Tak jsem ten soubor našel a byl ve složce C:\Users\uživatel\Desktop
Při pokusu ho sem dosta to píše "Vaše zpráva obsahuje 76466 znaků. Maximální povolený počet znaků je 60000."
Tak ho rozdělím.
OTL logfile created on: 29.9.2010 17:30:17 - Run 1
OTL by OldTimer - Version 3.2.14.1 Folder = C:\Users\pater\Desktop
64bit- An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
4,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 52,00% Memory free
8,00 Gb Paging File | 6,00 Gb Available in Paging File | 72,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 231,29 Gb Total Space | 143,84 Gb Free Space | 62,19% Space Free | Partition Type: NTFS
Drive D: | 234,37 Gb Total Space | 201,56 Gb Free Space | 86,00% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 4,00 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: DEMON
Current User Name: pater
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010.09.29 17:26:24 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\pater\Desktop\OTL.exe
PRC - [2010.09.28 16:56:57 | 003,037,696 | ---- | M] (Crawler.com) -- C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
PRC - [2010.09.09 16:47:56 | 000,232,912 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10i_ActiveX.exe
PRC - [2010.09.07 17:12:02 | 002,838,912 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2010.08.05 16:59:46 | 000,066,872 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2010.07.24 09:36:57 | 000,304,304 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
PRC - [2010.07.24 09:12:36 | 000,039,408 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
PRC - [2010.07.11 00:54:32 | 000,408,936 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
PRC - [2009.10.13 19:03:04 | 000,716,800 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe
PRC - [2009.03.05 16:07:20 | 002,260,480 | RHS- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
PRC - [2009.02.23 19:43:12 | 000,576,000 | ---- | M] (MagicISO, Inc.) -- C:\Program Files (x86)\MagicDisc\MagicDisc.exe
PRC - [2009.01.26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
PRC - [2005.08.11 16:30:30 | 000,081,920 | ---- | M] (Macrovision Corporation) -- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe
========== Modules (SafeList) ==========
MOD - [2010.09.29 17:26:24 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\pater\Desktop\OTL.exe
MOD - [2009.07.14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msscript.ocx
MOD - [2009.07.14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV:
64bit: - File not found [Auto | Running] -- C:\Windows\SysNative\PnkBstrA.exe -- (PnkBstrA)
SRV:
64bit: - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
SRV:
64bit: - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
SRV:
64bit: - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV:
64bit: - [2009.07.14 03:41:56 | 000,195,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\umrdp.dll -- (UmRdpService)
SRV:
64bit: - [2009.07.14 03:41:54 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\StorSvc.dll -- (StorSvc)
SRV:
64bit: - [2009.07.14 03:41:53 | 001,361,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\PeerDistSvc.dll -- (PeerDistSvc)
SRV:
64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:
64bit: - [2009.07.14 03:40:24 | 000,689,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cscsvc.dll -- (CscService)
SRV:
64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2010.09.28 16:56:57 | 001,033,255 | ---- | M] (Xacti LLC) [Auto | Running] -- C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe -- (sp_rssrv)
SRV - [2010.08.05 16:59:46 | 000,066,872 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010.07.24 11:42:51 | 000,069,632 | ---- | M] (Macromedia) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe -- (Macromedia Licensing Service)
SRV - [2010.03.18 14:27:14 | 000,138,576 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_64)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.01.26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Running] -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
SRV - [2008.10.25 11:44:08 | 000,065,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service)
SRV - [2005.02.09 12:59:00 | 000,014,165 | ---- | M] (Pinnacle Systems GmbH) [Auto | Stopped] -- C:\Windows\SysWOW64\drivers\Pclepci.sys -- (PCLEPCI)
========== Driver Services (SafeList) ==========
DRV:
64bit: - [2010.09.07 16:47:33 | 000,061,008 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:
64bit: - [2010.09.04 23:23:13 | 000,033,344 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:
64bit: - [2010.08.25 16:05:41 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:
64bit: - [2010.07.07 11:26:46 | 000,050,696 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\stflt.sys -- (sp_rsdrv2)
DRV:
64bit: - [2010.06.10 11:45:38 | 001,605,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:
64bit: - [2010.04.27 16:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmVirHid.sys -- (WmVirHid)
DRV:
64bit: - [2010.04.27 16:57:14 | 000,036,936 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmHidLo.sys -- (WmHidLo)
DRV:
64bit: - [2010.04.27 16:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmBEnum.sys -- (WmBEnum)
DRV:
64bit: - [2010.04.27 14:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmXlCore.sys -- (WmXlCore)
DRV:
64bit: - [2010.04.27 14:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmFilter.sys -- (WmFilter)
DRV:
64bit: - [2009.12.30 12:21:24 | 000,031,800 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\revoflt.sys -- (Revoflt)
DRV:
64bit: - [2009.09.28 11:22:00 | 000,395,264 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:
64bit: - [2009.07.14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2009.07.14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009.07.14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2009.07.14 03:45:55 | 000,200,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmbus.sys -- (vmbus)
DRV:
64bit: - [2009.07.14 03:45:55 | 000,046,672 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vmstorfl.sys -- (storflt)
DRV:
64bit: - [2009.07.14 03:45:55 | 000,034,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\storvsc.sys -- (storvsc)
DRV:
64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009.07.14 01:42:58 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vms3cap.sys -- (s3cap)
DRV:
64bit: - [2009.07.14 01:42:44 | 000,021,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VMBusHID.sys -- (VMBusHID)
DRV:
64bit: - [2009.07.14 01:24:27 | 000,514,048 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\csc.sys -- (CSC)
DRV:
64bit: - [2009.06.10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:
64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009.05.28 15:38:04 | 000,013,824 | ---- | M] (SAMSUNG ELECTRONICS) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SABI.sys -- (SABI)
DRV:
64bit: - [2009.02.24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus)
DRV - [2009.02.24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\mcdbus.sys -- (mcdbus)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1394808611-132047784-1634663889-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.seznam.cz/
IE - HKU\S-1-5-21-1394808611-132047784-1634663889-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://www.msn.cz/
IE - HKU\S-1-5-21-1394808611-132047784-1634663889-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
IE - HKU\S-1-5-21-1394808611-132047784-1634663889-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 05 4A E1 D6 87 2A CB 01 [binary data]
IE - HKU\S-1-5-21-1394808611-132047784-1634663889-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "
http://www.seznam.cz/"
FF - HKLM\software\mozilla\Mozilla Firefox 2.0.0.12\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010.09.04 21:21:48 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 2.0.0.12\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010.09.04 21:21:48 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.4\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2010.09.22 16:28:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.4\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
[2010.07.23 22:13:53 | 000,000,000 | ---D | M] -- C:\Users\pater\AppData\Roaming\Mozilla\Extensions
[2010.07.23 22:13:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\pater\AppData\Roaming\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2010.08.31 15:30:24 | 000,000,000 | ---D | M] -- C:\Users\pater\AppData\Roaming\Mozilla\Firefox\Profiles\0o7oxozv.default\extensions
[2010.09.04 21:21:13 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010.09.04 21:21:48 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox\extensions\
talkback@mozilla.org
[2008.02.02 12:19:57 | 000,067,696 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\jar50.dll
[2008.02.02 12:19:57 | 000,054,376 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\jsd3250.dll
[2008.02.02 12:19:57 | 000,034,952 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\myspell.dll
[2008.02.02 12:19:57 | 000,046,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\spellchk.dll
[2008.02.02 12:19:57 | 000,172,144 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\xpinstal.dll
[2006.06.04 22:11:07 | 000,001,118 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\centrum-cz.xml
[2006.06.04 22:11:07 | 000,000,661 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2006.06.04 22:11:07 | 000,001,674 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\mall-cz.xml
[2006.08.25 17:16:33 | 000,001,302 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\seznam-cz.xml
[2006.06.04 22:11:07 | 000,000,765 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\slunecnice-cz.xml
O1 HOSTS File: ([2010.09.07 08:32:31 | 000,417,891 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1
www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.com
O1 - Hosts: 127.0.0.1
www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1
www.123fporn.info
O1 - Hosts: 14417 more lines...
O2:
64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:
64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg64.dll (Google Inc.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll (Google Inc.)
O3:
64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:
64bit: - HKLM\..\Toolbar: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3:
64bit: - HKU\S-1-5-21-1394808611-132047784-1634663889-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKU\S-1-5-21-1394808611-132047784-1634663889-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O4:
64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe (Macrovision Corporation)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1394808611-132047784-1634663889-1000..\Run: [ISUSPM Startup] C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
O4 - HKU\S-1-5-21-1394808611-132047784-1634663889-1000..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKU\S-1-5-21-1394808611-132047784-1634663889-1000..\Run: [SpywareTerminatorUpdate] C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe (Crawler.com)
O4 - HKU\S-1-5-21-1394808611-132047784-1634663889-1000..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - Startup: C:\Users\pater\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:
64bit: - Extra context menu item: Sothink SWF Catcher - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O8:
64bit: - Extra context menu item: WikiKomentáře Google... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O8 - Extra context menu item: WikiKomentáře Google... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O9 - Extra 'Tools' menuitem : Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm ()
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O18:
64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.09.09 18:08:04 | 000,000,107 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009.11.27 15:40:12 | 000,345,360 | R--- | M] (Valve Corporation) - G:\autorun.exe -- [ CDFS ]
O32 - AutoRun File - [2010.03.23 19:20:23 | 000,000,050 | R--- | M] () - G:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{faec843e-b051-11df-b7d6-b482fe381f3d}\Shell - "" = AutoRun
O33 - MountPoints2\{faec843e-b051-11df-b7d6-b482fe381f3d}\Shell\AutoRun\command - "" = H:\setup.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs:
64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
Drivers32:
64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.i420 - vdrcodec.dll File not found
Drivers32: VIDC.MJPG - C:\Windows\SysWow64\pvmjpg30.dll (Pegasus Imaging Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2010.09.29 17:26:19 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\pater\Desktop\OTL.exe
[2010.09.28 16:56:56 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Roaming\Spyware Terminator
[2010.09.28 16:56:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Spyware Terminator
[2010.09.28 16:56:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spyware Terminator
[2010.09.28 13:43:39 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2010.09.28 13:43:36 | 000,000,000 | ---D | C] -- C:\rsit
[2010.09.28 01:06:07 | 000,000,000 | ---D | C] -- C:\Users\pater\DoctorWeb
[2010.09.27 18:47:11 | 000,000,000 | ---D | C] -- C:\Users\pater\Application Data
[2010.09.21 23:47:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\jv16 PowerTools 2009
[2010.09.21 22:15:03 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Users\pater\Desktop\iertutil.dll
[2010.09.19 16:50:15 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Roaming\IcoFX
[2010.09.19 16:50:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IcoFX 1.6
[2010.09.19 04:33:42 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\Corel User Files
[2010.09.18 06:48:43 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2010.09.18 06:48:43 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2010.09.18 06:48:43 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2010.09.18 06:48:43 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2010.09.18 06:48:42 | 004,068,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2010.09.18 06:48:42 | 003,181,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2010.09.18 06:48:42 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2010.09.18 06:48:08 | 001,844,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2010.09.18 06:48:08 | 001,543,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2010.09.18 06:48:08 | 001,172,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2010.09.18 06:48:08 | 001,076,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2010.09.18 06:48:08 | 000,899,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2010.09.18 06:48:08 | 000,737,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll
[2010.09.18 06:48:08 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2010.09.18 06:48:08 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2010.09.18 06:47:36 | 000,466,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2010.09.18 06:47:36 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2010.09.18 06:47:36 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsRasterService.dll
[2010.09.18 06:47:36 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2010.09.18 06:46:57 | 001,863,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ExplorerFrame.dll
[2010.09.18 06:46:57 | 001,495,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2010.09.18 06:46:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Feedback Tool
[2010.09.15 08:20:20 | 002,441,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iertutil.dll
[2010.09.14 19:30:03 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Roaming\KASTNER software
[2010.09.14 07:35:54 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\GRIL
[2010.09.09 20:16:29 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\Converted_GIF
[2010.09.09 20:14:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GIF to AVI SWF Converter
[2010.09.09 20:14:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArmDic
[2010.09.09 18:03:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ScreenShots
[2010.09.09 10:29:08 | 000,000,000 | ---D | C] -- C:\Users\pater\Desktop\Emicsoft_Video_Converter_4.1.16
[2010.09.09 09:50:26 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\Emicsoft Studio
[2010.09.09 09:50:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Emicsoft Studio
[2010.09.08 14:28:52 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\Pinnacle Studio
[2010.09.08 14:24:41 | 000,401,408 | ---- | C] (Pegasus Imaging Corporation) -- C:\Windows\SysWow64\pvmjpg30.dll
[2010.09.08 14:24:40 | 001,712,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\GDIPLUS.DLL
[2010.09.08 14:24:40 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml4a.dll
[2010.09.08 14:24:11 | 000,233,472 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysWow64\DiskIO.dll
[2010.09.08 14:24:11 | 000,184,320 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysWow64\RALMain.dll
[2010.09.08 14:24:11 | 000,126,976 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysWow64\AVIPrAx.dll
[2010.09.08 14:24:11 | 000,073,728 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysWow64\MMAviAx.dll
[2010.09.08 14:24:11 | 000,041,984 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysWow64\cacheX.dll
[2010.09.08 14:24:11 | 000,032,768 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysWow64\MLPagAx.dll
[2010.09.08 14:24:09 | 002,079,232 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\LTCLR13s.dll
[2010.09.08 14:24:09 | 001,693,696 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\LTCLR13n.dll
[2010.09.08 14:24:09 | 001,013,248 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\Ltwvc13n.dll
[2010.09.08 14:24:09 | 000,930,992 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\Ltr13n.dll
[2010.09.08 14:24:09 | 000,453,120 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\ltkrn13n.dll
[2010.09.08 14:24:09 | 000,306,352 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\Ltrio13n.dll
[2010.09.08 14:24:09 | 000,153,088 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\ltfil13n.DLL
[2010.09.08 14:24:08 | 000,884,736 | ---- | C] (Fellowes, Inc.) -- C:\Windows\SysWow64\LMUIRes.dll
[2010.09.08 14:24:08 | 000,409,600 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\LFCMP13s.DLL
[2010.09.08 14:24:08 | 000,393,216 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\LFCMP13n.DLL
[2010.09.08 14:24:08 | 000,110,080 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\lfpsd13s.dll
[2010.09.08 14:24:08 | 000,070,144 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\lfbmp13s.dll
[2010.09.08 14:24:08 | 000,064,512 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\lftga13s.dll
[2010.09.08 14:24:08 | 000,030,208 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\lfbmp13n.dll
[2010.09.08 14:24:08 | 000,024,576 | ---- | C] (LEAD Technologies, Inc.) -- C:\Windows\SysWow64\lftga13n.dll
[2010.09.08 14:24:08 | 000,012,288 | ---- | C] (Fellowes, Inc.) -- C:\Windows\SysWow64\LMLRes.dll
[2010.09.08 14:22:23 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\My Projects
[2010.09.08 14:22:23 | 000,000,000 | ---D | C] -- C:\Users\pater\My Documents
[2010.09.08 14:21:56 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ATL70.DLL
[2010.09.08 14:21:55 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\My Projects
[2010.09.08 14:19:25 | 000,014,165 | ---- | C] (Pinnacle Systems GmbH) -- C:\Windows\SysWow64\drivers\Pclepci.sys
[2010.09.08 14:19:17 | 000,041,219 | ---- | C] (Pinnacle Systems) -- C:\Windows\RSETPATH.exe
[2010.09.08 14:18:47 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFC70.DLL
[2010.09.08 14:18:47 | 000,964,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFC70U.DLL
[2010.09.08 14:18:47 | 000,487,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSVCP70.DLL
[2010.09.08 14:18:47 | 000,344,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSVCR70.DLL
[2010.09.08 14:18:47 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSVCI70.DLL
[2010.09.08 14:18:47 | 000,049,152 | ---- | C] (Pinnacle Systems) -- C:\Windows\SysWow64\PCLEGetGuid.dll
[2010.09.08 14:17:17 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Pinnacle Studio
[2010.09.08 14:17:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Pinnacle Studio
[2010.09.08 14:17:17 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Pinnacle
[2010.09.08 14:16:29 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Roaming\InstallShield
[2010.09.08 14:15:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Pinnacle
[2010.09.08 12:32:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
[2010.09.08 11:58:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Pinnacle
[2010.09.07 11:54:45 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\%APPDATA%
[2010.09.06 20:36:29 | 000,000,000 | ---D | C] -- C:\Users\pater\Hry
[2010.09.06 15:48:59 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Roaming\skypePM
[2010.09.06 15:48:11 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Roaming\Skype
[2010.09.06 15:47:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2010.09.06 15:47:42 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2010.09.06 15:47:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2010.09.04 23:38:51 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Local\Logitech
[2010.09.04 23:36:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logitech
[2010.09.04 23:23:44 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Roaming\Hamachi
[2010.09.04 23:23:13 | 000,033,344 | ---- | C] (LogMeIn, Inc.) -- C:\Windows\SysNative\drivers\hamachi.sys
[2010.09.04 23:23:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hamachi
[2010.09.04 22:15:11 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\rFactor
[2010.09.04 22:10:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Trymedia
[2010.09.04 21:56:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\rFactor
[2010.09.01 12:15:41 | 000,000,000 | ---D | C] -- C:\Users\pater\Desktop\Adobe.Photoshop.CS4.Compact.Edition
[2010.08.31 15:30:23 | 000,000,000 | ---D | C] -- C:\Users\pater\AppData\Local\Mozilla
[2010.08.31 09:13:56 | 000,000,000 | ---D | C] -- C:\Users\pater\Documents\Artisteer Templates
[2010.08.30 21:01:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Artisteer 2
[1 C:\Users\pater\AppData\Roaming\*.tmp files -> C:\Users\pater\AppData\Roaming\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010.09.29 17:33:05 | 006,291,456 | -HS- | M] () -- C:\Users\pater\ntuser.dat
[2010.09.29 17:26:24 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\pater\Desktop\OTL.exe
[2010.09.29 16:36:00 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010.09.29 16:17:27 | 000,000,948 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010.09.29 16:12:01 | 000,000,410 | ---- | M] () -- C:\Windows\tasks\Final Media Player Update Checker.job
[2010.09.29 16:11:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.09.28 20:41:27 | 001,497,474 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010.09.28 20:41:27 | 000,639,986 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2010.09.28 20:41:27 | 000,624,776 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010.09.28 20:41:27 | 000,126,866 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2010.09.28 20:41:27 | 000,110,414 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010.09.28 18:22:17 | 000,001,122 | ---- | M] () -- C:\Users\Public\Desktop\Spyware Terminator.lnk
[2010.09.28 14:39:22 | 000,014,848 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.09.28 14:39:22 | 000,014,848 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.09.28 14:32:22 | 000,001,852 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2010.09.28 14:32:22 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2010.09.28 14:32:17 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.09.28 14:31:02 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{c877379f-ca09-11df-bfa7-b482fe381f3d}.TMContainer00000000000000000002.regtrans-ms
[2010.09.28 14:31:02 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{c877379f-ca09-11df-bfa7-b482fe381f3d}.TMContainer00000000000000000001.regtrans-ms
[2010.09.28 14:31:02 | 000,065,536 | -HS- | M] () -- C:\Users\pater\ntuser.dat{c877379f-ca09-11df-bfa7-b482fe381f3d}.TM.blf
[2010.09.28 14:27:48 | 000,458,056 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010.09.28 14:27:34 | 3111,555,072 | -HS- | M] () -- C:\hiberfil.sys
[2010.09.28 14:25:21 | 006,291,456 | -H-- | M] () -- C:\Users\pater\AppData\Local\IconCache.db
[2010.09.27 11:02:14 | 000,121,696 | ---- | M] () -- C:\Users\pater\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.09.21 23:47:57 | 000,000,991 | ---- | M] () -- C:\Users\pater\Desktop\jv16 PowerTools 2009.lnk
[2010.09.21 22:41:12 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{1d9b27af-c5b5-11df-bea4-b482fe381f3d}.TMContainer00000000000000000002.regtrans-ms
[2010.09.21 22:41:12 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{1d9b27af-c5b5-11df-bea4-b482fe381f3d}.TMContainer00000000000000000001.regtrans-ms
[2010.09.21 22:41:12 | 000,065,536 | -HS- | M] () -- C:\Users\pater\ntuser.dat{1d9b27af-c5b5-11df-bea4-b482fe381f3d}.TM.blf
[2010.09.21 22:14:57 | 000,266,752 | ---- | M] (Microsoft Corporation) -- C:\Users\pater\Desktop\iertutil.dll
[2010.09.21 19:21:08 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{be99926f-c532-11df-8acd-b482fe381f3d}.TMContainer00000000000000000002.regtrans-ms
[2010.09.21 19:21:08 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{be99926f-c532-11df-8acd-b482fe381f3d}.TMContainer00000000000000000001.regtrans-ms
[2010.09.21 19:21:08 | 000,065,536 | -HS- | M] () -- C:\Users\pater\ntuser.dat{be99926f-c532-11df-8acd-b482fe381f3d}.TM.blf
[2010.09.19 08:18:53 | 000,007,632 | ---- | M] () -- C:\Users\pater\AppData\Local\resmon.resmoncfg
[2010.09.18 06:50:19 | 000,000,000 | -H-- | M] () -- C:\Windows\wusa.lock
[2010.09.15 15:01:42 | 000,010,946 | ---- | M] () -- C:\Users\pater\Documents\Žádám vás o zakončení zasílaní reklamy.docx
[2010.09.15 10:01:27 | 022,823,424 | ---- | M] () -- C:\Users\pater\Desktop\ispring_pro_5_5_1.msi
[2010.09.09 20:58:06 | 000,000,349 | ---- | M] () -- C:\Users\Public\Documents\PCLECHAL.INI
[2010.09.09 18:08:04 | 000,000,107 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010.09.09 11:45:37 | 000,003,584 | ---- | M] () -- C:\Users\pater\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.09.07 17:12:17 | 000,038,848 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2010.09.07 17:11:54 | 000,167,592 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2010.09.07 16:52:29 | 000,051,280 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2010.09.07 16:52:09 | 000,121,936 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2010.09.07 16:47:49 | 000,028,752 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2010.09.07 16:47:33 | 000,061,008 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2010.09.07 16:47:10 | 000,020,048 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2010.09.07 08:32:31 | 000,417,891 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2010.09.06 15:48:59 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2010.09.04 23:48:04 | 000,001,103 | ---- | M] () -- C:\Users\pater\Desktop\G25 Racing Wheel – zástupce.lnk
[2010.09.04 23:23:13 | 000,033,344 | ---- | M] (LogMeIn, Inc.) -- C:\Windows\SysNative\drivers\hamachi.sys
[2010.09.04 22:12:03 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{e525880e-b851-11df-9f3b-b482fe381f3d}.TMContainer00000000000000000002.regtrans-ms
[2010.09.04 22:12:03 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{e525880e-b851-11df-9f3b-b482fe381f3d}.TMContainer00000000000000000001.regtrans-ms
[2010.09.04 22:12:03 | 000,065,536 | -HS- | M] () -- C:\Users\pater\ntuser.dat{e525880e-b851-11df-9f3b-b482fe381f3d}.TM.blf
[2010.09.04 16:36:53 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{979a8550-b82f-11df-b33b-b482fe381f3d}.TMContainer00000000000000000002.regtrans-ms
[2010.09.04 16:36:53 | 000,524,288 | -HS- | M] () -- C:\Users\pater\ntuser.dat{979a8550-b82f-11df-b33b-b482fe381f3d}.TMContainer00000000000000000001.regtrans-ms
[2010.09.04 16:36:53 | 000,065,536 | -HS- | M] () -- C:\Users\pater\ntuser.dat{979a8550-b82f-11df-b33b-b482fe381f3d}.TM.blf
[2010.08.31 15:30:24 | 000,000,000 | ---- | M] () -- C:\Windows\nsreg.dat
[2010.08.31 07:19:12 | 002,441,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iertutil.dll
[1 C:\Users\pater\AppData\Roaming\*.tmp files -> C:\Users\pater\AppData\Roaming\*.tmp -> ]