Stránka 1 z 2

Facebook FP update vir+RSIT log

Napsal: 24 črc 2011 23:53
od Bublor
Zdravim bohuzel sem na ten odkaz klikl tak bych vas chtel pozadat o pomoc dekuji

RSIT Log:


MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Safe mode with network support

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Users\trolol\Desktop\RSIT.exe
C:\Program Files\trend micro\trolol.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2304157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: NCH EN - {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Program Files\NCH_EN\prxtbNCH_.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: XfireXO - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: NCH EN Toolbar - {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Program Files\NCH_EN\prxtbNCH_.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O3 - Toolbar: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [IObit Security 360] "C:\Program Files\IObit\IObit Security 360\IS360tray.exe" /autostart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [RGSC] C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Startup: _uninst_.lnk = C:\Users\trolol\AppData\Local\Temp\_uninst_.bat
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: McAfee Application Installer Cleanup (0025271311531850) (0025271311531850mcinstcleanup) - McAfee, Inc. - C:\Users\PICAKU~1\AppData\Local\Temp\002527~1.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BitComet Disk Boost Service (BITCOMET_HELPER_SERVICE) - www.BitComet.com - C:\Program Files\BitComet\tools\BitCometService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: IS360service - IObit - C:\Program Files\IObit\IObit Security 360\IS360srv.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe

--
End of file - 9821 bytes

======Scheduled tasks folder======

C:\Windows\tasks\AWC Startup.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\trolol\AppData\Roaming\Mozilla\Firefox\Profiles\2kq23kr3.default

prefs.js - "browser.startup.homepage" - "http://search.conduit.com/?ctid=CT23041 ... hSource=13"
prefs.js - "keyword.URL" - "http://www.questscan.com/?tmp=nemo_resu ... &keywords="

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video
"{6904342A-8307-11DF-A508-4AE2DFD72085}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa
"ShopperReports@ShopperReports.com"=C:\Program Files\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions
"{B7082FAA-CB62-4872-9106-E42DD88EDE45}"=C:\Program Files\McAfee\SiteAdvisor


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
{F0E1168A-B4B5-484C-B77E-0D28E6B64096}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIBitCometAgent.xpt

C:\Program Files\Mozilla Firefox\plugins\
npBitCometAgent.dll
npdeployJava1.dll
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\trolol\AppData\Roaming\Mozilla\Firefox\Profiles\2kq23kr3.default\extensions\
{5e5ab302-7f65-44cd-8211-c1d4caaccea3}

C:\Users\trolol\AppData\Roaming\Mozilla\Firefox\Profiles\2kq23kr3.default\searchplugins\
conduit.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{37483b40-c254-4a72-bda4-22ee90182c1e}]
NCH EN Toolbar - C:\Program Files\NCH_EN\prxtbNCH_.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll [2011-04-11 767280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
XfireXO Toolbar - C:\Program Files\XfireXO\prxtbXfir.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-05-10 819840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-05-23 305328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll [2011-05-23 1007160]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\progra~1\mcafee\sitead~1\mcieplg.dll [2011-04-08 251928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-07 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-05-10 819840]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-05-23 305328]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2011-01-20 988480]
{37483b40-c254-4a72-bda4-22ee90182c1e} - NCH EN Toolbar - C:\Program Files\NCH_EN\prxtbNCH_.dll [2011-01-17 175912]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
{5e5ab302-7f65-44cd-8211-c1d4caaccea3} - XfireXO Toolbar - C:\Program Files\XfireXO\prxtbXfir.dll [2011-01-17 175912]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\progra~1\mcafee\sitead~1\mcieplg.dll [2011-04-08 251928]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-05-10 3459712]
"IObit Security 360"=C:\Program Files\IObit\IObit Security 360\IS360tray.exe [2010-06-11 1280344]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-01-07 253672]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-03-21 1230704]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2011-05-25 1951112]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2011-04-20 39408]
"RGSC"=C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2008-11-14 305064]

C:\Users\trolol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Xfire.lnk - C:\Program Files\Xfire\Xfire.exe
_uninst_.lnk - C:\Users\trolol\AppData\Local\Temp\_uninst_.bat

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"msacm.divxa32"=msaud32_divx.acm
"VIDC.FPS1"=frapsvid.dll
"vidc.XVID"=xvidvfw.dll
"VIDC.XFR1"=xfcodec.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-07-25 00:47:47 ----D---- C:\rsit
2011-07-25 00:47:47 ----D---- C:\Program Files\trend micro
2011-07-24 21:25:10 ----D---- C:\ProgramData\NCH Swift Sound
2011-07-24 21:01:39 ----D---- C:\Program Files\GridinSoft Trojan Killer
2011-07-24 20:29:27 ----D---- C:\ProgramData\Spybot - Search & Destroy
2011-07-24 20:29:27 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-07-24 20:24:10 ----D---- C:\Program Files\Common Files\McAfee
2011-07-24 20:24:08 ----D---- C:\ProgramData\McAfee
2011-07-24 20:24:08 ----D---- C:\Program Files\McAfee
2011-07-24 20:03:50 ----D---- C:\ProgramData\Kaspersky Lab
2011-07-24 19:55:04 ----A---- C:\Windows\ntbtlog.txt
2011-07-24 19:17:53 ----D---- C:\Users\trolol\AppData\Roaming\IObit
2011-07-24 18:34:01 ----A---- C:\Windows\l1rezerv.exe
2011-07-24 18:27:45 ----D---- C:\Windows\update.tray-7-0
2011-07-19 00:09:11 ----D---- C:\Users\trolol\AppData\Roaming\GetRightToGo
2011-07-14 10:18:49 ----D---- C:\Program Files\Common Files\Adobe
2011-07-14 10:18:49 ----D---- C:\Program Files\Adobe
2011-07-14 10:18:11 ----D---- C:\ProgramData\Adobe
2011-07-13 18:53:04 ----D---- C:\Windows\system32\SPReview
2011-07-13 18:52:33 ----D---- C:\Windows\system32\EventProviders
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-13 08:19:33 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-13 08:19:33 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-13 08:19:29 ----A---- C:\Windows\system32\kernel32.dll
2011-07-13 08:19:28 ----A---- C:\Windows\system32\winsrv.dll
2011-07-13 08:19:28 ----A---- C:\Windows\system32\conhost.exe
2011-07-13 08:19:25 ----A---- C:\Windows\system32\win32k.sys
2011-07-11 14:41:36 ----D---- C:\Program Files\XfireXO
2011-07-11 14:41:15 ----D---- C:\Users\trolol\AppData\Roaming\Xfire
2011-07-11 14:41:13 ----D---- C:\ProgramData\Xfire
2011-07-11 14:41:12 ----D---- C:\Program Files\Xfire
2011-07-03 13:40:01 ----D---- C:\Program Files\SystemRequirementsLab
2011-07-03 13:23:14 ----D---- C:\Users\trolol\AppData\Roaming\TeamViewer
2011-07-03 10:52:21 ----RHD---- C:\Users\trolol\AppData\Roaming\SecuROM
2011-07-03 10:51:49 ----A---- C:\Windows\system32\CmdLineExt.dll
2011-07-03 10:16:03 ----D---- C:\Program Files\Rockstar Games
2011-06-29 06:46:08 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-06-29 06:46:08 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-06-29 06:45:51 ----A---- C:\Windows\system32\tquery.dll
2011-06-29 06:45:51 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-06-29 06:45:51 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-06-29 06:45:51 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-06-29 06:45:51 ----A---- C:\Windows\system32\mssvp.dll
2011-06-29 06:45:51 ----A---- C:\Windows\system32\mssrch.dll
2011-06-29 06:45:51 ----A---- C:\Windows\system32\mssphtb.dll
2011-06-29 06:45:51 ----A---- C:\Windows\system32\mssph.dll
2011-06-29 06:45:51 ----A---- C:\Windows\system32\msscntrs.dll
2011-06-28 20:20:00 ----D---- C:\Program Files\Duke Nukem Forever
2011-06-28 12:31:43 ----D---- C:\Program Files\Valve
2011-06-28 12:27:45 ----D---- C:\Users\trolol\AppData\Roaming\DAEMON Tools Lite
2011-06-28 02:32:25 ----D---- C:\Users\trolol\AppData\Roaming\BitComet
2011-06-27 16:10:45 ----D---- C:\Users\trolol\AppData\Roaming\.minecraft
2011-06-26 16:22:14 ----D---- C:\Users\trolol\AppData\Roaming\Opera
2011-06-26 09:47:38 ----D---- C:\Users\trolol\AppData\Roaming\Google

======List of files/folders modified in the last 1 month======

2011-07-25 07:47:35 ----D---- C:\Windows\system32\LogFiles
2011-07-25 00:47:48 ----D---- C:\Windows\Temp
2011-07-25 00:47:47 ----RD---- C:\Program Files
2011-07-25 00:01:37 ----D---- C:\Windows\System32
2011-07-25 00:01:37 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-24 21:25:10 ----HD---- C:\ProgramData
2011-07-24 21:14:32 ----SHD---- C:\Recovery
2011-07-24 20:24:10 ----D---- C:\Program Files\Common Files
2011-07-24 20:17:53 ----SHD---- C:\$Recycle.Bin
2011-07-24 20:17:44 ----RD---- C:\Users
2011-07-24 20:08:49 ----D---- C:\ProgramData\QuestScan
2011-07-24 19:55:04 ----D---- C:\Windows
2011-07-24 19:52:55 ----D---- C:\Windows\system32\wfp
2011-07-24 19:52:54 ----D---- C:\Windows\system32\wbem
2011-07-24 19:52:07 ----D---- C:\Windows\system32\config
2011-07-24 19:52:02 ----D---- C:\Windows\Tasks
2011-07-24 19:52:02 ----D---- C:\Windows\system32\DriverStore
2011-07-24 19:52:02 ----D---- C:\Windows\system32\drivers\etc
2011-07-24 19:52:02 ----D---- C:\Windows\system32\catroot2
2011-07-24 19:52:02 ----D---- C:\Windows\inf
2011-07-24 19:52:01 ----D---- C:\Windows\system32\Macromed
2011-07-24 19:52:01 ----D---- C:\Windows\system32\CodeIntegrity
2011-07-24 19:51:55 ----D---- C:\ProgramData\NVIDIA
2011-07-24 19:51:55 ----D---- C:\ProgramData\IObit
2011-07-24 19:51:55 ----D---- C:\ProgramData\AVAST Software
2011-07-24 19:51:55 ----D---- C:\Program Files\AVAST Software
2011-07-24 19:51:54 ----D---- C:\Windows\registration
2011-07-24 19:51:51 ----D---- C:\Users\trolol\AppData\Roaming\Skype
2011-07-24 19:05:39 ----SHD---- C:\System Volume Information
2011-07-24 15:47:45 ----D---- C:\Windows\Prefetch
2011-07-24 13:16:45 ----D---- C:\Program Files\World of Warcraft
2011-07-22 22:35:03 ----SD---- C:\Users\trolol\AppData\Roaming\Microsoft
2011-07-19 11:35:58 ----D---- C:\Program Files\QuestScan
2011-07-19 00:15:46 ----D---- C:\Fraps
2011-07-18 09:46:24 ----D---- C:\Program Files\Opera
2011-07-16 15:26:50 ----D---- C:\Users\trolol\AppData\Roaming\Adobe
2011-07-16 08:30:24 ----D---- C:\Windows\Microsoft.NET
2011-07-16 08:30:01 ----RSD---- C:\Windows\assembly
2011-07-16 08:08:57 ----D---- C:\Windows\winsxs
2011-07-15 07:05:16 ----D---- C:\Windows\system32\catroot
2011-07-14 10:19:26 ----SHD---- C:\Windows\Installer
2011-07-14 08:54:38 ----D---- C:\Windows\rescache
2011-07-13 20:02:08 ----D---- C:\Downloads
2011-07-13 20:01:55 ----A---- C:\Windows\system32\PnkBstrB.exe
2011-07-13 19:16:15 ----D---- C:\Program Files\Windows Sidebar
2011-07-13 19:16:15 ----D---- C:\Program Files\Windows Portable Devices
2011-07-13 19:16:15 ----D---- C:\Program Files\Windows Photo Viewer
2011-07-13 19:16:15 ----D---- C:\Program Files\Windows Media Player
2011-07-13 19:16:15 ----D---- C:\Program Files\Windows Mail
2011-07-13 19:16:15 ----D---- C:\Program Files\Windows Journal
2011-07-13 19:16:15 ----D---- C:\Program Files\Internet Explorer
2011-07-13 19:16:15 ----D---- C:\Program Files\DVD Maker
2011-07-13 19:16:14 ----D---- C:\Windows\servicing
2011-07-13 19:16:14 ----D---- C:\Windows\ehome
2011-07-13 19:16:14 ----D---- C:\Program Files\Windows Defender
2011-07-13 19:16:12 ----D---- C:\Windows\system32\sysprep
2011-07-13 19:16:12 ----D---- C:\Windows\system32\oobe
2011-07-13 19:16:12 ----D---- C:\Windows\system32\migration
2011-07-13 19:16:12 ----D---- C:\Windows\system32\en-US
2011-07-13 19:16:12 ----D---- C:\Windows\system32\da-DK
2011-07-13 19:16:12 ----D---- C:\Windows\PolicyDefinitions
2011-07-13 19:16:08 ----D---- C:\Windows\system32\Setup
2011-07-13 19:16:08 ----D---- C:\Windows\system32\cs-CZ
2011-07-13 19:16:08 ----D---- C:\Windows\system32\cs
2011-07-13 19:16:08 ----D---- C:\Windows\system32\AdvancedInstallers
2011-07-13 19:16:07 ----D---- C:\Windows\system32\sppui
2011-07-13 19:16:07 ----D---- C:\Windows\system32\migwiz
2011-07-13 19:16:07 ----D---- C:\Windows\system32\manifeststore
2011-07-13 19:16:07 ----D---- C:\Windows\system32\es-ES
2011-07-13 19:16:07 ----D---- C:\Windows\system32\drivers\cs-CZ
2011-07-13 19:16:07 ----D---- C:\Windows\system32\drivers
2011-07-13 19:16:07 ----D---- C:\Windows\system32\Dism
2011-07-13 19:15:54 ----RSD---- C:\Windows\Fonts
2011-07-13 19:15:54 ----D---- C:\Windows\AppPatch
2011-07-13 19:15:44 ----D---- C:\Windows\system32\Boot
2011-07-13 19:13:31 ----A---- C:\Windows\system32\msclmd.dll
2011-07-13 18:56:38 ----D---- C:\Windows\Logs
2011-07-13 18:50:25 ----A---- C:\Windows\system32\MRT.exe
2011-07-09 18:05:47 ----D---- C:\Program Files\Steam
2011-07-03 10:17:14 ----HD---- C:\Program Files\InstallShield Installation Information
2011-07-03 10:16:45 ----D---- C:\Program Files\EA Games
2011-07-03 10:14:32 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-07-03 10:13:54 ----D---- C:\Program Files\Electronic Arts
2011-06-28 14:52:03 ----D---- C:\Program Files\Mozilla Firefox
2011-06-26 23:18:03 ----D---- C:\ProgramData\NCH Software

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2011-02-23 16184]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-05-10 25432]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-06-05 218688]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-14 139776]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-05-10 441176]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-05-10 307928]
S1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-05-10 49240]
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-05-10 19544]
S2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-05-10 53592]
S2 NVR0FLASHDev;NVR0FLASHDev; \??\C:\Windows\nvflash.sys [2009-01-07 36896]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\Windows\system32\DRIVERS\k750bus.sys [2005-02-11 55216]
S3 NVR0Dev;NVR0Dev; \??\C:\Windows\nvoclock.sys [2009-01-06 36640]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2011-05-25 1336712]
S2 0025271311531850mcinstcleanup;McAfee Application Installer Cleanup (0025271311531850); C:\Users\PICAKU~1\AppData\Local\Temp\002527~1.EXE [2011-04-25 822048]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-05-10 42184]
S2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-20 136176]
S2 IS360service;IS360service; C:\Program Files\IObit\IObit Security 360\IS360srv.exe [2010-06-11 312152]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [2011-02-16 88176]
S2 nTuneService;Performance Service; C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe [2009-01-06 174624]
S2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2011-04-07 612456]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-04-08 2218600]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-06-24 75136]
S2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2011-07-13 214520]
S2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-04-07 378472]
S2 TeamViewer6;TeamViewer 6; C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe [2011-06-01 2337144]
S2 UpdateCenterService;Update Center Service; C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe [2009-01-07 121376]
S3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service; C:\Program Files\BitComet\tools\BitCometService.exe [2010-12-28 1296728]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-20 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-04-20 182768]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-06-04 403240]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-04-19 1343400]
S4 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]

-----------------EOF-----------------

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 03:10
od vyosek
Zdravim a pekny den preji :)

:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com :arrow: Aplikujte RogueKiller
stell píše: pouzijes RogueKiller>.spustis>>stlac 2> [enter] log vloz sem
http://www.viry.cz/forum/viewtopic.php? ... 05#p981205
:arrow: Jeste znovu RogueKiller ale nyni s moznosti 3 a pote jeste jednou s moznosti 4

:arrow: RKill i RogueKiller by mely udelat logy, vlozte mi je sem

PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 07:50
od Bublor
Rkill log:

This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.

Rkill was run on 25.07.2011 at 8:46:53.
Operating System: Windows 7 Professional


Processes terminated by Rkill or while it was running:

rSFX1\procs\iexplore.com


Rkill completed on 25.07.2011 at 8:46:55.

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 07:51
od Bublor
RogueKiller V5.2.8 [07/23/2011] by Tigzy
Tady je roguekiller log:


contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Safe mode with network support
User: trolol [Admin rights]
Mode: ProxyFix -- Date : 07/25/2011 08:51:19

Bad processes: 0

Registry Entries: 0

Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 08:05
od Bublor
Combofix log:


ComboFix 11-07-24.03 - trolol 25.07.2011 8:56.1.2 - x86 NETWORK
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3326.2598 [GMT 2:00]
Spuštěný z: c:\users\trolol\Desktop\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: IObit Security 360 *Disabled/Outdated* {FAE2835A-B90A-9E7A-85DA-82DBDA7C1E3A}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\QuestScan
c:\program files\QuestScan\questscan.exe
c:\program files\QuestScan\uninstall.exe
c:\program files\ShopperReports3
c:\program files\ShopperReports3\bin\3.1.70.0\CmndFF.dll
c:\program files\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components\BrowserExtensionFF.dll
c:\program files\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components\BrowserExtensionFF.xpt
c:\program files\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome.manifest
c:\program files\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content\infopane.js
c:\program files\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content\InfoPane.xul
c:\program files\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\install.rdf
c:\program files\ShopperReports3\bin\3.1.70.0\link.ico
c:\programdata\Microsoft\Windows\Start Menu\Programs\ShopperReports
c:\programdata\Microsoft\Windows\Start Menu\Programs\ShopperReports\About Us.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\ShopperReports\Customer Support.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\ShopperReports\ShopperReports Uninstall Instructions.lnk
c:\programdata\QuestScan
c:\users\Slipknot\AppData\Roaming\data.dat
c:\users\Slipknot\AppData\Roaming\ShopperReports3
c:\users\trolol\Desktop\Setup.exe
c:\windows\l1rezerv.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-25 do 2011-07-25 )))))))))))))))))))))))))))))))
.
.
2011-07-25 07:03 . 2011-07-25 07:03 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2011-07-25 07:03 . 2011-07-25 07:03 -------- d-----w- c:\users\Slipknot\AppData\Local\temp
2011-07-24 22:47 . 2011-07-24 22:47 -------- d-----w- C:\rsit
2011-07-24 22:47 . 2011-07-24 22:47 -------- d-----w- c:\program files\trend micro
2011-07-24 19:25 . 2011-07-24 19:25 -------- d-----w- c:\programdata\NCH Swift Sound
2011-07-24 19:01 . 2011-07-24 19:10 -------- d-----w- c:\program files\GridinSoft Trojan Killer
2011-07-24 18:29 . 2011-07-24 18:49 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2011-07-24 18:29 . 2011-07-24 18:29 -------- d-----w- c:\program files\Spybot - Search & Destroy
2011-07-24 18:24 . 2011-07-24 18:24 -------- d-----w- c:\program files\Common Files\McAfee
2011-07-24 18:24 . 2011-07-24 18:24 -------- d-----w- c:\programdata\McAfee
2011-07-24 18:24 . 2011-07-24 18:24 -------- d-----w- c:\program files\McAfee
2011-07-24 18:17 . 2011-07-24 18:17 -------- d-----w- c:\users\picakundadevkamrdka
2011-07-24 18:03 . 2011-07-24 18:03 -------- d-----w- c:\programdata\Kaspersky Lab
2011-07-24 17:17 . 2011-07-24 17:17 -------- d-----w- c:\users\trolol\AppData\Roaming\IObit
2011-07-24 16:27 . 2011-07-24 16:27 -------- d-----w- c:\windows\update.tray-7-0
2011-07-23 05:21 . 2011-07-13 03:39 6881616 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{651F7382-60A1-497D-B408-0D6B2596047B}\mpengine.dll
2011-07-22 05:16 . 2011-07-22 05:16 0 ---ha-w- c:\users\trolol\AppData\Local\BIT33D0.tmp
2011-07-18 22:09 . 2011-07-18 22:09 -------- d-----w- c:\users\trolol\AppData\Roaming\GetRightToGo
2011-07-16 13:26 . 2011-07-16 13:26 -------- d-----w- c:\users\trolol\AppData\Local\Adobe
2011-07-14 08:18 . 2011-07-14 08:18 -------- d-----w- c:\program files\Common Files\Adobe
2011-07-13 16:53 . 2011-07-13 16:53 -------- d-----w- c:\windows\system32\SPReview
2011-07-13 16:52 . 2011-07-13 16:52 -------- d-----w- c:\windows\system32\EventProviders
2011-07-11 12:41 . 2011-07-11 12:41 -------- d-----w- c:\users\trolol\AppData\Local\Conduit
2011-07-11 12:41 . 2011-07-24 17:52 -------- d-----w- c:\users\trolol\AppData\Roaming\Xfire
2011-07-11 12:41 . 2011-07-24 17:51 -------- d-----w- c:\programdata\Xfire
2011-07-11 12:41 . 2011-07-11 12:41 -------- d-----w- c:\program files\Xfire
2011-07-05 08:17 . 2011-07-05 08:17 -------- d-----w- c:\users\trolol\AppData\Local\ElevatedDiagnostics
2011-07-03 11:40 . 2011-07-03 11:40 -------- d-----w- c:\program files\SystemRequirementsLab
2011-07-03 11:39 . 2011-07-03 11:40 -------- d-----w- c:\users\trolol\SystemRequirementsLab
2011-07-03 11:23 . 2011-07-03 11:33 -------- d-----w- c:\users\trolol\AppData\Roaming\TeamViewer
2011-07-03 09:10 . 2011-07-03 09:16 -------- d-----w- c:\users\trolol\AppData\Local\Rockstar Games
2011-07-03 08:52 . 2011-07-03 08:52 -------- d--h--r- c:\users\trolol\AppData\Roaming\SecuROM
2011-07-03 08:51 . 2011-07-03 08:51 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-07-03 08:16 . 2011-07-03 08:17 -------- d-----w- c:\program files\Rockstar Games
2011-06-30 13:49 . 2011-06-30 13:49 -------- d-----w- c:\users\trolol\AppData\Local\DDMSettings
2011-06-29 12:40 . 2011-06-29 12:40 -------- d-----w- c:\users\trolol\AppData\Local\Apple
2011-06-29 04:46 . 2011-05-24 10:44 293376 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-06-29 04:46 . 2010-11-20 12:18 145920 ----a-w- c:\windows\system32\cfgmgr32.dll
2011-06-29 04:45 . 2011-05-04 04:34 1549312 ----a-w- c:\windows\system32\tquery.dll
2011-06-29 04:45 . 2011-05-04 04:32 666624 ----a-w- c:\windows\system32\mssvp.dll
2011-06-29 04:45 . 2011-05-04 04:32 337408 ----a-w- c:\windows\system32\mssph.dll
2011-06-29 04:45 . 2011-05-04 04:32 197120 ----a-w- c:\windows\system32\mssphtb.dll
2011-06-29 04:45 . 2011-05-04 04:32 1401344 ----a-w- c:\windows\system32\mssrch.dll
2011-06-29 04:45 . 2011-05-04 04:32 59392 ----a-w- c:\windows\system32\msscntrs.dll
2011-06-29 04:45 . 2011-05-04 04:28 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe
2011-06-29 04:45 . 2011-05-04 04:28 427520 ----a-w- c:\windows\system32\SearchIndexer.exe
2011-06-29 04:45 . 2011-05-04 04:28 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2011-06-28 18:32 . 2011-06-28 18:32 -------- d-----w- c:\users\Slipknot\AppData\Roaming\Rovio
2011-06-28 18:20 . 2011-06-28 18:20 -------- d-----w- c:\program files\Duke Nukem Forever
2011-06-28 10:59 . 2011-06-28 10:59 -------- d-----w- c:\users\trolol\AppData\Local\SKIDROW
2011-06-28 10:31 . 2011-06-28 10:31 -------- d-----w- c:\program files\Valve
2011-06-28 10:27 . 2011-06-28 10:28 -------- d-----w- c:\users\trolol\AppData\Roaming\DAEMON Tools Lite
2011-06-28 00:32 . 2011-07-03 07:53 -------- d-----w- c:\users\trolol\AppData\Roaming\BitComet
2011-06-27 14:10 . 2011-07-03 12:18 -------- d-----w- c:\users\trolol\AppData\Roaming\.minecraft
2011-06-26 21:42 . 2011-06-26 21:42 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll
2011-06-26 21:42 . 2011-06-26 21:42 1998168 ----a-w- c:\program files\Mozilla Firefox\d3dx9_43.dll
2011-06-26 14:22 . 2011-06-26 14:22 -------- d-----w- c:\users\trolol\AppData\Local\Opera
2011-06-25 15:34 . 2011-06-25 15:34 -------- d-----w- c:\users\trolol\AppData\Local\Mozilla
2011-06-25 15:01 . 2011-06-25 15:01 -------- d-----w- c:\users\trolol\AppData\Local\PunkBuster
2011-06-25 14:28 . 2011-07-24 23:26 -------- d-----w- c:\users\trolol\AppData\Roaming\Skype
2011-06-25 08:32 . 2011-06-25 08:32 -------- d-----w- c:\users\trolol\AppData\Roaming\Ubisoft
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-13 18:01 . 2011-06-22 16:10 214520 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-07-13 18:01 . 2011-06-22 16:10 214520 ----a-w- c:\windows\system32\PnkBstrB.xtr
2011-07-13 17:54 . 2011-06-22 16:10 137464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-07-13 17:13 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-06-24 18:51 . 2011-06-24 18:51 36352 ----a-w- c:\windows\system32\xfcodec.dll
2011-06-24 18:47 . 2011-06-22 16:10 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-06-23 15:28 . 2011-06-23 15:26 695296 ----a-w- c:\program files\MinecraftSP.exe
2011-06-18 08:59 . 2011-06-18 08:59 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2011-06-18 08:59 . 2011-06-18 08:59 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-06-05 16:09 . 2011-06-05 16:09 218688 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-05-30 13:42 . 2011-06-20 07:50 240640 ----a-w- c:\windows\system32\xvidvfw.dll
2011-05-28 12:56 . 2011-05-28 12:56 65536 ----a-w- c:\windows\system32\frapsvid.dll
2011-05-28 02:53 . 2011-06-16 15:17 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-05-24 17:14 . 2011-04-15 10:07 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-05-23 09:52 . 2011-06-20 07:50 153088 ----a-w- c:\windows\system32\xvid.ax
2011-05-23 07:46 . 2011-06-20 07:50 645632 ----a-w- c:\windows\system32\xvidcore.dll
2011-05-10 12:10 . 2011-04-29 17:49 40112 ----a-w- c:\windows\avastSS.scr
2011-05-10 12:10 . 2011-04-29 17:49 199304 ----a-w- c:\windows\system32\aswBoot.exe
2011-05-10 12:03 . 2011-04-29 17:50 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-05-10 12:03 . 2011-04-29 17:50 307928 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-05-10 12:02 . 2011-04-29 17:50 49240 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-05-10 11:59 . 2011-04-29 17:50 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-05-10 11:59 . 2011-04-29 17:50 53592 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-05-10 11:59 . 2011-04-29 17:50 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-05-07 21:48 . 2011-05-07 21:48 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-05-03 04:30 . 2011-06-16 15:18 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 02:46 . 2011-06-16 15:17 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-29 02:46 . 2011-06-16 15:17 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 02:46 . 2011-06-16 15:17 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-27 02:17 . 2011-06-16 15:17 223744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-27 02:17 . 2011-06-16 15:17 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-04-27 02:17 . 2011-06-16 15:17 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-06-26 21:42 . 2011-04-29 17:59 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{5e5ab302-7f65-44cd-8211-c1d4caaccea3}"= "c:\program files\XfireXO\prxtbXfir.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2011-01-17 14:54 175912 ----a-w- c:\program files\ConduitEngine\prxConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{37483b40-c254-4a72-bda4-22ee90182c1e}]
2011-01-17 14:54 175912 ----a-w- c:\program files\NCH_EN\prxtbNCH_.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
2011-01-17 14:54 175912 ----a-w- c:\program files\XfireXO\prxtbXfir.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{37483b40-c254-4a72-bda4-22ee90182c1e}"= "c:\program files\NCH_EN\prxtbNCH_.dll" [2011-01-17 175912]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\prxConduitEngine.dll" [2011-01-17 175912]
"{5e5ab302-7f65-44cd-8211-c1d4caaccea3}"= "c:\program files\XfireXO\prxtbXfir.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{37483b40-c254-4a72-bda4-22ee90182c1e}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CLASSES_ROOT\clsid\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{37483B40-C254-4A72-BDA4-22EE90182C1E}"= "c:\program files\NCH_EN\prxtbNCH_.dll" [2011-01-17 175912]
"{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}"= "c:\program files\XfireXO\prxtbXfir.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{37483b40-c254-4a72-bda4-22ee90182c1e}]
.
[HKEY_CLASSES_ROOT\clsid\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-05-10 12:10 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2011-04-20 39408]
"RGSC"="c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe" [2008-11-14 305064]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-05-10 3459712]
"IObit Security 360"="c:\program files\IObit\IObit Security 360\IS360tray.exe" [2010-06-11 1280344]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-01-07 253672]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2011-05-25 1951112]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"GrpConv"="grpconv -o" [X]
.
c:\users\trolol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Xfire.lnk - c:\program files\Xfire\Xfire.exe [2011-6-24 3504640]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
R1 aswSnx;aswSnx; [x]
R1 aswSP;aswSP; [x]
R2 0025271311531850mcinstcleanup;McAfee Application Installer Cleanup (0025271311531850);c:\users\PICAKU~1\AppData\Local\Temp\002527~1.EXE [x]
R2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 aswFsBlk;aswFsBlk; [x]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-05-10 53592]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-04-20 136176]
R2 IS360service;IS360service;c:\program files\IObit\IObit Security 360\IS360srv.exe [2010-06-11 312152]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~1\mcafee\SITEAD~1\mcsacore.exe [2011-02-16 88176]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-04-08 2218600]
R2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-04-07 378472]
R2 TeamViewer6;TeamViewer 6;c:\program files\TeamViewer\Version6\TeamViewer_Service.exe [2011-06-01 2337144]
R3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service;c:\program files\BitComet\tools\BitCometService.exe [2010-12-28 1296728]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-04-20 136176]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-04-19 1343400]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [2011-02-23 16184]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2011-06-05 218688]
S2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2011-05-25 1336712]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-24 c:\windows\Tasks\AWC Startup.job
- c:\program files\IObit\Advanced SystemCare 3\AWC.exe [2011-04-29 11:53]
.
2011-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-04-20 17:55]
.
2011-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-04-20 17:55]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2304157
IE: Stáhnout odkaz s použitím BitCometu - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: Stáhnout všechny odkazy s použitím BitCometu - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
FF - ProfilePath - c:\users\trolol\AppData\Roaming\Mozilla\Firefox\Profiles\2kq23kr3.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - XfireXO Customized Web Search
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT2304157&SearchSource=13
FF - prefs.js: keyword.URL - hxxp://www.questscan.com/?tmp=nemo_results_rem ... &keywords=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-Mafia II_is1 - c:\program files\2K Games\Mafia II\unins000.exe
AddRemove-QuestScan - c:\program files\QuestScan\uninstall.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1112788954-53965602-2581635257-1005\Software\SecuROM\License information*]
"datasecu"=hex:41,66,18,91,c6,9f,16,bf,27,6d,57,32,77,e8,91,21,99,df,9f,ad,ab,
41,4e,6e,e3,8a,67,87,d9,2d,88,46,4f,6a,cf,f5,f7,90,60,62,4d,75,d0,bd,93,c2,\
"rkeysecu"=hex:ba,18,2f,88,11,68,7f,15,31,f3,61,2a,04,88,b2,3d
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-07-25 09:04:58
ComboFix-quarantined-files.txt 2011-07-25 07:04
.
Před spuštěním: 4 826 689 536
Po spuštění: Volných bajtů: 10 239 574 016
.
- - End Of File - - ACD24BD582DE73A1CE288E2741092E77

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 12:02
od Bublor
omlouvam se ale zapomel sem prilozit ostatni logy s roguekilleru tady jsou:


Prvni:

RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Safe mode with network support
User: trolol [Admin rights]
Mode: Remove -- Date : 07/25/2011 08:48:36

Bad processes: 0

Registry Entries: 3
[SUSP PATH] _uninst_.lnk : C:\Users\trolol\AppData\Local\Temp\_uninst_.bat -> DELETED
[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

HOSTS File:


Finished : << RKreport[1].txt >>
RKreport[1].txt

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 12:02
od Bublor
Druhy:


RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Safe mode with network support
User: trolol [Admin rights]
Mode: HOSTSFix -- Date : 07/25/2011 08:51:03

Bad processes: 0

HOSTS File:


Resetted HOSTS:
127.0.0.1 localhost

Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 12:02
od Bublor
Treti:


RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Safe mode with network support
User: trolol [Admin rights]
Mode: ProxyFix -- Date : 07/25/2011 08:51:19

Bad processes: 0

Registry Entries: 0

Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 15:47
od vyosek
:arrow: Odinstalujte Advanced SystemCare 3 a nasledne i vse od IOBIt - jsou to cinske smejdy, databazi haveti ukradli jine renomovane spolecnosti, spise skodi nez pomahaji

:arrow: Pokud nemate, tak presunte Combofix na plochu
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    KillAll::
    
    RegLock::
    [HKEY_USERS\S-1-5-21-1112788954-53965602-2581635257-1005\Software\SecuROM\License information*]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    
    Firefox::
    FF - ProfilePath - c:\users\trolol\AppData\Roaming\Mozilla\Firefox\Profiles\2kq23kr3.default\
    FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
    FF - prefs.js: browser.search.selectedEngine - XfireXO Customized Web Search
    FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT23041 ... hSource=13
    FF - prefs.js: keyword.URL - hxxp://www.questscan.com/?tmp=nemo_resu ... &keywords=
    
    DDS::
    uStart Page = hxxp://search.conduit.com?SearchSource= ... =CT2304157
    
    File::
    c:\windows\Tasks\AWC Startup.job
    c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    c:\program files\XfireXO\prxtbXfir.dll
    c:\program files\ConduitEngine\prxConduitEngine.dll
    c:\program files\NCH_EN\prxtbNCH_.dll
    c:\users\trolol\AppData\Local\BIT33D0.tmp
    
    Folder::
    c:\program files\GridinSoft Trojan Killer
    c:\programdata\Spybot - Search & Destroy
    c:\program files\Spybot - Search & Destroy
    c:\program files\Common Files\McAfee
    c:\programdata\McAfee
    c:\program files\McAfee
    c:\users\trolol\AppData\Roaming\IObit
    c:\windows\update.tray-7-0
    c:\program files\IObit
    
    DirLook::
    c:\users\picakundadevkamrdka
    
    Driver::
    0025271311531850mcinstcleanup
    gupdate
    gupdatem
    
    Registry::
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
    "GrpConv"=-
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "IObit Security 360"=-
    "SunJavaUpdateSched"=-
    "DivXUpdate"=-
    "LogMeIn Hamachi Ui"=-
    "Adobe ARM"=-
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "swg"=-
    "RGSC"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
    "{5e5ab302-7f65-44cd-8211-c1d4caaccea3}"=-
    [-HKEY_CLASSES_ROOT\clsid\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
    [-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
    [-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{37483b40-c254-4a72-bda4-22ee90182c1e}]
    [-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    "{37483b40-c254-4a72-bda4-22ee90182c1e}"-
    "{30F9B915-B755-4826-820B-08FBA6BD249D}"=-
    "{5e5ab302-7f65-44cd-8211-c1d4caaccea3}"=-
    [-HKEY_CLASSES_ROOT\clsid\{37483b40-c254-4a72-bda4-22ee90182c1e}]
    [-HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
    [-HKEY_CLASSES_ROOT\clsid\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
    "{37483B40-C254-4A72-BDA4-22EE90182C1E}"=-
    "{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}"=-
    [-HKEY_CLASSES_ROOT\clsid\{37483b40-c254-4a72-bda4-22ee90182c1e}]
    [-HKEY_CLASSES_ROOT\clsid\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
    
    Reboot::
    
  • Ulozte vytvoreny TXT jako CFScript.txt
  • Pretahnete vytvoreny CFScript.txt nad Combofix a pustte (viz obrazek nize)
    Obrázek
  • Po aplikaci skriptu (a pripadnem restartu) na Vas vypadne log, jeho obsah sem vlozte
:arrow: Muze se stat, ze po aplikaci skriptu nenabehnou windows, v tomto pripade restartuje PC a mackejte F8 a zvolte Posledni znamou konfiguraci

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 16:50
od Bublor
Pocitac uz rozjedu v normalnim rezimu (omlouvam se za ty sproste nazvy syn)




ComboFix 11-07-24.03 - trolol 25.07.2011 17:18:03.2.2 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3326.2229 [GMT 2:00]
Spuštěný z: c:\users\trolol\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\trolol\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\program files\ConduitEngine\prxConduitEngine.dll"
"c:\program files\NCH_EN\prxtbNCH_.dll"
"c:\program files\XfireXO\prxtbXfir.dll"
"c:\users\trolol\AppData\Local\BIT33D0.tmp"
"c:\windows\Tasks\AWC Startup.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Common Files\McAfee
c:\program files\Common Files\McAfee\Installer\cleanup.ini
c:\program files\Common Files\McAfee\Installer\mcinst.exe
c:\program files\ConduitEngine\prxConduitEngine.dll
c:\program files\GridinSoft Trojan Killer
c:\program files\GridinSoft Trojan Killer\acprotect.z
c:\program files\GridinSoft Trojan Killer\activex.a
c:\program files\GridinSoft Trojan Killer\amd.c
c:\program files\GridinSoft Trojan Killer\armadillo.z
c:\program files\GridinSoft Trojan Killer\ascrypt.z
c:\program files\GridinSoft Trojan Killer\asmd.c
c:\program files\GridinSoft Trojan Killer\aspack.z
c:\program files\GridinSoft Trojan Killer\aspr.z
c:\program files\GridinSoft Trojan Killer\bho.a
c:\program files\GridinSoft Trojan Killer\english.lng
c:\program files\GridinSoft Trojan Killer\execrypt.z
c:\program files\GridinSoft Trojan Killer\heur.b
c:\program files\GridinSoft Trojan Killer\ieb.a
c:\program files\GridinSoft Trojan Killer\logs\scan-2011-07-24 [21-10-23].log
c:\program files\GridinSoft Trojan Killer\md.c
c:\program files\GridinSoft Trojan Killer\mew.z
c:\program files\GridinSoft Trojan Killer\mslrh.z
c:\program files\GridinSoft Trojan Killer\naco.c
c:\program files\GridinSoft Trojan Killer\npack.z
c:\program files\GridinSoft Trojan Killer\pk.z
c:\program files\GridinSoft Trojan Killer\pl.a
c:\program files\GridinSoft Trojan Killer\ps.z
c:\program files\GridinSoft Trojan Killer\psign.z
c:\program files\GridinSoft Trojan Killer\rico.c
c:\program files\GridinSoft Trojan Killer\rlpack.z
c:\program files\GridinSoft Trojan Killer\service.a
c:\program files\GridinSoft Trojan Killer\sesi.a
c:\program files\GridinSoft Trojan Killer\smd.c
c:\program files\GridinSoft Trojan Killer\spl.a
c:\program files\GridinSoft Trojan Killer\startup.a
c:\program files\GridinSoft Trojan Killer\swl.c
c:\program files\GridinSoft Trojan Killer\trojankiller.exe
c:\program files\GridinSoft Trojan Killer\trojanKiller.chm
c:\program files\GridinSoft Trojan Killer\unins000.dat
c:\program files\GridinSoft Trojan Killer\unins000.exe
c:\program files\GridinSoft Trojan Killer\upack.z
c:\program files\GridinSoft Trojan Killer\upx.z
c:\program files\GridinSoft Trojan Killer\vs.c
c:\program files\GridinSoft Trojan Killer\wl.c
c:\program files\GridinSoft Trojan Killer\xpack.z
c:\program files\GridinSoft Trojan Killer\yoda.z
c:\program files\IObit
c:\program files\IObit\Advanced SystemCare 3\AutoCare.exe
c:\program files\IObit\Advanced SystemCare 3\AutoSweep.exe
c:\program files\IObit\Advanced SystemCare 3\AWC.exe
c:\program files\IObit\Advanced SystemCare 3\AWCInit.exe
c:\program files\IObit\Advanced SystemCare 3\AwcSchedule.dll
c:\program files\IObit\Advanced SystemCare 3\ContextMenu.exe
c:\program files\IObit\Advanced SystemCare 3\CookiesBK.pln
c:\program files\IObit\Advanced SystemCare 3\CoolTrayIcon_D6plus.bpl
c:\program files\IObit\Advanced SystemCare 3\Def.dbd
c:\program files\IObit\Advanced SystemCare 3\DiskMap.dll
c:\program files\IObit\Advanced SystemCare 3\ESR.exe
c:\program files\IObit\Advanced SystemCare 3\EULA.rtf
c:\program files\IObit\Advanced SystemCare 3\FFSweep.dll
c:\program files\IObit\Advanced SystemCare 3\FileSweep.dll
c:\program files\IObit\Advanced SystemCare 3\Help.html
c:\program files\IObit\Advanced SystemCare 3\chkdskback.exe
c:\program files\IObit\Advanced SystemCare 3\IEFavBK.pln
c:\program files\IObit\Advanced SystemCare 3\Images\care.png
c:\program files\IObit\Advanced SystemCare 3\Images\ds.png
c:\program files\IObit\Advanced SystemCare 3\Images\home.png
c:\program files\IObit\Advanced SystemCare 3\Images\mw.png
c:\program files\IObit\Advanced SystemCare 3\Images\tips.jpg
c:\program files\IObit\Advanced SystemCare 3\Images\tips2.jpg
c:\program files\IObit\Advanced SystemCare 3\Images\ut.png
c:\program files\IObit\Advanced SystemCare 3\IObitUpdate.exe
c:\program files\IObit\Advanced SystemCare 3\Language\Albanian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Belarusian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Brasil.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Czech.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Dansk.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Dutch.lng
c:\program files\IObit\Advanced SystemCare 3\Language\English.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Finnish.lng
c:\program files\IObit\Advanced SystemCare 3\Language\French.lng
c:\program files\IObit\Advanced SystemCare 3\Language\German.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Hebrew.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Hungarian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\ChineseSimp.lng
c:\program files\IObit\Advanced SystemCare 3\Language\ChineseTrad.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Italiano.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Japanese.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Korean.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Persian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Polish.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Portuguese(BRAZIL).lng
c:\program files\IObit\Advanced SystemCare 3\Language\Romanian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Russian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Slovenian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Spanish.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Srpski.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Svenska.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Swedish.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Turkish.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Ukrainian.lng
c:\program files\IObit\Advanced SystemCare 3\Language\Valencian.lng
c:\program files\IObit\Advanced SystemCare 3\License.dat
c:\program files\IObit\Advanced SystemCare 3\News\bnews.html
c:\program files\IObit\Advanced SystemCare 3\News\Css\bstyle.css
c:\program files\IObit\Advanced SystemCare 3\News\Css\wstyle.css
c:\program files\IObit\Advanced SystemCare 3\News\wnews.html
c:\program files\IObit\Advanced SystemCare 3\NtfsData.dll
c:\program files\IObit\Advanced SystemCare 3\RegeditBK.pln
c:\program files\IObit\Advanced SystemCare 3\Registration.exe
c:\program files\IObit\Advanced SystemCare 3\Routine.dll
c:\program files\IObit\Advanced SystemCare 3\rtl70.bpl
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_01.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_01_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_02.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_02_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_03.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_03_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_04.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Btn_04_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Button_bg_down.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Button_bg_left.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Button_bg_right.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\4C_Button_bg_up.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Bg_Content.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\BG_Main.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Care_Button_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Care_Button_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Care_Button_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Care_Button_en_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Care_Button_en_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Care_Button_en_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Close1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Close2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Content_bg_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Content_bg_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Content_bg_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Flag.ico
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Check.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Checked.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Layout.ini
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Min1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Min2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\scan.avi
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Shadow.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Tab_Bottom.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Tab_Selected_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Tab_Selected_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Tab_Selected_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Tab_UnSelected_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Tab_UnSelected_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Tab_UnSelected_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Title.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\UnCheck.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Unchecked.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Upgrade1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\Black\Upgrade2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_01.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_01_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_02.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_02_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_03.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_03_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_04.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Btn_04_mouseover.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Button_bg_down.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Button_bg_left.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Button_bg_right.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\4C_Button_bg_up.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Bg_Content.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\BG_Main.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Care_Button_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Care_Button_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Care_Button_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Care_Button_en_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Care_Button_en_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Care_Button_en_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Close1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Close2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Content_bg_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Content_bg_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Content_bg_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Flag.ico
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Check.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Checked.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Layout.ini
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Min1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Min2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\scan.avi
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Shadow.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_Bottom.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_BottomLine.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_Selected_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_Selected_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_Selected_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_UnSelected_1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_UnSelected_2.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Tab_UnSelected_3.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Title.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\UnCheck.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Unchecked.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Upgrade1.png
c:\program files\IObit\Advanced SystemCare 3\Skin\White\Upgrade2.png
c:\program files\IObit\Advanced SystemCare 3\sqlite3.dll
c:\program files\IObit\Advanced SystemCare 3\StartMenu.exe
c:\program files\IObit\Advanced SystemCare 3\STFix.dll
c:\program files\IObit\Advanced SystemCare 3\Sup_DiskCleaner.exe
c:\program files\IObit\Advanced SystemCare 3\Sup_DiskDoctor.exe
c:\program files\IObit\Advanced SystemCare 3\Sup_GameBooster.exe
c:\program files\IObit\Advanced SystemCare 3\Sup_InternetBooster.exe
c:\program files\IObit\Advanced SystemCare 3\Sup_ISD.exe
c:\program files\IObit\Advanced SystemCare 3\Sup_RegistryDefrag.exe
c:\program files\IObit\Advanced SystemCare 3\Sup_ShortcutsFixer.exe
c:\program files\IObit\Advanced SystemCare 3\Sup_SmartRAM.exe
c:\program files\IObit\Advanced SystemCare 3\Sus_DriverBackUp.exe
c:\program files\IObit\Advanced SystemCare 3\Sus_FileShredder.exe
c:\program files\IObit\Advanced SystemCare 3\Sus_IS360.exe
c:\program files\IObit\Advanced SystemCare 3\Sus_PIeHelp.exe
c:\program files\IObit\Advanced SystemCare 3\Sus_SystemBackup.exe
c:\program files\IObit\Advanced SystemCare 3\Sus_SystemFileScan.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_AutoShutDown.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_ClonedFilesFinder.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_ContextManager.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_DiskExplorer.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_RestoreCenter.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_SoftUninstal.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_StartUpManager.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_SysInfo.exe
c:\program files\IObit\Advanced SystemCare 3\Sut_WinManager.exe
c:\program files\IObit\Advanced SystemCare 3\TurboBoost.exe
c:\program files\IObit\Advanced SystemCare 3\unins000.dat
c:\program files\IObit\Advanced SystemCare 3\unins000.exe
c:\program files\IObit\Advanced SystemCare 3\unins000.msg
c:\program files\IObit\Advanced SystemCare 3\Update History.txt
c:\program files\IObit\Advanced SystemCare 3\Update\awc3check.upt
c:\program files\IObit\Advanced SystemCare 3\vcl70.bpl
c:\program files\IObit\Advanced SystemCare 3\vclx70.bpl
c:\program files\IObit\Advanced SystemCare 3\winSkinD7R.bpl
c:\program files\IObit\Advanced SystemCare 3\Wizard.exe
c:\program files\IObit\Game Booster\Čti.txt
c:\program files\IObit\Game Booster\AutoUpdate.exe
c:\program files\IObit\Game Booster\bookmarks.exe
c:\program files\IObit\Game Booster\Boost.exe
c:\program files\IObit\Game Booster\Damnedovy češtiny.url
c:\program files\IObit\Game Booster\fav.ico
c:\program files\IObit\Game Booster\feedback.log
c:\program files\IObit\Game Booster\Freeware\GB_FreeSoftwareDownloader.exe
c:\program files\IObit\Game Booster\Freeware\Check.dll
c:\program files\IObit\Game Booster\Freeware\Languages\Inno_Czech.lng
c:\program files\IObit\Game Booster\Freeware\Languages\Inno_English.lng
c:\program files\IObit\Game Booster\GameBooster.exe
c:\program files\IObit\Game Booster\gbinit.exe
c:\program files\IObit\Game Booster\gbtray.exe
c:\program files\IObit\Game Booster\Language\Arabic.lng
c:\program files\IObit\Game Booster\Language\Catalan.lng
c:\program files\IObit\Game Booster\Language\Croatian.lng
c:\program files\IObit\Game Booster\Language\Czech.lng
c:\program files\IObit\Game Booster\Language\Dansk.lng
c:\program files\IObit\Game Booster\Language\Dutch.lng
c:\program files\IObit\Game Booster\Language\English.lng
c:\program files\IObit\Game Booster\Language\Finnish.lng
c:\program files\IObit\Game Booster\Language\French.lng
c:\program files\IObit\Game Booster\Language\German.lng
c:\program files\IObit\Game Booster\Language\Hungarian.lng
c:\program files\IObit\Game Booster\Language\ChineseSimp.lng
c:\program files\IObit\Game Booster\Language\ChineseTrad.lng
c:\program files\IObit\Game Booster\Language\Indonesian.lng
c:\program files\IObit\Game Booster\Language\Italian.lng
c:\program files\IObit\Game Booster\Language\Korean.lng
c:\program files\IObit\Game Booster\Language\Polish.lng
c:\program files\IObit\Game Booster\Language\Portuguese(BRAZIL).lng
c:\program files\IObit\Game Booster\Language\Romanian.lng
c:\program files\IObit\Game Booster\Language\Russian.lng
c:\program files\IObit\Game Booster\Language\Spanish.lng
c:\program files\IObit\Game Booster\Language\Swedish.lng
c:\program files\IObit\Game Booster\Language\Turkish.lng
c:\program files\IObit\Game Booster\LatestNews\imagenews.png
c:\program files\IObit\Game Booster\LatestNews\LatestNews.ini
c:\program files\IObit\Game Booster\license.dat
c:\program files\IObit\Game Booster\madbasic_.bpl
c:\program files\IObit\Game Booster\maddisAsm_.bpl
c:\program files\IObit\Game Booster\madexcept_.bpl
c:\program files\IObit\Game Booster\PowerConfig.dll
c:\program files\IObit\Game Booster\rtl120.bpl
c:\program files\IObit\Game Booster\sqlite3.dll
c:\program files\IObit\Game Booster\taskMgr.dll
c:\program files\IObit\Game Booster\TaskSchedule.exe
c:\program files\IObit\Game Booster\unins000.dat
c:\program files\IObit\Game Booster\unins000.exe
c:\program files\IObit\Game Booster\unins000.msg
c:\program files\IObit\Game Booster\Update\Update.ini
c:\program files\IObit\Game Booster\vcl120.bpl
c:\program files\IObit\Game Booster\vclx120.bpl
c:\program files\IObit\IObit Security 360\IS360DataBase.db
c:\program files\IObit\IObit Security 360\is360ext.dll
c:\program files\IObit\IObit Security 360\is360mon.dll
c:\program files\IObit\IObit Security 360\IWsIS360.exe
c:\program files\IObit\IObit Security 360\license.dat
c:\program files\IObit\IObit Security 360\log\Scan\2011-05-07 8-37-32.log
c:\program files\IObit\IObit Security 360\log\Scan\2011-07-24 18-34-8.log
c:\program files\IObit\IObit Security 360\log\Scan\2011-07-24 19-15-37.log
c:\program files\IObit\IObit Security 360\log\Scan\2011-07-24 19-32-41.log
c:\program files\IObit\IObit Security 360\Quarantine Zone\info.db
c:\program files\IObit\IObit Security 360\Quarantine Zone\itrymdxb
c:\program files\IObit\IObit Security 360\UpdateLog.txt
c:\program files\IObit\Smart Defrag 2\drivers\win7_x64\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\win7_x64\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\drivers\win7_x86\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\win7_x86\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\drivers\wlh_x64\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\wlh_x64\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\drivers\wlh_x86\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\wlh_x86\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\drivers\wnet_x64\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\wnet_x64\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\drivers\wnet_x86\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\wnet_x86\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\drivers\wxp_x64\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\wxp_x64\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\drivers\wxp_x86\SmartDefragBootTime.exe
c:\program files\IObit\Smart Defrag 2\drivers\wxp_x86\SmartDefragDriver.sys
c:\program files\IObit\Smart Defrag 2\EULA.rtf
c:\program files\IObit\Smart Defrag 2\Help\Images\001.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\002.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\003.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\004.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\005.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\006.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\007.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\008.jpg
c:\program files\IObit\Smart Defrag 2\Help\Images\009.jpg
c:\program files\IObit\Smart Defrag 2\Help\Index.html
c:\program files\IObit\Smart Defrag 2\Language\Albanian.lng
c:\program files\IObit\Smart Defrag 2\Language\Arabic.lng
c:\program files\IObit\Smart Defrag 2\Language\Bulgarian.lng
c:\program files\IObit\Smart Defrag 2\Language\Czech.lng
c:\program files\IObit\Smart Defrag 2\Language\Danish.lng
c:\program files\IObit\Smart Defrag 2\Language\Dutch.lng
c:\program files\IObit\Smart Defrag 2\Language\English.lng
c:\program files\IObit\Smart Defrag 2\Language\Finnish.lng
c:\program files\IObit\Smart Defrag 2\Language\Flemish.lng
c:\program files\IObit\Smart Defrag 2\Language\French.lng
c:\program files\IObit\Smart Defrag 2\Language\Georgian.lng
c:\program files\IObit\Smart Defrag 2\Language\German.lng
c:\program files\IObit\Smart Defrag 2\Language\Greek.lng
c:\program files\IObit\Smart Defrag 2\Language\Hebrew.lng
c:\program files\IObit\Smart Defrag 2\Language\Hungarian.lng
c:\program files\IObit\Smart Defrag 2\Language\ChineseSimp.lng
c:\program files\IObit\Smart Defrag 2\Language\ChineseTrad.lng
c:\program files\IObit\Smart Defrag 2\Language\Italian.lng
c:\program files\IObit\Smart Defrag 2\Language\Italiano.lng
c:\program files\IObit\Smart Defrag 2\Language\Japanese.lng
c:\program files\IObit\Smart Defrag 2\Language\Korean.lng
c:\program files\IObit\Smart Defrag 2\Language\Kurdish.lng
c:\program files\IObit\Smart Defrag 2\Language\Malay.lng
c:\program files\IObit\Smart Defrag 2\Language\Malayalam.lng
c:\program files\IObit\Smart Defrag 2\Language\Norwegian.lng
c:\program files\IObit\Smart Defrag 2\Language\Polish.lng
c:\program files\IObit\Smart Defrag 2\Language\Portuguese(Brazil).lng
c:\program files\IObit\Smart Defrag 2\Language\Portuguese(Portugal).lng
c:\program files\IObit\Smart Defrag 2\Language\Romanian.lng
c:\program files\IObit\Smart Defrag 2\Language\Russian.lng
c:\program files\IObit\Smart Defrag 2\Language\Slovak.lng
c:\program files\IObit\Smart Defrag 2\Language\Slovenian.lng
c:\program files\IObit\Smart Defrag 2\Language\Spanish.lng
c:\program files\IObit\Smart Defrag 2\Language\Swedish.lng
c:\program files\IObit\Smart Defrag 2\Language\Turkish.lng
c:\program files\IObit\Smart Defrag 2\Language\Vietnamese.lng
c:\program files\IObit\Smart Defrag 2\madbasic_.bpl
c:\program files\IObit\Smart Defrag 2\maddisAsm_.bpl
c:\program files\IObit\Smart Defrag 2\madexcept_.bpl
c:\program files\IObit\Smart Defrag 2\NtfsData.dll
c:\program files\IObit\Smart Defrag 2\rtl120.bpl
c:\program files\IObit\Smart Defrag 2\SDDriverMgr.dll
c:\program files\IObit\Smart Defrag 2\SDInit.exe
c:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Shadow.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Center.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Close_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Close_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\ColumnDivider.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\ColumnHeader.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Bottom_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Bottom_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Top_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Top_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Bottom.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Left_Top.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Right_Top.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Top.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Hide.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Checkbox_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Checkbox_Checked.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Checkbox_Unchecked.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Item_Selected.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Layout.ini
c:\program files\IObit\Smart Defrag 2\Skins\Black\line.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Logo.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Maximize_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Maximize_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Minimize_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Minimize_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\News_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\News_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\News_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Page_Body.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Bg_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Bg_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Bg_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Fg_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Fg_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Fg_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Restore_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Restore_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Setting_Text_Shadow.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Show.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Statistics.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Tab_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Tab_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Tab_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Title.png
c:\program files\IObit\Smart Defrag 2\Skins\Black\Top.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Add_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Add_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Add_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Add_Shadow.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\center.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Close_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Close_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\ColumnDivider.png
c:\program files\IObit\Smart Defrag 2\Skins\White\ColumnHeader.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Bottom_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Bottom_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Top_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Top_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Bottom.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Left_Top.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Right_Top.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Top.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Hide.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Checkbox_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Checkbox_Checked.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Checkbox_Unchecked.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Item_Selected.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Layout.ini
c:\program files\IObit\Smart Defrag 2\Skins\White\line.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Logo.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Maximize_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Maximize_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Minimize_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Minimize_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\News_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\White\News_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\White\News_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Page_Body.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Bg_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Bg_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Bg_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Fg_Left.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Fg_Middle.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Fg_Right.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Restore_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Restore_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Setting_Text_Shadow.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Show.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Statistics.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Disable.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Tab_Focus.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Tab_Hot.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Tab_Normal.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Title.png
c:\program files\IObit\Smart Defrag 2\Skins\White\Top.png
c:\program files\IObit\Smart Defrag 2\SmartDefrag.exe
c:\program files\IObit\Smart Defrag 2\taskMgr.dll
c:\program files\IObit\Smart Defrag 2\TaskSchedule.exe
c:\program files\IObit\Smart Defrag 2\unins000.dat
c:\program files\IObit\Smart Defrag 2\unins000.exe
c:\program files\IObit\Smart Defrag 2\unins000.msg
c:\program files\IObit\Smart Defrag 2\vcl120.bpl
c:\program files\IObit\Smart Defrag 2\vclx120.bpl
c:\program files\McAfee
c:\program files\McAfee\SiteAdvisor\ActUtil.exe
c:\program files\McAfee\SiteAdvisor\Components\IMcFFPlg.xpt
c:\program files\McAfee\SiteAdvisor\Components\McFFPlg.dll
c:\program files\McAfee\SiteAdvisor\contents.rdf
c:\program files\McAfee\SiteAdvisor\default.txt
c:\program files\McAfee\SiteAdvisor\Download\s1v0
c:\program files\McAfee\SiteAdvisor\Download\s1v0.1
c:\program files\McAfee\SiteAdvisor\Download\s1v0.2
c:\program files\McAfee\SiteAdvisor\elist.dat
c:\program files\McAfee\SiteAdvisor\chr.inf
c:\program files\McAfee\SiteAdvisor\chrome.manifest
c:\program files\McAfee\SiteAdvisor\install.rdf
c:\program files\McAfee\SiteAdvisor\mcbrwctl.dll
c:\program files\McAfee\SiteAdvisor\McChPlg.crx
c:\program files\McAfee\SiteAdvisor\McIEPlg.dll
c:\program files\McAfee\SiteAdvisor\McPlgUI.dll
c:\program files\McAfee\SiteAdvisor\McSACore.exe
c:\program files\McAfee\SiteAdvisor\McSACorePS.dll
c:\program files\McAfee\SiteAdvisor\oem.txt
c:\program files\McAfee\SiteAdvisor\SA_indep.inf
c:\program files\McAfee\SiteAdvisor\SA_main.inf
c:\program files\McAfee\SiteAdvisor\SA_win32.inf
c:\program files\McAfee\SiteAdvisor\sahook.dll
c:\program files\McAfee\SiteAdvisor\saplugin.dll
c:\program files\McAfee\SiteAdvisor\sares.dll
c:\program files\McAfee\SiteAdvisor\saSets.ini
c:\program files\McAfee\SiteAdvisor\SaSSHMod.dll
c:\program files\McAfee\SiteAdvisor\saupkeep.dll
c:\program files\McAfee\SiteAdvisor\Scripts\balloon.html
c:\program files\McAfee\SiteAdvisor\Scripts\balloon.js
c:\program files\McAfee\SiteAdvisor\Scripts\balloon_logo.gif
c:\program files\McAfee\SiteAdvisor\Scripts\balloon_logo_plus.gif
c:\program files\McAfee\SiteAdvisor\Scripts\blackpixel.gif
c:\program files\McAfee\SiteAdvisor\Scripts\bullet.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_black.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_black_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_disabled.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_green.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_green_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_grey.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_grey_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_hs.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_hs_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_red.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_red_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_yellow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\button_yellow_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\common.js
c:\program files\McAfee\SiteAdvisor\Scripts\corner-solid.gif
c:\program files\McAfee\SiteAdvisor\Scripts\cornersm-hollow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\cornersm-solid.gif
c:\program files\McAfee\SiteAdvisor\Scripts\down_arrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\download_careful.gif
c:\program files\McAfee\SiteAdvisor\Scripts\download_unsafe.gif
c:\program files\McAfee\SiteAdvisor\Scripts\empty.gif
c:\program files\McAfee\SiteAdvisor\Scripts\error-icon.gif
c:\program files\McAfee\SiteAdvisor\Scripts\favicon.ico
c:\program files\McAfee\SiteAdvisor\Scripts\g_banner_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_banner_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_banner_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_banner_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_bottom_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_bottom_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_bottom_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_bottom_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_facet.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_footer_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_footer_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_footer_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_header_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_header_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_header_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_icon.gif
c:\program files\McAfee\SiteAdvisor\Scripts\g_upsell_border.gif
c:\program files\McAfee\SiteAdvisor\Scripts\gleftarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\green.gif
c:\program files\McAfee\SiteAdvisor\Scripts\grightarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\hackersafe.gif
c:\program files\McAfee\SiteAdvisor\Scripts\hs.gif
c:\program files\McAfee\SiteAdvisor\Scripts\hs_icon.gif
c:\program files\McAfee\SiteAdvisor\Scripts\inst-background.gif
c:\program files\McAfee\SiteAdvisor\Scripts\inst-top.gif
c:\program files\McAfee\SiteAdvisor\Scripts\inst-xup.gif
c:\program files\McAfee\SiteAdvisor\Scripts\large-buttonC.gif
c:\program files\McAfee\SiteAdvisor\Scripts\large-buttonL.gif
c:\program files\McAfee\SiteAdvisor\Scripts\large-buttonR.gif
c:\program files\McAfee\SiteAdvisor\Scripts\main.js
c:\program files\McAfee\SiteAdvisor\Scripts\mcafee_logo.gif
c:\program files\McAfee\SiteAdvisor\Scripts\mcafee_yahoo_cobranded_toolbar.gif
c:\program files\McAfee\SiteAdvisor\Scripts\mcafeesiteadvisor.gif
c:\program files\McAfee\SiteAdvisor\Scripts\mcwedge.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_arrow_down.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_arrow_up.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_black.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_black_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_disabled.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_green.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_green_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_grey.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_grey_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_hs.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_hs_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_red.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_red_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_yellow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\nb_button_yellow_lock.gif
c:\program files\McAfee\SiteAdvisor\Scripts\protectedmode.gif
c:\program files\McAfee\SiteAdvisor\Scripts\protection.gif
c:\program files\McAfee\SiteAdvisor\Scripts\protmode-off.gif
c:\program files\McAfee\SiteAdvisor\Scripts\protmode-on.gif
c:\program files\McAfee\SiteAdvisor\Scripts\question-icon.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_banner_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_banner_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_banner_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_banner_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_bottom_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_bottom_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_bottom_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_bottom_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_facet.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_footer_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_footer_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_footer_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_header_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_header_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_header_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_header_r_nox.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_icon.gif
c:\program files\McAfee\SiteAdvisor\Scripts\r_upsell_border.gif
c:\program files\McAfee\SiteAdvisor\Scripts\red.gif
c:\program files\McAfee\SiteAdvisor\Scripts\redarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\rleftarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\rrightarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\sa-logo-plus.gif
c:\program files\McAfee\SiteAdvisor\Scripts\sa-logo.gif
c:\program files\McAfee\SiteAdvisor\Scripts\safe.js
c:\program files\McAfee\SiteAdvisor\Scripts\safe.xul
c:\program files\McAfee\SiteAdvisor\Scripts\safe_im.js
c:\program files\McAfee\SiteAdvisor\Scripts\safeshare_green.gif
c:\program files\McAfee\SiteAdvisor\Scripts\safeshare_grey.gif
c:\program files\McAfee\SiteAdvisor\Scripts\safeshare_red.gif
c:\program files\McAfee\SiteAdvisor\Scripts\safeshare_yellow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\saffplg.js
c:\program files\McAfee\SiteAdvisor\Scripts\SAPlus-graphic.gif
c:\program files\McAfee\SiteAdvisor\Scripts\searchglass.gif
c:\program files\McAfee\SiteAdvisor\Scripts\selected_tab.gif
c:\program files\McAfee\SiteAdvisor\Scripts\siteadvisor.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderA1.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderA2.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderA3.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderA4.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderD1.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderD2.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderD3.gif
c:\program files\McAfee\SiteAdvisor\Scripts\SliderD4.gif
c:\program files\McAfee\SiteAdvisor\Scripts\small-buttonC.gif
c:\program files\McAfee\SiteAdvisor\Scripts\small-buttonL.gif
c:\program files\McAfee\SiteAdvisor\Scripts\small-buttonR.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_bottom_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_bottom_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_bottom_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_copylink_off.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_copylink_on.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_facebook_off.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_facebook_on.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_footer_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_footer_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_footer_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_header_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_header_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_header_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_twitter_off.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ss_twitter_on.gif
c:\program files\McAfee\SiteAdvisor\Scripts\unselected_tab.gif
c:\program files\McAfee\SiteAdvisor\Scripts\untested.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_banner_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_banner_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_banner_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_banner_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_bottom_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_bottom_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_bottom_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_bottom_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_footer_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_footer_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_footer_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_header_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_header_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_header_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_icon.gif
c:\program files\McAfee\SiteAdvisor\Scripts\w_upsell_border.gif
c:\program files\McAfee\SiteAdvisor\Scripts\wleftarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\wrightarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\xup.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_banner_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_banner_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_banner_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_banner_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_bottom_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_bottom_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_bottom_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_bottom_sep.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_facet.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_footer_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_footer_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_footer_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_header_c.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_header_l.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_header_r.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_header_r_nox.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_icon.gif
c:\program files\McAfee\SiteAdvisor\Scripts\y_upsell_border.gif
c:\program files\McAfee\SiteAdvisor\Scripts\yellow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\yleftarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\yrightarrow.gif
c:\program files\McAfee\SiteAdvisor\Scripts\ytri.gif
c:\program files\McAfee\SiteAdvisor\uninstall.exe
c:\program files\McAfee\Temp\qxzBD45\msaduc.inf
c:\program files\McAfee\Temp\qxzBD45\SA_main.inf
c:\program files\McAfee\Temp\qxzBD45\SA_x64.inf
c:\program files\McAfee\Temp\qxzBD45\ssearch.gif
c:\program files\NCH_EN\prxtbNCH_.dll
c:\program files\Spybot - Search & Destroy
c:\program files\Spybot - Search & Destroy\advcheck.dll
c:\program files\Spybot - Search & Destroy\aports.dll
c:\program files\Spybot - Search & Destroy\blindman.exe
c:\program files\Spybot - Search & Destroy\Default configuration.ini
c:\program files\Spybot - Search & Destroy\DelZip179.dll
c:\program files\Spybot - Search & Destroy\DOEFTCKR.scr
c:\program files\Spybot - Search & Destroy\Dummies\dummy.cd_clint.dll
c:\program files\Spybot - Search & Destroy\Dummies\dummy.dap.gif
c:\program files\Spybot - Search & Destroy\Dummies\dummy.data.xml
c:\program files\Spybot - Search & Destroy\Dummies\dummy.default.gif
c:\program files\Spybot - Search & Destroy\Dummies\dummy.related.htm
c:\program files\Spybot - Search & Destroy\Help\Brasil.license.txt
c:\program files\Spybot - Search & Destroy\Help\Cesky.license.txt
c:\program files\Spybot - Search & Destroy\Help\Deutsch.license.txt
c:\program files\Spybot - Search & Destroy\Help\English.chm
c:\program files\Spybot - Search & Destroy\Help\English.license.txt
c:\program files\Spybot - Search & Destroy\Help\Espanol.license.txt
c:\program files\Spybot - Search & Destroy\Help\Francais.license.txt
c:\program files\Spybot - Search & Destroy\Help\Hellenic.license.txt
c:\program files\Spybot - Search & Destroy\Help\Italiano.license.txt
c:\program files\Spybot - Search & Destroy\Help\Japanese.license.ansi.txt
c:\program files\Spybot - Search & Destroy\Help\Japanese.license.txt
c:\program files\Spybot - Search & Destroy\Help\Korean.license.txt
c:\program files\Spybot - Search & Destroy\Help\Nederlands.license.txt
c:\program files\Spybot - Search & Destroy\Help\Polski.license.txt
c:\program files\Spybot - Search & Destroy\Help\Russkiy.license.txt
c:\program files\Spybot - Search & Destroy\Help\Slovensky.license.txt
c:\program files\Spybot - Search & Destroy\Help\Srpski.license.txt
c:\program files\Spybot - Search & Destroy\Help\Suomi.license.txt
c:\program files\Spybot - Search & Destroy\Includes\Adware.sbi
c:\program files\Spybot - Search & Destroy\Includes\AdwareC.sbi
c:\program files\Spybot - Search & Destroy\Includes\Browserpages.sbs
c:\program files\Spybot - Search & Destroy\Includes\CLSIDs.sbs
c:\program files\Spybot - Search & Destroy\Includes\Cookies.sbi
c:\program files\Spybot - Search & Destroy\Includes\Cookies.sbs
c:\program files\Spybot - Search & Destroy\Includes\Dialer.sbi
c:\program files\Spybot - Search & Destroy\Includes\Dialer.sbs
c:\program files\Spybot - Search & Destroy\Includes\DialerC.sbi
c:\program files\Spybot - Search & Destroy\Includes\Domains.sbs
c:\program files\Spybot - Search & Destroy\Includes\HeavyDuty.sbi
c:\program files\Spybot - Search & Destroy\Includes\Hijackers.sbi
c:\program files\Spybot - Search & Destroy\Includes\HijackersC.sbi
c:\program files\Spybot - Search & Destroy\Includes\iPhone.sbi
c:\program files\Spybot - Search & Destroy\Includes\Keyloggers.sbi
c:\program files\Spybot - Search & Destroy\Includes\KeyloggersC.sbi
c:\program files\Spybot - Search & Destroy\Includes\Logs.uts
c:\program files\Spybot - Search & Destroy\Includes\LSP.sbi
c:\program files\Spybot - Search & Destroy\Includes\LSP.sbs
c:\program files\Spybot - Search & Destroy\Includes\Malware.sbi
c:\program files\Spybot - Search & Destroy\Includes\MalwareC.sbi
c:\program files\Spybot - Search & Destroy\Includes\OperaPlugins.sbs
c:\program files\Spybot - Search & Destroy\Includes\ProcWatch.sbs
c:\program files\Spybot - Search & Destroy\Includes\PUPS.sbi
c:\program files\Spybot - Search & Destroy\Includes\PUPSC.sbi
c:\program files\Spybot - Search & Destroy\Includes\RegWatch.sbs
c:\program files\Spybot - Search & Destroy\Includes\RegXLinks.sbs
c:\program files\Spybot - Search & Destroy\Includes\Revision.sbi
c:\program files\Spybot - Search & Destroy\Includes\Revision.sbs
c:\program files\Spybot - Search & Destroy\Includes\Searchpages.sbs
c:\program files\Spybot - Search & Destroy\Includes\Security.sbi
c:\program files\Spybot - Search & Destroy\Includes\SecurityC.sbi

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 16:50
od Bublor
Druha cast:



c:\program files\Spybot - Search & Destroy\Includes\Services.sbs
c:\program files\Spybot - Search & Destroy\Includes\Spybots.sbi
c:\program files\Spybot - Search & Destroy\Includes\SpybotsC.sbi
c:\program files\Spybot - Search & Destroy\Includes\Spyware.sbi
c:\program files\Spybot - Search & Destroy\Includes\SpywareC.sbi
c:\program files\Spybot - Search & Destroy\Includes\Startup.tnfo
c:\program files\Spybot - Search & Destroy\Includes\Targets.nfo
c:\program files\Spybot - Search & Destroy\Includes\Tracks.uti
c:\program files\Spybot - Search & Destroy\Includes\Trojans.sbi
c:\program files\Spybot - Search & Destroy\Includes\TrojansC-02.sbi
c:\program files\Spybot - Search & Destroy\Includes\TrojansC-03.sbi
c:\program files\Spybot - Search & Destroy\Includes\TrojansC-04.sbi
c:\program files\Spybot - Search & Destroy\Includes\TrojansC-05.sbi
c:\program files\Spybot - Search & Destroy\Includes\TrojansC.sbi
c:\program files\Spybot - Search & Destroy\Includes\TTLASSH.sbs
c:\program files\Spybot - Search & Destroy\Includes\URL-Blacklist.sbs
c:\program files\Spybot - Search & Destroy\Includes\X509White.sbs
c:\program files\Spybot - Search & Destroy\Languages\Afrikaans.sbl
c:\program files\Spybot - Search & Destroy\Languages\Arabic.sbl
c:\program files\Spybot - Search & Destroy\Languages\Azeri.sbl
c:\program files\Spybot - Search & Destroy\Languages\Bahasa Indonesia.sbl
c:\program files\Spybot - Search & Destroy\Languages\Belarusskiy.sbl
c:\program files\Spybot - Search & Destroy\Languages\Bosanski.sbl
c:\program files\Spybot - Search & Destroy\Languages\Brasil.sbl
c:\program files\Spybot - Search & Destroy\Languages\Bulgarski.sbl
c:\program files\Spybot - Search & Destroy\Languages\Catalan.sbl
c:\program files\Spybot - Search & Destroy\Languages\Cesky.sbl
c:\program files\Spybot - Search & Destroy\Languages\Dansk.sbl
c:\program files\Spybot - Search & Destroy\Languages\Deutsch.sbl
c:\program files\Spybot - Search & Destroy\Languages\Eesti.sbl
c:\program files\Spybot - Search & Destroy\Languages\English.sbl
c:\program files\Spybot - Search & Destroy\Languages\Espanol.sbl
c:\program files\Spybot - Search & Destroy\Languages\Esperanto.sbl
c:\program files\Spybot - Search & Destroy\Languages\Euskera.sbl
c:\program files\Spybot - Search & Destroy\Languages\Farsi.sbl
c:\program files\Spybot - Search & Destroy\Languages\Francais.sbl
c:\program files\Spybot - Search & Destroy\Languages\Furlan.sbl
c:\program files\Spybot - Search & Destroy\Languages\Galego.sbl
c:\program files\Spybot - Search & Destroy\Languages\Hebrew.sbl
c:\program files\Spybot - Search & Destroy\Languages\Hellenic.sbl
c:\program files\Spybot - Search & Destroy\Languages\Hindi.sbl
c:\program files\Spybot - Search & Destroy\Languages\Hrvatski.sbl
c:\program files\Spybot - Search & Destroy\Languages\Chinese (simplified).sbl
c:\program files\Spybot - Search & Destroy\Languages\Chinese (traditional).sbl
c:\program files\Spybot - Search & Destroy\Languages\Islenska.sbl
c:\program files\Spybot - Search & Destroy\Languages\Italiano.sbl
c:\program files\Spybot - Search & Destroy\Languages\Japanese.sbl
c:\program files\Spybot - Search & Destroy\Languages\Korean.sbl
c:\program files\Spybot - Search & Destroy\Languages\Latvian.sbl
c:\program files\Spybot - Search & Destroy\Languages\Letzebuergesch.sbl
c:\program files\Spybot - Search & Destroy\Languages\Lietuviu.sbl
c:\program files\Spybot - Search & Destroy\Languages\Magyar.sbl
c:\program files\Spybot - Search & Destroy\Languages\Makedonski.sbl
c:\program files\Spybot - Search & Destroy\Languages\Melayu.sbl
c:\program files\Spybot - Search & Destroy\Languages\Nederlands.sbl
c:\program files\Spybot - Search & Destroy\Languages\Norsk.sbl
c:\program files\Spybot - Search & Destroy\Languages\Polski.sbl
c:\program files\Spybot - Search & Destroy\Languages\Portugues.sbl
c:\program files\Spybot - Search & Destroy\Languages\Romaneste.sbl
c:\program files\Spybot - Search & Destroy\Languages\Russkiy.sbl
c:\program files\Spybot - Search & Destroy\Languages\Shqip.sbl
c:\program files\Spybot - Search & Destroy\Languages\Slovenscina.sbl
c:\program files\Spybot - Search & Destroy\Languages\Slovensky.sbl
c:\program files\Spybot - Search & Destroy\Languages\Srpski.sbl
c:\program files\Spybot - Search & Destroy\Languages\Suomi.sbl
c:\program files\Spybot - Search & Destroy\Languages\Svenska.sbl
c:\program files\Spybot - Search & Destroy\Languages\Thai.sbl
c:\program files\Spybot - Search & Destroy\Languages\Turkce.sbl
c:\program files\Spybot - Search & Destroy\Languages\Ukrainian.sbl
c:\program files\Spybot - Search & Destroy\Languages\Uzbek.sbl
c:\program files\Spybot - Search & Destroy\messages.zres
c:\program files\Spybot - Search & Destroy\OHGIUXJRTQA.scr
c:\program files\Spybot - Search & Destroy\OptOut.ini
c:\program files\Spybot - Search & Destroy\Plugins\Fennel.dll
c:\program files\Spybot - Search & Destroy\Plugins\Chai.dll
c:\program files\Spybot - Search & Destroy\Plugins\Mate.dll
c:\program files\Spybot - Search & Destroy\Plugins\TCPIPAddress.dll
c:\program files\Spybot - Search & Destroy\SDFiles.exe
c:\program files\Spybot - Search & Destroy\SDHelper.dll
c:\program files\Spybot - Search & Destroy\SDMain.exe
c:\program files\Spybot - Search & Destroy\SDShred.exe
c:\program files\Spybot - Search & Destroy\SDUpdate.exe
c:\program files\Spybot - Search & Destroy\SDWinSec.exe
c:\program files\Spybot - Search & Destroy\Skins\Colorblind.ini
c:\program files\Spybot - Search & Destroy\Skins\Italia.ini
c:\program files\Spybot - Search & Destroy\Skins\Italia.jpg
c:\program files\Spybot - Search & Destroy\Skins\Peace.ini
c:\program files\Spybot - Search & Destroy\Skins\Peace.jpg
c:\program files\Spybot - Search & Destroy\SpybotSD.exe
c:\program files\Spybot - Search & Destroy\sqlite3.dll
c:\program files\Spybot - Search & Destroy\TeaTimer.exe
c:\program files\Spybot - Search & Destroy\Tools.dll
c:\program files\Spybot - Search & Destroy\unins000.dat
c:\program files\Spybot - Search & Destroy\unins000.exe
c:\program files\Spybot - Search & Destroy\unins000.msg
c:\program files\Spybot - Search & Destroy\UninsSrv.dll
c:\program files\Spybot - Search & Destroy\Update.exe
c:\program files\Spybot - Search & Destroy\Updates\downloaded.ini
c:\program files\Spybot - Search & Destroy\VXCQNP.scr
c:\program files\XfireXO\prxtbXfir.dll
c:\programdata\McAfee
c:\programdata\McAfee\MCLOGS\McInst\sa_main.inf000.log
c:\programdata\McAfee\SiteAdvisor\SA.dat
c:\programdata\McAfee\SiteAdvisor\SACore\sacore.db
c:\programdata\McAfee\SiteAdvisor\SACore\sacore_priv.db
c:\programdata\McAfee\SiteAdvisor\sasshmod.dll\log.txt
c:\programdata\Spybot - Search & Destroy
c:\programdata\Spybot - Search & Destroy\Configuration.ini
c:\programdata\Spybot - Search & Destroy\Excludes\Bots.sbe
c:\programdata\Spybot - Search & Destroy\Excludes\Cookies.sbe
c:\programdata\Spybot - Search & Destroy\Excludes\FileExt.sbe
c:\programdata\Spybot - Search & Destroy\Excludes\Links.sbe
c:\programdata\Spybot - Search & Destroy\Excludes\Single.sbe
c:\programdata\Spybot - Search & Destroy\Excludes\SystemInternals.sbe
c:\programdata\Spybot - Search & Destroy\Excludes\WaitFor.sbe
c:\programdata\Spybot - Search & Destroy\Immunization.ini
c:\programdata\Spybot - Search & Destroy\Logs\Fixes.110724-2048.txt
c:\programdata\Spybot - Search & Destroy\Logs\Checks.110724-2030.log
c:\programdata\Spybot - Search & Destroy\Logs\Checks.110724-2048.txt
c:\programdata\Spybot - Search & Destroy\ProcCache.sbc
c:\programdata\Spybot - Search & Destroy\Recovery\Overview.ini
c:\programdata\Spybot - Search & Destroy\Recovery\Zango.zip
c:\programdata\Spybot - Search & Destroy\Recovery\Zango1.zip
c:\programdata\Spybot - Search & Destroy\Recovery\Zango2.zip
c:\programdata\Spybot - Search & Destroy\Recovery\Zango3.zip
c:\programdata\Spybot - Search & Destroy\Statistics.ini
c:\users\trolol\AppData\Local\BIT33D0.tmp
c:\users\trolol\AppData\Roaming\IObit
c:\windows\Tasks\AWC Startup.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\update.tray-7-0
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_0025271311531850mcinstcleanup
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_SBSDWSCService
-------\Service_SBSDWSCService
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-25 do 2011-07-25 )))))))))))))))))))))))))))))))
.
.
2011-07-25 15:34 . 2011-07-25 15:34 -------- d-----w- c:\users\user\AppData\Local\temp
2011-07-25 15:34 . 2011-07-25 15:34 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2011-07-25 15:34 . 2011-07-25 15:34 -------- d-----w- c:\users\Slipknot\AppData\Local\temp
2011-07-25 15:34 . 2011-07-25 15:34 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-25 07:04 . 2011-07-25 15:36 -------- d-----w- c:\users\trolol\AppData\Local\temp
2011-07-24 22:47 . 2011-07-24 22:47 -------- d-----w- C:\rsit
2011-07-24 22:47 . 2011-07-24 22:47 -------- d-----w- c:\program files\trend micro
2011-07-24 19:25 . 2011-07-24 19:25 -------- d-----w- c:\programdata\NCH Swift Sound
2011-07-24 18:17 . 2011-07-24 18:17 -------- d-----w- c:\users\picakundadevkamrdka
2011-07-24 18:03 . 2011-07-24 18:03 -------- d-----w- c:\programdata\Kaspersky Lab
2011-07-23 05:21 . 2011-07-13 03:39 6881616 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{651F7382-60A1-497D-B408-0D6B2596047B}\mpengine.dll
2011-07-18 22:09 . 2011-07-18 22:09 -------- d-----w- c:\users\trolol\AppData\Roaming\GetRightToGo
2011-07-16 13:26 . 2011-07-16 13:26 -------- d-----w- c:\users\trolol\AppData\Local\Adobe
2011-07-14 08:18 . 2011-07-14 08:18 -------- d-----w- c:\program files\Common Files\Adobe
2011-07-13 16:53 . 2011-07-13 16:53 -------- d-----w- c:\windows\system32\SPReview
2011-07-13 16:52 . 2011-07-13 16:52 -------- d-----w- c:\windows\system32\EventProviders
2011-07-11 12:41 . 2011-07-11 12:41 -------- d-----w- c:\users\trolol\AppData\Local\Conduit
2011-07-11 12:41 . 2011-07-24 17:52 -------- d-----w- c:\users\trolol\AppData\Roaming\Xfire
2011-07-11 12:41 . 2011-07-24 17:51 -------- d-----w- c:\programdata\Xfire
2011-07-11 12:41 . 2011-07-11 12:41 -------- d-----w- c:\program files\Xfire
2011-07-05 08:17 . 2011-07-05 08:17 -------- d-----w- c:\users\trolol\AppData\Local\ElevatedDiagnostics
2011-07-03 11:40 . 2011-07-03 11:40 -------- d-----w- c:\program files\SystemRequirementsLab
2011-07-03 11:39 . 2011-07-03 11:40 -------- d-----w- c:\users\trolol\SystemRequirementsLab
2011-07-03 11:23 . 2011-07-03 11:33 -------- d-----w- c:\users\trolol\AppData\Roaming\TeamViewer
2011-07-03 09:10 . 2011-07-03 09:16 -------- d-----w- c:\users\trolol\AppData\Local\Rockstar Games
2011-07-03 08:52 . 2011-07-03 08:52 -------- d--h--r- c:\users\trolol\AppData\Roaming\SecuROM
2011-07-03 08:51 . 2011-07-03 08:51 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-07-03 08:16 . 2011-07-03 08:17 -------- d-----w- c:\program files\Rockstar Games
2011-06-30 13:49 . 2011-06-30 13:49 -------- d-----w- c:\users\trolol\AppData\Local\DDMSettings
2011-06-29 12:40 . 2011-06-29 12:40 -------- d-----w- c:\users\trolol\AppData\Local\Apple
2011-06-29 04:46 . 2011-05-24 10:44 293376 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-06-29 04:46 . 2010-11-20 12:18 145920 ----a-w- c:\windows\system32\cfgmgr32.dll
2011-06-29 04:45 . 2011-05-04 04:34 1549312 ----a-w- c:\windows\system32\tquery.dll
2011-06-29 04:45 . 2011-05-04 04:32 666624 ----a-w- c:\windows\system32\mssvp.dll
2011-06-29 04:45 . 2011-05-04 04:32 337408 ----a-w- c:\windows\system32\mssph.dll
2011-06-29 04:45 . 2011-05-04 04:32 197120 ----a-w- c:\windows\system32\mssphtb.dll
2011-06-29 04:45 . 2011-05-04 04:32 1401344 ----a-w- c:\windows\system32\mssrch.dll
2011-06-29 04:45 . 2011-05-04 04:32 59392 ----a-w- c:\windows\system32\msscntrs.dll
2011-06-29 04:45 . 2011-05-04 04:28 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe
2011-06-29 04:45 . 2011-05-04 04:28 427520 ----a-w- c:\windows\system32\SearchIndexer.exe
2011-06-29 04:45 . 2011-05-04 04:28 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2011-06-28 18:32 . 2011-06-28 18:32 -------- d-----w- c:\users\Slipknot\AppData\Roaming\Rovio
2011-06-28 18:20 . 2011-06-28 18:20 -------- d-----w- c:\program files\Duke Nukem Forever
2011-06-28 10:59 . 2011-06-28 10:59 -------- d-----w- c:\users\trolol\AppData\Local\SKIDROW
2011-06-28 10:31 . 2011-06-28 10:31 -------- d-----w- c:\program files\Valve
2011-06-28 10:27 . 2011-06-28 10:28 -------- d-----w- c:\users\trolol\AppData\Roaming\DAEMON Tools Lite
2011-06-28 00:32 . 2011-07-03 07:53 -------- d-----w- c:\users\trolol\AppData\Roaming\BitComet
2011-06-27 14:10 . 2011-07-03 12:18 -------- d-----w- c:\users\trolol\AppData\Roaming\.minecraft
2011-06-26 21:42 . 2011-06-26 21:42 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll
2011-06-26 21:42 . 2011-06-26 21:42 1998168 ----a-w- c:\program files\Mozilla Firefox\d3dx9_43.dll
2011-06-26 14:22 . 2011-06-26 14:22 -------- d-----w- c:\users\trolol\AppData\Local\Opera
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-13 18:01 . 2011-06-22 16:10 214520 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-07-13 18:01 . 2011-06-22 16:10 214520 ----a-w- c:\windows\system32\PnkBstrB.xtr
2011-07-13 17:54 . 2011-06-22 16:10 137464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-07-13 17:13 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-06-24 18:51 . 2011-06-24 18:51 36352 ----a-w- c:\windows\system32\xfcodec.dll
2011-06-24 18:47 . 2011-06-22 16:10 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-06-23 15:28 . 2011-06-23 15:26 695296 ----a-w- c:\program files\MinecraftSP.exe
2011-06-18 08:59 . 2011-06-18 08:59 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2011-06-18 08:59 . 2011-06-18 08:59 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-06-05 16:09 . 2011-06-05 16:09 218688 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-05-30 13:42 . 2011-06-20 07:50 240640 ----a-w- c:\windows\system32\xvidvfw.dll
2011-05-28 12:56 . 2011-05-28 12:56 65536 ----a-w- c:\windows\system32\frapsvid.dll
2011-05-28 02:53 . 2011-06-16 15:17 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-05-24 17:14 . 2011-04-15 10:07 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-05-23 09:52 . 2011-06-20 07:50 153088 ----a-w- c:\windows\system32\xvid.ax
2011-05-23 07:46 . 2011-06-20 07:50 645632 ----a-w- c:\windows\system32\xvidcore.dll
2011-05-10 12:10 . 2011-04-29 17:49 40112 ----a-w- c:\windows\avastSS.scr
2011-05-10 12:10 . 2011-04-29 17:49 199304 ----a-w- c:\windows\system32\aswBoot.exe
2011-05-10 12:03 . 2011-04-29 17:50 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-05-10 12:03 . 2011-04-29 17:50 307928 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-05-10 12:02 . 2011-04-29 17:50 49240 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-05-10 11:59 . 2011-04-29 17:50 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-05-10 11:59 . 2011-04-29 17:50 53592 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-05-10 11:59 . 2011-04-29 17:50 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-05-07 21:48 . 2011-05-07 21:48 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-05-03 04:30 . 2011-06-16 15:18 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 02:46 . 2011-06-16 15:17 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-29 02:46 . 2011-06-16 15:17 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 02:46 . 2011-06-16 15:17 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-27 02:17 . 2011-06-16 15:17 223744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-27 02:17 . 2011-06-16 15:17 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-04-27 02:17 . 2011-06-16 15:17 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-06-26 21:42 . 2011-04-29 17:59 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\users\picakundadevkamrdka ----
.
2011-07-24 18:49 . 2011-07-24 18:49 65992 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000002.db
2011-07-24 18:49 . 2011-07-24 18:49 4096 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\oprand.dat
2011-07-24 18:49 . 2011-07-24 18:49 13 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\cache\cookies4.dat
2011-07-24 18:49 . 2011-07-24 18:49 12 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\cache\vlink4.dat
2011-07-24 18:49 . 2011-07-24 18:49 12 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\revocation\vlink4.dat
2011-07-24 18:49 . 2011-07-24 18:49 12 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\application_cache\mcache\vlink4.dat
2011-07-24 18:49 . 2011-07-24 18:49 12 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\vlink4.dat
2011-07-24 18:49 . 2011-07-24 18:49 16562 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\cookies4.dat
2011-07-24 18:49 . 2011-07-24 18:49 1024 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0001\adoc.bx
2011-07-24 18:49 . 2011-07-24 18:49 7680 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0001\url.axx
2011-07-24 18:49 . 2011-07-24 18:49 8192 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0001\md.dat
2011-07-24 18:49 . 2011-07-24 18:49 7680 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0001\w.axx
2011-07-24 18:49 . 2011-07-24 18:49 512 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0001\wb.vx
2011-07-24 18:49 . 2011-07-24 18:49 2997 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\bookmarks.adr
2011-07-24 18:49 . 2011-07-24 18:49 300 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\tips.ini
2011-07-24 18:49 . 2011-07-24 18:49 1325 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\operaprefs.ini
2011-07-24 18:49 . 2011-07-24 18:49 4124 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\sessions\autosave.win
2011-07-24 18:29 . 2011-07-24 18:29 1240 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk
2011-07-24 18:29 . 2011-07-24 18:29 1216 ----a-w- c:\users\picakundadevkamrdka\Desktop\Spybot - Search & Destroy.lnk
2011-07-24 18:28 . 2011-07-24 18:28 23372 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000BB.tmp
2011-07-24 18:28 . 2011-07-24 18:28 16384 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\History\Low\History.IE5\index.dat
2011-07-24 18:28 . 2011-07-24 18:28 16384 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Cookies\Low\index.dat
2011-07-24 18:28 . 2011-07-24 18:28 67 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\CRBF3O8V\desktop.ini
2011-07-24 18:28 . 2011-07-24 18:28 67 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D2UIZL5W\desktop.ini
2011-07-24 18:28 . 2011-07-24 18:28 67 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\X8KFNFDD\desktop.ini
2011-07-24 18:28 . 2011-07-24 18:28 67 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7RTITWNJ\desktop.ini
2011-07-24 18:28 . 2011-07-24 18:28 145 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\History\Low\History.IE5\desktop.ini
2011-07-24 18:28 . 2011-07-24 18:28 32768 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\index.dat
2011-07-24 18:28 . 2011-07-24 18:28 145 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\History\Low\desktop.ini
2011-07-24 18:28 . 2011-07-24 18:28 67 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\desktop.ini
2011-07-24 18:28 . 2011-07-24 18:28 67 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\desktop.ini
2011-07-24 18:27 . 2011-07-24 18:30 11868 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000BA.tmp
2011-07-24 18:27 . 2011-07-24 18:28 16409960 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\temporary_downloads\spybotsd162.exe
2011-07-24 18:27 . 2011-07-24 18:30 5939 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B8.tmp
2011-07-24 18:27 . 2011-07-24 18:27 19859 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B9.tmp
2011-07-24 18:27 . 2011-07-24 18:30 6717 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B6.tmp
2011-07-24 18:27 . 2011-07-24 18:27 5551 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B7.tmp
2011-07-24 18:27 . 2011-07-24 18:27 36411 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B3.tmp
2011-07-24 18:27 . 2011-07-24 18:27 4711 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B4.tmp
2011-07-24 18:27 . 2011-07-24 18:27 36243 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B5.tmp
2011-07-24 18:27 . 2011-07-24 18:27 46652 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AY.tmp
2011-07-24 18:27 . 2011-07-24 18:27 6606 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B0.tmp
2011-07-24 18:27 . 2011-07-24 18:30 13932 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000B1.tmp
2011-07-24 18:27 . 2011-07-24 18:27 8258 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AV.tmp
2011-07-24 18:27 . 2011-07-24 18:27 2113 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AW.tmp
2011-07-24 18:27 . 2011-07-24 18:27 2150 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AX.tmp
2011-07-24 18:27 . 2011-07-24 18:27 5190 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AU.tmp
2011-07-24 18:27 . 2011-07-24 18:27 371363 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AT.tmp
2011-07-24 18:27 . 2011-07-24 18:27 100289 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AS.tmp
2011-07-24 18:27 . 2011-07-24 18:27 163415 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AR.tmp
2011-07-24 18:27 . 2011-07-24 18:27 35021 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AQ.tmp
2011-07-24 18:27 . 2011-07-24 18:27 108851 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0003\opr000AP.tmp
2011-07-24 18:27 . 2011-07-24 18:27 549 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fwww.securitywonks.net%2Ffavicon.png
2011-07-24 18:27 . 2011-07-24 18:27 115 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.securitywonks.net.idx
2011-07-24 18:27 . 2011-07-24 18:27 26144 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AL.tmp
2011-07-24 18:27 . 2011-07-24 18:27 18470 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AM.tmp
2011-07-24 18:27 . 2011-07-24 18:27 20471 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AN.tmp
2011-07-24 18:27 . 2011-07-24 18:27 3862 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AJ.tmp
2011-07-24 18:27 . 2011-07-24 18:27 2129 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AK.tmp
2011-07-24 18:27 . 2011-07-24 18:27 2083 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AH.tmp
2011-07-24 18:27 . 2011-07-24 18:27 19353 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AE.tmp
2011-07-24 18:27 . 2011-07-24 18:27 35375 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AF.tmp
2011-07-24 18:27 . 2011-07-24 18:27 6595 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AG.tmp
2011-07-24 18:27 . 2011-07-24 18:27 4314 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AB.tmp
2011-07-24 18:27 . 2011-07-24 18:27 22700 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AC.tmp
2011-07-24 18:27 . 2011-07-24 18:27 30023 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000AD.tmp
2011-07-24 18:27 . 2011-07-24 18:27 3862 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000A8.tmp
2011-07-24 18:27 . 2011-07-24 18:27 13933 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000A3.tmp
2011-07-24 18:27 . 2011-07-24 18:27 25994 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000A4.tmp
2011-07-24 18:27 . 2011-07-24 18:27 19570 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000A5.tmp
2011-07-24 18:27 . 2011-07-24 18:27 4371 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000A6.tmp
2011-07-24 18:27 . 2011-07-24 18:27 60082 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009Z.tmp
2011-07-24 18:27 . 2011-07-24 18:27 2159 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000A0.tmp
2011-07-24 18:27 . 2011-07-24 18:27 51814 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr000A1.tmp
2011-07-24 18:26 . 2011-07-24 18:27 21195 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009X.tmp
2011-07-24 18:26 . 2011-07-24 18:26 3724 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009Y.tmp
2011-07-24 18:26 . 2011-07-24 18:26 6784 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009W.tmp
2011-07-24 18:26 . 2011-07-24 18:26 72561 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009U.tmp
2011-07-24 18:26 . 2011-07-24 18:26 23620 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009T.tmp
2011-07-24 18:26 . 2011-07-24 18:26 20582 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009S.tmp
2011-07-24 18:26 . 2011-07-24 18:27 2100 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009P.tmp
2011-07-24 18:26 . 2011-07-24 18:26 31698 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009Q.tmp
2011-07-24 18:26 . 2011-07-24 18:27 6852 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009R.tmp
2011-07-24 18:26 . 2011-07-24 18:26 18173 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009L.tmp
2011-07-24 18:26 . 2011-07-24 18:26 29512 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009M.tmp
2011-07-24 18:26 . 2011-07-24 18:26 2302 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009N.tmp
2011-07-24 18:26 . 2011-07-24 18:27 2299 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009O.tmp
2011-07-24 18:26 . 2011-07-24 18:26 22551 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009I.tmp
2011-07-24 18:26 . 2011-07-24 18:26 5382 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009J.tmp
2011-07-24 18:26 . 2011-07-24 18:26 31676 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009K.tmp
2011-07-24 18:26 . 2011-07-24 18:26 122 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\fileforum.betanews.com.idx
2011-07-24 18:26 . 2011-07-24 18:26 199 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Ffileforum.betanews.com%2Ffavicon.png
2011-07-24 18:26 . 2011-07-24 18:26 82998 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009G.tmp
2011-07-24 18:26 . 2011-07-24 18:26 26230 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009E.tmp
2011-07-24 18:26 . 2011-07-24 18:26 16562 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009F.tmp
2011-07-24 18:26 . 2011-07-24 18:26 4074 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009B.tmp
2011-07-24 18:26 . 2011-07-24 18:26 22307 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009C.tmp
2011-07-24 18:26 . 2011-07-24 18:26 25649 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009D.tmp
2011-07-24 18:26 . 2011-07-24 18:26 56554 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr00098.tmp
2011-07-24 18:26 . 2011-07-24 18:26 7277 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr00099.tmp
2011-07-24 18:26 . 2011-07-24 18:26 38982 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0009A.tmp
2011-07-24 18:26 . 2011-07-24 18:26 46998 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr00095.tmp
2011-07-24 18:26 . 2011-07-24 18:26 51849 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr00096.tmp
2011-07-24 18:26 . 2011-07-24 18:26 26233 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr00097.tmp
2011-07-24 18:25 . 2011-07-24 18:26 433 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.safer-networking.org.idx
2011-07-24 18:25 . 2011-07-24 18:25 369 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fwww.safer-networking.org%2Ffavicon.png
2011-07-24 18:25 . 2011-07-24 18:25 13060 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr00091.tmp
2011-07-24 18:25 . 2011-07-24 18:25 15927 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008Y.tmp
2011-07-24 18:25 . 2011-07-24 18:25 9860 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008Z.tmp
2011-07-24 18:25 . 2011-07-24 18:25 6404 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008T.tmp
2011-07-24 18:25 . 2011-07-24 18:25 5210 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008S.tmp
2011-07-24 18:24 . 2011-07-24 18:25 16296883 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008R.tmp
2011-07-24 18:24 . 2011-07-24 18:24 254 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008Q.tmp
2011-07-24 18:24 . 2011-07-24 18:24 209 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008P.tmp
2011-07-24 18:24 . 2011-07-24 18:24 2097152 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008O.tmp
2011-07-24 18:24 . 2011-07-24 18:24 831 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008N.tmp
2011-07-24 18:24 . 2011-07-24 18:24 301 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008M.tmp
2011-07-24 18:24 . 2011-07-24 18:24 46247 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008L.tmp
2011-07-24 18:24 . 2011-07-24 18:24 209 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008K.tmp
2011-07-24 18:24 . 2011-07-24 18:24 6898 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008J.tmp
2011-07-24 18:24 . 2011-07-24 18:24 306 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008I.tmp
2011-07-24 18:24 . 2011-07-24 18:24 85 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\FJV3RHZX\s.ytimg.com\videostats.sol
2011-07-24 18:24 . 2011-07-24 18:24 81 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s.ytimg.com\settings.sol
2011-07-24 18:24 . 2011-07-24 18:24 25263 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008H.tmp
2011-07-24 18:24 . 2011-07-24 18:24 188461 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0008D.tmp
2011-07-24 18:24 . 2011-07-24 18:24 314 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fs.ytimg.com%2Fyt%2Ffavicon-vflZlzSbU.png
2011-07-24 18:24 . 2011-07-24 18:24 78 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.youtube.com.idx
2011-07-24 18:24 . 2011-07-24 18:24 80 --sh--w- c:\users\picakundadevkamrdka\Favorites\Links\desktop.ini
2011-07-24 18:24 . 2011-07-24 18:24 1407 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
2011-07-24 18:23 . 2011-07-24 18:23 16384 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
2011-07-24 18:23 . 2011-07-24 18:23 6930112 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\temporary_downloads\saSetup.exe
2011-07-24 18:23 . 2011-07-24 18:23 9640 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\revocation\g_0000\opr00002.tmp
2011-07-24 18:23 . 2011-07-24 18:23 95 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\home.mcafee.com.idx
2011-07-24 18:23 . 2011-07-24 18:23 555 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fhome.mcafee.com%2Ffavicon.png
2011-07-24 18:23 . 2011-07-24 18:23 18130 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\revocation\g_0000\opr00001.tmp
2011-07-24 18:23 . 2011-07-24 18:23 555 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fus.mcafee.com%2Ffavicon.png
2011-07-24 18:23 . 2011-07-24 18:23 92 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\us.mcafee.com.idx
2011-07-24 18:23 . 2011-07-24 18:23 10285056 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\temporary_downloads\Ad-Aware90Install (1).msi
2011-07-24 18:23 . 2011-07-24 18:23 1723207 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0002\opr0007C.tmp
2011-07-24 18:23 . 2011-07-24 18:24 485 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol
2011-07-24 18:22 . 2011-07-24 18:22 0 --s-a-w- c:\users\picakundadevkamrdka\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
2011-07-24 18:22 . 2011-07-24 18:22 304 --s-a-w- c:\users\picakundadevkamrdka\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
2011-07-24 18:22 . 2011-07-24 18:22 1587 --s-a-w- c:\users\picakundadevkamrdka\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_F9FE92FC81DD84416A25CD9F48E8A3DF
2011-07-24 18:22 . 2011-07-24 18:22 404 --s-a-w- c:\users\picakundadevkamrdka\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_F9FE92FC81DD84416A25CD9F48E8A3DF
2011-07-24 18:22 . 2011-07-24 18:22 1482 --s-a-w- c:\users\picakundadevkamrdka\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
2011-07-24 18:22 . 2011-07-24 18:22 404 --s-a-w- c:\users\picakundadevkamrdka\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
2011-07-24 18:22 . 2011-07-24 18:22 10285056 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\temporary_downloads\Ad-Aware90Install.msi
2011-07-24 18:22 . 2011-07-24 18:22 4870410 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0001\opr0006I.tmp
2011-07-24 18:22 . 2011-07-24 18:22 325 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\download.cnet.com.idx
2011-07-24 18:22 . 2011-07-24 18:22 725 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fdownload.cnet.com%2Ffavicon.png
2011-07-24 18:22 . 2011-07-24 18:22 85 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\free.lavasoft.com.idx
2011-07-24 18:22 . 2011-07-24 18:22 109 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Ffree.lavasoft.com%2Ffavicon.png
2011-07-24 18:21 . 2011-07-24 18:21 95 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.lavasoft.com.idx
2011-07-24 18:21 . 2011-07-24 18:21 746 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fen.site1.answcdn.com%2Ffavicon.ico%3Fv=8.png
2011-07-24 18:21 . 2011-07-24 18:21 105 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\wiki.answers.com.idx
2011-07-24 18:21 . 2011-07-24 18:21 5532 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\override_downloaded.ini
2011-07-24 18:21 . 2011-07-24 18:21 4228 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\dictionaries\dictionaries.xml
2011-07-24 18:21 . 2011-07-24 18:21 112653 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\browser.js
2011-07-24 18:21 . 2011-07-24 18:21 9681 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\temporary_downloads\override_downloaded.ini
2011-07-24 18:21 . 2011-07-24 18:21 26593 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\g_0000\opr00036.tmp
2011-07-24 18:21 . 2011-07-24 18:21 1416 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\autoupdate_response.xml
2011-07-24 18:21 . 2011-07-24 18:25 63 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.google.cz.idx
2011-07-24 18:21 . 2011-07-24 18:21 901 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fwww.google.cz%2Ffavicon.png
2011-07-24 18:21 . 2011-07-24 18:21 1795 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\speeddial.ini
2011-07-24 18:21 . 2011-07-24 18:21 217284 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\thumbnails\f7b51b0d-04ec-0647-a2ef-81ff5c89a670.png
2011-07-24 18:21 . 2011-07-24 18:21 436563 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\thumbnails\d58e0197-efd9-8d44-a741-a3cafe280520.png
2011-07-24 18:20 . 2011-07-24 18:21 679353 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\thumbnails\66d6ca1a-a6e6-0949-ba0d-c823eab014bc.png
2011-07-24 18:20 . 2011-07-24 18:20 350230 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\thumbnails\64f5c15d-2c93-3143-81a6-bf0adddc69ef.png
2011-07-24 18:20 . 2011-07-24 18:20 99434 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\thumbnails\cec6ff07-beef-2045-9644-ba853e34ced0.png
2011-07-24 18:20 . 2011-07-24 18:20 101420 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\thumbnails\6e15351e-cf32-814c-9394-bbe7427cca04.png
2011-07-24 18:20 . 2011-07-24 18:20 30214 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\cache\g_0000\opr00002.tmp
2011-07-24 18:20 . 2011-07-24 18:49 5732 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\cache\g_0000\opr00001.tmp
2011-07-24 18:20 . 2011-07-24 18:20 431 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\tasks.xml
2011-07-24 18:20 . 2011-07-24 18:20 619 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\https%3A%2F%2Fmail.opera.com%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 67 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\mail.opera.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 800 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fwww.fastmail.fm%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 92 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.fastmail.fm.idx
2011-07-24 18:20 . 2011-07-24 18:20 740 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Falawar%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 317 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fbooking%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:49 12 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\optrust.dat
2011-07-24 18:20 . 2011-07-24 18:20 85 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\my.opera.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 936 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fbigpoint%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 619 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fmyopera%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 800 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Ffastmail%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 885 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fskyscanner%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 88 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.operamail.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 284 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.opera.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 619 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fopera%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 87 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\portal.opera.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 829 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fimg.imgsmail.ru%2Fr%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 132 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\win.mail.ru.idx
2011-07-24 18:20 . 2011-07-24 18:20 113 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.bing.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 268 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fbing%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 270 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fyahoo%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 108 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\yahoo.opera.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 680 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fheureka%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 161 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.heureka.cz.idx
2011-07-24 18:20 . 2011-07-24 18:20 96 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\cs.wikipedia.org.idx
2011-07-24 18:20 . 2011-07-24 18:20 322 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fwikipedia%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 413 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Faukroua%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 86 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\mail.yandex.ru.idx
2011-07-24 18:20 . 2011-07-24 18:20 250 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fimg.yandex.net%2Fi%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:49 27245 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\opcacrt6.dat
2011-07-24 18:20 . 2011-07-24 18:49 9042 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\opicacrt6.dat
2011-07-24 18:20 . 2011-07-24 18:49 12 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\opuntrust.dat
2011-07-24 18:20 . 2011-07-24 18:20 455 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fseznamcz%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:20 862 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\redir.opera.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 2791 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\persistent.txt
2011-07-24 18:20 . 2011-07-24 18:20 146 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\www.google.com.idx
2011-07-24 18:20 . 2011-07-24 18:20 901 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\http%3A%2F%2Fredir.opera.com%2Ffavicons%2Fgoogle%2Ffavicon.png
2011-07-24 18:20 . 2011-07-24 18:24 262144 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
2011-07-24 18:19 . 2011-07-24 18:19 13 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\cache\oprD567.tmp
2011-07-24 18:19 . 2011-07-24 18:49 14586 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\icons\cache\dcache4.url
2011-07-24 18:19 . 2011-07-24 18:49 18089 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\revocation\dcache4.url
2011-07-24 18:19 . 2011-07-24 18:49 20 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\application_cache\mcache\dcache4.url
2011-07-24 18:19 . 2011-07-24 18:49 247876 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\dcache4.url
2011-07-24 18:19 . 2011-07-24 18:49 16435 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\opcache\dcache4.url
2011-07-24 18:19 . 2011-07-24 18:19 2897 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\widgets\widgets.dat
2011-07-24 18:19 . 2011-07-24 18:49 36 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\application_cache\cache_groups.xml
2011-07-24 18:19 . 2011-07-24 18:49 302 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\typed_history.xml
2011-07-24 18:19 . 2011-07-24 18:49 4488 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\global_history.dat
2011-07-24 18:19 . 2011-07-24 18:49 35 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\webserver\users.xml
2011-07-24 18:19 . 2011-07-24 18:19 1208 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\unite.adr
2011-07-24 18:19 . 2011-07-24 18:19 764 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\mail\accounts.ini
2011-07-24 18:19 . 2011-07-24 18:49 4017 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\sessions\autosave.win.bak
2011-07-24 18:19 . 2011-07-24 18:49 23357 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\16ec093b8f51508f.customDestinations-ms
2011-07-24 18:19 . 2011-07-24 18:49 2031 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\download.dat
2011-07-24 18:19 . 2011-07-24 18:21 1204 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\opthumb.dat
2011-07-24 18:19 . 2011-07-24 18:49 1024 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\mail\omailbase.dat
2011-07-24 18:19 . 2011-07-24 18:19 1024 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\mail\indexer\message_id
2011-07-24 18:19 . 2011-07-24 18:49 11615 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\opssl6.dat
2011-07-24 18:19 . 2011-07-24 18:20 96 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\optrb.dat
2011-07-24 18:19 . 2011-07-24 18:49 3072 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0000\adoc.bx
2011-07-24 18:19 . 2011-07-24 18:49 188416 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0000\md.dat
2011-07-24 18:19 . 2011-07-24 18:49 7680 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0000\url.axx
2011-07-24 18:19 . 2011-07-24 18:49 409600 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0000\w.axx
2011-07-24 18:19 . 2011-07-24 18:49 2097664 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\vps\0000\wb.vx
2011-07-24 18:19 . 2011-07-24 18:19 188 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\cache\CACHEDIR.TAG
2011-07-24 18:19 . 2011-07-24 18:19 2727 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\structuretables.css
2011-07-24 18:19 . 2011-07-24 18:19 258 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\tablelayout.css
2011-07-24 18:19 . 2011-07-24 18:19 4809 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\toc.css
2011-07-24 18:19 . 2011-07-24 18:19 673 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\contrastbw.css
2011-07-24 18:19 . 2011-07-24 18:19 705 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\contrastwb.css
2011-07-24 18:19 . 2011-07-24 18:19 213 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\disablebreaks.css
2011-07-24 18:19 . 2011-07-24 18:19 229 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\disablefloats.css
2011-07-24 18:19 . 2011-07-24 18:19 269 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\disableforms.css
2011-07-24 18:19 . 2011-07-24 18:19 243 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\disablepositioning.css
2011-07-24 18:19 . 2011-07-24 18:19 410 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\disabletables.css
2011-07-24 18:19 . 2011-07-24 18:19 735 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\outline.css
2011-07-24 18:19 . 2011-07-24 18:19 4569 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\structureblock.css
2011-07-24 18:19 . 2011-07-24 18:19 2112 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\structureinline.css
2011-07-24 18:19 . 2011-07-24 18:19 1353 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\altdebugger.css
2011-07-24 18:19 . 2011-07-24 18:19 1225 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\classid.css
2011-07-24 18:19 . 2011-07-24 18:19 2742 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Opera\Opera\styles\user\accessibility.css
2011-07-24 18:19 . 2011-07-24 18:19 0 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Opera\Opera\upgrade.log
2011-07-24 18:19 . 2011-07-24 18:19 309301 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\1029\StructuredQuerySchema.bin
2011-07-24 18:18 . 2011-07-24 18:18 16384 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
2011-07-24 18:18 . 2011-07-24 18:18 77480 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000001.db
2011-07-24 18:18 . 2011-07-24 18:18 174 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Burn\Burn2\desktop.ini
2011-07-24 18:18 . 2011-07-24 18:18 174 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Burn\Burn1\desktop.ini
2011-07-24 18:17 . 2011-07-24 18:29 32768 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
2011-07-24 18:17 . 2011-07-24 18:29 16384 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
2011-07-24 18:17 . 2011-07-24 18:17 145 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\History\desktop.ini
2011-07-24 18:17 . 2011-07-24 18:17 145 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
2011-07-24 18:17 . 2011-07-24 18:17 67 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini
2011-07-24 18:17 . 2011-07-24 18:17 24 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Explorer\thumbcache_sr.db
2011-07-24 18:17 . 2011-07-24 18:17 24 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Explorer\thumbcache_1024.db
2011-07-24 18:17 . 2011-07-24 18:17 1048576 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Explorer\thumbcache_256.db
2011-07-24 18:17 . 2011-07-24 18:17 24 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Explorer\thumbcache_32.db
2011-07-24 18:17 . 2011-07-24 18:17 24 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Explorer\thumbcache_96.db
2011-07-24 18:17 . 2011-07-24 18:17 3256 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Explorer\thumbcache_idx.db
2011-07-24 18:17 . 2011-07-24 18:17 174 --sh--w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Burn\Burn\desktop.ini
2011-07-24 18:17 . 2011-07-24 18:17 24 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\1b4dd67f29cb1962.customDestinations-ms
2011-07-24 18:17 . 2011-07-24 18:17 24 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\7e4dca80246863e3.customDestinations-ms
2011-07-24 18:17 . 2009-07-14 04:54 1515 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk
2011-07-24 18:17 . 2011-07-24 18:17 151 --sh--w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\desktop.ini
2011-07-24 18:17 . 2009-07-14 04:37 1228 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk
2011-07-24 18:17 . 2011-07-24 18:17 11472 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5afe4de1b92fc382.customDestinations-ms
2011-07-24 18:17 . 2011-07-24 18:17 24576 ----a-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\Explorer\ExplorerStartupLog.etl
2011-07-24 18:17 . 2011-07-24 18:18 65536 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\UsrClass.dat{e2c51c59-b620-11e0-a3c3-fde245b6254b}.TM.blf
2011-07-24 18:17 . 2011-07-24 18:18 524288 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\UsrClass.dat{e2c51c59-b620-11e0-a3c3-fde245b6254b}.TMContainer00000000000000000001.regtrans-ms
2011-07-24 18:17 . 2011-07-24 18:18 524288 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\UsrClass.dat{e2c51c59-b620-11e0-a3c3-fde245b6254b}.TMContainer00000000000000000002.regtrans-ms
2011-07-24 18:17 . 2011-07-24 18:49 262144 ---ha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\UsrClass.dat
2011-07-24 18:17 . 2011-07-25 15:25 70656 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1
2011-07-24 18:17 . 2011-07-24 18:17 0 --sha-w- c:\users\picakundadevkamrdka\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG2
2011-07-24 18:17 . 2011-07-24 18:17 20 --sh--w- c:\users\picakundadevkamrdka\ntuser.ini
2011-07-24 18:17 . 2011-07-24 18:18 524288 --sha-w- c:\users\picakundadevkamrdka\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
2011-07-24 18:17 . 2011-07-24 18:18 524288 --sha-w- c:\users\picakundadevkamrdka\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
2011-07-24 18:17 . 2011-07-24 18:18 65536 --sha-w- c:\users\picakundadevkamrdka\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
2011-07-24 18:17 . 2011-07-25 15:25 262144 --sha-w- c:\users\picakundadevkamrdka\ntuser.dat.LOG1
2011-07-24 18:17 . 2011-07-24 18:17 0 --sha-w- c:\users\picakundadevkamrdka\ntuser.dat.LOG2
2011-07-24 18:17 . 2011-07-15 05:12 2185 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
2011-07-24 18:17 . 2011-07-24 18:24 221 --sh--w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
2011-07-24 18:17 . 2009-07-14 04:37 290 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
2011-07-24 18:17 . 2009-07-14 04:37 272 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
2011-07-24 18:17 . 2009-06-10 21:27 3 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\SendTo\Compressed (zipped) Folder.ZFSendToTarget
2011-07-24 18:17 . 2009-06-10 21:26 7 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\SendTo\Desktop (create shortcut).DeskLink
2011-07-24 18:17 . 2009-07-14 04:42 1238 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk
2011-07-24 18:17 . 2009-07-14 04:42 558 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\SendTo\Desktop.ini
2011-07-24 18:17 . 2009-06-10 21:26 4 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\SendTo\Mail Recipient.MAPIMail
2011-07-24 18:17 . 2009-07-14 04:41 1280 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk
2011-07-24 18:17 . 2009-07-14 04:42 678 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Desktop.ini
2011-07-24 18:17 . 2009-07-14 04:42 1304 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk
2011-07-24 18:17 . 2009-07-14 04:37 262 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk
2011-07-24 18:17 . 2009-07-14 04:41 704 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Desktop.ini
2011-07-24 18:17 . 2009-07-14 04:41 1358 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk
2011-07-24 18:17 . 2009-07-14 04:41 1258 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk
2011-07-24 18:17 . 2009-07-14 04:41 1262 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk
2011-07-24 18:17 . 2009-07-14 04:37 1228 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk
2011-07-24 18:17 . 2009-07-14 04:41 1250 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk
2011-07-24 18:17 . 2009-07-14 04:37 262 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk
2011-07-24 18:17 . 2009-07-14 04:37 262 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk
2011-07-24 18:17 . 2009-07-14 04:42 592 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Desktop.ini
2011-07-24 18:17 . 2009-07-14 04:42 1306 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk
2011-07-24 18:17 . 2009-07-14 04:37 318 --sha-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Desktop.ini
2011-07-24 18:17 . 2009-07-14 04:37 262 ----a-w- c:\users\picakundadevkamrdka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk
2011-07-24 18:17 . 2011-07-24 18:49 786432 --sha-w- c:\users\picakundadevkamrdka\NTUSER.DAT
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-05-10 12:10 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-05-10 3459712]
.
c:\users\trolol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Xfire.lnk - c:\program files\Xfire\Xfire.exe [2011-6-24 3504640]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~1\mcafee\SITEAD~1\mcsacore.exe [x]
R3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service;c:\program files\BitComet\tools\BitCometService.exe [2010-12-28 1296728]
R3 CFcatchme;CFcatchme;c:\users\trolol\AppData\Local\Temp\CFcatchme.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-04-19 1343400]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [2011-02-23 16184]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2011-06-05 218688]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-05-10 53592]
S2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2011-05-25 1336712]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-04-08 2218600]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-04-07 378472]
S2 TeamViewer6;TeamViewer 6;c:\program files\TeamViewer\Version6\TeamViewer_Service.exe [2011-06-01 2337144]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
.
.
.
------- Doplňkový sken -------
.
IE: Stáhnout odkaz s použitím BitCometu - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: Stáhnout všechny odkazy s použitím BitCometu - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\trolol\AppData\Roaming\Mozilla\Firefox\Profiles\2kq23kr3.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-Advanced SystemCare 3_is1 - c:\program files\IObit\Advanced SystemCare 3\unins000.exe
AddRemove-Game Booster_is1 - c:\program files\IObit\Game Booster\unins000.exe
AddRemove-Smart Defrag 2_is1 - c:\program files\IObit\Smart Defrag 2\unins000.exe
AddRemove-{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} - c:\program files\McAfee\SiteAdvisor\Uninstall.exe
AddRemove-{8686D4FE-62EF-46FB-B9FD-00679EB381FF}_is1 - c:\program files\GridinSoft Trojan Killer\unins000.exe
AddRemove-{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1 - c:\program files\Spybot - Search & Destroy\unins000.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1112788954-53965602-2581635257-1005\Software\SecuROM\License information*]
"datasecu"=hex:41,66,18,91,c6,9f,16,bf,27,6d,57,32,77,e8,91,21,99,df,9f,ad,ab,
41,4e,6e,e3,8a,67,87,d9,2d,88,46,4f,6a,cf,f5,f7,90,60,62,4d,75,d0,bd,93,c2,\
"rkeysecu"=hex:ba,18,2f,88,11,68,7f,15,31,f3,61,2a,04,88,b2,3d
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\NVIDIA Corporation\Display\NvXDSync.exe
c:\windows\system32\nvvsvc.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\NVIDIA Corporation\nTune\nTuneService.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\program files\NVIDIA Corporation\System Update\UpdateCenterService.exe
c:\windows\system32\taskhost.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\windows\system32\conhost.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2011-07-25 17:40:23 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-25 15:40
ComboFix2.txt 2011-07-25 07:04
.
Před spuštěním: Volných bajtů: 10 028 146 688
Po spuštění: 9 789 059 072
.
- - End Of File - - E3987CC2FDED721FBB3D4B6F542B9200

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 16:52
od Bublor
Vsechno od Obit sem odstranil dekuju za informaci

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 16:53
od vyosek
Nazvy jsou mi jedno, ja jen co tam je :D

Jak se chova PC celkove :???:

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 17:29
od Bublor
PRvni cast combo fix pocitac uz jede v noramlnim rezimu ale presto bych se chtel ujistit ze je vse ok


//EDIT vyosek: log odmazan, je jiz vyse

Re: Facebook FP update vir+RSIT log

Napsal: 25 črc 2011 17:32
od vyosek
Log jste jiz daval, ten je OK

:arrow: Odinstalujte Combofix
  • Start - Spustit (nebo pouzijte klavesobou zkratku Win+R)
  • Napiste ComboFix /Uninstall
  • Stisknete Enter
  • Tohle smaze Combofix a jeho slozky
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner (viz muj podpis)
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za 14 dni

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :turned: