000,022,800 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\Smb_driver.sys.bak
[2014.01.06 22:11:47 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\smclib.sys.bak
[2014.01.06 22:11:46 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys.bak
[2014.01.06 22:11:46 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sdbus.sys.bak
[2014.01.06 22:11:44 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rndismpx.sys.bak
[2014.01.06 22:11:44 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\RNDISMP.sys.bak
[2014.01.06 22:11:44 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rootmdm.sys.bak
[2014.01.06 22:11:43 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys.bak
[2014.01.06 22:11:40 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys.bak
[2014.01.06 22:11:40 | 000,056,208 | ---- | C] (Rovi Corporation) -- C:\Windows\SysNative\drivers\PxHlpa64.sys.bak
[2014.01.06 22:11:39 | 000,048,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pciidex.sys.bak
[2014.01.06 22:11:36 | 000,376,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys.bak
[2014.01.06 22:11:29 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\mcd.sys.bak
[2014.01.06 22:11:28 | 000,261,120 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysNative\drivers\MarvinBus64.sys.bak
[2014.01.06 22:11:27 | 000,065,600 | ---- | C] (LSI Corporation) -- C:\Windows\SysNative\drivers\lsi_sas2.sys.bak
[2014.01.06 22:11:25 | 000,435,240 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\k57nd60a.sys.bak
[2014.01.06 22:11:24 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\irda.sys.bak
[2014.01.06 22:11:22 | 000,331,264 | ---- | C] (Intel(R) Corporation) -- C:\Windows\SysNative\drivers\IntcDAud.sys.bak
[2014.01.06 22:11:19 | 014,748,416 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\igdkmd64.sys.bak
[2014.01.06 22:11:19 | 000,568,600 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\iaStor.sys.bak
[2014.01.06 22:11:18 | 000,078,720 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\SysNative\drivers\HpSAMD.sys.bak
[2014.01.06 22:11:17 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys.bak
[2014.01.06 22:11:17 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys.bak
[2014.01.06 22:11:16 | 000,288,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS.bak
[2014.01.06 22:11:16 | 000,060,184 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\HECIx64.sys.bak
[2014.01.06 22:11:16 | 000,031,232 | ---- | C] (Hauppauge Computer Works, Inc.) -- C:\Windows\SysNative\drivers\hcw85cir.sys.bak
[2014.01.06 22:11:15 | 000,023,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fs_rec.sys.bak
[2014.01.06 22:11:14 | 000,243,200 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\ewusbnet.sys.bak
[2014.01.06 22:11:14 | 000,117,248 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\ewusbmdm.sys.bak
[2014.01.06 22:11:14 | 000,114,304 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\ewusbdev.sys.bak
[2014.01.06 22:11:13 | 003,286,016 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\evbda.sys.bak
[2014.01.06 22:11:13 | 000,029,696 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\Windows\SysNative\drivers\ewdcsc.sys.bak
[2014.01.06 22:11:12 | 000,265,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys.bak
[2014.01.06 22:11:12 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxg.sys.bak
[2014.01.06 22:11:12 | 000,055,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dumpfve.sys.bak
[2014.01.06 22:11:12 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxapi.sys.bak
[2014.01.06 22:11:11 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys.bak
[2014.01.06 22:11:11 | 000,028,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Dumpata.sys.bak
[2014.01.06 22:11:11 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys.bak
[2014.01.06 22:11:10 | 000,039,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\crashdmp.sys.bak
[2014.01.06 22:11:09 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys.bak
[2014.01.06 22:11:09 | 000,010,224 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdralw2k.sys.bak
[2014.01.06 22:11:08 | 000,468,480 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\bxvbda.sys.bak
[2014.01.06 22:11:08 | 000,083,576 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\bScsiSDa.sys.bak
[2014.01.06 22:11:08 | 000,010,224 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdr4_xp.sys.bak
[2014.01.06 22:11:07 | 000,051,752 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\bScsiMSa.sys.bak
[2014.01.06 22:11:06 | 000,068,648 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\b57xdbd.sys.bak
[2014.01.06 22:11:06 | 000,028,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\battc.sys.bak
[2014.01.06 22:11:06 | 000,019,496 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\b57xdmp.sys.bak
[2014.01.06 22:11:05 | 002,801,664 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athrx.sys.bak
[2014.01.06 22:11:05 | 000,270,848 | ---- | C] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\b57nd60a.sys.bak
[2014.01.06 22:11:05 | 000,046,368 | ---- | C] (AVG Technologies) -- C:\Windows\SysNative\drivers\avgtpx64.sys.bak
[2014.01.06 22:11:04 | 000,155,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys.bak
[2014.01.06 22:11:03 | 000,194,128 | ---- | C] (AMD Technologies Inc.) -- C:\Windows\SysNative\drivers\amdsbs.sys.bak
[2014.01.06 22:11:03 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys.bak
[2014.01.06 22:11:03 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys.bak
[2014.01.06 22:11:00 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\1394bus.sys.bak
[2014.01.06 22:09:33 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\Desktop\RK_Quarantine
[2014.01.06 13:21:42 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014.01.05 17:36:35 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\AppData\Roaming\Malwarebytes
[2014.01.05 17:36:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014.01.05 16:00:39 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2014.01.05 16:00:31 | 000,000,000 | ---D | C] -- C:\rsit
[2014.01.04 00:32:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\1-More
[2014.01.01 23:31:53 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\Desktop\fotky partie
[2014.01.01 18:17:19 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\Desktop\BrandAmbasy
[2014.01.01 18:03:06 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\Desktop\Flying
[2013.12.18 17:17:11 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\Desktop\Foto Maturitní Ples
[2013.12.18 13:21:03 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2013.12.18 13:21:01 | 000,574,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013.12.18 13:21:00 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013.12.18 13:20:59 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013.12.18 13:20:59 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013.12.18 13:20:59 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013.12.18 13:20:58 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013.12.18 13:20:57 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2013.12.18 13:20:57 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2013.12.18 13:20:55 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2013.12.18 13:20:54 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2013.12.18 13:20:54 | 000,708,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2013.12.18 13:20:53 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2013.12.18 13:20:43 | 001,928,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013.12.18 13:20:41 | 001,995,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013.12.18 13:20:31 | 005,769,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013.12.17 21:37:56 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\AppData\Roaming\avidemux
[2013.12.17 21:37:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avidemux

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 20:52
od zooh
II.díl
-----------
[2013.12.17 21:37:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avidemux 2.6
[2013.12.17 21:21:01 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\Documents\InstantCDDVD
[2013.12.17 21:12:26 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\Documents\Pinnacle Studio
[2013.12.17 12:53:14 | 000,028,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE
[2013.12.17 12:47:50 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2013.12.17 12:47:50 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2013.12.17 12:47:45 | 001,228,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2013.12.17 12:47:45 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2013.12.17 12:47:45 | 000,942,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2013.12.17 12:47:45 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2013.12.17 12:47:45 | 000,626,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013.12.17 12:47:45 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2013.12.17 12:47:45 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2013.12.17 12:47:45 | 000,610,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013.12.17 12:47:45 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013.12.17 12:47:45 | 000,453,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2013.12.17 12:47:45 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2013.12.17 12:47:45 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2013.12.17 12:47:45 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2013.12.17 12:47:45 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2013.12.17 12:47:45 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013.12.17 12:47:45 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2013.12.17 12:47:45 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013.12.17 12:47:45 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2013.12.17 12:47:45 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2013.12.17 12:47:45 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2013.12.17 12:47:45 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2013.12.17 12:47:45 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2013.12.17 12:47:45 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2013.12.17 12:47:45 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2013.12.17 12:47:45 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2013.12.17 12:47:45 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2013.12.17 12:47:45 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2013.12.17 12:47:45 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013.12.17 12:47:45 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2013.12.17 12:47:45 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013.12.17 12:47:45 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2013.12.17 12:47:45 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2013.12.17 12:47:45 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013.12.17 12:47:45 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013.12.17 12:47:45 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013.12.17 12:47:45 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2013.12.17 12:47:45 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2013.12.17 12:47:45 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2013.12.17 12:47:45 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2013.12.17 12:47:45 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013.12.17 12:47:45 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013.12.17 12:47:45 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2013.12.17 12:47:45 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2013.12.17 12:47:45 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2013.12.17 12:47:45 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2013.12.17 12:47:45 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013.12.17 12:47:45 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2013.12.17 12:47:45 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2013.12.17 12:47:45 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2013.12.17 12:47:45 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2013.12.17 12:47:45 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2013.12.17 12:47:45 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2013.12.17 12:47:45 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013.12.17 12:47:45 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2013.12.17 12:47:45 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2013.12.17 12:47:45 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2013.12.17 12:47:45 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2013.12.17 12:47:45 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2013.12.17 12:47:44 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013.12.17 12:47:44 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2013.12.17 12:47:44 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2013.12.17 12:47:44 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2013.12.17 12:42:52 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2013.12.15 14:33:58 | 000,000,000 | ---D | C] -- C:\Program Files\EPSON
[2013.12.13 17:06:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Pinnacle
[2013.12.13 17:06:26 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\AppData\Local\Downloaded Installations
[2013.12.13 17:05:48 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\AppData\Local\Pinnacle
[2013.12.13 17:05:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Pinnacle Studio Ultimate Collection
[2013.12.13 17:04:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 14
[2013.12.13 17:04:01 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\My Projects
[2013.12.13 16:59:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Pegasus Imaging
[2013.12.13 16:59:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Yahoo!
[2013.12.13 16:59:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Studio 14
[2013.12.13 16:59:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Pinnacle Studio Plus
[2013.12.13 16:59:09 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Pinnacle
[2013.12.13 16:59:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Pinnacle
[2013.12.13 16:56:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Pinnacle
[2013.12.12 15:05:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013.12.12 14:14:30 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2013.12.12 14:14:29 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2013.12.12 14:14:29 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2013.12.12 14:14:26 | 014,631,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2013.12.11 23:21:43 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2013.12.11 23:21:43 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2013.12.11 23:21:41 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2013.12.11 23:21:41 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2013.12.11 23:21:41 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2013.12.11 23:21:33 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys
[2013.12.11 23:21:33 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys
[2013.12.11 23:21:32 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx
[2013.12.11 23:21:32 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2013.12.11 23:21:31 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll
[2013.12.11 23:21:31 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe
[2013.12.11 23:21:30 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2013.12.11 23:21:29 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2013.12.11 11:08:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2013.12.10 12:45:00 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\AppData\Roaming\Windows Live Writer
[2013.12.10 12:45:00 | 000,000,000 | ---D | C] -- C:\Users\Zora Všelichová\AppData\Local\Windows Live Writer
[2013.12.10 12:29:01 | 000,000,000 | ---D | C] -- C:\Windows\cs
[2013.12.10 12:28:15 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2013.12.10 12:25:58 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2013.12.10 12:25:19 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2013.12.10 12:25:19 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2013.12.10 12:25:18 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2013.12.10 12:25:18 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2013.12.10 12:25:14 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2013.12.10 12:25:14 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2013.12.10 12:25:11 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2013.12.10 12:25:11 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2013.12.10 12:24:51 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
[2013.12.10 12:24:51 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2013.12.10 12:24:27 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2013.12.10 12:24:27 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll

========== Files - Modified Within 30 Days ==========

[2014.01.07 20:00:33 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.01.07 19:33:01 | 000,000,970 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.01.07 19:10:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014.01.07 18:16:59 | 000,295,180 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\ac-1.jpg
[2014.01.07 18:12:37 | 000,083,803 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\TOM3eb882_neu_prf3.jpg
[2014.01.07 17:40:19 | 000,027,379 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b65447298.jpg
[2014.01.07 17:40:13 | 000,030,619 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b71625746.jpg
[2014.01.07 17:40:07 | 000,036,328 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b68451773.jpg
[2014.01.07 17:36:37 | 000,053,953 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b71407703.jpg
[2014.01.07 17:36:30 | 000,053,176 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b71068770.jpg
[2014.01.07 17:36:22 | 000,044,726 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b71577067.jpg
[2014.01.07 17:36:14 | 000,037,373 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b71399663.jpg
[2014.01.07 17:36:07 | 000,010,782 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b71635519.jpg
[2014.01.07 17:35:58 | 000,038,142 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\b43718001.jpg
[2014.01.07 15:53:07 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Zora Všelichová\Desktop\OTL.exe
[2014.01.07 14:33:01 | 000,000,966 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.01.07 14:13:05 | 000,002,226 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\prsa.html
[2014.01.07 14:09:10 | 000,003,351 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hubnuti.jpg
[2014.01.07 14:09:10 | 000,001,480 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Local\Adobe Uložit pro web 11.0 Prefs
[2014.01.07 14:07:31 | 000,006,622 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\images.jpg
[2014.01.07 13:48:03 | 000,449,981 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\neuschwanstein castle germany 5.jpg
[2014.01.07 13:35:20 | 000,196,669 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\petraadwords.jpg
[2014.01.07 11:50:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.01.07 01:49:46 | 001,576,554 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.01.07 01:49:46 | 000,666,444 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2014.01.07 01:49:46 | 000,652,148 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.01.07 01:49:46 | 000,140,108 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2014.01.07 01:49:46 | 000,121,080 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.01.06 22:11:59 | 000,016,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\wmilib.sys.bak
[2014.01.06 22:11:58 | 000,054,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys.bak
[2014.01.06 22:11:57 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\watchdog.sys.bak
[2014.01.06 22:11:57 | 000,022,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.01.06 22:11:57 | 000,022,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.01.06 22:11:55 | 000,129,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\videoprt.sys.bak
[2014.01.06 22:11:54 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys.bak
[2014.01.06 22:11:53 | 000,325,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys.bak
[2014.01.06 22:11:53 | 000,007,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys.bak
[2014.01.06 22:11:52 | 000,032,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys.bak
[2014.01.06 22:11:52 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023x.sys.bak
[2014.01.06 22:11:52 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys.bak
[2014.01.06 22:11:51 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys.bak
[2014.01.06 22:11:51 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbGD.sys.bak
[2014.01.06 22:11:50 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tape.sys.bak
[2014.01.06 22:11:50 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys.bak
[2014.01.06 22:11:49 | 000,412,944 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\SynTP.sys.bak
[2014.01.06 22:11:49 | 000,189,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys.bak
[2014.01.06 22:11:49 | 000,068,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\stream.sys.bak
[2014.01.06 22:11:49 | 000,024,656 | ---- | M] (Promise Technology) -- C:\Windows\SysNative\drivers\stexstor.sys.bak
[2014.01.06 22:11:48 | 000,564,824 | ---- | M] (Duplex Secure Ltd.) -- C:\Windows\SysNative\drivers\sptd.sys.bak
[2014.01.06 22:11:48 | 000,426,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\spsys.sys.bak
[2014.01.06 22:11:48 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\smclib.sys.bak
[2014.01.06 22:11:47 | 000,022,800 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\Smb_driver.sys.bak
[2014.01.06 22:11:46 | 000,171,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys.bak
[2014.01.06 22:11:46 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sdbus.sys.bak
[2014.01.06 22:11:44 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys.bak
[2014.01.06 22:11:44 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rndismpx.sys.bak
[2014.01.06 22:11:44 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\RNDISMP.sys.bak
[2014.01.06 22:11:44 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rootmdm.sys.bak
[2014.01.06 22:11:41 | 000,056,208 | ---- | M] (Rovi Corporation) -- C:\Windows\SysNative\drivers\PxHlpa64.sys.bak
[2014.01.06 22:11:40 | 000,230,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys.bak
[2014.01.06 22:11:40 | 000,048,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pciidex.sys.bak
[2014.01.06 22:11:36 | 000,376,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys.bak
[2014.01.06 22:11:29 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\mcd.sys.bak
[2014.01.06 22:11:28 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) -- C:\Windows\SysNative\drivers\MarvinBus64.sys.bak
[2014.01.06 22:11:28 | 000,065,600 | ---- | M] (LSI Corporation) -- C:\Windows\SysNative\drivers\lsi_sas2.sys.bak
[2014.01.06 22:11:25 | 000,435,240 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\k57nd60a.sys.bak
[2014.01.06 22:11:24 | 000,120,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\irda.sys.bak
[2014.01.06 22:11:22 | 000,331,264 | ---- | M] (Intel(R) Corporation) -- C:\Windows\SysNative\drivers\IntcDAud.sys.bak
[2014.01.06 22:11:20 | 014,748,416 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\drivers\igdkmd64.sys.bak
[2014.01.06 22:11:19 | 000,568,600 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\drivers\iaStor.sys.bak
[2014.01.06 22:11:18 | 000,078,720 | ---- | M] (Hewlett-Packard Company) -- C:\Windows\SysNative\drivers\HpSAMD.sys.bak
[2014.01.06 22:11:18 | 000,032,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys.bak
[2014.01.06 22:11:17 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys.bak
[2014.01.06 22:11:17 | 000,060,184 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\drivers\HECIx64.sys.bak
[2014.01.06 22:11:16 | 000,288,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS.bak
[2014.01.06 22:11:16 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) -- C:\Windows\SysNative\drivers\hcw85cir.sys.bak
[2014.01.06 22:11:15 | 000,023,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fs_rec.sys.bak
[2014.01.06 22:11:14 | 000,243,200 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\ewusbnet.sys.bak
[2014.01.06 22:11:14 | 000,117,248 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\ewusbmdm.sys.bak
[2014.01.06 22:11:14 | 000,114,304 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\ewusbdev.sys.bak
[2014.01.06 22:11:14 | 000,029,696 | ---- | M] (Huawei Tech. Co., Ltd.) -- C:\Windows\SysNative\drivers\ewdcsc.sys.bak
[2014.01.06 22:11:13 | 003,286,016 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\evbda.sys.bak
[2014.01.06 22:11:12 | 000,265,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys.bak
[2014.01.06 22:11:12 | 000,098,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxg.sys.bak
[2014.01.06 22:11:12 | 000,055,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dumpfve.sys.bak
[2014.01.06 22:11:12 | 000,028,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Dumpata.sys.bak
[2014.01.06 22:11:12 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxapi.sys.bak
[2014.01.06 22:11:11 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys.bak
[2014.01.06 22:11:11 | 000,027,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys.bak
[2014.01.06 22:11:10 | 000,179,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys.bak
[2014.01.06 22:11:10 | 000,039,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\crashdmp.sys.bak
[2014.01.06 22:11:09 | 000,010,224 | ---- | M] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdralw2k.sys.bak
[2014.01.06 22:11:09 | 000,010,224 | ---- | M] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdr4_xp.sys.bak
[2014.01.06 22:11:08 | 000,468,480 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\bxvbda.sys.bak
[2014.01.06 22:11:08 | 000,083,576 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\bScsiSDa.sys.bak
[2014.01.06 22:11:08 | 000,051,752 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\bScsiMSa.sys.bak
[2014.01.06 22:11:06 | 000,270,848 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\b57nd60a.sys.bak
[2014.01.06 22:11:06 | 000,068,648 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\b57xdbd.sys.bak
[2014.01.06 22:11:06 | 000,028,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\battc.sys.bak
[2014.01.06 22:11:06 | 000,019,496 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\drivers\b57xdmp.sys.bak
[2014.01.06 22:11:05 | 002,801,664 | ---- | M] (Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athrx.sys.bak
[2014.01.06 22:11:05 | 000,155,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys.bak
[2014.01.06 22:11:05 | 000,046,368 | ---- | M] (AVG Technologies) -- C:\Windows\SysNative\drivers\avgtpx64.sys.bak
[2014.01.06 22:11:03 | 000,194,128 | ---- | M] (AMD Technologies Inc.) -- C:\Windows\SysNative\drivers\amdsbs.sys.bak
[2014.01.06 22:11:03 | 000,107,904 | ---- | M] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys.bak
[2014.01.06 22:11:03 | 000,027,008 | ---- | M] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys.bak
[2014.01.06 22:11:01 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\1394bus.sys.bak
[2014.01.06 22:08:36 | 003,810,304 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\RogueKiller.exe
[2014.01.06 22:02:56 | 3076,804,608 | -HS- | M] () -- C:\hiberfil.sys
[2014.01.06 13:06:07 | 000,084,520 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\tumblr_leueujvwJG1qbs5d3o1_500.jpg
[2014.01.06 12:50:23 | 000,055,060 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\Chris.jpg
[2014.01.05 23:59:23 | 001,233,962 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\adwcleaner.exe
[2014.01.05 00:21:42 | 003,767,735 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\IMG_1949.jpg
[2014.01.05 00:21:22 | 002,666,346 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\IMG_1972.jpg
[2014.01.05 00:13:03 | 000,085,123 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\598815_4856552579954_882109045_n.jpg
[2014.01.04 23:50:25 | 000,100,111 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\jjj.jpg
[2014.01.04 23:48:58 | 001,426,140 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\WP_20140103_001.jpg
[2014.01.04 23:47:21 | 001,303,963 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\auth.aspx.jpg
[2014.01.03 13:02:28 | 000,379,709 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\DSC_11992.png
[2014.01.03 13:02:00 | 000,261,759 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\DSC_1199.png
[2014.01.01 22:05:22 | 000,333,996 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-cajthamlova.png
[2014.01.01 22:03:07 | 000,016,838 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\493592_katerina-cajthamlova.jpg
[2014.01.01 22:02:32 | 000,340,224 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-katerina.png
[2014.01.01 21:55:44 | 000,020,651 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\KAL2878fa_152144_4153415.jpg
[2014.01.01 21:55:07 | 000,322,278 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-slovacek.png
[2014.01.01 21:49:58 | 000,072,238 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\869-121051.jpg
[2014.01.01 21:48:32 | 000,034,244 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\SU5894_2_xl.gif
[2014.01.01 21:47:39 | 000,361,893 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-konvalinkova.png
[2014.01.01 21:47:25 | 000,000,000 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\lavni-banner-patrasova.pngā
[2014.01.01 21:44:54 | 000,721,461 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\264761-original1-7vdw8.jpg
[2014.01.01 21:44:10 | 000,329,590 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-patrasova.png
[2014.01.01 21:41:54 | 000,029,963 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\dada22.jpg
[2014.01.01 21:41:19 | 000,337,433 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-maresova.png
[2014.01.01 21:38:01 | 000,043,861 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\6-10213-monika-maresova-5_1_1.jpg
[2014.01.01 21:36:05 | 000,358,315 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-debbie.png
[2014.01.01 21:33:23 | 000,081,921 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\2hcghgxcv.jpg
[2014.01.01 21:31:44 | 000,318,463 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-ivana.png
[2014.01.01 21:31:30 | 000,000,000 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\lavni-banner-dolezelova.png
[2014.01.01 21:23:54 | 000,335,479 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-dolezelova.png
[2014.01.01 21:20:50 | 000,319,865 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-hanka.png
[2014.01.01 21:19:20 | 000,349,653 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-dejdar.png
[2014.01.01 21:16:46 | 000,331,749 | ---- | M] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-janu.png
[2013.12.25 21:03:03 | 004,997,432 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.12.21 02:17:27 | 000,003,936 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Local\recently-used.xbel
[2013.12.17 21:23:20 | 000,000,349 | ---- | M] () -- C:\Users\Public\Documents\PCLECHAL.INI
[2013.12.17 12:47:50 | 000,940,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2013.12.17 12:47:50 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2013.12.17 12:47:45 | 001,228,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2013.12.17 12:47:45 | 001,051,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2013.12.17 12:47:45 | 000,942,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2013.12.17 12:47:45 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2013.12.17 12:47:45 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013.12.17 12:47:45 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2013.12.17 12:47:45 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2013.12.17 12:47:45 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013.12.17 12:47:45 | 000,548,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013.12.17 12:47:45 | 000,453,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2013.12.17 12:47:45 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2013.12.17 12:47:45 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2013.12.17 12:47:45 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2013.12.17 12:47:45 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2013.12.17 12:47:45 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013.12.17 12:47:45 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2013.12.17 12:47:45 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013.12.17 12:47:45 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2013.12.17 12:47:45 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2013.12.17 12:47:45 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2013.12.17 12:47:45 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2013.12.17 12:47:45 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2013.12.17 12:47:45 | 000,143,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2013.12.17 12:47:45 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2013.12.17 12:47:45 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2013.12.17 12:47:45 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2013.12.17 12:47:45 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2013.12.17 12:47:45 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013.12.17 12:47:45 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2013.12.17 12:47:45 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013.12.17 12:47:45 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2013.12.17 12:47:45 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2013.12.17 12:47:45 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013.12.17 12:47:45 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013.12.17 12:47:45 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013.12.17 12:47:45 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2013.12.17 12:47:45 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2013.12.17 12:47:45 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2013.12.17 12:47:45 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2013.12.17 12:47:45 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013.12.17 12:47:45 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013.12.17 12:47:45 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2013.12.17 12:47:45 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2013.12.17 12:47:45 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2013.12.17 12:47:45 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2013.12.17 12:47:45 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013.12.17 12:47:45 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2013.12.17 12:47:45 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2013.12.17 12:47:45 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2013.12.17 12:47:45 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2013.12.17 12:47:45 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2013.12.17 12:47:45 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2013.12.17 12:47:45 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013.12.17 12:47:45 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2013.12.17 12:47:45 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2013.12.17 12:47:45 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2013.12.17 12:47:45 | 000,016,284 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2013.12.17 12:47:45 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2013.12.17 12:47:45 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2013.12.17 12:47:45 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2013.12.17 12:47:44 | 000,774,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013.12.17 12:47:44 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2013.12.17 12:47:44 | 000,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2013.12.17 12:47:44 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2013.12.11 21:50:56 | 000,300,778 | ---- | M] () -- C:\Users\Zora Všelichová\Documents\postavickymale.xcf
[2013.12.11 11:10:34 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.12.11 11:10:34 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

========== Files Created - No Company Name ==========

[2014.01.07 18:16:59 | 000,295,180 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\ac-1.jpg
[2014.01.07 18:12:36 | 000,083,803 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\TOM3eb882_neu_prf3.jpg
[2014.01.07 17:40:19 | 000,027,379 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b65447298.jpg
[2014.01.07 17:40:12 | 000,030,619 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b71625746.jpg
[2014.01.07 17:40:06 | 000,036,328 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b68451773.jpg
[2014.01.07 17:36:36 | 000,053,953 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b71407703.jpg
[2014.01.07 17:36:30 | 000,053,176 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b71068770.jpg
[2014.01.07 17:36:21 | 000,044,726 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b71577067.jpg
[2014.01.07 17:36:14 | 000,037,373 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b71399663.jpg
[2014.01.07 17:36:07 | 000,010,782 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b71635519.jpg
[2014.01.07 17:35:57 | 000,038,142 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\b43718001.jpg
[2014.01.07 15:59:38 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.01.07 14:12:26 | 000,002,226 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\prsa.html
[2014.01.07 14:09:09 | 000,003,351 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hubnuti.jpg
[2014.01.07 14:07:31 | 000,006,622 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\images.jpg
[2014.01.07 13:48:02 | 000,449,981 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\neuschwanstein castle germany 5.jpg
[2014.01.07 13:35:19 | 000,196,669 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\petraadwords.jpg
[2014.01.06 22:08:30 | 003,810,304 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\RogueKiller.exe
[2014.01.06 13:06:07 | 000,084,520 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\tumblr_leueujvwJG1qbs5d3o1_500.jpg
[2014.01.06 12:50:22 | 000,055,060 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\Chris.jpg
[2014.01.05 23:59:44 | 001,233,962 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\adwcleaner.exe
[2014.01.05 00:21:42 | 003,767,735 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\IMG_1949.jpg
[2014.01.05 00:21:22 | 002,666,346 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\IMG_1972.jpg
[2014.01.05 00:13:03 | 000,085,123 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\598815_4856552579954_882109045_n.jpg
[2014.01.04 23:50:23 | 000,100,111 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\jjj.jpg
[2014.01.04 23:48:57 | 001,426,140 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\WP_20140103_001.jpg
[2014.01.04 23:47:20 | 001,303,963 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\auth.aspx.jpg
[2014.01.03 13:02:27 | 000,379,709 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\DSC_11992.png
[2014.01.03 13:01:58 | 000,261,759 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\DSC_1199.png
[2014.01.01 22:05:19 | 000,333,996 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-cajthamlova.png
[2014.01.01 22:03:07 | 000,016,838 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\493592_katerina-cajthamlova.jpg
[2014.01.01 22:02:28 | 000,340,224 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-katerina.png
[2014.01.01 21:55:44 | 000,020,651 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\KAL2878fa_152144_4153415.jpg
[2014.01.01 21:55:03 | 000,322,278 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-slovacek.png
[2014.01.01 21:49:57 | 000,072,238 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\869-121051.jpg
[2014.01.01 21:48:32 | 000,034,244 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\SU5894_2_xl.gif
[2014.01.01 21:47:34 | 000,361,893 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-konvalinkova.png
[2014.01.01 21:47:25 | 000,000,000 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\lavni-banner-patrasova.pngā
[2014.01.01 21:44:54 | 000,721,461 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\264761-original1-7vdw8.jpg
[2014.01.01 21:44:06 | 000,329,590 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-patrasova.png
[2014.01.01 21:41:53 | 000,029,963 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\dada22.jpg
[2014.01.01 21:41:15 | 000,337,433 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-maresova.png
[2014.01.01 21:38:01 | 000,043,861 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\6-10213-monika-maresova-5_1_1.jpg
[2014.01.01 21:36:02 | 000,358,315 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-debbie.png
[2014.01.01 21:33:23 | 000,081,921 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\2hcghgxcv.jpg
[2014.01.01 21:31:41 | 000,318,463 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-ivana.png
[2014.01.01 21:31:30 | 000,000,000 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\lavni-banner-dolezelova.png
[2014.01.01 21:23:50 | 000,335,479 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-dolezelova.png
[2014.01.01 21:20:45 | 000,319,865 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-hanka.png
[2014.01.01 21:18:11 | 000,349,653 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-dejdar.png
[2014.01.01 21:16:39 | 000,331,749 | ---- | C] () -- C:\Users\Zora Všelichová\Desktop\hlavni-banner-janu.png
[2013.12.21 02:17:27 | 000,003,936 | ---- | C] () -- C:\Users\Zora Všelichová\AppData\Local\recently-used.xbel
[2013.12.17 12:47:45 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2013.12.17 12:47:45 | 000,016,284 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2013.12.13 16:57:15 | 000,000,349 | ---- | C] () -- C:\Users\Public\Documents\PCLECHAL.INI
[2013.12.11 21:50:56 | 000,300,778 | ---- | C] () -- C:\Users\Zora Všelichová\Documents\postavickymale.xcf
[2013.12.10 12:28:02 | 000,001,305 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
[2013.12.10 12:26:38 | 000,001,458 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2013.08.26 15:36:57 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2013.08.15 14:43:16 | 000,000,980 | ---- | C] () -- C:\Users\Zora Všelichová\index.php
[2013.06.17 15:26:30 | 000,003,725 | ---- | C] () -- C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
[2013.06.07 19:55:32 | 000,001,480 | ---- | C] () -- C:\Users\Zora Všelichová\AppData\Local\Adobe Uložit pro web 11.0 Prefs
[2013.05.30 00:14:19 | 000,000,331 | ---- | C] () -- C:\Users\Zora Všelichová\AppData\Roaming\burnaware.ini
[2013.05.06 22:05:37 | 001,555,776 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013.05.05 20:55:32 | 000,001,480 | ---- | C] () -- C:\Users\Zora Všelichová\AppData\Local\Adobe Uložit pro web 13.0 Prefs
[2013.05.04 21:52:25 | 000,963,912 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin
[2013.05.04 21:52:20 | 000,261,208 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin
[2013.05.04 21:52:10 | 000,058,880 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2013.05.04 21:52:06 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin
[2013.05.04 21:51:59 | 013,212,672 | ---- | C] () -- C:\Windows\SysWow64\ig4icd32.dll
[2012.02.02 21:08:26 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll

========== ZeroAccess Check ==========

[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.07.26 03:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.07.26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013.12.20 21:35:41 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\avidemux
[2013.06.04 01:23:39 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Bradsoft.com
[2013.06.22 20:24:38 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer
[2013.05.18 16:06:19 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer Pro
[2013.06.17 15:07:25 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\DeepBurner
[2013.10.13 10:51:16 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Epson
[2013.09.24 13:20:32 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\EuroTalk
[2013.06.05 18:09:48 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\FileZilla
[2013.05.19 17:49:47 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\FLVPlayer4Free
[2013.05.21 09:11:35 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\GHISLER
[2013.06.17 15:44:39 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\HoolappForAndroid
[2013.09.24 13:20:30 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\langmaster.com
[2013.05.09 12:39:16 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\OpenOffice.org
[2013.05.30 00:56:53 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\PDAppFlex
[2013.05.07 13:36:57 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\PDF Writer
[2013.11.05 23:20:19 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\PearlMountain
[2014.01.07 11:11:01 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz
[2013.06.26 14:59:17 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Software Informer
[2013.06.22 12:07:06 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Telefónica Móviles
[2013.06.13 12:31:22 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\TuneUp Software
[2013.12.24 23:13:23 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\uTorrent
[2013.12.10 12:45:00 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Windows Live Writer
[2013.08.26 15:33:23 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Xilisoft
[2013.12.03 23:56:04 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 20:53
od zooh
III. díl
---------

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.07.14 06:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 06:08:49 | 000,017,274 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2013.05.04 22:34:24 | 000,000,966 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013.05.04 22:34:24 | 000,000,970 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013.05.05 09:55:24 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_552ea5111ec825a6\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_3b457059383c66e6\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_3be7afc0514717fa\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010.11.21 04:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.21 04:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2010.11.21 04:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.21 04:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2010.11.21 04:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.21 04:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.21 04:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011.02.26 06:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011.02.25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 07:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.21 04:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.11.21 04:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe

< MD5 for: HAL.DLL >
[2010.11.21 04:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.21 04:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2010.11.21 04:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.21 04:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.21 04:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.21 04:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SVCHOST.EXE >
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2012.10.03 18:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.05.08 07:14:42 | 001,900,392 | ---- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0\tcpip.sys
[2013.09.08 03:30:37 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=40AF23633D197905F03AB5628C558C51 -- C:\Windows\SysNative\drivers\tcpip.sys
[2013.09.08 03:30:37 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=40AF23633D197905F03AB5628C558C51 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_1118bb977d265d27\tcpip.sys
[2010.11.21 04:24:08 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2013.09.07 03:27:48 | 001,896,896 | ---- | M] (Microsoft Corporation) MD5=75F9106B74585D38C8FF6BB5CAD262D7 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_11ad2a34963bde27\tcpip.sys
[2013.05.08 07:39:01 | 001,910,632 | ---- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96b\tcpip.sys
[2013.07.06 06:20:38 | 001,900,992 | ---- | M] (Microsoft Corporation) MD5=B27F13153343BC37A27EAE01634D94E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22378_none_1190b9b296509a2f\tcpip.sys
[2013.01.03 07:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 06:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012.10.03 18:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2013.07.06 07:03:53 | 001,910,208 | ---- | M] (Microsoft Corporation) MD5=DB74544B75566C974815E79A62433F29 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18203_none_114dcae97cfeb81b\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.21 04:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.21 04:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010.11.21 04:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.21 04:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.21 04:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.21 04:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe

< >

< %systemroot%*.* /U /s >
[2 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[3 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[50 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
[1 C:\Windows\Temp\avg_a00740\ProgData\*.tmp files -> C:\Windows\Temp\avg_a00740\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a00740\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a00740\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a01676\ProgData\*.tmp files -> C:\Windows\Temp\avg_a01676\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a01676\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a01676\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a02676\ProgData\*.tmp files -> C:\Windows\Temp\avg_a02676\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a02676\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a02676\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05448\ProgData\*.tmp files -> C:\Windows\Temp\avg_a05448\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05448\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a05448\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05864\ProgData\*.tmp files -> C:\Windows\Temp\avg_a05864\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05864\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a05864\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a07156\ProgData\*.tmp files -> C:\Windows\Temp\avg_a07156\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a07156\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a07156\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a08272\ProgData\*.tmp files -> C:\Windows\Temp\avg_a08272\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a08272\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a08272\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013.11.29 22:05:38 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Adobe
[2013.12.20 21:35:41 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\avidemux
[2013.05.19 17:55:41 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\AVS4YOU
[2013.06.04 01:23:39 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Bradsoft.com
[2013.06.22 20:24:38 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer
[2013.05.18 16:06:19 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer Pro
[2013.06.17 15:07:25 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\DeepBurner
[2013.10.13 10:51:16 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Epson
[2013.09.24 13:20:32 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\EuroTalk
[2013.06.05 18:09:48 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\FileZilla
[2013.05.19 17:49:47 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\FLVPlayer4Free
[2013.05.21 09:11:35 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\GHISLER
[2013.06.17 15:44:39 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\HoolappForAndroid
[2013.05.04 21:33:30 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Identities
[2013.05.04 21:48:14 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\InstallShield
[2013.05.04 22:26:59 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Intel Corporation
[2013.09.24 13:20:30 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\langmaster.com
[2013.05.05 09:56:29 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Macromedia
[2014.01.05 17:36:35 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Malwarebytes
[2011.04.12 09:45:23 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Media Center Programs
[2013.07.15 22:20:42 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Media Player Classic
[2013.12.13 17:06:53 | 000,000,000 | --SD | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Microsoft
[2013.05.04 22:40:33 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla
[2013.05.09 12:39:16 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\OpenOffice.org
[2013.05.30 00:56:53 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\PDAppFlex
[2013.05.07 13:36:57 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\PDF Writer
[2013.11.05 23:20:19 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\PearlMountain
[2014.01.07 11:11:01 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz
[2014.01.07 20:27:59 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Skype
[2013.06.26 14:59:17 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Software Informer
[2013.06.22 12:07:06 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Telefónica Móviles
[2013.06.13 12:31:22 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\TuneUp Software
[2013.12.24 23:13:23 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\uTorrent
[2013.06.14 20:18:27 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\vlc
[2013.12.10 12:45:00 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Windows Live Writer
[2013.05.05 09:44:59 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\WinRAR
[2013.08.26 15:33:23 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\Xilisoft
[2013.12.03 23:56:04 | 000,000,000 | ---D | M] -- C:\Users\Zora Všelichová\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}

< %APPDATA%\*.exe /s >
[2009.08.11 20:21:26 | 000,087,552 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 20:21:30 | 000,090,112 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 13:52:04 | 000,697,690 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\AC3 Filter\unins000.exe
[2012.10.11 08:01:20 | 001,175,371 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\FFDShow\unins000.exe
[2010.08.14 09:42:54 | 000,113,152 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 09:45:10 | 000,358,400 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 09:42:06 | 000,137,728 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 14:30:22 | 000,042,305 | ---- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\BSplayer\Haali media splitter\uninstall.exe
[2013.12.13 17:06:53 | 000,029,926 | R--- | M] () -- C:\Users\Zora Všelichová\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2013.05.18 12:01:09 | 001,043,536 | ---- | M] (BitTorrent Inc.) -- C:\Users\Zora Všelichová\AppData\Roaming\uTorrent\uTorrent.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2014.01.07 20:10:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2014.01.07 14:33:01 | 000,000,966 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014.01.07 20:33:01 | 000,000,970 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2014.01.06 22:06:27 | 000,000,018 | ---- | M] () -- C:\Windows\system32\log.txt

< %SYSTEMDRIVE%\*.exe >

< >

< *crack* /s >
[2012.03.27 00:37:40 | 000,822,440 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2012.03.27 00:37:42 | 000,822,440 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2012.03.27 00:37:44 | 000,822,440 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2012.03.27 00:58:54 | 000,822,440 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler1.dll
[2012.03.27 00:58:56 | 000,822,440 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler2.dll
[2012.03.27 00:59:00 | 000,822,440 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\Plug-ins\zh_CN\VSTPlugins\DeCrackler6.dll
[2013.06.24 21:20:50 | 000,062,238 | ---- | M] () -- \Program Files\GIMP 2\share\gimp\2.0\patterns\cracked.pat

< *keygen* /s >
[2013.11.29 15:30:00 | 000,055,849 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Adobe Flash CS6 Serial Keygen .rar
[2013.12.17 21:27:26 | 000,245,760 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Pinnacle-Studio14-Keygen.exe
[2013.03.12 03:11:09 | 000,107,748 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Adobe Flash CS6 Serial Keygen\adobe_flash_cs6_serial_keygen.exe

< *AntiWPA* /s >

< *loader* /s >
[2013.11.12 14:27:30 | 000,004,178 | ---- | M] () -- \AdwCleaner\Quarantine\C\Program Files (x86)\AVG SafeGuard toolbar\Chrome\content\icons\loader.gif.vir
[2013.11.20 18:52:40 | 000,019,497 | ---- | M] () -- \AdwCleaner\Quarantine\C\Program Files (x86)\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif.vir
[2013.06.17 15:26:26 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.2.0.5\modules\skin\ajax-loader.gif.vir
[2013.06.17 15:26:26 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.2.0.5\modules\skin\loader.gif.vir
[2013.06.26 22:12:11 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.3.0.11\modules\skin\ajax-loader.gif.vir
[2013.06.26 22:12:11 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.3.0.11\modules\skin\loader.gif.vir
[2013.07.30 09:18:10 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.4.0.5\modules\skin\ajax-loader.gif.vir
[2013.07.30 09:18:10 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.4.0.5\modules\skin\loader.gif.vir
[2013.08.14 18:15:35 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.5.0.2\modules\skin\ajax-loader.gif.vir
[2013.08.14 18:15:35 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.5.0.2\modules\skin\loader.gif.vir
[2013.09.28 16:48:28 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.0.0.9\modules\skin\ajax-loader.gif.vir
[2013.09.28 16:48:28 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.0.0.9\modules\skin\loader.gif.vir
[2013.10.03 16:21:29 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.0.1.12\modules\skin\ajax-loader.gif.vir
[2013.10.03 16:21:29 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.0.1.12\modules\skin\loader.gif.vir
[2013.11.12 14:27:30 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.1.2.1\modules\skin\ajax-loader.gif.vir
[2013.11.12 14:27:30 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.1.2.1\modules\skin\loader.gif.vir
[2013.11.20 18:52:39 | 000,006,494 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.1.3.1\modules\skin\ajax-loader.gif.vir
[2013.11.20 18:52:40 | 000,000,729 | ---- | M] () -- \AdwCleaner\Quarantine\C\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.1.3.1\modules\skin\loader.gif.vir
[2013.10.08 15:50:10 | 000,004,178 | ---- | M] () -- \AdwCleaner\Quarantine\C\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\17.0.1.12_0\content\icons\loader.gif.vir
[2013.11.14 10:03:29 | 000,004,178 | ---- | M] () -- \AdwCleaner\Quarantine\C\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\17.1.2.1_0\content\icons\loader.gif.vir
[2011.03.02 21:35:42 | 005,299,048 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\Photodownloader.exe
[2011.03.02 18:57:10 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\de_de\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\en_us\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\es_es\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\it_it\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\no_no\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2011.03.02 18:57:14 | 000,000,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2011.03.02 18:57:14 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2012.03.13 11:18:28 | 003,297,128 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe
[2012.03.13 09:41:34 | 000,000,860 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe.manifest
[2012.03.13 09:41:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 09:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 09:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 09:42:06 | 000,000,324 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 09:42:06 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011.03.11 13:07:20 | 000,001,702 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\AIR2.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2011.03.11 13:07:18 | 000,006,153 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\AIR2.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2011.03.11 13:07:18 | 000,010,340 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\AIR2.6\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2011.03.17 08:29:56 | 000,043,414 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\display\ProLoader.as
[2011.03.17 08:29:56 | 000,022,438 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\display\ProLoaderInfo.as
[2011.03.17 08:29:56 | 000,000,951 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\events\ProLoaderRSLPreloaderSandboxEvent.as
[2011.03.17 08:29:56 | 000,018,626 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\rsl\RSLPreloader.as
[2011.03.17 08:29:56 | 000,010,604 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\ActionScript 3.0\rsls\loader_animation.fla
[2011.03.17 08:29:56 | 000,001,253 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\ActionScript 3.0\rsls\loader_animation.swf
[2011.03.17 08:29:58 | 000,027,163 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\Component Source\ActionScript 3.0\User Interface\fl\containers\UILoader.as
[2011.03.17 08:30:00 | 000,044,966 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\Configuration\Components\User Interface\Loader.swc
[2011.03.17 08:30:06 | 000,000,544 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\First Run\Classes\FP7\MovieClipLoader.as
[2011.03.17 08:30:06 | 000,000,544 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\First Run\Classes\FP8\MovieClipLoader.as
[2011.03.17 08:30:06 | 000,000,576 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\First Run\Classes\FP9\MovieClipLoader.as
[2011.03.17 08:30:08 | 000,010,454 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\First Run\Classes\mx\controls\Loader.as
[2011.03.17 08:30:00 | 000,033,692 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\en_US\Configuration\Templates\Sample Files\Preloader for External File.fla
[2011.03.17 08:30:00 | 000,036,081 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\en_US\Configuration\Templates\Sample Files\Preloader for SWF.fla
[2013.12.06 07:34:22 | 000,016,910 | ---- | M] () -- \Program Files (x86)\Avidemux 2.6\libADM_coreImageLoader6.dll
[2012.02.22 22:11:56 | 000,078,336 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.02.22 22:11:56 | 000,155,136 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.02.22 22:11:56 | 000,117,248 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2007.10.24 01:52:00 | 000,114,688 | ---- | M] () -- \Program Files (x86)\EPSON Software\Easy Photo Print\APFLoaderV13.dll
[2007.10.24 01:52:00 | 000,069,632 | ---- | M] () -- \Program Files (x86)\EPSON Software\Easy Photo Print\EpAPFLoader.dll
[2007.10.24 01:52:00 | 000,102,400 | ---- | M] () -- \Program Files (x86)\EPSON Software\Easy Photo Print\EpAPFLoader2006.dll
[2013.06.28 14:11:46 | 000,401,920 | ---- | M] () -- \Program Files (x86)\Fotolab\Fotolab Fotosvet\CWImageLoader0.dll
[2003.07.03 21:37:58 | 000,006,995 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoader.xs
[2003.07.03 21:37:35 | 000,002,522 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoaderaggboom.xs
[2003.07.03 21:37:27 | 000,002,734 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoaderbalanced.xs
[2003.07.03 21:37:17 | 000,002,486 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoaderboom.xs
[2003.07.03 21:37:07 | 000,002,522 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoaderdefboom.xs
[2003.07.03 21:37:02 | 000,002,491 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoaderdefrush.xs
[2003.07.03 21:36:55 | 000,002,494 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoaderecorush.xs
[2003.07.03 21:36:48 | 000,002,488 | ---- | M] () -- \Program Files (x86)\Microsoft Games\Age of Mythology\ai2\aomxailoaderrush.xs
[2012.08.13 09:52:58 | 000,006,081 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.py
[2012.08.10 15:50:58 | 000,020,992 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.uno.dll
[2012.08.13 10:04:18 | 000,000,171 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\Basis\program\pythonloader.uno.ini
[2012.08.10 15:50:54 | 000,029,696 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\URE\bin\javaloader.uno.dll
[2012.08.13 09:12:36 | 000,003,868 | ---- | M] () -- \Program Files (x86)\OpenOffice.org 3\URE\java\unoloader.jar
[2012.03.13 11:10:54 | 003,297,128 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012.03.13 09:42:26 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:28 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012.03.13 09:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012.03.13 09:42:30 | 000,000,324 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012.03.13 09:42:30 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2012.03.27 02:04:08 | 000,121,504 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.27 02:04:18 | 000,231,072 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.27 02:04:30 | 000,169,632 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2011.03.15 11:23:50 | 000,105,984 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.15 11:23:50 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.15 11:23:50 | 000,144,896 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2012.03.15 23:17:30 | 000,115,712 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.15 23:17:30 | 000,225,280 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.15 23:17:30 | 000,163,840 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2012.03.26 21:19:56 | 000,115,712 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.03.26 21:19:56 | 000,225,280 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.03.26 21:19:56 | 000,163,840 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS6\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2011.03.08 09:43:28 | 000,013,734 | ---- | M] () -- \Program Files\GIMP 2\Python\Lib\unittest\loader.py
[2013.06.06 16:50:00 | 000,499,712 | R--- | M] () -- \Program Files\WinZip\adxloader.dll
[2013.06.06 16:50:00 | 000,000,348 | ---- | M] () -- \Program Files\WinZip\adxloader.dll.manifest
[2013.06.06 16:50:00 | 000,704,000 | R--- | M] () -- \Program Files\WinZip\adxloader64.dll
[2013.02.20 15:28:38 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2013.02.20 15:28:38 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2013.11.11 14:39:40 | 000,006,012 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\normal\loader_15fps.gif
[2013.11.11 14:39:40 | 000,021,956 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\normal\loader_30fps.gif
[2013.02.20 15:28:38 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2013.02.20 15:28:38 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2013.02.20 15:28:38 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2013.11.11 14:39:40 | 000,006,012 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\normal\loader_15fps.gif
[2013.11.11 14:39:40 | 000,021,956 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\normal\loader_30fps.gif
[2013.02.20 15:28:38 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2011.03.17 08:30:06 | 000,000,544 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS5.5\en_US\Configuration\Classes\FP7\MovieClipLoader.as
[2011.03.17 08:30:06 | 000,000,544 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS5.5\en_US\Configuration\Classes\FP8\MovieClipLoader.as
[2011.03.17 08:30:06 | 000,000,576 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS5.5\en_US\Configuration\Classes\FP9\MovieClipLoader.as
[2011.03.17 08:30:08 | 000,010,454 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS5.5\en_US\Configuration\Classes\mx\controls\Loader.as
[2012.03.30 15:20:02 | 000,000,544 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS6\en_US\Configuration\Classes\FP7\MovieClipLoader.as
[2012.03.30 15:20:02 | 000,000,544 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS6\en_US\Configuration\Classes\FP8\MovieClipLoader.as
[2012.03.30 15:20:02 | 000,000,576 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS6\en_US\Configuration\Classes\FP9\MovieClipLoader.as
[2012.03.30 15:20:02 | 000,010,454 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS6\en_US\Configuration\Classes\mx\controls\Loader.as
[2013.05.05 09:43:19 | 000,105,903 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0U5580WX\AdLoader-427d9fd2a91e2f2c023aefe9f69a01d0.min[1].js
[2013.05.06 23:35:53 | 000,034,463 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0U5580WX\loader.cxp[1].js
[2013.12.20 17:08:00 | 000,110,991 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1BK8APG5\AdLoader-7b857a7be889bd57f92da60a9b6146bb.min[1].js
[2013.12.20 17:07:59 | 000,001,537 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1BK8APG5\AdLoader[2].htm
[2013.10.31 21:15:36 | 000,110,642 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4F3W4UGW\AdLoader-05424a4ab7d836fbf1bc3b5c2b3458f1.min[1].js
[2013.06.20 12:52:37 | 000,109,448 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4F3W4UGW\AdLoader-b3e321cab5fbc3c4ed10b513bb467bae.min[1].js
[2013.08.16 11:12:13 | 000,000,723 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4F3W4UGW\downloaderror[1].js
[1 \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4F3W4UGW\*.tmp files -> \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4F3W4UGW\*.tmp -> ]
[2013.08.02 15:27:05 | 000,109,505 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4UV8N6YA\AdLoader-3ce32d357de39fd9427f374be93bd0ac.min[1].js
[2013.07.15 22:13:25 | 000,031,516 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4UV8N6YA\cz.seznam.software.libfoxloader-3.1.2-win32[1].zip
[2013.08.16 11:12:13 | 000,001,174 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4UV8N6YA\downloader[1].js
[2013.11.15 13:34:32 | 000,001,174 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4UV8N6YA\downloader[2].js
[2013.10.24 10:37:45 | 000,110,751 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\728D40XK\AdLoader-d40a84753bed078348a772ed17f771c5.min[1].js
[2013.11.15 13:34:32 | 000,000,723 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\728D40XK\downloaderror[1].js
[2013.06.05 19:12:36 | 000,001,511 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BJKSI5OM\AdLoader[1].htm
[2013.06.05 19:12:36 | 000,109,448 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VXHD0N6E\AdLoader-b3e321cab5fbc3c4ed10b513bb467bae.min[1].js
[2013.05.15 12:48:47 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI10642\_win32sysloader.pyd
[2013.05.29 23:58:34 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI17002\_win32sysloader.pyd
[2014.01.06 21:55:22 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI21402\_win32sysloader.pyd
[2013.12.10 11:43:37 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI21882\_win32sysloader.pyd
[2013.05.08 17:19:37 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI23002\_win32sysloader.pyd
[2013.06.15 12:02:51 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI23322\_win32sysloader.pyd
[2013.08.06 18:04:50 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI23682\_win32sysloader.pyd
[2013.06.05 19:09:47 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI24082\_win32sysloader.pyd
[2013.05.05 10:59:47 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI26202\_win32sysloader.pyd
[2013.12.17 12:43:31 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI28242\_win32sysloader.pyd
[2013.11.29 14:06:54 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI28802\_win32sysloader.pyd
[2013.10.30 08:59:45 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI29162\_win32sysloader.pyd
[2013.05.10 17:54:14 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI30522\_win32sysloader.pyd
[2013.06.22 09:56:59 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI33082\_win32sysloader.pyd
[2013.08.02 20:12:40 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI33282\_win32sysloader.pyd
[2013.09.11 10:09:12 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI34122\_win32sysloader.pyd
[2013.05.18 11:24:49 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI34162\_win32sysloader.pyd
[2013.07.26 17:24:29 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI34522\_win32sysloader.pyd
[2013.08.07 10:54:36 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI34523\_win32sysloader.pyd
[2013.07.22 18:09:44 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI35922\_win32sysloader.pyd
[2013.07.15 22:07:15 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI36002\_win32sysloader.pyd
[2013.09.13 14:25:51 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI36882\_win32sysloader.pyd
[2013.10.13 10:50:54 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI37922\_win32sysloader.pyd
[2013.07.15 12:14:59 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI38242\_win32sysloader.pyd
[2013.06.27 22:49:17 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI58402\_win32sysloader.pyd
[2013.10.16 12:54:41 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI65882\_win32sysloader.pyd
[2013.05.05 10:05:43 | 000,008,192 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\_MEI7562\_win32sysloader.pyd
[2013.06.17 15:26:26 | 000,006,494 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\avg_a00776\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.2.0.5\modules\skin\ajax-loader.gif
[2013.06.17 15:26:26 | 000,000,729 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\avg_a00776\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.2.0.5\modules\skin\loader.gif
[2013.06.17 15:26:26 | 000,019,497 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\avg_a00776\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2013.06.17 15:26:10 | 000,006,494 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\avg_a01332\ProgData\AVG SafeGuard toolbar\FireFoxExt\14.0.0.12\modules\skin\ajax-loader.gif
[2013.06.17 15:26:10 | 000,000,729 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\avg_a01332\ProgData\AVG SafeGuard toolbar\FireFoxExt\14.0.0.12\modules\skin\loader.gif
[2013.06.17 15:26:10 | 000,019,497 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\avg_a01332\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2012.12.11 15:05:00 | 000,000,148 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish46784\loader.bmp.Mask
[2012.12.18 16:52:00 | 000,000,629 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish46784\images\loader-close.png
[2012.12.18 11:31:22 | 000,052,517 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish46784\images\preloader.gif
[2012.12.11 15:05:00 | 000,000,148 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish56643\loader.bmp.Mask
[2012.12.18 16:52:00 | 000,000,629 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish56643\images\loader-close.png
[2012.12.18 11:31:22 | 000,052,517 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish56643\images\preloader.gif
[2012.12.11 15:05:00 | 000,000,148 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish60372\loader.bmp.Mask
[2012.12.18 16:52:00 | 000,000,629 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish60372\images\loader-close.png
[2012.12.18 11:31:22 | 000,052,517 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish60372\images\preloader.gif
[2012.12.11 15:05:00 | 000,000,148 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish73273\loader.bmp.Mask
[2012.12.18 16:52:00 | 000,000,629 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish73273\images\loader-close.png
[2012.12.18 11:31:22 | 000,052,517 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Temp\ish73273\images\preloader.gif
[2013.01.23 20:04:46 | 000,041,330 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wordpress\wp-includes\script-loader.php
[2012.10.31 22:01:14 | 000,002,060 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wordpress\wp-includes\template-loader.php
[2012.11.30 01:18:08 | 000,003,915 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wordpress\wp-includes\images\uploader-icons-2x.png
[2012.11.30 01:18:08 | 000,001,593 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wordpress\wp-includes\images\uploader-icons.png
[2012.11.21 21:31:56 | 000,004,244 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wordpress\wp-includes\js\customize-loader.js

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 20:53
od zooh
díl IV./IV.
---------
[2012.11.21 21:31:56 | 000,002,642 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wordpress\wp-includes\js\customize-loader.min.js
[2013.12.04 14:42:16 | 000,035,927 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wp-includes\script-loader.php
[2013.12.04 14:42:16 | 000,001,893 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wp-includes\template-loader.php
[2013.12.04 00:33:37 | 000,041,330 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\bannery\wp-includes\script-loader.php
[2013.12.04 00:33:38 | 000,002,060 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\bannery\wp-includes\template-loader.php
[2013.12.04 00:33:56 | 000,003,915 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\bannery\wp-includes\images\uploader-icons-2x.png
[2013.12.04 00:33:56 | 000,001,593 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\bannery\wp-includes\images\uploader-icons.png
[2013.12.04 00:34:02 | 000,004,244 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\bannery\wp-includes\js\customize-loader.js
[2013.12.04 00:34:02 | 000,002,642 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\bannery\wp-includes\js\customize-loader.min.js
[2013.07.19 12:32:16 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\medicine\medicine\inc\images\ajax-loader.gif
[2013.07.06 00:33:10 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\divan\divan\inc\images\ajax-loader.gif
[2013.07.06 00:33:10 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\divan\divan\inc\images\ajax-loader2.gif
[2013.07.06 00:33:12 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\divan\divan\inc\images\img-loader.gif
[2012.11.29 04:06:56 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\fantasia\fantasia\inc\images\ajax-loader.gif
[2012.11.29 04:06:56 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\fantasia\fantasia\inc\images\ajax-loader2.gif
[2012.11.29 04:06:56 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\fantasia\fantasia\inc\images\img-loader.gif
[2013.07.19 12:32:16 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\frau\frau\inc\images\ajax-loader.gif
[2013.01.18 05:46:26 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\healthcare\healthcare\inc\images\ajax-loader.gif
[2013.01.18 05:46:26 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\healthcare\healthcare\inc\images\ajax-loader2.gif
[2013.01.18 05:46:26 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\healthcare\healthcare\inc\images\img-loader.gif
[2013.06.11 15:12:46 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\metroblog\metroblog\inc\images\ajax-loader.gif
[2013.06.11 15:12:44 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\metroblog\metroblog\inc\images\ajax-loader2.gif
[2013.06.11 15:12:46 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\metroblog\metroblog\inc\images\img-loader.gif
[2013.04.02 16:28:44 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\monamour\monamour\inc\images\ajax-loader.gif
[2013.04.02 16:28:38 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\monamour\monamour\inc\images\ajax-loader2.gif
[2013.04.02 16:28:44 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\monamour\monamour\inc\images\img-loader.gif
[2012.12.17 03:42:40 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\musicspace\musicspace\inc\images\ajax-loader.gif
[2012.12.17 03:42:40 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\musicspace\musicspace\inc\images\ajax-loader2.gif
[2012.12.17 03:42:40 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\musicspace\musicspace\inc\images\img-loader.gif
[2012.12.26 07:40:32 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\originative\originative\inc\images\ajax-loader.gif
[2012.12.26 07:40:32 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\originative\originative\inc\images\ajax-loader2.gif
[2012.12.26 07:40:32 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\originative\originative\inc\images\img-loader.gif
[2012.12.24 07:19:44 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\realty\realty\inc\images\ajax-loader.gif
[2012.12.24 07:19:44 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\realty\realty\inc\images\ajax-loader2.gif
[2012.12.24 07:19:44 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\realty\realty\inc\images\img-loader.gif
[2013.06.07 13:41:08 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\simplycloth\simplycloth\inc\images\ajax-loader.gif
[2013.06.07 13:41:08 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\simplycloth\simplycloth\inc\images\ajax-loader2.gif
[2013.06.07 13:41:08 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\simplycloth\simplycloth\inc\images\img-loader.gif
[2013.06.17 15:23:28 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\stylish\stylish\inc\images\ajax-loader.gif
[2013.06.17 15:23:28 | 000,009,427 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\stylish\stylish\inc\images\ajax-loader2.gif
[2013.06.17 15:23:28 | 000,010,819 | ---- | M] () -- \Users\Zora Všelichová\Downloads\temata\stylish\stylish\inc\images\img-loader.gif
[2013.08.01 13:47:24 | 000,043,875 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ(1)\wordpress\wp-includes\script-loader.php
[2012.10.31 23:01:14 | 000,002,060 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ(1)\wordpress\wp-includes\template-loader.php
[2012.11.30 02:18:08 | 000,003,915 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ(1)\wordpress\wp-includes\images\uploader-icons-2x.png
[2012.11.30 02:18:08 | 000,001,593 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ(1)\wordpress\wp-includes\images\uploader-icons.png
[2012.11.21 22:31:56 | 000,004,244 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ(1)\wordpress\wp-includes\js\customize-loader.js
[2012.11.21 22:31:56 | 000,002,642 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ(1)\wordpress\wp-includes\js\customize-loader.min.js
[2013.08.01 13:47:24 | 000,043,875 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ\wordpress\wp-includes\script-loader.php
[2012.10.31 23:01:14 | 000,002,060 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ\wordpress\wp-includes\template-loader.php
[2012.11.30 02:18:08 | 000,003,915 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ\wordpress\wp-includes\images\uploader-icons-2x.png
[2012.11.30 02:18:08 | 000,001,593 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ\wordpress\wp-includes\images\uploader-icons.png
[2012.11.21 22:31:56 | 000,004,244 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ\wordpress\wp-includes\js\customize-loader.js
[2012.11.21 22:31:56 | 000,002,642 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ\wordpress\wp-includes\js\customize-loader.min.js
[2013.08.02 02:48:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013.08.02 02:48:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2013.11.12 14:27:30 | 000,006,494 | ---- | M] () -- \Windows\Temp\avg_a00740\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.1.2.1\modules\skin\ajax-loader.gif
[2013.11.12 14:27:30 | 000,000,729 | ---- | M] () -- \Windows\Temp\avg_a00740\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.1.2.1\modules\skin\loader.gif
[2013.11.12 14:27:30 | 000,004,178 | ---- | M] () -- \Windows\Temp\avg_a00740\ProgFiles\AVG SafeGuard toolbar\Chrome\content\icons\loader.gif
[2013.11.12 14:27:30 | 000,019,497 | ---- | M] () -- \Windows\Temp\avg_a00740\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2013.07.30 09:18:10 | 000,006,494 | ---- | M] () -- \Windows\Temp\avg_a01676\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.4.0.5\modules\skin\ajax-loader.gif
[2013.07.30 09:18:10 | 000,000,729 | ---- | M] () -- \Windows\Temp\avg_a01676\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.4.0.5\modules\skin\loader.gif
[2013.07.30 09:18:10 | 000,019,497 | ---- | M] () -- \Windows\Temp\avg_a01676\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2013.11.20 18:52:39 | 000,006,494 | ---- | M] () -- \Windows\Temp\avg_a02676\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.1.3.1\modules\skin\ajax-loader.gif
[2013.11.20 18:52:40 | 000,000,729 | ---- | M] () -- \Windows\Temp\avg_a02676\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.1.3.1\modules\skin\loader.gif
[2013.11.20 18:52:40 | 000,019,497 | ---- | M] () -- \Windows\Temp\avg_a02676\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2013.06.26 22:12:11 | 000,006,494 | ---- | M] () -- \Windows\Temp\avg_a05448\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.3.0.11\modules\skin\ajax-loader.gif
[2013.06.26 22:12:11 | 000,000,729 | ---- | M] () -- \Windows\Temp\avg_a05448\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.3.0.11\modules\skin\loader.gif
[2013.06.26 22:12:11 | 000,019,497 | ---- | M] () -- \Windows\Temp\avg_a05448\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2013.10.03 16:21:29 | 000,006,494 | ---- | M] () -- \Windows\Temp\avg_a05864\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.0.1.12\modules\skin\ajax-loader.gif
[2013.10.03 16:21:29 | 000,000,729 | ---- | M] () -- \Windows\Temp\avg_a05864\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.0.1.12\modules\skin\loader.gif
[2013.10.03 16:21:29 | 000,004,178 | ---- | M] () -- \Windows\Temp\avg_a05864\ProgFiles\AVG SafeGuard toolbar\Chrome\content\icons\loader.gif
[2013.10.03 16:21:29 | 000,019,497 | ---- | M] () -- \Windows\Temp\avg_a05864\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2013.08.14 18:15:35 | 000,006,494 | ---- | M] () -- \Windows\Temp\avg_a07156\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.5.0.2\modules\skin\ajax-loader.gif
[2013.08.14 18:15:35 | 000,000,729 | ---- | M] () -- \Windows\Temp\avg_a07156\ProgData\AVG SafeGuard toolbar\FireFoxExt\15.5.0.2\modules\skin\loader.gif
[2013.08.14 18:15:35 | 000,019,497 | ---- | M] () -- \Windows\Temp\avg_a07156\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2013.09.28 16:48:28 | 000,006,494 | ---- | M] () -- \Windows\Temp\avg_a08272\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.0.0.9\modules\skin\ajax-loader.gif
[2013.09.28 16:48:28 | 000,000,729 | ---- | M] () -- \Windows\Temp\avg_a08272\ProgData\AVG SafeGuard toolbar\FireFoxExt\17.0.0.9\modules\skin\loader.gif
[2013.09.28 16:48:28 | 000,004,178 | ---- | M] () -- \Windows\Temp\avg_a08272\ProgFiles\AVG SafeGuard toolbar\Chrome\content\icons\loader.gif
[2013.09.28 16:48:28 | 000,019,497 | ---- | M] () -- \Windows\Temp\avg_a08272\ProgFiles\AVG SafeGuard toolbar\UninstallRes\ClientPackage\Images\uninstall\loader.gif
[2009.07.14 02:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 02:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:38:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:12:19 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_68d20a7192733a4d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.07.08 06:11:20 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22379_none_692597a0abb965cc\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 07:20:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_695e76beab8ff095\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 03:18:31 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_694dd858ab9ba72a\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.04.12 09:34:35 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2011.04.12 09:34:35 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2011.04.12 09:34:35 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2011.04.12 09:34:35 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2011.04.12 09:34:35 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2013.05.06 11:28:21 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2013.05.06 11:28:21 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2013.05.06 11:28:21 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2013.05.06 11:28:21 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2013.05.06 11:28:21 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 03:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2011.04.12 09:33:23 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2010.11.21 04:16:35 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 18:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 14:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 03:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 02:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 02:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 05:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.07.08 05:59:24 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22379_none_0d06fc1cf35bf496\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 06:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 02:54:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_0d2f3cd4f33e35f4\api-ms-win-core-libraryloader-l1-1-0.dll

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >

< *activator* /s >
[2011.03.17 08:30:08 | 000,002,319 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\First Run\Classes\mx\skins\halo\ActivatorSkin.as
[2011.03.17 08:30:08 | 000,001,806 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5.5\Common\First Run\Classes\mx\skins\sample\ActivatorSkin.as
[2011.03.17 08:30:08 | 000,002,319 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS5.5\en_US\Configuration\Classes\mx\skins\halo\ActivatorSkin.as
[2011.03.17 08:30:08 | 000,001,806 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS5.5\en_US\Configuration\Classes\mx\skins\sample\ActivatorSkin.as
[2012.03.30 15:20:02 | 000,002,319 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS6\en_US\Configuration\Classes\mx\skins\halo\ActivatorSkin.as
[2012.03.30 15:20:02 | 000,001,806 | ---- | M] () -- \Users\Zora Všelichová\AppData\Local\Adobe\Flash CS6\en_US\Configuration\Classes\mx\skins\sample\ActivatorSkin.as
[2013.11.29 15:18:13 | 015,004,893 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Adobe Permanent Activator 2013.rar
[2013.10.09 08:43:59 | 015,002,655 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Adobe Permanent Activator 2013\Adobe Permanent Activator 2013\Adobe Permanent Activator 2013.rar

< *serial* /s >
[2013.09.13 01:53:56 | 000,434,368 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.20913.0\System.Runtime.Serialization.dll
[2013.12.05 09:30:31 | 001,164,288 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.20913.0\System.Runtime.Serialization.ni.dll
[2012.10.05 11:53:23 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.04.12 09:34:17 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2012.03.26 21:01:20 | 000,001,673 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\LMResources\BadSerialNumberAlert.exv
[2012.03.26 21:01:20 | 000,001,561 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\LMResources\CantChangeSerialNumberAlert.exv
[2012.03.26 21:01:20 | 000,001,639 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\LMResources\InValidUpGradeSerialNumberAlert.exv
[2012.03.26 21:01:20 | 000,000,849 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\LMResources\ReserializeAlert.exv
[2012.03.26 21:01:20 | 000,027,443 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\LMResources\SerializationWF.exv
[2012.03.26 21:28:46 | 000,119,808 | ---- | M] () -- \Program Files\Adobe\Adobe Encore CS6\Plug-ins\Common\DeviceControlSerial.prm
[2013.09.13 02:23:44 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.20913.0\System.Runtime.Serialization.dll
[2013.12.05 09:31:07 | 001,546,240 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.20913.0\System.Runtime.Serialization.ni.dll
[2012.10.05 11:52:37 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2011.04.12 09:34:17 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2008.09.04 09:06:40 | 000,079,120 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\HfxSerial.exe
[2008.09.04 09:07:02 | 000,010,512 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-CHS.dll
[2008.09.04 09:07:04 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-DEU.dll
[2008.09.04 09:07:04 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ESP.dll
[2008.09.04 09:07:06 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-FRA.dll
[2008.09.04 09:07:10 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-ITA.dll
[2008.09.04 09:07:14 | 000,010,512 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-JPN.dll
[2008.09.04 09:07:14 | 000,010,512 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-KOR.dll
[2008.09.04 09:07:16 | 000,011,024 | ---- | M] () -- \Users\Public\Documents\Pinnacle\Content\HollywoodFX\Languages\HfxSerial-NLD.dll
[2013.12.17 21:24:20 | 000,000,840 | ---- | M] () -- \Users\Zora Všelichová\AppData\Roaming\Microsoft\Windows\Recent\Pinacle-Studio-14-HD-ultimate-collection-with-100%working-serial.lnk
[2013.12.13 16:08:51 | 000,000,964 | ---- | M] () -- \Users\Zora Všelichová\AppData\Roaming\Microsoft\Windows\Recent\Pinacle-Studio-14-HD-ultimate-collection-with-100%working-serial.part4.lnk
[2011.01.20 22:09:38 | 000,000,783 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wordpress\wp-includes\js\jquery\jquery.serialize-object.js
[2013.12.04 14:42:44 | 000,000,783 | ---- | M] () -- \Users\Zora Všelichová\Desktop\Flying\www\wp-includes\js\jquery\jquery.serialize-object.js
[2013.10.13 20:32:04 | 000,033,373 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\903773-img-herecka-dada-patrasova-deti-serial-film-felix-menzel-manzelka-slovacek-crop.jpg
[2013.12.04 00:34:11 | 000,000,783 | ---- | M] () -- \Users\Zora Všelichová\Desktop\PETRA CLINIC\bannery\wp-includes\js\jquery\jquery.serialize-object.js
[2013.11.29 15:30:00 | 000,055,849 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Adobe Flash CS6 Serial Keygen .rar
[2013.11.29 15:08:56 | 000,000,045 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Adobe-Flash-Professional-CS6-SERIAL.url
[2013.12.10 12:48:34 | 734,003,200 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Pinacle-Studio-14-HD-ultimate-collection-with-100%working-serial.part1.rar
[2013.12.10 13:05:19 | 734,003,200 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Pinacle-Studio-14-HD-ultimate-collection-with-100%working-serial.part2.rar
[2013.12.10 13:12:36 | 734,003,200 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Pinacle-Studio-14-HD-ultimate-collection-with-100%working-serial.part3.rar
[2013.12.13 16:08:50 | 703,917,005 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Pinacle-Studio-14-HD-ultimate-collection-with-100%working-serial.part4.rar
[2013.03.12 03:11:09 | 000,107,748 | ---- | M] () -- \Users\Zora Všelichová\Downloads\Adobe Flash CS6 Serial Keygen\adobe_flash_cs6_serial_keygen.exe
[2011.01.20 23:09:38 | 000,000,783 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ(1)\wordpress\wp-includes\js\jquery\jquery.serialize-object.js
[2011.01.20 23:09:38 | 000,000,783 | ---- | M] () -- \Users\Zora Všelichová\Downloads\wordpress-3.6.1-cs_CZ\wordpress\wp-includes\js\jquery\jquery.serialize-object.js
[2011.04.12 09:34:11 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 22:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.13 03:02:06 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2012.10.05 11:53:23 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.08.16 11:11:00 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\d462f459c4353e2c628e6def1430aed7\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.08.16 11:31:55 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\e043ad64456256a8ee5b934e227d9782\System.Runtime.Serialization.ni.dll
[2013.08.16 11:05:24 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\845e04461d3d879b24c5b0d30947050a\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.08.16 13:00:19 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\dbfc784cc4bde7b16fb471e14563569d\System.Runtime.Serialization.ni.dll
[2013.10.13 10:47:37 | 002,659,328 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\10519c5a16fab95707f40b55941647b5\System.Runtime.Serialization.ni.dll
[2013.08.16 10:56:10 | 000,311,296 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\ad3522eafb95969623aeef7c389246bd\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.10.15 11:43:48 | 000,009,216 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\cda839ea462e123d42cb6d0883cf0f4d\System.Xml.Serialization.ni.dll
[2013.10.13 10:38:57 | 003,425,792 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\4d6c50c63ff4757f8825b82fb18eae3d\System.Runtime.Serialization.ni.dll
[2013.08.16 13:50:17 | 003,414,016 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\b00c987c6d13ba24a30b471ae12a23d5\System.Runtime.Serialization.ni.dll
[2013.08.16 13:52:01 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\cd2da26160fba6400b0353e558e35da6\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.07.15 02:30:31 | 000,010,240 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\252726355005e3388101a3f1dfa1c727\System.Xml.Serialization.ni.dll
[2010.03.18 12:16:28 | 001,026,936 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\System.Runtime.Serialization.dll.amd64
[2010.03.18 12:16:28 | 001,026,936 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\System.Runtime.Serialization.dll.x86
[2013.05.06 22:06:18 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.10.13 10:25:26 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.05.06 22:06:18 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013.10.13 10:25:25 | 001,039,040 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.10.13 10:25:31 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2009.06.10 22:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 09:34:11 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.10.05 11:53:24 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013.09.11 05:06:54 | 001,039,040 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 12:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 15:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 01:33:16 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 01:33:16 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.06.10 21:40:06 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 09:34:10 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2012.10.05 11:52:38 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013.09.11 05:06:54 | 001,039,040 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 12:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 15:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 01:48:20 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 01:48:20 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.07.14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2011.04.12 09:34:07 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 01:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 21:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2011.04.12 09:34:07 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2011.04.12 09:34:10 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2011.04.12 09:34:12 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 02:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2011.04.12 09:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2011.04.12 09:34:13 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 01:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 21:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 21:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2010.11.21 04:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2012.10.05 11:52:38 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b\System.Runtime.Serialization.dll
[2012.10.05 11:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53\System.Runtime.Serialization.dll
[2010.11.21 04:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2012.10.05 11:52:37 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4\System.Runtime.Serialization.dll
[2012.10.05 11:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec\System.Runtime.Serialization.dll
[2013.05.06 11:28:21 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2013.05.06 11:28:21 | 000,017,792 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8_kdcom.dll_db5e7744
[2011.04.12 09:34:36 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23_serialui.dll.mui_7d29d2a3
[2009.07.14 03:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2011.04.12 09:34:35 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009.07.14 03:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009.07.14 03:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.02.05 18:35:45 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.02.05 14:11:05 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 03:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2010.11.21 04:17:50 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2012.10.05 19:18:30 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b.manifest
[2012.10.05 19:10:31 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53.manifest
[2010.11.21 04:17:50 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2012.10.05 19:19:07 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4.manifest
[2012.10.05 19:11:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec.manifest
[2010.11.21 04:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012.10.05 18:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2012.10.05 18:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2011.04.12 09:33:41 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012.10.05 21:12:17 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f.manifest
[2012.10.05 20:59:28 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797.manifest
[2010.11.21 04:17:50 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012.10.05 18:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2012.10.05 18:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2010.11.21 04:18:20 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012.10.05 18:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2012.10.05 18:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2009.06.10 22:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.12 09:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.11.21 04:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2012.10.05 11:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2012.10.05 11:56:07 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2011.04.12 09:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2010.11.13 03:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f\System.RunTime.Serialization.Resources.dll
[2010.11.13 03:37:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797\System.RunTime.Serialization.Resources.dll
[2010.11.21 04:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012.10.05 11:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2012.10.05 11:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2011.04.12 09:34:11 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.04.12 09:34:07 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2011.04.12 09:34:17 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2010.11.21 04:25:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012.10.05 11:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2012.10.05 11:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll

< *w7lxe* /s >

========== Files - Unicode (All) ==========
[2014.01.04 23:50:07 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\SC_11992.pnga??s??) -- C:\Users\Zora Všelichová\Desktop\SC_11992.pngā慭敧s좓ྩ
[2014.01.04 23:50:07 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\SC_11992.pnga??s??) -- C:\Users\Zora Všelichová\Desktop\SC_11992.pngā慭敧s좓ྩ
[2014.01.01 22:05:09 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-katerina.png?a) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-katerina.png�ā
[2014.01.01 22:05:09 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-katerina.png?a) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-katerina.png�ā
[2014.01.01 22:02:15 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-slovacek.png?a) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-slovacek.png�ā
[2014.01.01 22:02:15 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-slovacek.png?a) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-slovacek.png�ā
[2014.01.01 21:54:47 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-konvalinkova.pngtop??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-konvalinkova.pngtop㠪甆
[2014.01.01 21:54:47 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-konvalinkova.pngtop??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-konvalinkova.pngtop㠪甆
[2014.01.01 21:43:55 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\avni-banner-maresova.png??a) -- C:\Users\Zora Všelichová\Desktop\avni-banner-maresova.png��ā
[2014.01.01 21:43:55 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\avni-banner-maresova.png??a) -- C:\Users\Zora Všelichová\Desktop\avni-banner-maresova.png��ā
[2014.01.01 21:41:03 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-debbie.pngp??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-debbie.pngp㳔畽
[2014.01.01 21:41:03 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-debbie.pngp??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-debbie.pngp㳔畽
[2014.01.01 21:35:47 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-ivana.png?p??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-ivana.png漀p�痄
[2014.01.01 21:35:47 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-ivana.png?p??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-ivana.png漀p�痄
[2014.01.01 21:23:35 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-hanka.png?p??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-hanka.png漀p볔畱
[2014.01.01 21:23:35 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-hanka.png?p??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-hanka.png漀p볔畱
[2014.01.01 21:20:20 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp᳔畷
[2014.01.01 21:20:20 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp᳔畷
[2014.01.01 21:19:08 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp鳔畷
[2014.01.01 21:19:08 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-dejdar.pngp鳔畷
[2014.01.01 21:17:58 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-janu.png??p??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-janu.png獧漀p糔盪
[2014.01.01 21:17:58 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Desktop\lavni-banner-janu.png??p??) -- C:\Users\Zora Všelichová\Desktop\lavni-banner-janu.png獧漀p糔盪
[2013.06.16 12:58:56 | 000,000,000 | ---- | M] ()(C:\Users\Zora Všelichová\Documents\odnestesti.png?s??) -- C:\Users\Zora Všelichová\Documents\odnestesti.png敧s䇩㌄
[2013.06.16 12:58:56 | 000,000,000 | ---- | C] ()(C:\Users\Zora Všelichová\Documents\odnestesti.png?s??) -- C:\Users\Zora Všelichová\Documents\odnestesti.png敧s䇩㌄

========== Alternate Data Streams ==========

@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:15E30AE3
@Alternate Data Stream - 1047 bytes -> C:\Users\Zora Všelichová\AppData\Local\Temp:vJBDNFdXmLHeWogJlYlVmYu3XT

< End of report >

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 20:54
od zooh
Extras
-----
OTL Extras logfile created on: 7.1.2014 19:55:21 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Zora Všelichová\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,82 Gb Total Physical Memory | 1,02 Gb Available Physical Memory | 26,75% Memory free
7,64 Gb Paging File | 3,87 Gb Available in Paging File | 50,71% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465,66 Gb Total Space | 219,92 Gb Free Space | 47,23% Space Free | Partition Type: NTFS
Drive E: | 7,41 Gb Total Space | 1,70 Gb Free Space | 23,01% Space Free | Partition Type: FAT32

Computer Name: ZORAVŠELICHOVÁ | User Name: Zora Všelichová | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-145347670-2286349297-2966472825-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [CEWE prezentace fotografií] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet\CEWE prezentace fotografií.exe" -d "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Fotolab Fotosvet] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet\Fotolab Fotosvet.exe" "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [CEWE prezentace fotografií] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet\CEWE prezentace fotografií.exe" -d "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Fotolab Fotosvet] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet\Fotolab Fotosvet.exe" "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{026AC494-4BB5-42F8-90B8-033E0FEEAC3E}" = lport=139 | protocol=6 | dir=in | app=system |
"{117619C5-CAF9-4DCC-9F5E-E28E7E24B8AB}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{23BC1595-DF01-43B6-8344-5292A7DB2FAF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{34F1A2F2-58AE-4965-9C53-1C1D0DF9D60E}" = rport=445 | protocol=6 | dir=out | app=system |
"{38631359-3D84-4B21-8D9D-B1C34892FC66}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{482BB6FD-B676-4E23-B6ED-E5E60D539936}" = lport=10243 | protocol=6 | dir=in | app=system |
"{49D981F1-BCC7-477E-B7BC-49802597EE95}" = lport=137 | protocol=17 | dir=in | app=system |
"{73AF6CE0-EA39-463E-8CEC-0313F75E5D3D}" = rport=139 | protocol=6 | dir=out | app=system |
"{861852BC-F5FF-4450-ADFB-BD52E0D57566}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{891A9EF8-8AD4-42B5-BDB5-B56715049216}" = lport=445 | protocol=6 | dir=in | app=system |
"{BBB80319-98D0-4A9D-BCC7-98B00BC2DBB1}" = rport=10243 | protocol=6 | dir=out | app=system |
"{C7138312-8096-4058-9BD6-1176245EC9EF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{CCA49434-EC07-4F43-839B-FB2F41024280}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{D080B504-D25B-4361-ADD6-F1ACBAC54AB7}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D232551E-15B1-4B42-BDF8-CA81FE220D85}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{E535CD53-F892-4141-BF62-0BC6C0001D4C}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{EA43234F-2814-450C-95BB-C0D0B9933366}" = lport=2869 | protocol=6 | dir=in | app=system |
"{EB3580BE-F1D5-48EE-AFC6-823B3DA226E5}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F2E24355-C63D-4051-BE05-B6CD310244F8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F7C40226-BC6C-442F-B0B3-FB5E6EE30154}" = rport=138 | protocol=17 | dir=out | app=system |
"{FA03E8E5-7DB6-4DEF-B678-BF78B0B95EFC}" = rport=137 | protocol=17 | dir=out | app=system |
"{FCD9EF40-35AE-42C0-A0EF-9A35EC3470C0}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FE1FE862-5A09-4699-8075-416E3D8CAD4E}" = lport=138 | protocol=17 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{065DC395-C308-4A19-8B0A-41C7C192C629}" = dir=in | app=c:\users\zora všelichová\downloads\don jon 2013\wmp x264 codec pack.exe |
"{079B5B2D-D358-44BF-8F4D-57F75AC1B42F}" = protocol=17 | dir=in | app=g:\záloha notebooku\totalcmd\totalcmd.exe |
"{097B2FC3-E665-475C-9F68-1ABCFAF40D6D}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{0B446A7F-45BB-4025-B5CA-4A60197DC250}" = protocol=6 | dir=in | app=g:\záloha notebooku\totalcmd\totalcmd.exe |
"{0B9D613D-AF3C-487E-A761-71E324A4D064}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{0C5726F1-1267-4EFE-9CB5-18681E6E2577}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{143E3E03-A92A-48A8-8D84-BBE854FBB527}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2006\agent.exe |
"{17FD2094-29E8-4DC9-A49E-F10FAE185972}" = dir=in | app=c:\windows\system32\rundll32.exe |
"{1956D59F-216B-4712-9216-B96A499FC3C5}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\umi.exe |
"{1BB0C657-9605-430A-8DA1-2FBF8526F60C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{3100F071-512E-42A9-9D7B-7315945449DF}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{39228C85-CC3F-472E-8391-681F9F1D13BA}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\studio.exe |
"{41C947A7-01E9-4B56-9B36-B285DFCF4071}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{4263C8BD-8465-48E8-83C6-5E5BECF5DC9F}" = protocol=6 | dir=in | app=d:\network\epsonnetsetup\eneasyapp.exe |
"{4622B03E-A980-46B4-81AB-76BB3AA4513B}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1544\agent.exe |
"{4A8AD8DA-845E-4B12-A2EA-6661ACC8C860}" = dir=in | app=c:\users\zora všelichová\downloads\don jon 2013\wmp x264 codec pack.exe |
"{4FD91C20-A2E0-4DC1-8A67-B289EC237FB8}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{52C61CFF-5BE2-40E9-A2DA-659A6D56F97A}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\studio.exe |
"{56EFAD59-8566-48C8-BDA1-FC8F460320A9}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{65BA036D-9F75-4580-8EAB-5964BC4A9AAA}" = protocol=17 | dir=in | app=d:\network\epsonnetsetup\eneasyapp.exe |
"{6F14A446-679D-465B-8D5A-C3806B57DF2F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7A82854C-CA74-43F3-ABC1-78E0EC7651D6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2006\agent.exe |
"{7AF0AE28-2817-4347-84F9-96E92686E623}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7DFF2A33-F14A-4AC5-A2AC-0449009305EC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{81A2640A-8A3D-484A-A3BA-0F469D650539}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{84CD7748-8B2D-442C-BA82-DECDB803D31C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{8D03A227-46F1-47EF-8F1B-A75CCD4859D4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8D4D962F-08F4-41D4-83EC-743E10F0187F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{8D972EAA-C8F4-455C-AB97-10A8E4DEFA2E}" = protocol=17 | dir=in | app=c:\users\zora všelichová\appdata\roaming\utorrent\utorrent.exe |
"{8FF72A13-32D1-4AA1-8C6F-78042FDDFADB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{AA0A7542-2860-4AAC-82CF-8AED850B0F5D}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2006\agent.exe |
"{ACC79E11-6863-46FF-982C-B9C575DD976B}" = protocol=6 | dir=in | app=c:\users\zora všelichová\appdata\roaming\utorrent\utorrent.exe |
"{ADF2FB74-3F0E-42CD-A569-5AA581E82749}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C03EFC43-580A-4665-9CED-B71F31D39C3A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C11AA703-AD52-4A77-BFB1-80D9B73A5684}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{C1AF04B5-D498-4294-B860-4CF39203E287}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1544\agent.exe |
"{D39C7249-7CC1-43C0-9675-0B4D50FF09E7}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\umi.exe |
"{DCB46359-25C8-4E50-AB83-B7D06F879DA9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E28FD98F-9955-4753-83D3-F727BC256B3D}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\rm.exe |
"{E6452E62-3E4C-43B9-828C-089D7EF28F04}" = dir=in | app=c:\windows\explorer.exe |
"{E9ACBA93-0678-4812-A959-ACDD434AE40F}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2006\agent.exe |
"{EB115541-4585-4881-9BF6-1525D44E32BF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{EDE451C4-4FA2-4021-A72C-9AE1E1800C8B}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{F54F1101-70CB-4FC5-AAD2-7BDB1E8274FC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{F988E4F2-B7F8-4526-B59A-9E67110AA2F0}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{F9A4211D-7047-4139-8ABC-1A54B12B6CFA}" = protocol=6 | dir=out | app=system |
"{FF372995-DA25-46A9-944F-6876EE354661}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 14\programs\rm.exe |
"TCP Query User{040876E1-95DE-4C7D-89A5-7CD915327387}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{087CDD45-3BE9-4AFA-A331-21A734211DF8}G:\záloha notebooku\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=g:\záloha notebooku\totalcmd\totalcmd.exe |
"TCP Query User{2E5CEA80-B63A-4B7A-A755-2F43D9057AE0}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"TCP Query User{8667CFEB-1D87-49B5-A14C-F65F46A87694}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe |
"TCP Query User{ED1DAF3D-4509-4758-AF0F-2F17A708C6B9}C:\totalcmd\totalcmd64.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd64.exe |
"UDP Query User{382F1832-ED5B-4D22-AE8D-05F7C8B74E70}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{3A122C65-F67F-455A-B757-FD3898E71883}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe |
"UDP Query User{8500957C-57F5-47CB-B318-F694D554DA0C}G:\záloha notebooku\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=g:\záloha notebooku\totalcmd\totalcmd.exe |
"UDP Query User{B152E13C-BCD6-44C5-BB2F-5B637EA0B145}C:\totalcmd\totalcmd64.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd64.exe |
"UDP Query User{CCC93B48-7B6E-4EBB-8FE0-44EE88AF26D6}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{09536BA1-E498-4CC3-B834-D884A67D7E34}" = Intel® Trusted Connect Service Client
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{4710662C-8204-4334-A977-B1AC9E547819}" = Broadcom Card Reader Driver Installer
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5EEC477F-8E9B-4420-8829-16E7426227DB}" = Windows Live MIME IFilter
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B26449A6-6007-4460-B4FE-C4776115BCEA}" = Epson Customer Research Participation
"{C91DCB72-F5BB-410D-A91A-314F5D1B4284}" = Broadcom NetLink Controller
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240DB}" = WinZip 17.5
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{DEACDFFA-D424-416F-B849-FA282F55B2CE}" = Cortona3D Viewer
"{E9E2D512-0E70-4BAD-A92F-FD4DF995CBB0}" = Cortona2D Viewer
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Bullzip PDF Printer_is1" = Bullzip PDF Printer 7.0.0.926
"EPSON XP-205 207 Series" = Odinstalace tiskárny EPSON XP-205 207 Series
"GIMP-2_is1" = GIMP 2.8.6
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01501EBA-EC35-4F9F-8889-3BE346E5DA13}" = MSXML4 Parser
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{03D562B5-C4E2-4846-A920-33178788BE00}" = Windows Live Communications Platform
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{0F929651-F516-4956-90F2-FFBD2CD5D30E}" = Photo Gallery
"{0FF9CC94-EF23-401E-BDBD-37403D1A2B38}" = Windows Live SOXE Definitions
"{185F9795-9663-4F13-9EF9-307A282ADB5A}" = ph
"{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}" = OpenOffice.org 3.4.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23AAEBF8-12B1-43EA-B75D-CDC613CA6CB4}" = Photo Common
"{23E445D5-FD83-4C50-A211-EB26A2975317}" = Adobe Flash Professional CS5.5
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros WiFi Driver Installation
"{2A075BB4-E976-4278-BF3F-E5C6945D84C0}" = bl
"{30E01116-5666-4807-8EF1-D80E9FF16717}" = Epson Easy Photo Print 2
"{379A0618-EF50-423C-9637-EEB2D25A4BB4}" = Movie Maker
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{3E31400D-274E-4647-916C-2CACC3741799}" = EpsonNet Print
"{4412F224-3849-4461-A3E9-DEEF8D252790}" = Visual Studio C++ 10.0 Runtime
"{45898170-E68C-4F02-AA35-C2186BF347A3}" = Movie Maker
"{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}" = Google Earth
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.11
"{56D4499E-AC3E-4B8D-91C9-C700C148C44B}" = Google Drive
"{5A0EE0F0-E909-4F3B-B437-AAD9252427CB}" = Windows Live Installer
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{6426475A-834D-4079-800B-03E272E414D0}" = Windows Phone app for desktop
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{6B6923B9-8719-425B-916C-CD2908F31AAF}" = Windows Live SOXE
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7176B973-6011-43C1-AEBC-2D73FE7C6982}" = Adobe Premiere Pro CS6
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{82DEE0F4-18DB-4C49-89A4-0BEE4597DF45}" = Software Updater
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9976E0BD-56A6-4A32-8597-B80FCE62063A}" = Windows Live Essentials
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AAA94EAA-40A4-458C-9D86-D1DA765B51D5}" = Windows Live Writer
"{AADD1C8F-D59F-4D55-A726-768C71A205A8}" = Pinnacle Studio 14
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.05) - Czech
"{AEA7CE08-09DC-4186-99FD-66A26F3B8B21}" = Fotogalerie
"{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager
"{B2D55EB8-32C5-4B43-9006-9E97DECBA178}" = Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{B6FF40EA-AEF2-46FF-9516-9A6512901B97}" = Windows Live Mail
"{BADEEBDE-ABAF-4650-9149-51614651A1A0}" = Windows Live Writer Resources
"{BECE9CCD-83F6-4BAA-9B26-227DF7D2E932}" = Epson Event Manager
"{C6B0EE9E-2128-4448-B7AE-5E2B46E0F0E7}" = Windows Live Photo Common
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D310DD60-9EF2-4C9C-AD66-A58185A1C7CB}" = Windows Live UX Platform Language Pack
"{D604900F-A275-416C-AF9D-CDEDF58B72DB}" = Windows Live Mail
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{D9757258-30B2-496E-86F2-84920C5858E1}_is1" = CollageIt 1.9.2
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E3445598-4424-4EE2-B71C-C23325F7FB71}" = Windows Live PIMT Platform
"{E5603D65-60FC-47A6-AAC3-D5448227E963}" = Windows Live Writer
"{EFBCA571-617D-484A-9ECA-E301BB6D0750}" = Windows Live Writer
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F0E58739-2B4C-498F-9B0D-FF0F2FD52B61}" = Windows Live UX Platform
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F6F30C28-38AA-4DBA-AE0B-7E30238E61BB}" = Junk Mail filter update
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{F9000000-0018-0000-0000-074957833700}" = ABBYY FineReader 9.0 Sprint
"{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) OpenCL CPU Runtime
"{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"ABBYY FineReader 9.0 Sprint" = ABBYY FineReader 9.0 Sprint
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Age of Mythology 1.0" = Age of Mythology
"Age of Mythology Expansion Pack 1.0" = Age of Mythology - The Titans Expansion
"avast" = avast! Free Antivirus
"Avidemux 2.6" = Avidemux 2.6 (32-bit)
"BSPlayerf" = BS.Player FREE
"BurnAware Free_is1" = BurnAware Free 6.1
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"EPSON Scanner" = EPSON Scan
"EPSON XP-205 207 Series Netg" = Příručka pro síť EPSON XP-205 207 Series
"EPSON XP-205 207 Series Useg" = Uživatelská příručka EPSON XP-205 207 Series
"FLVPlayer4Free Free FLV Player_is1" = FLVPlayer4Free Free FLV Player 2.9.0.0
"Fotolab Fotosvet" = Fotolab Fotosvet
"Google Chrome" = Google Chrome
"GPL Ghostscript Lite_is1" = GPL Ghostscript Lite 9.06.15
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager
"LManager" = Launch Manager
"Mozilla Firefox 26.0 (x86 cs)" = Mozilla Firefox 26.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MyTomTom" = MyTomTom 3.2.0.1220
"O2CZ" = O2
"SendMails_is1" = SendMails - hromadné zasílání zpráv
"TN_Croatian_com_cs_cz_EuroTalk_is1" = LANGMaster.com: Chorvatština pro začátečníky
"TopStyle5_is1" = TopStyle 5
"uTorrent" = µTorrent
"WDM Viewer" = WDM Viewer
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR 4.20 (32-bit)
"World of Warcraft" = World of Warcraft
"XviD4PSP5" = XviD4PSP 5.0

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 30.12.2013 12:00:57 | Computer Name = ZoraVšelichová | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro C:\Program Files (x86)\EPSON Software\Download
Navigator\EPSDNAVI.EXE se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku
. Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která
je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Součást
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error - 5.1.2014 10:27:59 | Computer Name = ZoraVšelichová | Source = Application Error | ID = 1000
Description = Název chybující aplikace: uninstall.exe_unknown, verze: 0.0.0.0, časové
razítko: 0x3da6a14d Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko:
0x00000000 Kód výjimky: 0xc000041d Posun chyby: 0x775511f1 ID chybujícího procesu:
0x27e8 Čas spuštění chybující aplikace: 0x01cf0a22534b433d Cesta k chybující aplikaci:
C:\Program Files (x86)\1-More WebCam\uninstall.exe Cesta k chybujícímu modulu: unknown
ID
zprávy: 92f5d81d-7615-11e3-9a02-208984577a4c

Error - 5.1.2014 11:36:14 | Computer Name = ZoraVšelichová | Source = WinMgmt | ID = 10
Description =

Error - 5.1.2014 16:02:46 | Computer Name = ZoraVšelichová | Source = WinMgmt | ID = 10
Description =

Error - 6.1.2014 16:56:00 | Computer Name = ZoraVšelichová | Source = WinMgmt | ID = 10
Description =

Error - 6.1.2014 17:04:39 | Computer Name = ZoraVšelichová | Source = WinMgmt | ID = 10
Description =

Error - 6.1.2014 20:53:03 | Computer Name = ZoraVšelichová | Source = Application Error | ID = 1000
Description = Název chybující aplikace: googledrivesync.exe, verze: 1.13.5782.599,
časové razítko: 0x509418e4 Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247,
časové razítko: 0x521ea8e7 Kód výjimky: 0xc0000005 Posun chyby: 0x0002dfe4 ID chybujícího
procesu: 0xb2c Čas spuštění chybující aplikace: 0x01cf0b22e8c90926 Cesta k chybující
aplikaci: C:\Program Files (x86)\Google\Drive\googledrivesync.exe Cesta k chybujícímu
modulu: C:\Windows\SysWOW64\ntdll.dll ID zprávy: 0fc456b2-7736-11e3-a952-208984577a4c

Error - 7.1.2014 9:57:09 | Computer Name = ZoraVšelichová | Source = SideBySide | ID = 16842761
Description = Generování kontextu aktivace pro C:\Program Files\WinZip\adxloader.dll.Manifest
se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files\WinZip\adxloader.dll.Manifest
na řádku 2. Kořenový prvek souboru manifestu musí být symbolická adresa.

Error - 7.1.2014 10:00:28 | Computer Name = ZoraVšelichová | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro C:\Program Files (x86)\EPSON Software\Download
Navigator\EPSDNAVI.EXE se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku
. Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která
je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Součást
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error - 7.1.2014 15:27:37 | Computer Name = ZoraVšelichová | Source = Application Error | ID = 1000
Description = Název chybující aplikace: services.exe, verze: 0.0.0.0, časové razítko:
0x51e0826a Název chybujícího modulu: services.exe, verze: 0.0.0.0, časové razítko:
0x51e0826a Kód výjimky: 0xc0000094 Posun chyby: 0x0001c249 ID chybujícího procesu:
0x152c Čas spuštění chybující aplikace: 0x01cf0bde7e8a6fd6 Cesta k chybující aplikaci:
C:\Users\ZORAVE~1\AppData\Local\Temp\services.exe Cesta k chybujícímu modulu: C:\Users\ZORAVE~1\AppData\Local\Temp\services.exe
ID
zprávy: c3e825b4-77d1-11e3-a952-208984577a4c

[ Media Center Events ]
Error - 24.6.2013 13:22:53 | Computer Name = ZoraVšelichová | Source = MCUpdate | ID = 0
Description = 19:22:53 - Chyba při připojování k Internetu 19:22:53 - Nelze kontaktovat
server..

Error - 24.6.2013 13:23:00 | Computer Name = ZoraVšelichová | Source = MCUpdate | ID = 0
Description = 19:22:58 - Chyba při připojování k Internetu 19:22:58 - Nelze kontaktovat
server..

[ System Events ]
Error - 26.12.2013 5:34:17 | Computer Name = ZoraVšelichová | Source = Disk | ID = 262159
Description = Zařízení \Device\Harddisk1\DR1 ještě není připraveno pro přístup.

Error - 27.12.2013 4:30:14 | Computer Name = ZoraVšelichová | Source = Disk | ID = 262159
Description = Zařízení \Device\Harddisk1\DR2 ještě není připraveno pro přístup.

Error - 28.12.2013 10:27:37 | Computer Name = ZoraVšelichová | Source = Disk | ID = 262159
Description = Zařízení \Device\Harddisk1\DR3 ještě není připraveno pro přístup.

Error - 30.12.2013 1:24:28 | Computer Name = ZoraVšelichová | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby WinDefend bylo dosaženo časového
limitu (30000 ms).

Error - 2.1.2014 17:06:06 | Computer Name = ZoraVšelichová | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby ShellHWDetection bylo dosaženo
časového limitu (30000 ms).

Error - 5.1.2014 11:37:26 | Computer Name = ZoraVšelichová | Source = Service Control Manager | ID = 7022
Description = Služba PirritUpdater přestala během spouštění reagovat.

Error - 5.1.2014 16:03:40 | Computer Name = ZoraVšelichová | Source = Service Control Manager | ID = 7022
Description = Služba PirritUpdater přestala během spouštění reagovat.

Error - 5.1.2014 16:04:43 | Computer Name = ZoraVšelichová | Source = DCOM | ID = 10010
Description =

Error - 6.1.2014 7:24:18 | Computer Name = ZoraVšelichová | Source = DCOM | ID = 10010
Description =

Error - 6.1.2014 16:57:01 | Computer Name = ZoraVšelichová | Source = Service Control Manager | ID = 7022
Description = Služba PirritUpdater přestala během spouštění reagovat.


< End of report >

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 08 led 2014 02:41
od Márty84
:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
avgtp
AdobeARMservice
Skype C2C Service
gupdate
SkypeUpdate
AdobeFlashPlayerUpdateSvc
gupdatem
SwitchBoard

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\system32\drivers\avgtpx64.sys

:otl
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
[2013.12.12 20:59:05 | 000,222,814 | ---- | M] () (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\jid0-lW9gUBSnRfZgrKpg0RmiLTIco4I@jetpack.xpi
[2013.10.02 16:07:31 | 000,056,326 | ---- | M] () (No name found) -- C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\{db0832f2-613f-4afb-8b6a-155fe76eb32e}.xpi
File not found (No name found) -- C:\USERS\ZORA VšELICHOVá\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7G1A9GKQ.DEFAULT\EXTENSIONS\{02450914-CDD9-410F-B1DA-DB004E18C671}.XPI
File not found (No name found) -- C:\USERS\ZORA VšELICHOVá\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7G1A9GKQ.DEFAULT\EXTENSIONS\{DB0832F2-613F-4AFB-8B6A-155FE76EB32E}.XPI
O4 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O15 - HKU\S-1-5-21-145347670-2286349297-2966472825-1000\..Trusted Domains: localhost ([]http in Internet)
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[3 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[50 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
[1 C:\Windows\Temp\avg_a00740\ProgData\*.tmp files -> C:\Windows\Temp\avg_a00740\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a00740\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a00740\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a01676\ProgData\*.tmp files -> C:\Windows\Temp\avg_a01676\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a01676\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a01676\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a02676\ProgData\*.tmp files -> C:\Windows\Temp\avg_a02676\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a02676\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a02676\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05448\ProgData\*.tmp files -> C:\Windows\Temp\avg_a05448\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05448\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a05448\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05864\ProgData\*.tmp files -> C:\Windows\Temp\avg_a05864\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a05864\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a05864\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a07156\ProgData\*.tmp files -> C:\Windows\Temp\avg_a07156\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a07156\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a07156\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
[1 C:\Windows\Temp\avg_a08272\ProgData\*.tmp files -> C:\Windows\Temp\avg_a08272\ProgData\*.tmp -> ]
[1 C:\Windows\Temp\avg_a08272\ProgFiles\AVG SafeGuard toolbar\*.tmp files -> C:\Windows\Temp\avg_a08272\ProgFiles\AVG SafeGuard toolbar\*.tmp -> ]
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:15E30AE3
@Alternate Data Stream - 1047 bytes -> C:\Users\Zora Všelichová\AppData\Local\Temp:vJBDNFdXmLHeWogJlYlVmYu3XT

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{673DBCE8-E819-7F03-4368-C8EAA7057BEF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=-
"GoogleDriveSync"=-
"AdobeBridge"=-
"StickyPassword"=-
"AlcoholAutomount"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SeznamInstall-uninstall:109723d3078d28757fa6a6d685989c23"=-
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
"SwitchBoard"=-
"AdobeCS6ServiceManager"=-
"WinampAgent"=-
"seznam-listicka-distribuce"=-
"AdobeCS5.5ServiceManager"=-
"iSkysoft Helper Compact.exe"=-
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 08 led 2014 13:41
od zooh
All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56475 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: Zora Všelichová
->Temp folder emptied: 5121257019 bytes
->Temporary Internet Files folder emptied: 271028546 bytes
->FireFox cache emptied: 366578494 bytes
->Google Chrome cache emptied: 383119630 bytes
->Flash cache emptied: 70303 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 823672612 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 43798 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 42311166 bytes
RecycleBin emptied: 706571 bytes

Total Files Cleaned = 6 684,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Public

User: Zora Všelichová
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service avgtp stopped successfully!
Service avgtp deleted successfully!
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service Skype C2C Service stopped successfully!
Service Skype C2C Service deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
Service SwitchBoard stopped successfully!
Service SwitchBoard deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File\Folder C:\Windows\system32\drivers\avgtpx64.sys not found.
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-145347670-2286349297-2966472825-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\jid0-lW9gUBSnRfZgrKpg0RmiLTIco4I@jetpack.xpi moved successfully.
C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\{db0832f2-613f-4afb-8b6a-155fe76eb32e}.xpi moved successfully.
Registry value HKEY_USERS\S-1-5-21-145347670-2286349297-2966472825-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}\ deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll moved successfully.
Registry key HKEY_USERS\S-1-5-21-145347670-2286349297-2966472825-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\localhost\ deleted successfully.
File C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype-ie-addon-data\ deleted successfully.
File C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll not found.
File C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype-ie-addon-data\ not found.
File C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPB615.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP6B8E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP8B7D.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPB639.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPC3A6.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPC537.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPFF18.tmp folder deleted successfully.
C:\Windows\Installer\MSI3454.tmp deleted successfully.
C:\Windows\Installer\MSICBDC.tmp deleted successfully.
C:\Windows\Installer\MSIF2C7.tmp deleted successfully.
ADS C:\ProgramData\TEMP:15E30AE3 deleted successfully.
ADS C:\Users\Zora Všelichová\AppData\Local\Temp:vJBDNFdXmLHeWogJlYlVmYu3XT deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{673DBCE8-E819-7F03-4368-C8EAA7057BEF}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{673DBCE8-E819-7F03-4368-C8EAA7057BEF}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleDriveSync deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\StickyPassword deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\AlcoholAutomount deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SeznamInstall-uninstall:109723d3078d28757fa6a6d685989c23 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\WinampAgent deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS5.5ServiceManager deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\iSkysoft Helper Compact.exe deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 01082014_132639

Files\Folders moved on Reboot...
C:\Users\Zora Všelichová\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Zora Všelichová\AppData\Local\Temp\MMDUtl.log moved successfully.
C:\Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
File move failed. C:\Windows\temp\dsiwmis.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\LMutilps32.log scheduled to be moved on reboot.
File move failed. C:\Windows\SysWow64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 08 led 2014 18:24
od Márty84
:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak je na tom pc.

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 13 led 2014 22:01
od zooh
Ahoj, tak jsem udělala vše dle návodu a počítač fungoval asi den úplně bez problémů. Dnes mi zase vyskakuje AVAST s tím, že zablokoval nebezpečnou stránku.

Hází mi různé stránky, že zablokoval, poslední jsou tyto:

http://ceigqweqwaywiqgu.org/
Infekce: URL:Mal


URL: http://kucmcamaqsgmaiye.org/
Infekce: URL:Mal

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 14 led 2014 09:49
od Márty84
Zdravicko :)

To teda dlouho nevydrzel :boxed:

Avast vyskakuje sam od sebe? Nebo jen kdyz je spusteny prohlizec? Pokud se tak deje pri brouzdani po netu, dela to u vsech prohlizecu?



:!: Pokud nemate, zazalohujte si radeji dulezita data (fotky, dokumenty, atd.) :!:

:!: Nepouzivejte ComboFix bez predchozi domluvy! Je to poruseni pravidel fora a ztratite tim narok na pomoc!

:arrow: Stahnete ComboFix http://download.bleepingcomputer.com/sUBs/ComboFix.exe a ulozte ho na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Kliknete na ComboFix pravym mysidlem a levym na Spustit jako spravce
Odsouhlaste licencni podminky a nechte program pracovat. Jestli vam nabidne instalaci Konzoly pro zotaveni, souhlaste.
Po dobu skenu nic nespoustejte, nikam neklikejte.
Po dokonceni skenovani (muze dojit i k restartu pc) by se mel vytvorit log, ktery bude umisteny zde C:\ComboFix.txt
Jeho obsah sem zkopirujte

:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
:!: Kdyz windows nabehne, ale pri spousteni ruznych programu bude hlasena chyba, staci restartovat pc a bude to v poradku

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 14 led 2014 14:46
od zooh
tak jsem to otestovala a dělá to jen když je puštěná mozilla. dala jsem v avastu test, ten mi našel 3 věci. všechny jsem je smazala, tak to asi 15 minut bylo ok a pak to zase začlo vyskakovat :-DDD

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 14 led 2014 17:18
od zooh
tak ne, už mi to dělá i když je spuštěn chrome.

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 15 led 2014 09:59
od Márty84
No a spoustela jste ten ComboFix? :)

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 20 led 2014 00:59
od zooh
omlouvám se za prodlení - nebyla jsem tu, konečně mám zazálohováno a puštěno. Report zde:


ComboFix 14-01-16.03 - Zora Všelichová 20.01.2014 0:35.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3912.2615 [GMT 1:00]
Spuštěný z: c:\users\Zora VÜelichovß\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: avast! Internet Security *Disabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Zora Všelichová\AppData\Roaming\Microsoft\Windows\Recent\How-I-Met-Your-Mother-S09E14-CZ-Titulky.url
c:\windows\iun6002.exe
c:\windows\SysWow64\is-FDI7Q.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-12-19 do 2014-01-19 )))))))))))))))))))))))))))))))
.
.
2014-01-19 23:46 . 2014-01-19 23:46 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-01-19 23:42 . 2014-01-19 23:42 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{1AB84AC7-8E5B-41E6-917E-350D168BE95D}\offreg.dll
2014-01-18 16:34 . 2013-12-04 03:28 10315576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{1AB84AC7-8E5B-41E6-917E-350D168BE95D}\mpengine.dll
2014-01-17 19:16 . 2014-01-17 19:16 356352 ----a-w- c:\programdata\Microsoft\BingDesktop\BingCore\temp\tmpBE1E.exe
2014-01-16 22:45 . 2014-01-16 22:45 -------- d-----w- c:\users\Zora Všelichová\AppData\Local\Apple Computer
2014-01-16 02:37 . 2014-01-16 02:37 -------- d-----w- c:\users\Zora Všelichová\AppData\Roaming\Apple Computer
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin5.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin4.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin3.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin2.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin.dll
2014-01-16 00:39 . 2014-01-16 00:39 159744 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
2014-01-16 00:38 . 2014-01-16 00:39 -------- d-----w- c:\program files (x86)\QuickTime
2014-01-16 00:38 . 2014-01-16 00:38 -------- d-----w- c:\programdata\Apple Computer
2014-01-16 00:18 . 2014-01-16 00:18 -------- d-----w- c:\program files (x86)\Common Files\Apple
2014-01-16 00:18 . 2014-01-16 00:18 -------- d-----w- c:\users\Zora Všelichová\AppData\Local\Apple
2014-01-16 00:17 . 2014-01-16 00:17 -------- d-----w- c:\program files (x86)\Apple Software Update
2014-01-16 00:17 . 2014-01-16 00:17 -------- d-----w- c:\programdata\Apple
2014-01-15 23:23 . 2004-02-17 09:11 53248 ----a-w- c:\windows\SysWow64\vp6dec_settings.cpl
2014-01-15 23:22 . 2001-10-31 09:14 1122304 ----a-w- c:\windows\SysWow64\mplvpx.dll
2014-01-15 23:22 . 2001-10-31 09:14 77824 ----a-w- c:\windows\SysWow64\mplaw7.dll
2014-01-15 23:22 . 2001-10-31 09:14 77824 ----a-w- c:\windows\SysWow64\mplaa6.dll
2014-01-15 23:22 . 2001-10-31 09:14 65536 ----a-w- c:\windows\SysWow64\mplapx.dll
2014-01-15 23:22 . 2001-10-31 09:14 65536 ----a-w- c:\windows\SysWow64\mplam6.dll
2014-01-15 23:22 . 2001-10-31 09:14 1650688 ----a-w- c:\windows\SysWow64\mplva6.dll
2014-01-15 23:22 . 2001-10-31 09:14 1581056 ----a-w- c:\windows\SysWow64\mplvw7.dll
2014-01-15 23:22 . 2001-10-31 09:14 1552384 ----a-w- c:\windows\SysWow64\mplvm6.dll
2014-01-15 23:22 . 2001-09-17 11:20 19968 ----a-w- c:\windows\SysWow64\cpuinf32.dll
2014-01-15 23:22 . 2014-01-15 23:23 -------- d-----w- c:\program files (x86)\ACE Mega CoDecS Pack
2014-01-15 23:20 . 2014-01-15 23:20 -------- d-----w- c:\program files (x86)\Kodek CZ
2014-01-15 11:04 . 2013-11-27 01:41 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
2014-01-15 11:04 . 2013-11-27 01:41 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2014-01-15 11:04 . 2013-11-27 01:41 53248 ----a-w- c:\windows\system32\drivers\usbehci.sys
2014-01-15 11:04 . 2013-11-27 01:41 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
2014-01-15 11:04 . 2013-11-27 01:41 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys
2014-01-15 11:04 . 2013-11-27 01:41 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2014-01-15 11:04 . 2013-11-27 01:41 7808 ----a-w- c:\windows\system32\drivers\usbd.sys
2014-01-15 11:04 . 2013-11-26 10:32 3156480 ----a-w- c:\windows\system32\win32k.sys
2014-01-15 11:04 . 2013-11-26 11:40 376768 ----a-w- c:\windows\system32\drivers\netio.sys
2014-01-14 09:51 . 2014-01-14 09:51 -------- d-----w- c:\users\Zora Všelichová\AppData\Local\ElevatedDiagnostics
2014-01-14 00:07 . 2014-01-14 00:08 -------- d-----w- c:\users\Zora Všelichová\AppData\Local\YZDPack
2014-01-14 00:06 . 2014-01-14 00:06 114331 ----a-w- c:\programdata\Microsoft\BingDesktop\BingCore\temp\tmpE482.exe
2014-01-10 00:04 . 2014-01-10 00:04 -------- d-----w- c:\program files\CCleaner
2014-01-07 19:25 . 2014-01-07 19:25 2898479 ----a-w- c:\programdata\Microsoft\BingDesktop\BingCore\temp\tmp5644.exe
2014-01-06 12:21 . 2014-01-09 23:03 -------- d-----w- C:\AdwCleaner
2014-01-05 16:36 . 2014-01-05 16:36 -------- d-----w- c:\users\Zora Všelichová\AppData\Roaming\Malwarebytes
2014-01-05 16:36 . 2014-01-05 16:36 -------- d-----w- c:\programdata\Malwarebytes
2014-01-05 15:00 . 2014-01-07 11:18 -------- d-----w- c:\program files\trend micro
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-16 02:04 . 2013-05-06 12:11 86054176 ----a-w- c:\windows\system32\MRT.exe
2013-12-17 11:47 . 2013-12-17 11:47 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-12-17 11:47 . 2013-12-17 11:47 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-12-17 11:47 . 2013-12-17 11:47 942592 ----a-w- c:\windows\system32\jsIntl.dll
2013-12-17 11:47 . 2013-12-17 11:47 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-12-17 11:47 . 2013-12-17 11:47 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2013-12-17 11:47 . 2013-12-17 11:47 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-12-17 11:47 . 2013-12-17 11:47 84992 ----a-w- c:\windows\system32\mshtmled.dll
2013-12-17 11:47 . 2013-12-17 11:47 81408 ----a-w- c:\windows\system32\icardie.dll
2013-12-17 11:47 . 2013-12-17 11:47 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-12-17 11:47 . 2013-12-17 11:47 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-12-17 11:47 . 2013-12-17 11:47 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2013-12-17 11:47 . 2013-12-17 11:47 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2013-12-17 11:47 . 2013-12-17 11:47 626176 ----a-w- c:\windows\system32\msfeeds.dll
2013-12-17 11:47 . 2013-12-17 11:47 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-12-17 11:47 . 2013-12-17 11:47 62464 ----a-w- c:\windows\system32\pngfilt.dll
2013-12-17 11:47 . 2013-12-17 11:47 61952 ----a-w- c:\windows\SysWow64\MshtmlDac.dll
2013-12-17 11:47 . 2013-12-17 11:47 61952 ----a-w- c:\windows\SysWow64\iesetup.dll
2013-12-17 11:47 . 2013-12-17 11:47 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2013-12-17 11:47 . 2013-12-17 11:47 548352 ----a-w- c:\windows\system32\vbscript.dll
2013-12-17 11:47 . 2013-12-17 11:47 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-12-17 11:47 . 2013-12-17 11:47 51200 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll
2013-12-17 11:47 . 2013-12-17 11:47 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-12-17 11:47 . 2013-12-17 11:47 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-12-17 11:47 . 2013-12-17 11:47 454656 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-12-17 11:47 . 2013-12-17 11:47 453120 ----a-w- c:\windows\system32\dxtmsft.dll
2013-12-17 11:47 . 2013-12-17 11:47 413696 ----a-w- c:\windows\system32\html.iec
2013-12-17 11:47 . 2013-12-17 11:47 40448 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-17 11:47 . 2013-12-17 11:47 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-12-17 11:47 . 2013-12-17 11:47 34816 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2013-12-17 11:47 . 2013-12-17 11:47 337408 ----a-w- c:\windows\SysWow64\html.iec
2013-12-17 11:47 . 2013-12-17 11:47 30208 ----a-w- c:\windows\system32\licmgr10.dll
2013-12-17 11:47 . 2013-12-17 11:47 296960 ----a-w- c:\windows\system32\dxtrans.dll
2013-12-17 11:47 . 2013-12-17 11:47 263376 ----a-w- c:\windows\system32\iedkcs32.dll
2013-12-17 11:47 . 2013-12-17 11:47 247808 ----a-w- c:\windows\system32\msls31.dll
2013-12-17 11:47 . 2013-12-17 11:47 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-12-17 11:47 . 2013-12-17 11:47 243200 ----a-w- c:\windows\system32\webcheck.dll
2013-12-17 11:47 . 2013-12-17 11:47 235520 ----a-w- c:\windows\system32\url.dll
2013-12-17 11:47 . 2013-12-17 11:47 235008 ----a-w- c:\windows\system32\elshyph.dll
2013-12-17 11:47 . 2013-12-17 11:47 195584 ----a-w- c:\windows\system32\msrating.dll
2013-12-17 11:47 . 2013-12-17 11:47 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2013-12-17 11:47 . 2013-12-17 11:47 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-12-17 11:47 . 2013-12-17 11:47 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-12-17 11:47 . 2013-12-17 11:47 147968 ----a-w- c:\windows\system32\occache.dll
2013-12-17 11:47 . 2013-12-17 11:47 143872 ----a-w- c:\windows\system32\wextract.exe
2013-12-17 11:47 . 2013-12-17 11:47 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2013-12-17 11:47 . 2013-12-17 11:47 13824 ----a-w- c:\windows\system32\mshta.exe
2013-12-17 11:47 . 2013-12-17 11:47 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2013-12-17 11:47 . 2013-12-17 11:47 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2013-12-17 11:47 . 2013-12-17 11:47 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-12-17 11:47 . 2013-12-17 11:47 1228800 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-12-17 11:47 . 2013-12-17 11:47 112128 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-12-17 11:47 . 2013-12-17 11:47 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-12-17 11:47 . 2013-12-17 11:47 105984 ----a-w- c:\windows\system32\iesysprep.dll
2013-12-17 11:47 . 2013-12-17 11:47 1051136 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-12-17 11:47 . 2013-12-17 11:47 101376 ----a-w- c:\windows\system32\inseng.dll
2013-12-17 11:47 . 2013-12-17 11:47 83968 ----a-w- c:\windows\system32\MshtmlDac.dll
2013-12-17 11:47 . 2013-12-17 11:47 774144 ----a-w- c:\windows\system32\jscript.dll
2013-12-17 11:47 . 2013-12-17 11:47 48128 ----a-w- c:\windows\system32\imgutil.dll
2013-12-17 11:47 . 2013-12-17 11:47 135680 ----a-w- c:\windows\system32\iepeers.dll
2013-12-11 10:10 . 2013-05-05 08:55 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-12-11 10:10 . 2013-05-05 08:55 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-11-26 11:54 . 2013-12-18 12:20 23183360 ----a-w- c:\windows\system32\mshtml.dll
2013-11-26 10:19 . 2013-12-18 12:21 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2013-11-26 10:18 . 2013-12-18 12:21 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2013-11-26 09:48 . 2013-12-18 12:20 66048 ----a-w- c:\windows\system32\iesetup.dll
2013-11-26 09:46 . 2013-12-18 12:20 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll
2013-11-26 09:41 . 2013-12-18 12:20 2764288 ----a-w- c:\windows\system32\iertutil.dll
2013-11-26 09:29 . 2013-12-18 12:21 53760 ----a-w- c:\windows\system32\jsproxy.dll
2013-11-26 09:27 . 2013-12-18 12:20 33792 ----a-w- c:\windows\system32\iernonce.dll
2013-11-26 09:23 . 2013-12-18 12:21 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2013-11-26 09:21 . 2013-12-18 12:21 574976 ----a-w- c:\windows\system32\ieui.dll
2013-11-26 09:18 . 2013-12-18 12:20 139264 ----a-w- c:\windows\system32\ieUnatt.exe
2013-11-26 09:18 . 2013-12-18 12:20 111616 ----a-w- c:\windows\system32\ieetwcollector.exe
2013-11-26 09:16 . 2013-12-18 12:20 708608 ----a-w- c:\windows\system32\jscript9diag.dll
2013-11-26 08:57 . 2013-12-18 12:20 218624 ----a-w- c:\windows\system32\ie4uinit.exe
2013-11-26 08:35 . 2013-12-18 12:20 5769216 ----a-w- c:\windows\system32\jscript9.dll
2013-11-26 08:28 . 2013-12-18 12:20 553472 ----a-w- c:\windows\SysWow64\jscript9diag.dll
2013-11-26 08:16 . 2013-12-18 12:20 4243968 ----a-w- c:\windows\SysWow64\jscript9.dll
2013-11-26 08:02 . 2013-12-18 12:20 1995264 ----a-w- c:\windows\system32\inetcpl.cpl
2013-11-26 07:48 . 2013-12-18 12:20 12996608 ----a-w- c:\windows\system32\ieframe.dll
2013-11-26 07:32 . 2013-12-18 12:20 1928192 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-11-26 07:07 . 2013-12-18 12:20 2334208 ----a-w- c:\windows\system32\wininet.dll
2013-11-26 06:40 . 2013-12-18 12:20 1395200 ----a-w- c:\windows\system32\urlmon.dll
2013-11-26 06:34 . 2013-12-18 12:20 817664 ----a-w- c:\windows\system32\ieapfltr.dll
2013-11-26 06:33 . 2013-12-18 12:20 1820160 ----a-w- c:\windows\SysWow64\wininet.dll
2013-11-26 00:26 . 2013-11-26 00:26 2179072 ----a-w- c:\programdata\Microsoft\BingDesktop\BingCore\BingDesktopCore.dll
2013-11-23 18:26 . 2013-12-11 22:21 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-11-23 17:47 . 2013-12-11 22:21 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2013-11-20 17:52 . 2013-06-17 14:26 46368 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
2013-11-19 02:33 . 2010-11-21 03:27 267936 ------w- c:\windows\system32\MpSigStub.exe
2013-11-12 02:23 . 2013-12-11 22:21 2048 ----a-w- c:\windows\system32\tzres.dll
2013-11-12 02:07 . 2013-12-11 22:21 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2013-10-30 02:32 . 2013-12-11 22:21 335360 ----a-w- c:\windows\system32\msieftp.dll
2013-10-30 02:19 . 2013-12-11 22:21 301568 ----a-w- c:\windows\SysWow64\msieftp.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MyTomTomSA.exe"="c:\program files (x86)\MyTomTom 3\MyTomTomSA.exe" [2013-08-01 458680]
"EPLTarget\P0000000000000000"="c:\windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE" [2012-02-29 283232]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" [2012-02-29 56088]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2012-03-23 1105488]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
"EEventManager"="c:\program files (x86)\Epson Software\Event Manager\EEventManager.exe" [2011-10-31 1058400]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2013-05-01 421888]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader;c:\windows\system32\DRIVERS\ewdcsc.sys;c:\windows\SYSNATIVE\DRIVERS\ewdcsc.sys [x]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ewusbdev.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 aswKbd;aswKbd; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service;c:\program files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe;c:\program files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x]
S2 EpsonCustomerResearchParticipation;EpsonCustomerResearchParticipation;c:\program files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe;c:\program files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [x]
S2 EpsonScanSvc;Epson Scanner Service;c:\windows\system32\EscSvc64.exe;c:\windows\SYSNATIVE\EscSvc64.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdbd.sys [x]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdmp.sys [x]
S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiMSa.sys [x]
S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiSDa.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x]
S3 SmbDrv;SmbDrv;c:\windows\system32\DRIVERS\Smb_driver.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-01-15 22:21 1211672 ----a-w- c:\program files (x86)\Google\Chrome\Application\32.0.1700.76\Installer\chrmstp.exe
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-05-09 08:58 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\1BingDesktopOverlays]
@="{B82655E9-B81D-4A97-8154-0D84A4C048E4}"
[HKEY_CLASSES_ROOT\CLSID\{B82655E9-B81D-4A97-8154-0D84A4C048E4}]
2013-11-26 00:26 2492416 ----a-w- c:\programdata\Microsoft\BingDesktop\BingCore\BingDesktopOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-04-23 170264]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-04-23 398616]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-04-23 439064]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-12-27 12343400]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2013-03-21 472992]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 194.228.41.113 160.218.161.54
FF - ProfilePath - c:\users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - ExtSQL: 2013-12-12 20:59; jid0-lW9gUBSnRfZgrKpg0RmiLTIco4I@jetpack; c:\users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\jid0-lW9gUBSnRfZgrKpg0RmiLTIco4I@jetpack.xpi
FF - ExtSQL: !HIDDEN! 1970-05-29 09:47; {90FBC35C-9F5C-1357-DD62-3ACCA92045E1}; -
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKCU-Run-YZDPack - c:\users\Zora Všelichová\AppData\Local\YZDPack\SecurityNetHelper.dll
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Cool's_Codec_pack_4.12 - c:\windows\iun6002.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-145347670-2286349297-2966472825-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-145347670-2286349297-2966472825-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Nico Mak Computing\WinZip]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-01-20 00:58:15
ComboFix-quarantined-files.txt 2014-01-19 23:58
.
Před spuštěním: Volných bajtů: 231 078 735 872
Po spuštění: Volných bajtů: 240 751 292 416
.
- - End Of File - - 7A59F93E090C1DCDD3654D51E3C54FAD