OTL logfile created on: 2.5.2010 10:49:57 - Run 1
OTL by OldTimer - Version 3.2.4.0 Folder = C:\Documents and Settings\K\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000405 | Country: Czech Republic | Language: CSY | Date Format: d.M.yyyy
1 015,00 Mb Total Physical Memory | 606,00 Mb Available Physical Memory | 60,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 83,00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 20,57 Gb Total Space | 4,57 Gb Free Space | 22,23% Space Free | Partition Type: NTFS
Drive D: | 107,42 Gb Total Space | 34,84 Gb Free Space | 32,43% Space Free | Partition Type: NTFS
Drive E: | 104,89 Gb Total Space | 104,06 Gb Free Space | 99,20% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: KAMIL
Current User Name: K
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010.05.02 10:33:48 | 000,570,880 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\K\Desktop\OTL.exe
PRC - [2010.05.02 08:22:58 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010.03.30 11:16:12 | 001,107,336 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
PRC - [2010.02.19 19:43:34 | 000,380,928 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Application Updater\ApplicationUpdater.exe
PRC - [2009.11.25 00:51:40 | 000,081,000 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe
PRC - [2009.11.25 00:51:35 | 000,138,680 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe
PRC - [2009.11.25 00:51:21 | 000,254,040 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
PRC - [2009.11.25 00:48:48 | 000,352,920 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
PRC - [2009.11.25 00:43:56 | 000,018,752 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
PRC - [2009.08.16 15:01:16 | 000,222,968 | ---- | M] () -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe
PRC - [2009.04.30 13:23:26 | 000,090,112 | ---- | M] () -- D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
PRC - [2008.04.14 02:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
========== Modules (SafeList) ==========
MOD - [2010.05.02 10:33:48 | 000,570,880 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\K\Desktop\OTL.exe
MOD - [2009.11.25 00:50:32 | 000,139,264 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\AhJsctNs.dll
MOD - [2008.04.14 02:10:20 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
========== Win32 Services (SafeList) ==========
SRV - [2010.03.30 11:16:12 | 001,107,336 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2010.02.19 19:43:34 | 000,380,928 | ---- | M] (Spigot, Inc.) [Auto | Running] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater)
SRV - [2009.11.25 00:51:35 | 000,138,680 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast4\ashServ.exe -- (avast! Antivirus)
SRV - [2009.11.25 00:51:21 | 000,254,040 | ---- | M] (ALWIL Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe -- (avast! Mail Scanner)
SRV - [2009.11.25 00:48:48 | 000,352,920 | ---- | M] (ALWIL Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe -- (avast! Web Scanner)
SRV - [2009.11.25 00:43:56 | 000,018,752 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv)
SRV - [2009.08.16 15:01:16 | 000,222,968 | ---- | M] () [Auto | Running] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
SRV - [2009.04.30 13:23:26 | 000,090,112 | ---- | M] () [Auto | Running] -- D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe -- (OMSI download service)
========== Driver Services (SafeList) ==========
DRV - [2010.02.03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2010.01.14 18:59:14 | 000,033,824 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\oreans32.sys -- (oreans32)
DRV - [2009.11.25 00:50:59 | 000,094,160 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2009.11.25 00:50:12 | 000,114,768 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswSP.sys -- (aswSP)
DRV - [2009.11.25 00:50:00 | 000,020,560 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2009.11.25 00:49:07 | 000,048,560 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2009.11.25 00:48:57 | 000,023,120 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2009.11.25 00:47:54 | 000,027,408 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2008.05.16 06:33:14 | 000,115,752 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016unic.sys -- (s0016unic) Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM)
DRV - [2008.05.16 06:33:14 | 000,025,512 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016nd5.sys -- (s0016nd5) Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS)
DRV - [2008.05.16 06:33:14 | 000,015,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016mdfl.sys -- (s0016mdfl)
DRV - [2008.05.16 06:33:12 | 000,120,744 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016mdm.sys -- (s0016mdm)
DRV - [2008.05.16 06:33:12 | 000,114,216 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016mgmt.sys -- (s0016mgmt) Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM)
DRV - [2008.05.16 06:33:12 | 000,110,632 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016obex.sys -- (s0016obex)
DRV - [2008.05.16 06:33:12 | 000,089,256 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016bus.sys -- (s0016bus) Sony Ericsson Device 0016 driver (WDM)
DRV - [2008.04.13 20:45:12 | 000,060,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbaudio.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2008.04.13 18:36:05 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008.02.15 13:12:06 | 005,854,752 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\igxpmp32.sys -- (ialm)
DRV - [2008.01.09 13:28:34 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
DRV - [2007.05.10 18:28:08 | 004,419,584 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006.03.26 14:22:14 | 000,051,200 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
DRV - [2006.03.13 11:38:23 | 000,006,656 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
DRV - [2004.08.04 00:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2004.08.03 22:29:38 | 000,161,020 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\i81xnt5.sys -- (i81x)
DRV - [2001.08.17 12:49:06 | 000,058,592 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\i740nt5.sys -- (i740)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-220523388-1035525444-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://start.icq.com/
IE - HKU\S-1-5-21-220523388-1035525444-1801674531-1003\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-220523388-1035525444-1801674531-1003\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-220523388-1035525444-1801674531-1003\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-220523388-1035525444-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.startup.homepage: "
http://www.seznam.cz/"
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
youtubedownloader@mybrowserbar.com:1.0
FF - prefs.js..keyword.URL: "
http://search.yahoo.com/search?fr=green ... =937811&p="
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.05.02 08:36:27 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.05.02 08:23:13 | 000,000,000 | ---D | M]
[2009.10.08 10:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\mozilla\Extensions
[2010.05.01 21:31:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\mozilla\Firefox\Profiles\w7rmbwz7.default\extensions
[2010.05.01 21:19:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\mozilla\Firefox\Profiles\w7rmbwz7.default\extensions\
DTToolbar@toolbarnet.com
[2010.04.30 06:05:06 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\K\Application Data\Mozilla\FireFox\Profiles\w7rmbwz7.default\searchplugins\icqplugin-1.xml
[2010.04.01 10:19:30 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\K\Application Data\Mozilla\FireFox\Profiles\w7rmbwz7.default\searchplugins\icqplugin-2.xml
[2010.03.27 14:47:56 | 000,000,955 | ---- | M] () -- C:\Documents and Settings\K\Application Data\Mozilla\FireFox\Profiles\w7rmbwz7.default\searchplugins\icqplugin.xml
[2010.05.01 21:31:42 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.02.05 16:22:15 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.03.30 14:30:50 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010.05.02 08:23:05 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.05.02 08:23:05 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.05.02 08:23:06 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.05.02 08:23:06 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.05.02 08:23:06 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2010.04.23 06:29:12 | 000,001,222 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1
http://www.sophos.com
O1 - Hosts: 127.0.0.1
http://www.avast.com
O1 - Hosts: 127.0.0.1
http://www.mcafee.com
O1 - Hosts: 127.0.0.1
http://www.f-prot.com
O1 - Hosts: 127.0.0.1
http://www.f-secure.com
O1 - Hosts: 127.0.0.1
http://www.avp.com
O1 - Hosts: 127.0.0.1
http://www.kaspersky.com
O1 - Hosts: 127.0.0.1
http://www.bitdefender.com
O1 - Hosts: 127.0.0.1
http://www.my-etrust.com
O1 - Hosts: 127.0.0.1
http://www.eset.com
O1 - Hosts: 127.0.0.1
http://www.norman.com
O1 - Hosts: 127.0.0.1
http://www.grisoft.com
O1 - Hosts: 127.0.0.1
http://www.google.com
O1 - Hosts: 127.0.0.1
http://www.hotmail.com
O1 - Hosts: 127.0.0.1 mx1.hotmail.com
O1 - Hosts: 127.0.0.1 mx2.hotmail.com
O1 - Hosts: 127.0.0.1 messenger.hotmail.com
O1 - Hosts: 127.0.0.1
http://www.google.co.uk
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - No CLSID value found.
O2 - BHO: (no name) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - No CLSID value found.
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (no name) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - No CLSID value found.
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-220523388-1035525444-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_16)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 () -
http://www.xxyt2.com/webinc/GetCode.asp
O24 - Desktop Components:1 (My Current Home Page) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.10.05 14:42:29 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009.10.05 14:42:07 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.ac3acm - C:\WINDOWS\System32\AC3ACM.acm (fccHandler)
Drivers32: msacm.alf2cd - C:\WINDOWS\System32\alf2cd.acm (NCT Company)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.scg726 - C:\WINDOWS\System32\Scg726.acm (SHARP Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.voxacm160 - C:\WINDOWS\System32\vct3216.acm (Voxware, Inc.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\WINDOWS\System32\divx.dll (DivXNetworks, Inc.)
Drivers32: vidc.dvsd - C:\WINDOWS\System32\mcdvd_32.dll (MainConcept)
Drivers32: vidc.ffds - C:\Program Files\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.mp42 - C:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: vidc.mp43 - C:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: vidc.mpg4 - C:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: vidc.xvid - C:\WINDOWS\System32\xvidvfw.dll ()
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (55745656140070912)
========== Files/Folders - Created Within 30 Days ==========
[2010.05.02 10:33:40 | 000,570,880 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\K\Desktop\OTL.exe
[2010.05.02 10:14:39 | 000,396,288 | ---- | C] (Trend Micro Inc.) -- C:\Documents and Settings\K\Desktop\K.exe
[2010.05.02 10:14:38 | 000,000,000 | ---D | C] -- C:\rsit
[2010.05.02 10:11:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010.05.02 09:51:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood.Tmp
[2010.05.02 09:44:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2010.05.02 09:44:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010.05.02 09:44:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2010.05.02 09:44:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010.05.02 09:07:57 | 000,114,768 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2010.05.02 09:07:57 | 000,048,560 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2010.05.02 09:07:57 | 000,023,120 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2010.05.02 09:07:57 | 000,020,560 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010.05.02 09:07:56 | 000,094,160 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2010.05.02 09:07:56 | 000,093,424 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2010.05.02 09:07:56 | 000,027,408 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2010.05.02 09:07:54 | 000,097,480 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\AvastSS.scr
[2010.05.02 09:07:40 | 001,280,480 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
[2010.05.02 08:47:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K\Desktop\avast! Professional Edition 4[1].8.1229 Full + Key [XP,Vista]
[2010.05.02 08:43:33 | 000,396,288 | ---- | C] (Trend Micro Inc.) -- C:\Documents and Settings\K\Desktop\hijackthis.exe
[2010.05.02 08:32:59 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2010.05.02 08:32:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2010.05.02 08:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft
[2010.05.02 08:18:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Lavasoft
[2010.05.02 08:00:47 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\K\Recent
[2010.05.02 07:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010.05.01 22:06:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2010.05.01 22:04:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\$regcmp$
[2010.05.01 21:55:23 | 000,000,000 | ---D | C] -- C:\Program Files\Registry Clean Expert
[2010.05.01 21:07:33 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2010.04.24 13:35:59 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cliconfg.rll
[2010.04.24 13:35:39 | 000,086,016 | ---- | C] (Sipro Lab Telecom Inc.) -- C:\WINDOWS\System32\sl_anet.acm
[2010.04.24 13:35:38 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sqlsrv32.rll
[2010.04.24 13:34:57 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010.04.20 15:18:46 | 000,000,000 | R--D | C] -- C:\Documents and Settings\K\My Documents\My Videos
[2010.04.19 14:06:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K\Desktop\písničky
[2010.04.10 12:31:42 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Toolbar
[2010.04.10 12:20:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K\Application Data\DAEMON Tools Lite
[2010.04.09 22:06:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K\Local Settings\Application Data\ESET
[2010.04.05 08:01:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K\Application Data\Facebook
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010.05.02 10:33:48 | 000,570,880 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\K\Desktop\OTL.exe
[2010.05.02 10:32:39 | 004,194,304 | ---- | M] () -- C:\Documents and Settings\K\ntuser.dat
[2010.05.02 10:14:20 | 000,781,909 | ---- | M] () -- C:\Documents and Settings\K\Desktop\RSIT.exe
[2010.05.02 10:13:15 | 000,356,120 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.05.02 10:13:15 | 000,311,604 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.05.02 10:13:15 | 000,039,992 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.05.02 10:11:26 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.05.02 10:11:21 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.05.02 10:11:00 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.05.02 10:10:54 | 000,118,152 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.05.02 10:10:02 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\K\ntuser.ini
[2010.05.02 10:09:50 | 004,276,454 | -H-- | M] () -- C:\Documents and Settings\K\Local Settings\Application Data\IconCache.db
[2010.05.02 09:31:42 | 000,250,048 | ---- | M] () -- C:\ntldr
[2010.05.02 09:10:51 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010.05.02 08:51:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2010.05.02 08:43:34 | 000,396,288 | ---- | M] (Trend Micro Inc.) -- C:\Documents and Settings\K\Desktop\K.exe
[2010.05.02 08:43:34 | 000,396,288 | ---- | M] (Trend Micro Inc.) -- C:\Documents and Settings\K\Desktop\hijackthis.exe
[2010.05.01 22:07:01 | 000,000,530 | ---- | M] () -- C:\WINDOWS\win.ini
[2010.05.01 22:07:01 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.05.01 22:07:01 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2010.05.01 11:23:11 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010.04.27 19:51:52 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
[2010.04.23 06:29:12 | 000,000,027 | ---- | M] () -- C:\Documents and Settings\K\My Documents\c
[2010.04.23 06:29:09 | 000,000,007 | ---- | M] () -- C:\31854.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | M] () -- C:\30448.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | M] () -- C:\27781.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | M] () -- C:\19964.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | M] () -- C:\1606.bmp
[2010.04.23 06:29:09 | 000,000,006 | ---- | M] () -- C:\25819.bmp
[2010.04.23 06:29:09 | 000,000,006 | ---- | M] () -- C:\20440.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\8936.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\6593.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\24332.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\23952.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\18726.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\14612.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\1453.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\1374.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\11206.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | M] () -- C:\10552.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\8624.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\6237.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\30874.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\30037.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\28007.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\25815.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\2563.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\25258.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\25032.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\22714.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\16952.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | M] () -- C:\1224.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | M] () -- C:\32694.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | M] () -- C:\32615.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | M] () -- C:\24322.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | M] () -- C:\11618.bmp
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\9482.20775
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\9453.12256
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\8806.15735
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\8311.12988
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\7972.17652
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\7469.31085
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\7378.24772
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\723.25307
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\6926.4341
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\6423.615
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\5636.24624
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\5371.9682
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\4971.2218
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\4931.20403
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\4728.18670
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\4382.4853
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\3300.4103
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\32542.15983
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\32478.15912
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\32162.21022
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\31735.25758
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\31503.19946
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\30561.9443
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\30293.17923
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\29441.11216
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\28728.7264
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\28541.32004
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\28459.22907
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\28280.9928
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\27508.4699
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\27407.15520
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\27065.29419
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\26994.27374
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\26960.26800
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\26957.16650
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\2631.3726
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\26057.10796
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\25769.7927
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\25740.29879
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\24789.23326
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\24013.10884
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\22894.19275
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\22506.14887
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\21449.26024
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\21310.400
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\20946.13949
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\20442.24549
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\19178.22668
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\18635.18793
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\18277.18278
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\18236.16752
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\18034.11661
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\16507.21496
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\16443.26219
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\15971.15782
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\15269.18333
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\14522.5425
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\14227.1090
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\13533.10760
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\13516.14094
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\12462.31910
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\12083.10755
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\11817.7480
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\11190.27474
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\11158.27713
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\10706.20335
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\105.2718
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\10276.7549
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\10202.8022
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\10169.4312
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\10154.15388
[2010.04.23 06:28:55 | 000,017,719 | ---- | M] () -- C:\WINDOWS\System32\10018.9738
[2010.04.18 19:11:38 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.05.02 10:14:19 | 000,781,909 | ---- | C] () -- C:\Documents and Settings\K\Desktop\RSIT.exe
[2010.05.02 08:48:17 | 000,380,928 | ---- | C] () -- C:\WINDOWS\System32\actskin4.ocx
[2010.05.02 08:23:44 | 000,000,472 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2010.04.27 19:51:52 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
[2010.04.27 19:51:52 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
[2010.04.24 13:35:57 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2010.04.24 13:35:33 | 000,265,948 | ---- | C] () -- C:\WINDOWS\System32\locale.nls
[2010.04.24 13:35:32 | 000,023,044 | ---- | C] () -- C:\WINDOWS\System32\sorttbls.nls
[2010.04.24 13:35:24 | 000,250,048 | ---- | C] () -- C:\ntldr
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\9482.20775
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\8806.15735
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\8311.12988
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\7378.24772
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\5636.24624
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\5371.9682
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\29441.11216
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\27407.15520
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\27065.29419
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\26994.27374
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\22506.14887
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\21310.400
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\18277.18278
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\18034.11661
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\15971.15782
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\15269.18333
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\12462.31910
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\11817.7480
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\11158.27713
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\105.2718
[2010.04.23 06:29:14 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\10154.15388
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\9453.12256
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\7972.17652
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\7469.31085
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\723.25307
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\6423.615
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\4971.2218
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\4728.18670
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\4382.4853
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\3300.4103
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\32542.15983
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\32478.15912
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\31735.25758
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\31503.19946
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\30561.9443
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\28728.7264
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\28541.32004
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\27508.4699
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\26960.26800
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\26957.16650
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\2631.3726
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\26057.10796
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\25740.29879
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\24789.23326
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\24013.10884
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\22894.19275
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\21449.26024
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\20946.13949
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\20442.24549
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\18236.16752
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\16507.21496
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\14522.5425
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\14227.1090
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\13533.10760
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\13516.14094
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\11190.27474
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\10706.20335
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\10276.7549
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\10202.8022
[2010.04.23 06:29:13 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\10018.9738
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\6926.4341
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\4931.20403
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\32162.21022
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\30293.17923
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\28459.22907
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\28280.9928
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\25769.7927
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\19178.22668
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\18635.18793
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\System32\16443.26219
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\12083.10755
[2010.04.23 06:29:12 | 000,017,719 | ---- | C] () -- C:\WINDOWS\10169.4312
[2010.04.23 06:29:12 | 000,000,027 | ---- | C] () -- C:\Documents and Settings\K\My Documents\c
[2010.04.23 06:29:09 | 000,000,007 | ---- | C] () -- C:\31854.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | C] () -- C:\30448.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | C] () -- C:\27781.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | C] () -- C:\19964.bmp
[2010.04.23 06:29:09 | 000,000,007 | ---- | C] () -- C:\1606.bmp
[2010.04.23 06:29:09 | 000,000,006 | ---- | C] () -- C:\25819.bmp
[2010.04.23 06:29:09 | 000,000,006 | ---- | C] () -- C:\20440.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\8936.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\6593.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\24332.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\23952.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\18726.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\14612.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\1453.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\1374.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\11206.bmp
[2010.04.23 06:29:08 | 000,000,007 | ---- | C] () -- C:\10552.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\8624.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\6237.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\30874.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\30037.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\28007.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\25815.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\2563.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\25258.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\25032.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\22714.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\16952.bmp
[2010.04.23 06:29:08 | 000,000,006 | ---- | C] () -- C:\1224.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | C] () -- C:\32694.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | C] () -- C:\32615.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | C] () -- C:\24322.bmp
[2010.04.23 06:29:08 | 000,000,005 | ---- | C] () -- C:\11618.bmp
[2010.04.05 21:20:34 | 004,194,304 | ---- | C] () -- C:\Documents and Settings\K\ntuser.dat
[2010.01.14 18:59:14 | 000,033,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\oreans32.sys
[2010.01.14 18:57:09 | 000,524,288 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2010.01.14 18:57:09 | 000,139,264 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009.11.28 11:33:07 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2009.10.17 11:32:11 | 000,000,404 | ---- | C] () -- C:\WINDOWS\level.ini
[2009.10.17 11:25:58 | 000,000,032 | ---- | C] () -- C:\WINDOWS\CD-Start.INI
[2009.10.08 11:01:10 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll
[2009.10.08 10:31:30 | 000,000,160 | ---- | C] () -- C:\WINDOWS\MyDrivers.ini
========== LOP Check ==========
[2010.05.02 08:32:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009.10.27 07:05:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ashampoo
[2009.12.25 11:15:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BVRP Software
[2009.10.08 10:57:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010.02.05 16:22:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2009.12.22 11:58:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009.10.16 11:07:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TrackMania
[2009.10.17 12:32:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Ankh
[2009.10.27 07:06:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Ashampoo
[2010.04.10 12:37:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\DAEMON Tools Lite
[2009.10.08 10:59:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\ESET
[2010.04.05 08:01:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Facebook
[2009.10.08 10:51:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\GetRightToGo
[2010.04.22 11:49:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\ICQ
[2009.12.10 19:04:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\OpenOffice.org
[2009.11.09 21:15:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\můj účet\Application Data\ESET
[2010.02.18 14:38:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\můj účet\Application Data\ICQ
[2010.05.02 08:51:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
========== Purity Check ==========
========== Custom Scans ==========
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 02:12:16 | 000,015,360 | ---- | M] (Microsoft Corporation)
< c:\windows\*.* /U >
[6 c:\windows\*.tmp files -> c:\windows\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
[2010.05.02 08:32:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2010.01.18 07:53:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Apple
[2009.10.15 12:48:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Apple Computer
[2009.10.27 07:05:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ashampoo
[2009.12.25 11:15:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BVRP Software
[2009.10.08 10:57:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010.02.05 16:22:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2010.05.02 08:51:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Lavasoft
[2010.04.18 19:11:38 | 000,000,000 | --SD | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2009.12.25 12:24:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Skype
[2009.12.25 11:14:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony Ericsson
[2009.12.22 11:58:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009.10.16 11:07:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TrackMania
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2009.11.17 18:12:50 | 000,386,304 | ---- | M] (Acresso Software Inc.) -- C:\Documents and Settings\All Users\Application Data\BVRP Software\LiveUpdate\LiveUpdate\Temp\setup.exe
< %APPDATA%\*. >
[2009.10.08 10:22:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Adobe
[2009.10.17 12:32:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Ankh
[2009.10.15 14:21:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Apple Computer
[2009.10.27 07:06:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Ashampoo
[2010.04.10 12:37:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\DAEMON Tools Lite
[2009.10.08 10:59:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\ESET
[2010.04.05 08:01:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Facebook
[2009.10.08 10:51:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\GetRightToGo
[2010.03.31 05:53:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Hamachi
[2010.04.22 11:49:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\ICQ
[2009.10.05 14:47:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Identities
[2009.12.25 11:13:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\InstallShield
[2009.10.08 10:22:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Macromedia
[2009.10.08 11:04:21 | 000,000,000 | --SD | M] -- C:\Documents and Settings\K\Application Data\Microsoft
[2009.10.08 10:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Mozilla
[2009.12.10 19:04:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\OpenOffice.org
[2009.10.17 11:37:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\SecuROM
[2010.05.01 21:20:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Skype
[2010.05.01 16:07:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\skypePM
[2009.10.12 18:41:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\Sun
[2009.10.05 14:51:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K\Application Data\WinRAR
< %APPDATA%\*.exe /s >
[2010.04.05 08:01:40 | 000,050,354 | ---- | M] (Facebook, Inc.) -- C:\Documents and Settings\K\Application Data\Facebook\uninstall.exe