OTL logfile created on: 3/28/2014 9:37:19 AM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\asus\Desktop
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16521)
Locale: 00000409 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
1.99 Gb Total Physical Memory | 0.98 Gb Available Physical Memory | 49.40% Memory free
3.98 Gb Paging File | 2.84 Gb Available in Paging File | 71.40% Paging File free
Paging file location(s): d:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 100.00 Gb Total Space | 31.65 Gb Free Space | 31.65% Space Free | Partition Type: NTFS
Drive D: | 122.87 Gb Total Space | 118.93 Gb Free Space | 96.79% Space Free | Partition Type: NTFS
Computer Name: KRISTINA_ASUS | User Name: asus | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/03/28 09:35:14 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\asus\Desktop\OTL.exe
PRC - [2014/03/15 01:50:42 | 000,859,976 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2013/10/23 15:01:10 | 000,280,288 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\NisSrv.exe
PRC - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2012/11/23 03:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
========== Modules (No Company Name) ==========
MOD - [2014/03/15 01:50:40 | 000,394,568 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\ppgooglenaclpluginchrome.dll
MOD - [2014/03/15 01:50:38 | 004,061,000 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\pdf.dll
MOD - [2014/03/15 01:50:35 | 000,716,616 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\libglesv2.dll
MOD - [2014/03/15 01:50:34 | 000,100,168 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\libegl.dll
MOD - [2014/03/15 01:50:32 | 001,647,432 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll
MOD - [2014/03/15 01:50:30 | 000,051,016 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll
MOD - [2012/08/08 14:59:06 | 000,441,536 | ---- | M] () -- C:\Program Files\TotalDocConverter\axTotalConverter.dll
MOD - [2010/09/02 12:08:00 | 000,118,784 | ---- | M] () -- C:\Program Files\ASUS\Asus WebStorage\3.0.108.222\AsusWSShellExt.dll
MOD - [2010/03/15 10:28:24 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
========== Services (SafeList) ==========
SRV - [2014/03/15 08:11:11 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/03/01 04:38:23 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2013/12/21 07:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/10/23 15:01:10 | 000,280,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2013/05/27 05:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/05/24 15:11:17 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2009/08/19 01:35:56 | 000,219,136 | ---- | M] () [Disabled | Stopped] -- C:\Windows\System32\AsusService.exe -- (AsusService)
SRV - [2009/07/14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/01 17:03:12 | 000,582,944 | ---- | M] (Broadcom Corporation.) [Disabled | Stopped] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\lgusbmodem.sys -- (USBModem)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\lgusbdiag.sys -- (UsbDiag)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\lgusbbus.sys -- (usbbus)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\asus\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - [2014/03/24 16:33:49 | 000,243,128 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2013/09/27 09:53:06 | 000,104,768 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2010/11/20 11:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/11/20 10:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/05/12 12:23:04 | 000,016,896 | ---- | M] (Danish Wireless Design A/S) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\FlashUSB.sys -- (FlashUSB)
DRV - [2009/10/05 15:31:50 | 001,221,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2009/07/20 10:29:40 | 000,013,880 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\kbfiltr.sys -- (kbfiltr)
DRV - [2009/07/14 01:06:49 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BthMtpEnum.sys -- (BthMtpEnum)
DRV - [2009/07/14 00:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/07/13 23:02:47 | 000,050,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C)
DRV - [2009/07/06 09:48:02 | 000,011,448 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\AsUpIO.sys -- (AsUpIO)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
http://eeepc.asus.com [binary data]
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.seznam.cz/
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTer ... ORM=IE11SR
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{12995981-2FD6-4BEE-9FB0-B1674E8E5E7E}: "URL" =
http://websearch.4shared.com/results?q={searchTerms}
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{2CA77391-6B3D-4C6D-9B73-3AE71385D909}: "URL" =
http://search.yahoo.com/search?fr=chr-g ... earchTerms}
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{367F3737-EEAB-4D48-B2A5-454460B1E483}: "URL" =
http://websearch.ask.com/redirect?clien ... 8CB85D40F6
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{386C26C0-4923-41C5-B6EE-7519328BAA74}: "URL" =
http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{746DE492-AC71-492D-92AB-84499609727E}: "URL" =
http://encyklopedie.seznam.cz/search?q= ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{774AA36B-688F-4565-AE8E-6A7E1EAF5761}: "URL" =
http://search.seznam.cz/?q={searchTerms ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{97091B95-5A56-4F9C-AE45-9B8698CB6DFF}: "URL" =
http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{A2124B83-4E16-4C57-B429-3CC51AAB7BA4}: "URL" =
http://www.mapy.cz/?query={searchTerms} ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{B50A0689-B00E-4555-933B-B636029B19B1}: "URL" =
http://www.novinky.cz/hledej?w={searchT ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{C9622A0B-12FE-4DD9-AAAA-7C53117445EB}: "URL" =
http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{D4A3D2BE-546A-4C6C-B455-E753E60CAE2D}: "URL" =
http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\SearchScopes\{FFDEDE5B-DD12-4B72-A0CB-85C9E0EECB49}: "URL" =
http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
IE - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: %7Bea614400-e918-4741-9a97-7a972ff7c30b%7D:2.5.14
FF - prefs.js..extensions.enabledAddons: 2020Player_IKEA%402020Technologies.com:5.0.94.0
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:19.0.2
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MIF5BA~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Program Files\Google\Update\1.2.183.39\npGoogleOneClick8.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
[2013/03/08 07:34:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\asus\AppData\Roaming\mozilla\Extensions
[2013/03/08 07:43:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\asus\AppData\Roaming\mozilla\Firefox\Profiles\til23mwg.default\extensions
[2013/03/08 07:34:49 | 000,000,000 | ---D | M] (Seznam lištička) -- C:\Users\asus\AppData\Roaming\mozilla\Firefox\Profiles\til23mwg.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2013/03/08 07:43:01 | 000,000,000 | ---D | M] (20-20 3D Viewer - IKEA) -- C:\Users\asus\AppData\Roaming\mozilla\Firefox\Profiles\til23mwg.default\extensions\
2020Player_IKEA@2020Technologies.com
[2013/11/15 03:30:36 | 000,034,072 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll
[2010/07/12 17:33:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
========== Chrome ==========
CHR - default_search_provider: Ask Search (Enabled)
CHR - default_search_provider: search_url =
http://www.search.ask.com/web?p2=%5EBBK ... earchTerms}
CHR - default_search_provider: suggest_url =
http://ss.websearch.ask.com/query?li=ff ... earchTerms},
CHR - homepage:
http://www.seznam.cz/?clid=16194
CHR - plugin: Error reading preferences file
CHR - Extension: Peněženka Google = C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Seznam Lištička - Rychlá volba = C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak\1.6.5_0\
O1 HOSTS File: ([2014/03/27 18:49:11 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O2 - BHO: (EWPBrowseObject Class) - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll ()
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4 - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O15 - HKU\S-1-5-21-2318946186-1565977137-1874626250-1000\..Trusted Domains: localhost ([]http in Internet)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9F3D4AA1-E73D-48EF-976F-4C4B4121FB32}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A659526D-AF5A-4F1A-AA7E-2D86CDA7DC17}: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.VP60 - C:\Windows\System32\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\System32\vp6vfw.dll (On2.com)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2014/03/28 09:34:58 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\asus\Desktop\OTL.exe
[2014/03/27 19:07:27 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\{1AD498A4-1331-4211-8319-BCB540FC03E0}
[2014/03/27 18:56:31 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\temp
[2014/03/27 18:49:15 | 000,000,000 | ---D | C] -- C:\$RECYCLE.BIN
[2014/03/27 16:24:32 | 000,000,000 | ---D | C] -- C:\windows\temp
[2014/03/27 06:09:21 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2014/03/26 16:57:44 | 000,000,000 | ---D | C] -- C:\Users\asus\Documents\Electronic Arts
[2014/03/26 14:13:46 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe
[2014/03/26 14:13:46 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe
[2014/03/26 14:13:45 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe
[2014/03/26 14:11:33 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/03/26 14:10:31 | 000,000,000 | ---D | C] -- C:\windows\erdnt
[2014/03/26 14:08:23 | 005,192,353 | R--- | C] (Swearware) -- C:\Users\asus\Desktop\ComboFix.exe
[2014/03/25 21:50:53 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\Avg2014
[2014/03/25 20:07:15 | 000,052,928 | ---- | C] (StdLib) -- C:\windows\System32\drivers\wStLibG.sys
[2014/03/25 18:40:00 | 000,000,000 | ---D | C] -- C:\Program Files\Seznam.cz
[2014/03/25 18:36:28 | 000,000,000 | ---D | C] -- C:\Program Files\PCData
[2014/03/25 18:34:44 | 000,000,000 | ---D | C] -- C:\Program Files\Surftastic
[2014/03/25 18:31:54 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\87542dc6-8938-4565-f241-7774dad144a1
[2014/03/25 17:38:37 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\Origin
[2014/03/25 17:38:34 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\Origin
[2014/03/25 17:38:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
[2014/03/25 17:38:28 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\CrashDumps
[2014/03/25 17:38:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Origin
[2014/03/25 17:38:23 | 000,000,000 | ---D | C] -- C:\Program Files\Origin Games
[2014/03/25 17:33:52 | 000,000,000 | ---D | C] -- C:\Program Files\Origin
[2014/03/25 17:03:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2014/03/25 16:34:11 | 000,000,000 | ---D | C] -- C:\Program Files\Electronic Arts
[2014/03/25 12:05:46 | 000,000,000 | ---D | C] -- C:\Users\asus\Desktop\RK_Quarantine
[2014/03/24 20:52:18 | 000,447,752 | ---- | C] (On2.com) -- C:\windows\System32\vp6vfw.dll
[2014/03/24 20:52:04 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft WSE
[2014/03/24 19:51:31 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/03/24 18:57:14 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software
[2014/03/24 18:55:45 | 000,000,000 | ---D | C] -- C:\Program Files\SmartTweak
[2014/03/24 18:52:56 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\Seznam.cz
[2014/03/24 16:48:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2014/03/24 16:33:49 | 000,243,128 | ---- | C] (Disc Soft Ltd) -- C:\windows\System32\drivers\dtsoftbus01.sys
[2014/03/24 16:33:03 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2014/03/24 16:16:27 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\AVG
[2014/03/24 16:13:25 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG
[2014/03/24 16:12:51 | 000,000,000 | -HSD | C] -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
[2014/03/24 16:11:06 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\DAEMON Tools Lite
[2014/03/24 16:09:49 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2014/03/23 21:06:20 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\Malwarebytes
[2014/03/23 21:04:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014/03/23 21:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014/03/23 21:03:38 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\Programs
[2014/03/23 17:52:02 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2014/03/23 17:52:01 | 000,000,000 | ---D | C] -- C:\rsit
[2014/03/22 10:57:15 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\uTorrent
[2014/03/21 21:05:55 | 000,000,000 | ---D | C] -- C:\Users\asus\Documents\The KMPlayer
[2014/03/21 19:46:53 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\Microsoft Games
[2014/03/21 19:36:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2014/03/21 19:35:34 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2014/03/21 19:35:01 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\windows\System32\javaws.exe
[2014/03/21 19:33:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014/03/21 19:33:33 | 000,094,632 | ---- | C] (Oracle Corporation) -- C:\windows\System32\WindowsAccessBridge.dll
[2014/03/21 19:33:32 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\windows\System32\javaw.exe
[2014/03/21 19:33:32 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\windows\System32\java.exe
[2014/03/21 19:19:03 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\DropboxMaster
[2014/03/21 19:17:34 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
[2014/03/21 19:12:45 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Roaming\Dropbox
[2014/03/21 18:58:11 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2014/03/15 08:07:32 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\qedit.dll
[2014/03/15 08:07:23 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollector.exe
[2014/03/15 08:07:23 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwproxystub.dll
[2014/03/15 08:07:23 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jsproxy.dll
[2014/03/15 08:07:23 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iernonce.dll
[2014/03/15 08:07:21 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2014/03/15 08:07:21 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9diag.dll
[2014/03/15 08:07:21 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollectorres.dll
[2014/03/15 08:07:20 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dll
[2014/03/15 08:07:15 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieui.dll
[2014/03/15 08:07:12 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieUnatt.exe
[2014/03/15 08:07:08 | 004,244,480 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9.dll
[2014/03/15 08:06:59 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2014/03/15 08:06:59 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2014/03/15 08:06:56 | 001,964,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\inetcpl.cpl
[2014/03/15 08:06:55 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2014/03/15 08:06:54 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ie4uinit.exe
[2014/03/15 08:06:54 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iesetup.dll
[2014/03/15 08:04:38 | 002,349,056 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
[2014/03/15 08:04:21 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wer.dll
[2014/03/15 08:02:01 | 000,000,000 | ---D | C] -- C:\Users\asus\Documents\Ostatní
[2014/03/06 12:37:57 | 000,000,000 | ---D | C] -- C:\Users\asus\AppData\Local\{ACAF6B20-1C93-43D0-A296-08649F5A593D}
[2014/03/06 11:59:23 | 000,000,000 | ---D | C] -- C:\windows\Migration
========== Files - Modified Within 30 Days ==========
[2014/03/28 09:41:57 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014/03/28 09:38:11 | 000,009,920 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/03/28 09:38:11 | 000,009,920 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/03/28 09:35:14 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\asus\Desktop\OTL.exe
[2014/03/28 09:31:14 | 000,000,932 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/28 09:30:38 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2014/03/28 09:30:24 | 1602,691,072 | -HS- | M] () -- C:\hiberfil.sys
[2014/03/27 22:30:00 | 000,000,936 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/27 22:22:20 | 000,781,383 | ---- | M] () -- C:\Users\asus\Desktop\RSIT.exe
[2014/03/27 22:10:00 | 000,000,914 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2014/03/27 18:49:11 | 000,000,027 | ---- | M] () -- C:\windows\System32\drivers\etc\hosts
[2014/03/26 19:26:06 | 000,648,242 | ---- | M] () -- C:\windows\System32\perfh005.dat
[2014/03/26 19:26:06 | 000,633,436 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2014/03/26 19:26:06 | 000,133,570 | ---- | M] () -- C:\windows\System32\perfc005.dat
[2014/03/26 19:26:06 | 000,115,298 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2014/03/26 16:55:40 | 000,002,182 | ---- | M] () -- C:\Users\Public\Desktop\The Sims™ 3 Po setmění.lnk
[2014/03/26 16:42:50 | 000,002,036 | ---- | M] () -- C:\Users\Public\Desktop\The Sims™ 3.lnk
[2014/03/26 14:08:24 | 005,192,353 | R--- | M] (Swearware) -- C:\Users\asus\Desktop\ComboFix.exe
[2014/03/25 20:07:16 | 000,052,928 | ---- | M] (StdLib) -- C:\windows\System32\drivers\wStLibG.sys
[2014/03/25 12:04:42 | 003,943,424 | ---- | M] () -- C:\Users\asus\Desktop\RogueKiller.exe
[2014/03/24 19:51:08 | 001,950,720 | ---- | M] () -- C:\Users\asus\Desktop\adwcleaner.exe
[2014/03/24 18:51:07 | 000,001,901 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2014/03/24 16:33:49 | 000,243,128 | ---- | M] (Disc Soft Ltd) -- C:\windows\System32\drivers\dtsoftbus01.sys
[2014/03/22 10:58:13 | 000,000,851 | ---- | M] () -- C:\Users\asus\Desktop\µTorrent.lnk
[2014/03/21 19:32:06 | 000,094,632 | ---- | M] (Oracle Corporation) -- C:\windows\System32\WindowsAccessBridge.dll
[2014/03/21 19:31:46 | 000,264,616 | ---- | M] (Oracle Corporation) -- C:\windows\System32\javaws.exe
[2014/03/21 19:31:45 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\windows\System32\javaw.exe
[2014/03/21 19:31:43 | 000,174,504 | ---- | M] (Oracle Corporation) -- C:\windows\System32\java.exe
[2014/03/21 18:53:18 | 000,002,198 | ---- | M] () -- C:\windows\epplauncher.mif
[2014/03/21 13:32:28 | 000,001,729 | ---- | M] () -- C:\Users\asus\Desktop\chrome – zástupce.lnk
[2014/03/21 13:27:11 | 000,463,168 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2014/03/15 08:11:06 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerApp.exe
[2014/03/15 08:11:06 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerCPLApp.cpl
[2014/03/01 05:11:20 | 002,724,864 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2014/03/01 05:10:48 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieetwcollectorres.dll
[2014/03/01 04:52:43 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iesetup.dll
[2014/03/01 04:51:53 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieetwproxystub.dll
[2014/03/01 04:43:55 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\jsproxy.dll
[2014/03/01 04:43:28 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iernonce.dll
[2014/03/01 04:40:17 | 000,440,832 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieui.dll
[2014/03/01 04:38:26 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieUnatt.exe
[2014/03/01 04:38:23 | 000,108,032 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieetwcollector.exe
[2014/03/01 04:37:35 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\jscript9diag.dll
[2014/03/01 04:31:30 | 000,646,144 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2014/03/01 04:25:29 | 000,208,896 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ie4uinit.exe
[2014/03/01 04:16:09 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2014/03/01 04:14:15 | 004,244,480 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\jscript9.dll
[2014/03/01 04:03:49 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2014/03/01 04:00:08 | 001,964,032 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\inetcpl.cpl
[2014/03/01 03:25:42 | 000,703,488 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dll
========== Files Created - No Company Name ==========
[2014/03/28 09:41:57 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014/03/27 22:21:55 | 000,781,383 | ---- | C] () -- C:\Users\asus\Desktop\RSIT.exe
[2014/03/26 16:55:40 | 000,002,182 | ---- | C] () -- C:\Users\Public\Desktop\The Sims™ 3 Po setmění.lnk
[2014/03/26 16:42:50 | 000,002,036 | ---- | C] () -- C:\Users\Public\Desktop\The Sims™ 3.lnk
[2014/03/26 14:13:46 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2014/03/26 14:13:46 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2014/03/26 14:13:45 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2014/03/26 14:13:45 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2014/03/26 14:13:45 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2014/03/25 12:04:27 | 003,943,424 | ---- | C] () -- C:\Users\asus\Desktop\RogueKiller.exe
[2014/03/24 19:50:55 | 001,950,720 | ---- | C] () -- C:\Users\asus\Desktop\adwcleaner.exe
[2014/03/24 18:51:07 | 000,001,901 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2014/03/22 10:58:13 | 000,000,851 | ---- | C] () -- C:\Users\asus\Desktop\µTorrent.lnk
[2014/03/20 22:04:04 | 000,001,729 | ---- | C] () -- C:\Users\asus\Desktop\chrome – zástupce.lnk
[2013/05/18 12:57:01 | 000,000,292 | ---- | C] () -- C:\Users\asus\AppData\Local\HamsterBookConverter.cfg
[2013/04/20 07:49:26 | 000,000,000 | ---- | C] () -- C:\Users\asus\teamviewer.exe
[2011/05/23 00:20:22 | 000,020,480 | ---- | C] () -- C:\Users\asus\AppData\Roaming\client.db
[2011/05/22 15:29:24 | 000,000,017 | ---- | C] () -- C:\Users\asus\AppData\Local\resmon.resmoncfg
[2011/01/13 14:07:47 | 000,003,584 | ---- | C] () -- C:\Users\asus\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/10/31 21:42:49 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/01/02 16:50:37 | 000,002,406 | ---- | C] () -- C:\Users\asus\AppData\Roaming\wklnhst.dat
========== ZeroAccess Check ==========
[2009/07/14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2010/12/26 21:02:01 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Asus
[2012/05/30 16:07:43 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Asus WebStorage
[2014/03/24 16:16:27 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\AVG
[2011/05/23 00:20:28 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\BS_Temp
[2012/12/11 18:05:28 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\calibre
[2014/03/24 18:55:26 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\DAEMON Tools Lite
[2014/03/21 19:20:03 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Dropbox
[2014/03/21 19:19:57 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\DropboxMaster
[2009/12/26 10:09:02 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\EeeStorageUploader
[2010/03/15 11:02:27 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\OpenOffice.org
[2011/05/21 19:39:56 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Opera
[2014/03/25 17:38:37 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Origin
[2014/03/25 18:40:19 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Seznam.cz
[2013/05/18 13:00:00 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Softplicity
[2011/05/22 20:16:39 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\temp
[2010/02/23 19:30:36 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Template
[2011/05/23 00:20:34 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Update
[2014/03/27 15:53:17 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\uTorrent
[2010/02/03 20:58:58 | 000,000,000 | ---D | M] -- C:\Users\asus\AppData\Roaming\Windows Live Writer
[2009/08/29 04:24:16 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\Asus WebStorage
[2009/08/29 04:24:16 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\Asus WebStorage
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009/07/14 05:53:46 | 000,032,596 | ---- | C] () -- C:\windows\Tasks\SCHEDLGU.TXT
[2009/07/14 05:53:47 | 000,000,006 | -H-- | C] () -- C:\windows\Tasks\SA.DAT
[2010/05/06 19:35:35 | 000,000,932 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
[2010/05/06 19:35:38 | 000,000,936 | ---- | C] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013/01/22 20:52:47 | 000,000,914 | ---- | C] () -- C:\windows\Tasks\Adobe Flash Player Updater.job
< >
< MD5 for: AGP440.SYS >
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\erdnt\cache\AGP440.sys
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\drivers\AGP440.sys
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_a97a2a0d0fbc6696\AGP440.sys
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_bc1a57271cf2f285\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\erdnt\cache\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_a5025d31bee4647c\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_df3f92057fcbe7a7\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_df26d4d57fdef5b0\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_dfc9143c98e9a6c4\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2010/11/20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\System32\autochk.exe
[2010/11/20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe
< MD5 for: CDROM.SYS >
[2010/11/20 09:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\drivers\cdrom.sys
[2010/11/20 09:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_6381e09675524225\cdrom.sys
[2010/11/20 09:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_61b0c5ce02098355\cdrom.sys
< MD5 for: CNGAUDIT.DLL >
[2009/07/14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\erdnt\cache\cngaudit.dll
[2009/07/14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\System32\cngaudit.dll
[2009/07/14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
< MD5 for: CRYPTSVC.DLL >
[2012/06/02 05:52:32 | 000,142,336 | ---- | M] (Microsoft Corporation) MD5=063DD65889D21035311463337BD268E7 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_788c7cc71232cc19\cryptsvc.dll
[2013/05/10 05:49:59 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=33ADF6E0853AB39EA1723BE82842C1D3 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_77d7a417f9359661\cryptsvc.dll
[2013/05/13 05:45:55 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=3897DFF247D9ED0006190349DE264E14 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_77d8a461f934afb8\cryptsvc.dll
[2013/07/09 14:57:37 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=6DB499DEFCC827317C5371164A7CDB27 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22380_none_7840d305126b8725\cryptsvc.dll
[2013/07/09 05:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\erdnt\cache\cryptsvc.dll
[2013/07/09 05:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\System32\cryptsvc.dll
[2013/07/09 05:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=7CA1BECEA5DE2643ADDAD32670E7A4C9 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18205_none_7812b70bf9088686\cryptsvc.dll
[2012/06/02 05:36:29 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=96C0E38905CFD788313BE8E11DAE3F2F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_77ddc9e5f93000db\cryptsvc.dll
[2010/11/20 13:18:24 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll
[2013/05/11 05:59:05 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=AC04D05309BB2C418D0D80B9FB014642 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_7883b3211239122d\cryptsvc.dll
[2013/05/10 06:06:21 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=E122AA1C9A3CC46FF9DDDE46E5EB0C58 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_7882b2d71239f8d6\cryptsvc.dll
[2013/10/05 02:52:03 | 000,142,848 | ---- | M] (Microsoft Corporation) MD5=F2D9242C3BBD1C36467FCAE1AE01733F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22473_none_784ea5b51260b460\cryptsvc.dll