Stránka 2 z 2

Re: prosim o kontrolu logu.vyskakujici reklamy.

Napsal: 09 dub 2014 21:55
od antivirak
< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013/10/06 15:44:09 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\.minecraft
[2014/02/09 19:38:10 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\4 Friends Games
[2013/11/25 18:56:14 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\8floor
[2014/01/17 22:05:53 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Absolutist
[2013/07/27 20:12:39 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Adobe
[2013/11/09 20:29:50 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Alawar Stargaze
[2014/01/17 22:46:45 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\AlawarEntertainment
[2014/03/29 22:36:47 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Anino Games
[2014/03/29 21:36:35 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Artifex Mundi
[2014/03/14 23:13:29 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\AVG2014
[2013/12/25 19:47:14 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Big Top Games
[2014/03/01 16:40:02 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\BlamGames
[2014/03/17 17:38:17 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Blue Tea Games
[2013/12/25 17:28:53 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Boomzap
[2013/07/26 10:31:15 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\BSplayer Pro
[2013/11/01 20:42:58 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Building the Great Wall of China
[2013/08/13 19:12:24 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Color Brush
[2013/07/26 17:09:48 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\com.custardsquare.CircusCircus.RunAwayWithTheCircus
[2013/11/03 17:17:00 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\DAEMON Tools Lite
[2013/11/30 22:16:55 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\DarkManor
[2014/01/15 22:18:06 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Deep Shadows
[2013/06/22 07:34:27 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\DesktopPwrMgr
[2014/02/12 20:14:30 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\DominiGames
[2014/03/01 15:47:45 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Eipix
[2014/01/16 20:56:21 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\EleFun Games
[2014/03/29 20:35:20 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Elephant Games
[2013/11/11 22:48:41 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Enki Games
[2014/01/25 19:41:20 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\ERS Game Studios
[2014/03/03 16:46:15 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Five-BN Games
[2013/09/22 18:01:43 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Friday's games
[2013/08/22 16:14:57 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Game
[2013/11/25 19:20:01 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Games
[2013/10/26 19:36:11 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\GestaltGames
[2013/11/24 19:15:35 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Gogii
[2014/01/04 22:52:55 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Gogii Games
[2013/11/17 16:55:59 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\GrandMA Studios
[2013/11/19 21:41:14 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\IcarusGames
[2013/06/22 07:34:18 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Identities
[2014/02/15 12:52:44 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\IteraLabs
[2014/03/03 17:19:36 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Lazy Turtle Games
[2013/09/17 17:54:47 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Lonely Troops
[2013/06/30 14:53:06 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Macromedia
[2013/11/24 20:04:22 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Mad Head Games
[2014/02/01 20:33:46 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\MagicIndie
[2014/02/19 21:40:29 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Mariaglorum
[2013/12/01 20:42:47 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Maximize Games
[2009/07/21 13:47:43 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Media Center Programs
[2013/07/29 13:41:11 | 000,000,000 | --SD | M] -- C:\Users\Petra\AppData\Roaming\Microsoft
[2013/07/26 09:36:22 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Mozilla
[2014/02/06 20:09:21 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\NevoSoft Games
[2013/10/07 09:11:03 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Origin
[2014/02/02 19:41:42 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Orneon
[2013/10/06 21:36:21 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Red Alert 3 Uprising
[2013/08/22 17:29:00 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Roxio
[2014/03/08 18:30:11 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\saves
[2013/10/06 21:35:40 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\SecuROM
[2013/09/22 18:34:10 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Settlement. Colossus
[2014/04/07 12:13:12 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Seznam.cz
[2014/01/05 18:36:21 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\ShamanGS
[2014/04/09 22:26:17 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Skype
[2014/02/09 21:41:20 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\T1 Games
[2014/03/17 18:19:38 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Tap It Games
[2013/11/05 19:08:17 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\TikisLab
[2014/01/07 21:23:02 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\TOMI2.THE GATES OF FATE
[2013/08/01 13:40:39 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\TuneUp Software
[2014/04/09 22:40:38 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\uTorrent
[2013/08/01 13:05:20 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\vlc
[2013/07/26 12:20:59 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\Winamp

< %APPDATA%\*.exe /s >
[2013/06/22 13:17:20 | 000,010,134 | R--- | M] () -- C:\Users\Petra\AppData\Roaming\Microsoft\Installer\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}\ARPPRODUCTICON.exe
[2013/05/16 15:25:04 | 001,062,472 | ---- | M] () -- C:\Users\Petra\AppData\Roaming\Seznam.cz\szninstall.exe
[2013/05/16 15:26:24 | 002,589,256 | ---- | M] () -- C:\Users\Petra\AppData\Roaming\Seznam.cz\sznsetup.exe
[2013/04/16 13:52:34 | 000,055,808 | ---- | M] () -- C:\Users\Petra\AppData\Roaming\Seznam.cz\bin\ffkill.exe
[2013/04/29 12:53:34 | 000,045,560 | ---- | M] () -- C:\Users\Petra\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
[2013/04/12 10:13:24 | 000,457,208 | ---- | M] () -- C:\Users\Petra\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
[2013/04/12 10:10:22 | 000,092,664 | ---- | M] () -- C:\Users\Petra\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe
[2014/03/29 13:12:46 | 001,264,984 | ---- | M] (BitTorrent Inc.) -- C:\Users\Petra\AppData\Roaming\uTorrent\uTorrent.exe
[2013/11/03 16:30:11 | 001,141,328 | ---- | M] (BitTorrent Inc.) -- C:\Users\Petra\AppData\Roaming\uTorrent\updates\3.3.2_30180.exe
[2013/11/16 13:41:11 | 000,900,440 | ---- | M] (BitTorrent Inc.) -- C:\Users\Petra\AppData\Roaming\uTorrent\updates\3.3.2_30303.exe
[2014/02/06 19:14:04 | 000,905,296 | ---- | M] (BitTorrent Inc.) -- C:\Users\Petra\AppData\Roaming\uTorrent\updates\3.3.2_30488.exe
[2014/03/05 21:21:07 | 001,450,064 | ---- | M] (BitTorrent Inc.) -- C:\Users\Petra\AppData\Roaming\uTorrent\updates\3.4.0_30620.exe
[2014/03/14 19:16:55 | 001,208,152 | ---- | M] (BitTorrent Inc.) -- C:\Users\Petra\AppData\Roaming\uTorrent\updates\3.4.0_30660.exe
[2014/03/29 13:12:46 | 001,264,984 | ---- | M] (BitTorrent Inc.) -- C:\Users\Petra\AppData\Roaming\uTorrent\updates\3.4.1_30740.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2014/04/09 18:12:38 | 000,016,976 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/04/09 18:12:38 | 000,016,976 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/04/09 18:00:45 | 088,028,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MRT.exe

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Sony PC Companion" = "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background -- [2013/10/31 12:35:30 | 000,449,760 | ---- | M] (Sony)
"EADM" = "C:\Program Files\Origin\Origin.exe" -AutoStart -- [2014/03/30 15:14:35 | 003,588,952 | ---- | M] (Electronic Arts)
"DAEMON Tools Lite" = "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun -- [2013/07/03 15:16:46 | 003,673,184 | ---- | M] (Disc Soft Ltd)
"uTorrent" = "C:\Users\Petra\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED -- [2014/03/29 13:12:46 | 001,264,984 | ---- | M] (BitTorrent Inc.)
"Skype" = "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun -- [2014/02/10 18:46:14 | 020,922,016 | R--- | M] (Skype Technologies S.A.)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014/04/09 22:29:17 | 000,000,512 | ---- | M] () MD5=E262884EC21D4D7498454357D36FA09C -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2013/12/04 11:02:02 | 000,066,431 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\common\audio\aud_open_house_of_nutcracker.ogg
[2013/12/04 11:02:02 | 000,014,110 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\common\audio\aud_use_head_nutcracker.ogg
[2013/12/04 10:54:38 | 000,018,799 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_1.png
[2013/12/04 10:54:38 | 000,013,991 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_2.png
[2013/12/04 10:54:38 | 000,021,564 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_3.png
[2013/12/04 10:54:38 | 000,022,825 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_4.png
[2013/12/04 10:54:38 | 000,011,549 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_5.png
[2013/12/04 10:54:38 | 000,013,529 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_6.png
[2013/12/04 10:54:38 | 000,019,264 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_7.png
[2013/12/04 10:54:38 | 000,014,506 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_rock\crack_8.png
[2013/12/04 10:54:14 | 000,018,431 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_squirrel\inv_nutcracker.png
[2013/12/04 10:54:14 | 000,181,971 | ---- | M] () -- \Program Files\Foxy Games\Christmas Stories 2 - A Christmas Carol Collectors Edition\assets\levels\level\inv_deploy\inv_squirrel\nutcracker.png
[2013/11/23 22:11:42 | 000,002,205 | ---- | M] () -- \Users\Petra\AppData\Roaming\Big Top Games\Fairly Twisted Tales The Price of a Rose\UGxheWVy\TownTavernCrackerPopUp.loc
[2013/12/25 20:46:55 | 000,002,857 | ---- | M] () -- \Users\Petra\AppData\Roaming\Big Top Games\Mysterium - Lake Bliss Collector's Edition\TUs=\30CE-z2-CrackInRockWall.loc
[2013/12/25 20:46:55 | 000,002,755 | ---- | M] () -- \Users\Petra\AppData\Roaming\Big Top Games\Mysterium - Lake Bliss Collector's Edition\TUs=\32CE-z1-CrackedCeiling.loc

< *keygen* /s >
[2013/07/29 10:41:47 | 000,000,707 | ---- | M] () -- \Users\Petra\AppData\Roaming\Microsoft\Windows\Recent\AVG-2013-Cz-Full+keygen.lnk

< *AntiWPA* /s >

< *loader* /s >
[2013/08/30 00:01:50 | 000,003,208 | ---- | M] () -- \Program Files\bfgclient\resources\default\images\s\icons\spinning_loader.gif
[2013/08/30 00:01:50 | 000,000,289 | ---- | M] () -- \Program Files\bfgclient\resources\default\images\s\icons\static_loader.gif
[2009/08/04 19:56:20 | 000,053,511 | R--- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\Common Resources\Shared\Generic\Images\themeloader_default_chapter.jpg
[2009/08/04 19:56:20 | 000,053,511 | R--- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\Common Resources\Shared\Generic\Images\themeloader_default_menu.jpg
[2009/05/29 12:17:44 | 000,007,307 | R--- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\Common Resources\Shared\Locale\1033\Strings\RCMFormatLoaderStrings.xml
[2009/08/04 21:27:22 | 000,215,536 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFileLoader.dll
[2009/08/04 21:27:42 | 000,084,464 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderBMP.dll
[2009/08/04 21:27:50 | 000,072,176 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderECDC.dll
[2009/08/04 21:28:00 | 000,092,656 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderGIF.dll
[2009/08/04 21:28:10 | 000,207,344 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderJPG2.dll
[2009/08/04 21:34:54 | 000,072,176 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderMDC.dll
[2009/08/04 21:28:20 | 000,133,616 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderPNG.dll
[2009/08/04 21:28:30 | 000,104,944 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSFormatLoaderTIFF.dll
[2009/08/04 21:31:52 | 000,154,096 | ---- | M] () -- \Program Files\Common Files\Roxio Shared\10.0\SharedCOM\LeResourceLoader.dll
[2011/10/13 17:21:58 | 000,005,987 | ---- | M] () -- \Program Files\Microsoft\BingBar\scripts\io\downloader.js
[2012/05/03 19:38:36 | 000,071,528 | ---- | M] () -- \Program Files\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2012/05/21 05:03:06 | 000,083,816 | ---- | M] () -- \Program Files\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader.dll
[2009/06/10 12:18:18 | 000,059,888 | ---- | M] () -- \Program Files\Roxio\PhotoSuite 10\FormatLoaderMPS.dll
[2009/06/10 12:20:02 | 000,055,792 | ---- | M] () -- \Program Files\Roxio\PhotoSuite 10\PPSFormatLoaderPZP.dll
[2009/06/10 07:45:46 | 000,141,808 | ---- | M] () -- \Program Files\Roxio\VideoCore 10\VOBLoader.ax
[2009/06/11 09:54:16 | 000,170,480 | ---- | M] () -- \Program Files\Roxio\VideoUI 10\DSThemeLoader.dll
[2009/06/11 09:56:04 | 000,113,136 | ---- | M] () -- \Program Files\Roxio\VideoUI 10\DVDFormatLoaderPlugIn.dll
[2009/06/11 09:24:48 | 000,053,511 | R--- | M] () -- \Program Files\Roxio\VideoUI 10\Skins\Default\Generic\Images\themeloader_default_chapter.jpg
[2009/06/11 09:24:48 | 000,053,511 | R--- | M] () -- \Program Files\Roxio\VideoUI 10\Skins\Default\Generic\Images\themeloader_default_menu.jpg
[2009/06/11 09:24:48 | 000,040,000 | R--- | M] () -- \Program Files\Roxio\VideoUI 10\Skins\Default\Generic\Images\themeloader_hourglass.jpg
[2013/08/30 08:52:14 | 000,001,702 | ---- | M] () -- \Program Files\Sony Ericsson\Update Engine\licenses\loaderbinarylegal.txt
[2013/07/15 17:50:00 | 000,499,712 | R--- | M] () -- \Program Files\WinZip\adxloader.dll
[2013/07/15 17:50:00 | 000,000,348 | ---- | M] () -- \Program Files\WinZip\adxloader.dll.manifest
[2013/07/15 17:50:00 | 000,704,000 | R--- | M] () -- \Program Files\WinZip\adxloader64.dll
[2013/08/30 00:01:50 | 000,003,208 | ---- | M] () -- \ProgramData\Big Fish\Game Manager\resources\default\images\s\icons\spinning_loader.gif
[2013/08/30 00:01:50 | 000,000,289 | ---- | M] () -- \ProgramData\Big Fish\Game Manager\resources\default\images\s\icons\static_loader.gif
[2014/01/07 20:15:54 | 000,003,208 | ---- | M] () -- \ProgramData\Big Fish\In Game Purchase\1.0.2\igp_assets\images\loader.gif
[2013/08/30 00:01:50 | 000,003,208 | ---- | M] () -- \Users\All Users\Big Fish\Game Manager\resources\default\images\s\icons\spinning_loader.gif
[2013/08/30 00:01:50 | 000,000,289 | ---- | M] () -- \Users\All Users\Big Fish\Game Manager\resources\default\images\s\icons\static_loader.gif
[2014/01/07 20:15:54 | 000,003,208 | ---- | M] () -- \Users\All Users\Big Fish\In Game Purchase\1.0.2\igp_assets\images\loader.gif
[2014/03/18 19:48:58 | 000,001,870 | ---- | M] () -- \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\65H8WNYY\AdLoader[1].htm
[2014/03/27 22:44:38 | 000,001,870 | ---- | M] () -- \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7MKMCE39\AdLoader[1].htm
[2014/04/02 13:06:15 | 000,001,870 | ---- | M] () -- \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7MKMCE39\AdLoader[2].htm
[2014/03/18 19:48:58 | 000,112,122 | ---- | M] () -- \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DVKJFXVO\AdLoader-7b473315d0084c71df83cdee72aab144.min[1].js
[2014/03/30 19:15:58 | 000,001,174 | ---- | M] () -- \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DVKJFXVO\downloader[1].js
[2014/03/30 19:15:58 | 000,000,723 | ---- | M] () -- \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V55Y2XHK\downloaderror[1].js
[3 \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V55Y2XHK\*.tmp files -> \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V55Y2XHK\*.tmp -> ]
[2013/06/30 14:52:53 | 000,002,942 | ---- | M] () -- \Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Q091WTA1\rmsloaderdelayed[1].js
[2014/01/28 20:35:56 | 000,072,638 | ---- | M] () -- \Users\Petra\AppData\Local\Skype\Apps\login\images\loader.gif
[2014/01/28 20:35:56 | 000,003,032 | ---- | M] () -- \Users\Petra\AppData\Local\Skype\Apps\login\images\loader.png
[2014/01/28 20:35:56 | 000,006,012 | ---- | M] () -- \Users\Petra\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif
[2014/01/28 20:35:56 | 000,021,956 | ---- | M] () -- \Users\Petra\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif
[2014/01/28 20:35:56 | 000,009,772 | ---- | M] () -- \Users\Petra\AppData\Local\Skype\Apps\login\images\retina\loader@2x.png
[2013/04/15 13:32:10 | 000,060,416 | ---- | M] () -- \Users\Petra\AppData\Roaming\Seznam.cz\bin\18917libfoxloader-x64.dll
[2013/03/29 13:37:34 | 000,059,384 | ---- | M] () -- \Users\Petra\AppData\Roaming\Seznam.cz\bin\18917libfoxloader.dll
[2013/10/06 23:30:58 | 000,000,165 | ---- | M] () -- \Users\Petra\AppData\Roaming\Seznam.cz\conf\szndesktop.d\libfoxloader.conf
[2013/03/25 16:27:20 | 000,000,665 | ---- | M] () -- \Users\Petra\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_1_2.install.bat
[2013/03/25 16:27:26 | 000,000,117 | ---- | M] () -- \Users\Petra\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_1_2.uninstall.bat
[2013/10/08 22:21:29 | 000,031,516 | ---- | M] () -- \Users\Tonik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M20J6OOV\cz.seznam.software.libfoxloader-3.1.2-win32[1].zip
[13 \Users\Tonik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M20J6OOV\*.tmp files -> \Users\Tonik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M20J6OOV\*.tmp -> ]
[2013/04/15 13:32:10 | 000,060,416 | ---- | M] () -- \Users\Tonik\AppData\Roaming\Seznam.cz\bin\12552libfoxloader-x64.dll
[2013/03/29 13:37:34 | 000,059,384 | ---- | M] () -- \Users\Tonik\AppData\Roaming\Seznam.cz\bin\12552libfoxloader.dll
[2013/10/08 22:21:33 | 000,000,165 | ---- | M] () -- \Users\Tonik\AppData\Roaming\Seznam.cz\conf\szndesktop.d\libfoxloader.conf
[2013/03/25 16:27:20 | 000,000,665 | ---- | M] () -- \Users\Tonik\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_1_2.install.bat
[2013/03/25 16:27:26 | 000,000,117 | ---- | M] () -- \Users\Tonik\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_1_2.uninstall.bat
[2013/08/02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2009/07/14 06:54:01 | 000,003,532 | ---- | M] () -- \Windows\System32\Tasks\Microsoft\Windows\WindowsColorSystem\Calibration Loader
[2013/06/22 08:47:48 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86.manifest
[2013/06/22 08:47:48 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86_winload.exe.mui_3bc5b827
[2013/06/22 08:47:48 | 000,030,272 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86_winresume.exe.mui_ff8b5358
[2013/07/28 11:49:56 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953.manifest
[2013/07/28 11:49:57 | 000,508,904 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953_winload.exe_75835076
[2013/07/28 11:49:57 | 000,442,720 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953_winresume.exe_85cd1215
[2009/07/14 04:17:38 | 000,002,894 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23.manifest
[2009/07/14 04:17:38 | 000,017,472 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23_spldr.sys_98bd87a0
[2013/06/22 08:46:57 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86.manifest
[2009/07/14 03:47:46 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_5afd1055cdfa75b9.manifest
[2009/08/19 09:38:48 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16411_none_5b44c087cdc549ed.manifest
[2009/08/19 09:21:21 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20509_none_5be12f8ee6d3987e.manifest
[2010/11/20 05:02:40 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953.manifest
[2009/07/14 03:52:31 | 000,002,894 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23.manifest
[2009/07/14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009/07/14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:56:23 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 06:43:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 06:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/02 07:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/03/04 12:35:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_0d44e078f32df860\api-ms-win-core-libraryloader-l1-1-0.dll

< *minodlogin* /s >

< *tnod* /s >
[2009/08/28 23:13:46 | 000,019,438 | ---- | M] () -- \Program Files\Common Files\Lenovo\Python24\Lib\site-packages\_xmlplus\dom\FtNode.pyc
[2009/06/11 09:24:48 | 000,003,262 | R--- | M] () -- \Program Files\Roxio\VideoUI 10\Skins\Default\Generic\Images\Cursors\selectnode.cur

< *AutoKMS* /s >

< *activator* /s >
[2009/06/10 07:41:08 | 000,162,288 | ---- | M] () -- \Program Files\Roxio\VideoCore 10\CGActivator.dll
[2013/08/29 23:59:06 | 002,340,184 | ---- | M] () -- \ProgramData\Big Fish\Game Manager\Addons\gmActivator.exe
[2013/08/29 23:59:12 | 002,340,664 | ---- | M] () -- \ProgramData\Big Fish\Game Manager\Addons\BFGameLauncher\CasinoActivator.exe
[2013/08/29 23:59:06 | 002,340,184 | ---- | M] () -- \Users\All Users\Big Fish\Game Manager\Addons\gmActivator.exe
[2013/08/29 23:59:12 | 002,340,664 | ---- | M] () -- \Users\All Users\Big Fish\Game Manager\Addons\BFGameLauncher\CasinoActivator.exe
[2014/04/09 11:26:45 | 000,031,226 | ---- | M] () -- \Windows\Prefetch\GMACTIVATOR.EXE-A7AE8A30.pf

< *serial* /s >
[2009/08/18 08:09:22 | 000,002,849 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport.p5i
[2009/08/18 08:09:22 | 000,002,503 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport.p5m
[2009/08/18 08:09:22 | 000,010,181 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport.p5p
[2009/08/18 08:09:22 | 000,073,200 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport.p5x
[2009/08/18 08:09:22 | 000,008,685 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_da.p5p
[2009/08/18 08:09:22 | 000,009,950 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_de.p5p
[2009/08/18 08:09:22 | 000,010,362 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_es.p5p
[2009/08/18 08:09:22 | 000,009,066 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_fi.p5p
[2009/08/18 08:09:22 | 000,009,824 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_fr.p5p
[2009/08/18 08:09:22 | 000,009,814 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_it.p5p
[2009/08/18 08:09:22 | 000,010,540 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_ja.p5p
[2009/08/18 08:09:22 | 000,010,005 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_ko.p5p
[2009/08/18 08:09:22 | 000,008,540 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_nb.p5p
[2009/08/18 08:09:22 | 000,009,657 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_nl.p5p
[2009/08/18 08:09:22 | 000,009,662 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_pl.p5p
[2009/08/18 08:09:22 | 000,009,240 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_pt.p5p
[2009/08/18 08:09:22 | 000,015,153 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_ru.p5p
[2009/08/18 08:09:22 | 000,009,007 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_sv.p5p
[2009/08/18 08:09:22 | 000,008,363 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_zh-cn.p5p
[2009/08/18 08:09:22 | 000,008,410 | ---- | M] () -- \Program Files\PC-Doctor\pcdrserialport_zh-tw.p5p
[2009/08/18 08:08:18 | 000,006,372 | ---- | M] () -- \Program Files\PC-Doctor\help\de\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:20 | 000,005,471 | ---- | M] () -- \Program Files\PC-Doctor\help\en\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:20 | 000,006,568 | ---- | M] () -- \Program Files\PC-Doctor\help\es\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:22 | 000,010,123 | ---- | M] () -- \Program Files\PC-Doctor\help\fr\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:24 | 000,009,983 | ---- | M] () -- \Program Files\PC-Doctor\help\it\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:26 | 000,007,823 | ---- | M] () -- \Program Files\PC-Doctor\help\ja\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:28 | 000,007,899 | ---- | M] () -- \Program Files\PC-Doctor\help\ko\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:28 | 000,006,363 | ---- | M] () -- \Program Files\PC-Doctor\help\nl\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:30 | 000,005,842 | ---- | M] () -- \Program Files\PC-Doctor\help\pt\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:30 | 000,006,211 | ---- | M] () -- \Program Files\PC-Doctor\help\ru\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:30 | 000,007,099 | ---- | M] () -- \Program Files\PC-Doctor\help\zh-cn\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:08:32 | 000,002,953 | ---- | M] () -- \Program Files\PC-Doctor\help\zh-tw\PCDrHelp\PCDrSerialPort.htm
[2009/08/18 08:07:22 | 000,000,833 | ---- | M] () -- \Program Files\PC-Doctor\Images\icons\png\16_16\serial_port.png
[2009/08/18 08:07:30 | 000,001,413 | ---- | M] () -- \Program Files\PC-Doctor\Images\icons\png\24_24\serial_port.png
[2009/08/18 08:08:00 | 000,041,336 | ---- | M] () -- \Program Files\PC-Doctor\Images\icons\png\256_256\serial_port.png
[2009/08/18 08:07:36 | 000,002,178 | ---- | M] () -- \Program Files\PC-Doctor\Images\icons\png\32_32\serial_port.png
[2009/08/18 08:07:44 | 000,004,055 | ---- | M] () -- \Program Files\PC-Doctor\Images\icons\png\48_48\serial_port.png
[2009/08/18 08:07:50 | 000,006,298 | ---- | M] () -- \Program Files\PC-Doctor\Images\icons\png\64_64\serial_port.png
[2009/08/18 08:07:54 | 000,007,450 | ---- | M] () -- \Program Files\PC-Doctor\Images\icons\png\72_72\serial_port.png
[2009/08/18 08:09:38 | 000,000,833 | ---- | M] () -- \Program Files\PC-Doctor\Images\img16_16\serialport.png
[2009/08/18 08:09:42 | 000,001,413 | ---- | M] () -- \Program Files\PC-Doctor\Images\img24_24\serialport.png
[2009/08/18 08:09:44 | 000,002,178 | ---- | M] () -- \Program Files\PC-Doctor\Images\img32_32\serialport.png
[2009/08/18 08:09:46 | 000,004,055 | ---- | M] () -- \Program Files\PC-Doctor\Images\img48_48\serialport.png
[2009/08/18 08:09:48 | 000,006,298 | ---- | M] () -- \Program Files\PC-Doctor\Images\img64_64\serialport.png
[2012/10/05 12:53:23 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2010/11/05 03:53:39 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2013/08/30 08:50:26 | 000,036,276 | ---- | M] () -- \Program Files\Sony Ericsson\Update Engine\plugins\com.serialio_2.13.10.201308300830.jar
[2013/08/30 08:54:00 | 000,008,943 | ---- | M] () -- \Program Files\Sony Ericsson\Update Engine\plugins\com.sonymobile.cs.serialcommunication_2.13.10.201308300830.jar
[2013/06/22 08:47:26 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009/06/10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010/11/13 03:55:26 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2012/10/05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014/02/13 23:06:31 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\553e7bfc9cac5e4feaa83d8ee1e187bd\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013/08/15 09:18:53 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\d462f459c4353e2c628e6def1430aed7\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013/08/15 09:23:39 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\e043ad64456256a8ee5b934e227d9782\System.Runtime.Serialization.ni.dll
[2014/02/13 23:26:45 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\f177ea74036d5fdc6c6b9c967dc877cf\System.Runtime.Serialization.ni.dll
[2014/02/28 00:12:20 | 000,309,760 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\abb3fbf787b74b7d2513a8c409b5ef74\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014/02/28 00:12:20 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\abb3fbf787b74b7d2513a8c409b5ef74\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014/02/28 00:12:42 | 002,825,216 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f6d7bb59f318c130d68816a89335d05e\System.Runtime.Serialization.ni.dll
[2014/02/28 00:12:42 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f6d7bb59f318c130d68816a89335d05e\System.Runtime.Serialization.ni.dll.aux
[2014/02/28 17:46:55 | 000,026,624 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll
[2014/02/28 17:46:55 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll.aux
[2013/09/11 23:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013/09/11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013/09/11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Json\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Json.dll
[2013/09/11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Primitives\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Primitives.dll
[2013/09/11 23:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013/09/11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Xml\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Xml.dll
[2013/09/11 23:33:38 | 001,052,320 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013/09/11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2013/09/11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.XmlSerializer\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Xml.XmlSerializer.dll
[2009/06/10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2010/11/05 03:53:33 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012/10/05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013/09/11 23:33:38 | 001,052,320 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2013/09/11 23:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013/09/11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013/09/11 22:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013/09/11 22:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013/09/11 22:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2013/09/11 22:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.XmlSerializer.dll
[2013/09/11 23:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013/09/11 23:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009/07/14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2013/06/22 08:47:21 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009/07/14 01:45:33 | 000,083,456 | ---- | M] () -- \Windows\System32\drivers\serial.sys
[2013/06/22 08:47:30 | 000,009,728 | ---- | M] () -- \Windows\System32\drivers\cs-CZ\serial.sys.mui
[2009/07/14 00:13:45 | 001,068,032 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\mdmmotsm.inf_x86_neutral_c1415d9789c54b89\smserial.sys
[2009/07/14 01:45:33 | 000,083,456 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_x86_neutral_c1a802e06677f73f\serial.sys
[2009/07/14 00:09:18 | 000,031,232 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_x86_neutral_63e72c669d043f14\grserial.sys
[2009/07/14 04:18:03 | 000,002,762 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_118be3420dfe8486.manifest
[2009/07/14 04:18:03 | 000,015,952 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_118be3420dfe8486_kdcom.dll_db5e7744
[2013/06/22 08:47:45 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009/07/14 04:18:51 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009/07/14 03:52:33 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896.manifest
[2012/10/06 20:07:20 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.17136_none_a6a4fe887487d009.manifest
[2012/10/06 20:58:54 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.21337_none_8fd740dc8e2f4a01.manifest
[2010/11/20 05:06:16 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012/10/05 19:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2012/10/05 19:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2013/06/22 08:46:50 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012/10/06 21:19:17 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.17136_cs-cz_3450454183d3f023.manifest
[2012/10/06 21:26:57 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.21337_cs-cz_1d8287959d7b6a1b.manifest
[2012/10/05 21:04:43 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f.manifest
[2012/10/05 21:02:24 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797.manifest
[2009/07/14 03:51:52 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9.manifest
[2012/10/06 20:11:48 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.17136_none_d6e834229c2ed13c.manifest
[2012/10/06 21:03:01 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.21337_none_c01a7676b5d64b34.manifest
[2010/11/20 05:05:38 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012/10/05 19:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2012/10/05 19:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2009/07/14 03:49:26 | 000,002,762 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_118be3420dfe8486.manifest
[2009/07/14 03:45:27 | 000,000,866 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_2c93290b67c98d09.manifest
[2009/07/14 03:57:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b.manifest
[2012/10/06 20:09:38 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_dbc2dfefdd056b7e.manifest
[2012/10/06 21:00:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_c4f52243f6ace576.manifest
[2010/11/20 05:10:46 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012/10/05 19:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2012/10/05 19:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2009/06/10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2013/06/22 08:47:26 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009/06/10 23:14:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896\System.Runtime.Serialization.dll
[2012/10/06 12:54:26 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.17136_none_a6a4fe887487d009\System.Runtime.Serialization.dll
[2012/10/06 12:57:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.21337_none_8fd740dc8e2f4a01\System.Runtime.Serialization.dll
[2010/11/05 03:52:39 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2012/10/05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2012/10/06 12:57:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2013/06/22 08:47:33 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2013/06/22 08:47:33 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.17136_cs-cz_3450454183d3f023\System.RunTime.Serialization.Resources.dll
[2013/06/22 08:47:33 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.21337_cs-cz_1d8287959d7b6a1b\System.RunTime.Serialization.Resources.dll
[2010/11/13 03:55:26 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f\System.RunTime.Serialization.Resources.dll
[2010/11/13 04:37:50 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797\System.RunTime.Serialization.Resources.dll
[2009/06/10 23:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9\System.Runtime.Serialization.dll
[2012/10/06 12:54:25 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.17136_none_d6e834229c2ed13c\System.Runtime.Serialization.dll
[2012/10/06 12:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.21337_none_c01a7676b5d64b34\System.Runtime.Serialization.dll
[2010/11/05 03:52:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012/10/05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2012/10/06 12:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2009/07/14 00:13:45 | 001,068,032 | ---- | M] () -- \Windows\winsxs\x86_mdmmotsm.inf_31bf3856ad364e35_6.1.7600.16385_none_7a97936f8a972896\smserial.sys
[2013/06/22 08:47:19 | 000,011,776 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_c002c1170ca9a88f\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010/11/05 03:53:33 | 000,011,776 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_c233d4df09982c29\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013/06/22 08:47:21 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009/07/14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2013/06/22 08:47:33 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_5d4a68b4b3d26ecc\System.RunTime.Serialization.Resources.dll
[2010/11/05 03:53:39 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2013/06/22 08:47:30 | 000,009,728 | ---- | M] () -- \Windows\winsxs\x86_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_c48c78a9ad8ff996\serial.sys.mui
[2009/07/14 01:45:33 | 000,083,456 | ---- | M] () -- \Windows\winsxs\x86_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_f86e06d519b1d9a4\serial.sys
[2009/07/14 00:09:18 | 000,031,232 | ---- | M] () -- \Windows\winsxs\x86_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_7280378295916274\grserial.sys
[2009/06/10 23:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b\System.Runtime.Serialization.dll
[2012/10/06 12:54:25 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_dbc2dfefdd056b7e\System.Runtime.Serialization.dll
[2012/10/06 12:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_c4f52243f6ace576\System.Runtime.Serialization.dll
[2010/11/05 03:52:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012/10/05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2012/10/06 12:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll

< *w7lxe* /s >

========== Alternate Data Streams ==========

@Alternate Data Stream - 98 bytes -> C:\ProgramData\TEMP:260575F1
@Alternate Data Stream - 193 bytes -> C:\ProgramData\TEMP:D64467B5
@Alternate Data Stream - 188 bytes -> C:\ProgramData\TEMP:7687A3E3
@Alternate Data Stream - 186 bytes -> C:\ProgramData\TEMP:4B6A9FDA
@Alternate Data Stream - 181 bytes -> C:\ProgramData\TEMP:9D0A16E4
@Alternate Data Stream - 173 bytes -> C:\ProgramData\TEMP:02DD996C
@Alternate Data Stream - 164 bytes -> C:\ProgramData\TEMP:7FA0D639
@Alternate Data Stream - 157 bytes -> C:\ProgramData\TEMP:98DFF516
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:AFBD0680
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:29EA7E22
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:A78B31DD
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:9CE870B8
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:9BB8C675
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:72449E7D
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:8118F1F5
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:5ACE199E
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:394EB021
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:06CC3FD3
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:2313511A
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:E3B0ACE0
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:968F624D
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:115EA582
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:C26A6AB3
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:5C3637D2
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:0AF6266B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:D7740E2A
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:406E0034
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:0D060666
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:20ABE827
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:F66F0A25
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:AB0A5A80
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:865F21BF
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:1A8FDBA3
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:ED92736E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:E402E439
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:8D565A9B
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:36ED5C45
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:E9C2F553
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:5C5F2761
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:320208DA
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:2CB9631F
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:8318A814
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:7FD8AECC
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:F74EC668
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:8C8D234C
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:6E39144C
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:0AC0213C
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:F83E8359
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:1F062028
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:DF2F7240
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:B2DC8D6B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:AE34D87E
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:65FE83E4
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:4F49DA66
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:097C4B7D
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:E1D06077
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:F6DA3F39
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:79A7F369
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:C98828D3
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:B69CF390
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:D64DD961
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C65B4BD1
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:2701CA70
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:BD84F7D6
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:4762F1D2
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:00D77978
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:F4B7CBB2
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:1CF1FB36
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:19F8EB29
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:D086B88D
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:7D9B1030
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:A3E0A552
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:7247FE29
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:5E21B96B
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:E9049821

< End of report >

Re: prosim o kontrolu logu.vyskakujici reklamy.

Napsal: 09 dub 2014 21:55
od antivirak
OTL Extras logfile created on: 4/9/2014 10:27:52 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Petra\Desktop
Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16521)
Locale: 00000409 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1.87 Gb Total Physical Memory | 1.03 Gb Available Physical Memory | 55.18% Memory free
3.74 Gb Paging File | 2.69 Gb Available in Paging File | 71.84% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 454.33 Gb Total Space | 394.34 Gb Free Space | 86.80% Space Free | Partition Type: NTFS
Drive D: | 91.70 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive Q: | 10.25 Gb Total Space | 5.80 Gb Free Space | 56.53% Space Free | Partition Type: NTFS

Computer Name: PETRA-VOSA | User Name: Petra | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-3808252141-163001717-3248989872-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0E90EFE4-C9B0-4C10-99B4-34599266AB2A}" = lport=138 | protocol=17 | dir=in | app=system |
"{0EE0D2C8-E48B-4AF2-B103-809D4D0A3F43}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{1013BB7C-AE23-41D8-AD1E-97E3E7DE1783}" = lport=10243 | protocol=6 | dir=in | app=system |
"{11432664-D600-41DC-9EC9-E84BD58DA0D1}" = rport=139 | protocol=6 | dir=out | app=system |
"{14FA73DC-56C7-4A53-A4A7-97CCA5B5C9B4}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{18E007E1-1B90-401F-8BFE-18179307E5CE}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{1F7E1DCA-2907-41CD-9F03-23799A96639B}" = lport=137 | protocol=17 | dir=in | app=system |
"{3C1B1F37-6EAC-4167-9E9E-0AC50C6F851A}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{440479C7-20F6-48A5-9CA7-826BCAB76411}" = rport=137 | protocol=17 | dir=out | app=system |
"{44B25BA6-223E-46F8-A34D-E85C06FF126F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{47D0EB20-226C-4C90-9391-8F572B1A03A1}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{499A4843-D148-4EA7-A538-814762C157C4}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4C254B88-EDE0-4FEA-9E64-A8D0BBB1149E}" = lport=2869 | protocol=6 | dir=in | app=system |
"{5668B9B8-B3A8-45B0-B9A5-BCEAC84A9022}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5B264E73-BD78-4D0C-8B85-9B8DB9BF6F92}" = lport=445 | protocol=6 | dir=in | app=system |
"{7500712A-F4AE-4B1D-BE23-755BECF53C1B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{9514D8A7-197A-4C02-B369-1A6BCDDFAB4B}" = rport=138 | protocol=17 | dir=out | app=system |
"{A8F0A621-61B6-4641-986C-919204C36A5D}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C370BFF6-8F1B-45A6-A3ED-BF99280180FC}" = rport=10243 | protocol=6 | dir=out | app=system |
"{C486666B-745A-4C9C-BFFD-7AE90190E4BF}" = rport=445 | protocol=6 | dir=out | app=system |
"{CCDA2089-AB2A-4773-904B-7A129CCDFEA5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{CECE2FF0-CCAD-4903-A47B-2915B53AE1E8}" = lport=139 | protocol=6 | dir=in | app=system |
"{D4C80291-7970-4E07-AD18-B7C5CB1F49F7}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01B3F3DD-21F1-4605-9F39-55E1FB18681A}" = protocol=6 | dir=out | app=system |
"{0B0F65B6-F149-46CE-85E8-13E542E24FD5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{0FEDF34C-B92E-44D3-AA33-13E627627AC0}" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
"{11D9FE81-A4D2-4A4C-945A-C754191FD615}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{13AC7E58-A547-4692-8C9C-7DB5DB1897B7}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version9\teamviewer.exe |
"{1525CB71-E207-4AA5-8F40-7B39B8275237}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{1C126C40-178C-42C4-A5C1-656579F2D735}" = protocol=17 | dir=in | app=c:\users\petra\appdata\roaming\utorrent\utorrent.exe |
"{2407352F-B995-46E3-B8BD-08029119307A}" = protocol=6 | dir=in | app=c:\program files\avg\avg2014\avgmfapx.exe |
"{3343FD37-C8C1-4DA6-BB78-C6BA64DE303E}" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
"{3AA66701-9012-42E7-8EA1-997BA9AB8BA2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{45307FD2-A57F-4BAE-AAF8-9B762FDC5541}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{51A396AD-7B32-4E7C-BD15-B456BFD496DE}" = protocol=6 | dir=in | app=c:\program files\avg\avg2013\avgmfapx.exe |
"{539A5842-6052-4401-A053-EFC851C275D7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{69921BD0-8690-49CF-A2EB-16A234548A5C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{722980FE-5AE2-4985-B184-AF2713169BBF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{8387F25F-F819-49A9-85D1-77E1B2F9F18C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{83B2F2B0-742C-4B5E-B65F-3034DB472858}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{9CD55A61-0EB3-45EA-A03F-BB5129E7F144}" = protocol=17 | dir=in | app=c:\program files\avg\avg2013\avgmfapx.exe |
"{9D3B73F2-F1CD-4436-BCC2-37B7CAE7E891}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version9\teamviewer_service.exe |
"{A4E30E0F-ADDA-46EC-B0DA-D56D2AC9226B}" = protocol=6 | dir=in | app=c:\users\petra\appdata\roaming\utorrent\utorrent.exe |
"{ADBB7F0B-6904-4139-BBB2-BF57C9BF1843}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{C1D4C315-1ABC-4116-9A5A-1C7A6B12C7F5}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{C616A9A7-F21C-4179-879E-63EE0C3DDA5F}" = protocol=17 | dir=in | app=c:\program files\avg\avg2014\avgmfapx.exe |
"{C8F2A71B-B99D-404A-98E6-5EAE2A8D01B0}" = protocol=17 | dir=in | app=c:\program files\sony ericsson\update engine\sony ericsson update engine.exe |
"{CE89FB73-090F-4D38-9319-A6037DE39D23}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CF307932-32FF-4240-BB06-5C115033DB50}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version9\teamviewer.exe |
"{D3F91BC6-83A8-4B14-BB9D-AF9AAFE31825}" = protocol=6 | dir=in | app=c:\program files\sony ericsson\update engine\sony ericsson update engine.exe |
"{D6706FA8-0A22-4EA0-87E7-ECE9C4793F19}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{E23A5534-6260-458F-A134-3DA868C68062}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version9\teamviewer_service.exe |
"{F63A08B6-0EA6-4DC8-A225-10D36D080033}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F6DB395A-8F72-4ABA-883F-1FE980660D02}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{14F837AE-21E9-43CD-A902-F7B3D9C75221}E:\easysetupassistant\wr841n\easysetupassistant.exe" = protocol=6 | dir=in | app=e:\easysetupassistant\wr841n\easysetupassistant.exe |
"TCP Query User{509FD5ED-A759-4036-AEE9-84D123764D55}C:\users\tonik\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{6139BE1E-BEA9-4D86-9A4B-3D446BAEAB3E}C:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe" = protocol=6 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe |
"TCP Query User{B5FD7A7D-F866-4A05-A8FB-3659CC1ECCF8}C:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30488.exe" = protocol=6 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30488.exe |
"TCP Query User{B6AA4514-E0F1-4211-9D80-9F52CA70747E}C:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe" = protocol=6 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe |
"UDP Query User{33292EB5-9C56-4D07-96A4-3098C71DB963}E:\easysetupassistant\wr841n\easysetupassistant.exe" = protocol=17 | dir=in | app=e:\easysetupassistant\wr841n\easysetupassistant.exe |
"UDP Query User{6AE25D08-B76D-4CA4-8C40-67CDF6DFB446}C:\users\tonik\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{90462018-998F-40E1-9542-EF468F149613}C:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30488.exe" = protocol=17 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30488.exe |
"UDP Query User{961A367C-0829-4544-94D8-B36102D06BC9}C:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe" = protocol=17 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe |
"UDP Query User{9B956D22-93DF-47FD-89BF-4B2D2E6DC2AE}C:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe" = protocol=17 | dir=in | app=c:\users\tonik\appdata\roaming\utorrent\updates\3.3.2_30303.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Central Data
"{0EEE1342-643E-44CB-97D0-2591FFDE0126}" = FanSpeedControl
"{123F4E9B-80E6-3A84-BDD4-3CB3AC59ABF0}" = Microsoft .NET Framework 4.5.1 (CSY)
"{15A66C44-85AD-B397-6D69-EF735B639A9B}_is1" = Free Samples Vol. 1 by Dj Luczan version for Windows
"{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Central Tools
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Nástroj pro odesílání služby Windows Live
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{259C0ABB-A3B2-4D70-008F-BF7EE491B70B}" = Need for Speed™ Carbon
"{25C64847-B900-48AD-A164-1B4F9B774650}" = System Update
"{26A24AE4-039D-4CA4-87B4-2F83217040FF}" = Java 7 Update 51
"{36A345C9-0691-45A1-AEEF-29ECEC8B5014}" = Microsoft Security Client
"{4903D172-DCCB-392F-93A3-34CA9D47FE3D}" = Microsoft .NET Framework 4.5.1
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4EA44BA4-A708-4223-BC1A-22B6DA9E7D1C}" = Windows Live Essentials
"{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}" = Create Recovery Media
"{537BF16E-7412-448C-95D8-846E85A1D817}" = Roxio Creator Small Business Edition
"{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Central Audio
"{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14
"{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}" = Norton Internet Security
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}" = Sonic CinePlayer Decoder Pack
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029" = Microsoft .NET Framework 4.5.1 (čeština)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) - Czech
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B334D9AE-1393-423E-97C0-3BDC3360E692}" = Sonic Icons for Lenovo
"{B383F243-0ABC-4E56-AA30-923B8D85076E}" = Rescue and Recovery
"{B4089055-D468-45A4-A6BA-5A138DD715FC}" = Bing Bar
"{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Central Copy
"{B7B3E9B3-FB14-4927-894B-E9124509AF5A}" = Adobe Flash Player 10 ActiveX
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{BD86C297-41C7-4DB5-82C4-98DE3399A2EF}" = Asistent pro přihlášení ke službě Windows Live
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240DC}" = WinZip 17.5
"{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}" = ThinkVantage Power Manager
"{DD904F45-C570-4EB9-B13A-A8533FCDCCD0}_is1" = Cognition - Episode 4 version 1
"{E8A54984-9776-4283-ACE2-782BA850A1C0}" = Roxio Creator Small Business Edition
"{EBB82E53-4566-3A42-90E9- A3515FF2CB4}_is1" = Minecraft 1.3.2 version for Windows
"{EC877639-07AB-495C-BFD1-D63AF9140810}" = Roxio Activation Module
"{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Central Core
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony PC Companion 2.10.197
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}" = Message Center Plus
"3D521A9B0C0925C77D4D5276998FFF6DF66CBA2F" = Windows Driver Package - Realtek Semiconductor Corp. HD Audio Driver (08/05/2009 6.0.1.5911)
"7-Zip" = 7-Zip 9.20
"Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin
"BFGC" = Big Fish: Game Manager
"BFG-Dark Strokes - The Legend of Snow Kingdom Collectors Edition" = Dark Strokes: The Legend of Snow Kingdom Collector's Edition
"BFG-Nightmares from the Deep - Davy Jones Collector's Edition" = Nightmares from the Deep: Davy Jones Collector's Edition
"CCleaner" = CCleaner
"Christmas Stories 2 - A Christmas Carol Collectors Edition1.1" = Christmas Stories 2 - A Christmas Carol Collectors Edition
"DAEMON Tools Lite" = DAEMON Tools Lite
"EDB0CD5E842AE668D9A01C6275DA2CD736D3DD06" = Windows Driver Package - Realtek Semiconductor Corp. HD Audio Driver (08/05/2009 6.0.1.5911)
"Elementals - The Magic Key_is1" = Elementals - The Magic Key
"F72C19F49669B7F5F229BB51895CB31FB56993F7" = Windows Driver Package - Intel Corporation (igfx) Display (07/28/2009 8.15.10.1855)
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"InstallShield_{0EEE1342-643E-44CB-97D0-2591FFDE0126}" = FanSpeedControl
"LemurLeap" = LemurLeap 1.0.0
"Lenovo Welcome_is1" = Lenovo Welcome
"Microsoft Security Client" = Microsoft Security Essentials
"Mozilla Firefox 28.0 (x86 cs)" = Mozilla Firefox 28.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Origin" = Origin
"PC-Doctor for Windows" = Lenovo ThinkVantage Toolbox
"Royal Envoy 2" = Royal Envoy 2
"TeamViewer 9" = TeamViewer 9
"TVWiz" = Intel(R) TV Wizard
"Update Engine" = Sony Ericsson Update Engine
"VLC media player" = VLC media player 2.0.8
"Web of Deceit - Black Widow Collector's EditionFinal" = Web of Deceit - Black Widow Collector's Edition
"Winamp" = Winamp
"WinLiveSuite_Wave3" = Windows Live Essentials

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-3808252141-163001717-3248989872-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"SeznamInstall" = Seznam Software
"uTorrent" = µTorrent
"Winamp Detect" = Winamp Detector Plug-in

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 3/31/2014 4:43:36 PM | Computer Name = Petra-vosa | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = Služba Šifrování selhala při volání OnIdentity() v objektu System
Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec
Network Dispatch Driver. System Error: Systém nemůže nalézt uvedený soubor. .

Error - 4/1/2014 3:52:59 PM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842761
Description = Generování kontextu aktivace pro C:\Program Files\WinZip\adxloader.dll.Manifest
se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files\WinZip\adxloader.dll.Manifest
na řádku 2. Kořenový prvek souboru manifestu musí být symbolická adresa.

Error - 4/1/2014 3:53:14 PM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\Program Files\Lenovo\System Update\Installer64.exe
se nezdařilo. Závislé sestavení Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 4/1/2014 3:55:55 PM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Sony\sony pc companion\Drivers\DPInst64.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 4/2/2014 6:51:46 AM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842761
Description = Generování kontextu aktivace pro C:\Program Files\WinZip\adxloader.dll.Manifest
se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files\WinZip\adxloader.dll.Manifest
na řádku 2. Kořenový prvek souboru manifestu musí být symbolická adresa.

Error - 4/2/2014 6:52:03 AM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\Program Files\Lenovo\System Update\Installer64.exe
se nezdařilo. Závislé sestavení Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 4/2/2014 6:54:24 AM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Sony\sony pc companion\Drivers\DPInst64.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 4/3/2014 9:22:03 AM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842761
Description = Generování kontextu aktivace pro C:\Program Files\WinZip\adxloader.dll.Manifest
se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files\WinZip\adxloader.dll.Manifest
na řádku 2. Kořenový prvek souboru manifestu musí být symbolická adresa.

Error - 4/3/2014 9:22:23 AM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\Program Files\Lenovo\System Update\Installer64.exe
se nezdařilo. Závislé sestavení Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 4/3/2014 9:24:54 AM | Computer Name = Petra-vosa | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Sony\sony pc companion\Drivers\DPInst64.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

[ System Events ]
Error - 11/11/2013 7:26:03 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby avgfws bylo dosaženo časového
limitu (30000 ms).

Error - 11/12/2013 5:38:10 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7024
Description = Služba AVGIDSAgent ukončena s chybou %%-536753636, specifickou pro
službu.

Error - 11/12/2013 5:38:16 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7024
Description = Služba AVG Firewall ukončena s chybou %%-536805289, specifickou pro
službu.

Error - 11/13/2013 7:30:25 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7024
Description = Služba AVGIDSAgent ukončena s chybou %%-536753636, specifickou pro
službu.

Error - 11/13/2013 7:31:01 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7024
Description = Služba AVG Firewall ukončena s chybou %%-536805289, specifickou pro
službu.

Error - 11/13/2013 7:31:01 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby avgfws bylo dosaženo časového
limitu (30000 ms).

Error - 11/13/2013 9:58:46 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7024
Description = Služba AVGIDSAgent ukončena s chybou %%-536753636, specifickou pro
službu.

Error - 11/13/2013 9:58:52 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7024
Description = Služba AVG Firewall ukončena s chybou %%-536805289, specifickou pro
službu.

Error - 11/14/2013 7:39:07 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7024
Description = Služba AVGIDSAgent ukončena s chybou %%-536753636, specifickou pro
službu.

Error - 11/14/2013 7:39:41 AM | Computer Name = Petra-vosa | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby avgfws bylo dosaženo časového
limitu (30000 ms).


< End of report >

Re: prosim o kontrolu logu.vyskakujici reklamy.

Napsal: 10 dub 2014 10:26
od Márty84
:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
AdobeARMservice
BBUpdate
BBSvc
SkypeUpdate
AdobeFlashPlayerUpdateSvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job

:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{D1ADD977-6C21-4B11-ABFA-40A2F588C839}: "URL" = http://www.bing.com/search?q={searchTerms}&form=LEMDF8&pc=MALC&src=IE-SearchBox;
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-3808252141-163001717-3248989872-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2014/03/18 19:22:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Avg_Update_0214d
[2014/03/14 23:13:29 | 000,000,000 | ---D | C] -- C:\Users\Petra\AppData\Roaming\AVG2014
[2014/03/14 23:08:01 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014
[2014/03/14 19:58:53 | 000,000,000 | ---D | C] -- C:\Users\Petra\AppData\Local\Avg2014
[2014/03/14 23:13:29 | 000,000,000 | ---D | M] -- C:\Users\Petra\AppData\Roaming\AVG2014
[2014/03/15 02:42:18 | 000,000,000 | ---D | M] -- C:\Users\Tonik\AppData\Roaming\AVG2014
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[7 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\21bf4f1621143e0103daef3cc5a3013f\*.tmp files -> C:\Windows\SoftwareDistribution\Download\21bf4f1621143e0103daef3cc5a3013f\*.tmp -> ]
[2 C:\Windows\SoftwareDistribution\Download\3c6b54bcfb3c23f715dc558bc21287fd\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3c6b54bcfb3c23f715dc558bc21287fd\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\59e1fa28495cdd77c27b61432454fc64\*.tmp files -> C:\Windows\SoftwareDistribution\Download\59e1fa28495cdd77c27b61432454fc64\*.tmp -> ]
[2 C:\Windows\SoftwareDistribution\Download\bbcc525f37ad87da3cf2bdd37ffaf044\*.tmp files -> C:\Windows\SoftwareDistribution\Download\bbcc525f37ad87da3cf2bdd37ffaf044\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\cadfd73a978beb54e8ac84ec9a4cf99b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\cadfd73a978beb54e8ac84ec9a4cf99b\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\def445ec30865998d1fd1bc2aacd30ef\*.tmp files -> C:\Windows\SoftwareDistribution\Download\def445ec30865998d1fd1bc2aacd30ef\*.tmp -> ]
[2 C:\Windows\SoftwareDistribution\Download\f9a13c42801955cef3eb2c50d610ae88\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f9a13c42801955cef3eb2c50d610ae88\*.tmp -> ]
[98 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
[1 C:\Windows\Temp\{6533B6D5-7008-4EB6-B9D1-49C42B44983D}\*.tmp files -> C:\Windows\Temp\{6533B6D5-7008-4EB6-B9D1-49C42B44983D}\*.tmp -> ]
[2013/07/29 10:41:47 | 000,000,707 | ---- | M] () -- \Users\Petra\AppData\Roaming\Microsoft\Windows\Recent\AVG-2013-Cz-Full+keygen.lnk
@Alternate Data Stream - 98 bytes -> C:\ProgramData\TEMP:260575F1
@Alternate Data Stream - 193 bytes -> C:\ProgramData\TEMP:D64467B5
@Alternate Data Stream - 188 bytes -> C:\ProgramData\TEMP:7687A3E3
@Alternate Data Stream - 186 bytes -> C:\ProgramData\TEMP:4B6A9FDA
@Alternate Data Stream - 181 bytes -> C:\ProgramData\TEMP:9D0A16E4
@Alternate Data Stream - 173 bytes -> C:\ProgramData\TEMP:02DD996C
@Alternate Data Stream - 164 bytes -> C:\ProgramData\TEMP:7FA0D639
@Alternate Data Stream - 157 bytes -> C:\ProgramData\TEMP:98DFF516
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:AFBD0680
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:29EA7E22
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:A78B31DD
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:9CE870B8
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:9BB8C675
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:72449E7D
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:8118F1F5
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:5ACE199E
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:394EB021
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:06CC3FD3
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:2313511A
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:E3B0ACE0
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:968F624D
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:115EA582
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:C26A6AB3
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:5C3637D2
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:0AF6266B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:D7740E2A
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:406E0034
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:0D060666
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:20ABE827
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:F66F0A25
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:AB0A5A80
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:865F21BF
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:1A8FDBA3
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:ED92736E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:E402E439
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:8D565A9B
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:36ED5C45
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:E9C2F553
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:5C5F2761
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:320208DA
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:2CB9631F
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:8318A814
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:7FD8AECC
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:F74EC668
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:8C8D234C
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:6E39144C
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:0AC0213C
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:F83E8359
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:1F062028
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:DF2F7240
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:B2DC8D6B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:AE34D87E
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:65FE83E4
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:4F49DA66
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:097C4B7D
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:E1D06077
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:F6DA3F39
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:79A7F369
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:C98828D3
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:B69CF390
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:D64DD961
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C65B4BD1
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:2701CA70
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:BD84F7D6
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:4762F1D2
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:00D77978
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:F4B7CBB2
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:1CF1FB36
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:19F8EB29
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:D086B88D
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:7D9B1030
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:A3E0A552
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:7247FE29
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:5E21B96B
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:E9049821

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{8dcb7100-df86-4384-8842-8fa844297b3f}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""=-
"Adobe ARM"=-
"seznam-listicka-distribuce"=-
"SunJavaUpdateSched"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sony PC Companion"=-
"EADM"=-
"DAEMON Tools Lite"=-
"uTorrent"=-
"Skype"=-
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.

Re: prosim o kontrolu logu.vyskakujici reklamy.

Napsal: 10 dub 2014 18:48
od antivirak
All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Petra
->Temp folder emptied: 341166 bytes
->Temporary Internet Files folder emptied: 458112 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 13792171 bytes
->Flash cache emptied: 0 bytes

User: Public

User: Tonik
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 3512 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1284 bytes

Total Files Cleaned = 14.00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Petra
->Flash cache emptied: 0 bytes

User: Public

User: Tonik
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0.00 mb

Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service BBUpdate stopped successfully!
Service BBUpdate deleted successfully!
Service BBSvc stopped successfully!
Service BBSvc deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job moved successfully.
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D1ADD977-6C21-4B11-ABFA-40A2F588C839}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1ADD977-6C21-4B11-ABFA-40A2F588C839}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_USERS\S-1-5-21-3808252141-163001717-3248989872-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\ProgramData\Avg_Update_0214d folder moved successfully.
C:\Users\Petra\AppData\Roaming\AVG2014\cfgall folder moved successfully.
C:\Users\Petra\AppData\Roaming\AVG2014 folder moved successfully.
C:\ProgramData\AVG2014\log folder moved successfully.
C:\ProgramData\AVG2014\IDS\quarantine folder moved successfully.
C:\ProgramData\AVG2014\IDS\config folder moved successfully.
C:\ProgramData\AVG2014\IDS folder moved successfully.
C:\ProgramData\AVG2014\DB folder moved successfully.
C:\ProgramData\AVG2014\Cfg folder moved successfully.
C:\ProgramData\AVG2014 folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014\update\prepare folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014\update\download folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014\update\backup folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014\update folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014\temp folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014\log folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014\fet folder moved successfully.
C:\Users\Petra\AppData\Local\Avg2014 folder moved successfully.
Folder C:\Users\Petra\AppData\Roaming\AVG2014\ not found.
C:\Users\Tonik\AppData\Roaming\AVG2014\cfgall folder moved successfully.
C:\Users\Tonik\AppData\Roaming\AVG2014 folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP18BD.tmp\System.Data.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP18BD.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP57C0.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E64.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP7DB7.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8545.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E4B.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9F6A.tmp\Microsoft.MediaCenter.Sports.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9F6A.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\21bf4f1621143e0103daef3cc5a3013f\BIT44E5.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3c6b54bcfb3c23f715dc558bc21287fd\$dpx$.tmp\job.xml deleted successfully.
C:\Windows\SoftwareDistribution\Download\3c6b54bcfb3c23f715dc558bc21287fd\$dpx$.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\3c6b54bcfb3c23f715dc558bc21287fd\BIT166C.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\59e1fa28495cdd77c27b61432454fc64\BIT62F6.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\bbcc525f37ad87da3cf2bdd37ffaf044\$dpx$.tmp\job.xml deleted successfully.
C:\Windows\SoftwareDistribution\Download\bbcc525f37ad87da3cf2bdd37ffaf044\$dpx$.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\bbcc525f37ad87da3cf2bdd37ffaf044\BIT21FC.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\cadfd73a978beb54e8ac84ec9a4cf99b\BIT85B9.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\def445ec30865998d1fd1bc2aacd30ef\BIT43DA.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f9a13c42801955cef3eb2c50d610ae88\$dpx$.tmp\job.xml deleted successfully.
C:\Windows\SoftwareDistribution\Download\f9a13c42801955cef3eb2c50d610ae88\$dpx$.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\f9a13c42801955cef3eb2c50d610ae88\BIT6EA9.tmp deleted successfully.
File move failed. \Users\Petra\AppData\Roaming\Microsoft\Windows\Recent\AVG-2013-Cz-Full+keygen.lnk scheduled to be moved on reboot.
ADS C:\ProgramData\TEMP:260575F1 deleted successfully.
ADS C:\ProgramData\TEMP:D64467B5 deleted successfully.
ADS C:\ProgramData\TEMP:7687A3E3 deleted successfully.
ADS C:\ProgramData\TEMP:4B6A9FDA deleted successfully.
ADS C:\ProgramData\TEMP:9D0A16E4 deleted successfully.
ADS C:\ProgramData\TEMP:02DD996C deleted successfully.
ADS C:\ProgramData\TEMP:7FA0D639 deleted successfully.
ADS C:\ProgramData\TEMP:98DFF516 deleted successfully.
ADS C:\ProgramData\TEMP:AFBD0680 deleted successfully.
ADS C:\ProgramData\TEMP:29EA7E22 deleted successfully.
ADS C:\ProgramData\TEMP:A78B31DD deleted successfully.
ADS C:\ProgramData\TEMP:9CE870B8 deleted successfully.
ADS C:\ProgramData\TEMP:9BB8C675 deleted successfully.
ADS C:\ProgramData\TEMP:72449E7D deleted successfully.
ADS C:\ProgramData\TEMP:8118F1F5 deleted successfully.
ADS C:\ProgramData\TEMP:5ACE199E deleted successfully.
ADS C:\ProgramData\TEMP:394EB021 deleted successfully.
ADS C:\ProgramData\TEMP:06CC3FD3 deleted successfully.
ADS C:\ProgramData\TEMP:2313511A deleted successfully.
ADS C:\ProgramData\TEMP:E3B0ACE0 deleted successfully.
ADS C:\ProgramData\TEMP:968F624D deleted successfully.
ADS C:\ProgramData\TEMP:115EA582 deleted successfully.
ADS C:\ProgramData\TEMP:C26A6AB3 deleted successfully.
ADS C:\ProgramData\TEMP:5C3637D2 deleted successfully.
ADS C:\ProgramData\TEMP:0AF6266B deleted successfully.
ADS C:\ProgramData\TEMP:D7740E2A deleted successfully.
ADS C:\ProgramData\TEMP:406E0034 deleted successfully.
ADS C:\ProgramData\TEMP:0D060666 deleted successfully.
ADS C:\ProgramData\TEMP:20ABE827 deleted successfully.
ADS C:\ProgramData\TEMP:F66F0A25 deleted successfully.
ADS C:\ProgramData\TEMP:AB0A5A80 deleted successfully.
ADS C:\ProgramData\TEMP:865F21BF deleted successfully.
ADS C:\ProgramData\TEMP:1A8FDBA3 deleted successfully.
ADS C:\ProgramData\TEMP:ED92736E deleted successfully.
ADS C:\ProgramData\TEMP:E402E439 deleted successfully.
ADS C:\ProgramData\TEMP:8D565A9B deleted successfully.
ADS C:\ProgramData\TEMP:36ED5C45 deleted successfully.
ADS C:\ProgramData\TEMP:E9C2F553 deleted successfully.
ADS C:\ProgramData\TEMP:5C5F2761 deleted successfully.
ADS C:\ProgramData\TEMP:320208DA deleted successfully.
ADS C:\ProgramData\TEMP:2CB9631F deleted successfully.
ADS C:\ProgramData\TEMP:8318A814 deleted successfully.
ADS C:\ProgramData\TEMP:7FD8AECC deleted successfully.
ADS C:\ProgramData\TEMP:F74EC668 deleted successfully.
ADS C:\ProgramData\TEMP:8C8D234C deleted successfully.
ADS C:\ProgramData\TEMP:6E39144C deleted successfully.
ADS C:\ProgramData\TEMP:0AC0213C deleted successfully.
ADS C:\ProgramData\TEMP:F83E8359 deleted successfully.
ADS C:\ProgramData\TEMP:1F062028 deleted successfully.
ADS C:\ProgramData\TEMP:DF2F7240 deleted successfully.
ADS C:\ProgramData\TEMP:B2DC8D6B deleted successfully.
ADS C:\ProgramData\TEMP:AE34D87E deleted successfully.
ADS C:\ProgramData\TEMP:65FE83E4 deleted successfully.
ADS C:\ProgramData\TEMP:4F49DA66 deleted successfully.
ADS C:\ProgramData\TEMP:097C4B7D deleted successfully.
ADS C:\ProgramData\TEMP:E1D06077 deleted successfully.
ADS C:\ProgramData\TEMP:F6DA3F39 deleted successfully.
ADS C:\ProgramData\TEMP:79A7F369 deleted successfully.
ADS C:\ProgramData\TEMP:C98828D3 deleted successfully.
ADS C:\ProgramData\TEMP:B69CF390 deleted successfully.
ADS C:\ProgramData\TEMP:D64DD961 deleted successfully.
ADS C:\ProgramData\TEMP:C65B4BD1 deleted successfully.
ADS C:\ProgramData\TEMP:2701CA70 deleted successfully.
ADS C:\ProgramData\TEMP:BD84F7D6 deleted successfully.
ADS C:\ProgramData\TEMP:4762F1D2 deleted successfully.
ADS C:\ProgramData\TEMP:00D77978 deleted successfully.
ADS C:\ProgramData\TEMP:F4B7CBB2 deleted successfully.
ADS C:\ProgramData\TEMP:1CF1FB36 deleted successfully.
ADS C:\ProgramData\TEMP:19F8EB29 deleted successfully.
ADS C:\ProgramData\TEMP:D086B88D deleted successfully.
ADS C:\ProgramData\TEMP:7D9B1030 deleted successfully.
ADS C:\ProgramData\TEMP:A3E0A552 deleted successfully.
ADS C:\ProgramData\TEMP:7247FE29 deleted successfully.
ADS C:\ProgramData\TEMP:5E21B96B deleted successfully.
ADS C:\ProgramData\TEMP:E9049821 deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Sony PC Companion deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\EADM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\uTorrent deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 04102014_194957

Files\Folders moved on Reboot...
File move failed. \Users\Petra\AppData\Roaming\Microsoft\Windows\Recent\AVG-2013-Cz-Full+keygen.lnk scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Re: prosim o kontrolu logu.vyskakujici reklamy.

Napsal: 10 dub 2014 19:13
od Márty84
:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.piriform.com/ccleaner/download/slim a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak je na tom pc.

Re: prosim o kontrolu logu.vyskakujici reklamy.

Napsal: 15 dub 2014 23:06
od antivirak
zdravim,omlouvam se ze jsem tak dlouho nenapsal.ale nebyl cas.PC se chova normalne.zadne problemy nejsou.dekuji za pomoc.

Re: prosim o kontrolu logu.vyskakujici reklamy.

Napsal: 16 dub 2014 09:11
od Márty84
Nemate zac! :)

Mejte se a treba zase nekdy :bye:

:closed: