Stránka 1 z 1

Preventivka

Napsal: 15 pro 2011 20:59
od nasua
Dobrý den,
poprosím o preventivku - zdá se mi, že je počítač o něco pomalejší, ale možná jen zdání .... Jinak bez problémů ....

Logfile of random's system information tool 1.09 (written by random/random)
Run by noskin at 2011-12-15 20:56:33
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (10%) free of 120 GB
Total RAM: 2046 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:56:56, on 15.12.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Aeria Games\Ignite\aeriaignite.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Program Files\GamePark2\gpcl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PSIService.exe
c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\noskin\Plocha\RSIT.exe
C:\Program Files\trend micro\noskin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ::1 localhost
O1 - Hosts: 81.0.254.162 L2authd.Lineage2.com
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O4 - Startup: AutorunsDisabled
O4 - Global Startup: GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/common/asusTek_sys_ctrl.cab
O16 - DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} (20-20 3D Viewer) - http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} (Battlefield Play4Free Updater) - https://battlefield.play4free.com/stati ... 0.53.2.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NMSAccess - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

--
End of file - 9833 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Aeria Ignite.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{56387A4C-B278-456A-A7AA-2F369A52953D}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-11-28 809040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-10-18 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2011-01-05 988480]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-11-28 809040]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2006-12-18 868352]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2006-07-13 729088]
"P17Helper"=Rundll32 P17.dll,P17Helper []
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-11-28 3744552]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2011-07-19 421736]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-11-09 98304]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Akamai NetSession Interface"=C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe [2011-12-06 3305248]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel File Shell Monitor]
C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe [2008-01-15 16200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel Photo Downloader]
C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe [2009-12-30 523408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\WINDOWS\PixArt\PAC207\Monitor.exe [2006-11-03 319488]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster]
C:\Program Files\Pando Networks\Media Booster\PMB.exe [2011-06-08 3077528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^GamersFirst LIVE!.lnk]
C:\PROGRA~1\GAMERS~1\LIVE!\Live.exe [2011-03-03 2845552]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
GamePark klient 2.lnk - C:\Program Files\GamePark2\gpcl.exe

C:\Documents and Settings\noskin\Nabídka Start\Programy\Po spuštění
AutorunsDisabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2011-11-10 192512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-08-08 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB.exe"
"F:\_games\Bad company 2\BFBC2Updater.exe"="F:\_games\Bad company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2"
"C:\Program Files\Xfire\Xfire.exe"="C:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire"
"F:\_games\COD V\CoDWaW.exe"="F:\_games\COD V\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM) "
"F:\_games\COD V\CoDWaWmp.exe"="F:\_games\COD V\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM) "
"C:\Program Files\Sony Ericsson\Update Service\Update Service.exe"="C:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service"
"F:\_games\NFS\Launcher.exe"="F:\_games\NFS\Launcher.exe:*:Enabled:Need for Speed(TM) Hot Pursuit"
"F:\_games\NFS\NFS11.exe"="F:\_games\NFS\NFS11.exe:*:Enabled:Need for Speed(TM) Hot Pursuit Application"
"C:\Program Files\EA Games\Battlefield Play4Free\BFP4f.exe"="C:\Program Files\EA Games\Battlefield Play4Free\BFP4f.exe:*:Enabled:BFP4f"
"C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOps.exe"="C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOps.exe:*:Enabled:Call of Duty: Black Ops"
"F:\_games\Bad company 2\BFBC2Game.exe"="F:\_games\Bad company 2\BFBC2Game.exe:*:Enabled:Battlefield: Bad Company™ 2"
"C:\Program Files\Electronic Arts\Medal of Honor™\MP\MoHMPGame.exe"="C:\Program Files\Electronic Arts\Medal of Honor™\MP\MoHMPGame.exe:*:Enabled:Medal of Honor: Multiplayer"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\Program Files\GamersFirst\APB Reloaded\Binaries\APB.exe"="C:\Program Files\GamersFirst\APB Reloaded\Binaries\APB.exe:*:Enabled:APB: APB.exe"
"C:\Program Files\GamersFirst\APB Reloaded\Binaries\VivoxVoiceService.exe"="C:\Program Files\GamersFirst\APB Reloaded\Binaries\VivoxVoiceService.exe:*:Enabled:APB: VivoxVoiceService.exe"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\Games\World_of_Tanks\WOTLauncher.exe"="C:\Games\World_of_Tanks\WOTLauncher.exe:*:Enabled:World of Tanks Launcher"
"C:\Games\World_of_Tanks\WorldOfTanks.exe"="C:\Games\World_of_Tanks\WorldOfTanks.exe:*:Enabled:World of Tanks"
"F:\_games\eden eternal\launcher.exe"="F:\_games\eden eternal\launcher.exe:*:Enabled:launcher.exe"
"F:\_games\eden eternal\_Launcher.exe"="F:\_games\eden eternal\_Launcher.exe:*:Enabled:_Launcher.exe"
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2main.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwn2main.exe:*:Enabled:Neverwinter Nights 2 Main"
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2main_amdxp.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwn2main_amdxp.exe:*:Enabled:Neverwinter Nights 2 AMD"
"C:\Program Files\Atari\Neverwinter Nights 2\nwupdate.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwupdate.exe:*:Enabled:Neverwinter Nights 2 Updater"
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2server.exe"="C:\Program Files\Atari\Neverwinter Nights 2\nwn2server.exe:*:Enabled:Neverwinter Nights 2 Server"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe"="C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe:*:Enabled:Age of Empires Online"
"C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe"="C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOpsMP.exe"="C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOpsMP.exe:*:Enabled:Call of Duty: Black Ops - Multiplayer"
"C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe"="C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.XFR1"=xfcodec.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.dvacm"=c:\PROGRA~1\COMMON~1\ULEADS~1\Vio\Dvacm.acm
"msacm.MPEGacm"=c:\PROGRA~1\COMMON~1\ULEADS~1\MPEG\MPEGacm.acm
"msacm.ulmp3acm"=c:\PROGRA~1\COMMON~1\ULEADS~1\MPEG\ulmp3acm.acm

======List of files/folders created in the last 1 month======

2011-12-15 20:56:33 ----D---- C:\rsit
2011-12-15 20:56:33 ----D---- C:\Program Files\trend micro
2011-12-14 23:19:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2639417$
2011-12-14 23:19:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2011-12-14 23:15:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$
2011-12-14 23:15:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2011-12-14 23:14:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2011-12-14 23:14:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2011-12-14 23:14:18 ----A---- C:\WINDOWS\imsins.BAK
2011-12-14 23:14:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2633171$
2011-12-14 22:35:17 ----D---- C:\Program Files\GamePark
2011-12-14 22:33:22 ----D---- C:\Program Files\GamePark2
2011-12-14 22:01:51 ----A---- C:\WINDOWS\game.ini
2011-12-14 21:53:44 ----D---- C:\Program Files\Activision
2011-12-13 22:43:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2011-12-13 22:38:13 ----D---- C:\Program Files\AMD APP
2011-12-13 22:04:51 ----D---- C:\direct
2011-11-28 00:50:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\Trymedia
2011-11-28 00:47:50 ----D---- C:\Program Files\Trucks & Trailers
2011-11-26 17:02:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2011-11-26 17:00:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2011-11-26 15:51:51 ----D---- C:\Program Files\Blender Foundation
2011-11-25 12:21:31 ----A---- C:\PA207.DAT

======List of files/folders modified in the last 1 month======

2011-12-15 20:56:41 ----D---- C:\WINDOWS\Prefetch
2011-12-15 20:56:33 ----RD---- C:\Program Files
2011-12-15 20:55:51 ----D---- C:\WINDOWS\system32
2011-12-15 20:55:51 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-12-15 20:52:28 ----D---- C:\WINDOWS\Temp
2011-12-15 20:51:44 ----D---- C:\Program Files\Common Files\Akamai
2011-12-15 15:33:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-12-15 11:08:17 ----D---- C:\WINDOWS
2011-12-14 23:20:18 ----SHD---- C:\WINDOWS\Installer
2011-12-14 23:20:17 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-12-14 23:20:15 ----RSD---- C:\WINDOWS\assembly
2011-12-14 23:19:51 ----HD---- C:\WINDOWS\inf
2011-12-14 23:19:50 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-12-14 23:19:38 ----D---- C:\WINDOWS\system32\CatRoot2
2011-12-14 23:19:30 ----D---- C:\Program Files\Internet Explorer
2011-12-14 23:19:20 ----D---- C:\WINDOWS\ie8updates
2011-12-14 23:19:16 ----HD---- C:\WINDOWS\$hf_mig$
2011-12-14 23:17:22 ----D---- C:\WINDOWS\Debug
2011-12-14 23:17:19 ----A---- C:\WINDOWS\system32\MRT.exe
2011-12-14 22:49:55 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2011-12-14 22:47:25 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2011-12-14 22:18:16 ----HD---- C:\Program Files\InstallShield Installation Information
2011-12-14 22:03:32 ----D---- C:\WINDOWS\system32\DirectX
2011-12-14 21:52:28 ----D---- C:\Documents and Settings\noskin\Data aplikací\DAEMON Tools Lite
2011-12-13 22:37:49 ----D---- C:\Program Files\ATI Technologies
2011-12-13 22:36:40 ----D---- C:\WINDOWS\system32\drivers
2011-12-13 22:36:36 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-12-13 22:29:12 ----D---- C:\Program Files\Steam
2011-12-13 22:29:11 ----D---- C:\WINDOWS\Logs
2011-12-13 22:28:42 ----D---- C:\Program Files\CCleaner
2011-12-06 17:55:25 ----D---- C:\Program Files\Opera
2011-12-01 23:46:53 ----D---- C:\Documents and Settings\noskin\Data aplikací\Skype
2011-12-01 20:03:33 ----RD---- C:\Program Files\Skype
2011-12-01 20:03:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2011-12-01 20:03:00 ----D---- C:\Program Files\Common Files
2011-12-01 20:02:35 ----D---- C:\Documents and Settings\noskin\Data aplikací\skypePM
2011-11-28 19:01:23 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-11-27 22:18:15 ----D---- C:\Documents and Settings\noskin\Data aplikací\Xfire
2011-11-26 16:55:45 ----D---- C:\Program Files\Xfire
2011-11-25 12:06:11 ----A---- C:\WINDOWS\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hotcore3;hc3ServiceName; C:\WINDOWS\system32\DRIVERS\hotcore3.sys [2010-05-18 40560]
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-04-24 100736]
R0 nvatabus;nvatabus; C:\WINDOWS\system32\drivers\nvatabus.sys [2008-08-08 100736]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-11-28 30808]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-11-28 34392]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-11-28 435032]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-11-28 314456]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-11-28 52952]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-08-11 232512]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-11-28 20568]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-11-28 111320]
R2 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-12 5504]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2007-01-16 293888]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2006-08-07 93952]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2011-11-10 7493120]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-01-10 138752]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-01-10 106496]
R3 P17;SB Live! 24-bit; C:\WINDOWS\system32\drivers\P17.sys [2007-06-15 1127936]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\WINDOWS\system32\DRIVERS\seehcri.sys [2011-01-09 27632]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys []
S1 AmdPPM;Ovladač procesoru HwPState AMD; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 ggflt;SEMC USB Flash Driver Filter; C:\WINDOWS\system32\DRIVERS\ggflt.sys [2011-01-09 13224]
S3 ggsemc;SEMC USB Flash Driver; C:\WINDOWS\system32\DRIVERS\ggsemc.sys [2011-01-09 25512]
S3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver; C:\WINDOWS\system32\drivers\massfilter_hs.sys [2011-03-07 15896]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2010-07-26 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2010-07-26 8576]
S3 PAC207;Webcam 1200; C:\WINDOWS\system32\DRIVERS\PFC027.SYS [2007-06-29 611584]
S3 s125bus;Sony Ericsson Device 125 driver (WDM); C:\WINDOWS\system32\DRIVERS\s125bus.sys [2007-04-24 83336]
S3 s125mdfl;Sony Ericsson Device 125 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s125mdfl.sys [2007-04-24 15112]
S3 s125mdm;Sony Ericsson Device 125 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s125mdm.sys [2007-04-24 108680]
S3 s125mgmt;Sony Ericsson Device 125 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s125mgmt.sys [2007-04-24 100488]
S3 s125obex;Sony Ericsson Device 125 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s125obex.sys [2007-04-24 98696]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WinUSB;Android USB Driver; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2009-07-13 34944]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-08-08 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-08-08 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Akamai;Akamai NetSession Interface; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-05-25 37664]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2011-11-10 643072]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-11-28 44768]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-07-12 387944]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-10-03 153376]
R2 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2011-12-14 75136]
R2 ProtexisLicensing;ProtexisLicensing; C:\WINDOWS\system32\PSIService.exe [2007-06-05 177704]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2011-07-19 821096]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-05 136176]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-05 136176]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------



Děkuji velmi pěkně .....

Re: Preventivka

Napsal: 15 pro 2011 21:08
od vyosek
Zdravim a pekny vecer preji :)

:arrow: Stahnete OTL (viz muj podpis) a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
    reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
    reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
    
    type c:\boot.ini >> test.txt /c
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte

Re: Preventivka

Napsal: 15 pro 2011 21:44
od nasua
OTL.txt

OTL logfile created on: 15.12.2011 21:15:11 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\noskin\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,29 Gb Available Physical Memory | 64,51% Memory free
3,85 Gb Paging File | 3,09 Gb Available in Paging File | 80,36% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 117,19 Gb Total Space | 15,52 Gb Free Space | 13,24% Space Free | Partition Type: NTFS
Drive F: | 180,90 Gb Total Space | 34,66 Gb Free Space | 19,16% Space Free | Partition Type: NTFS

Computer Name: HOME | User Name: noskin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2011.12.15 21:13:38 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\noskin\Plocha\OTL.exe
PRC - [2011.12.06 22:43:06 | 003,305,248 | ---- | M] (Akamai Technologies, Inc) -- C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe
PRC - [2011.12.06 17:55:20 | 000,949,104 | ---- | M] (Opera Software) -- C:\Program Files\Opera\opera.exe
PRC - [2011.11.28 19:01:24 | 003,744,552 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011.11.28 19:01:23 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011.10.18 02:30:47 | 001,107,912 | ---- | M] (Aeria Games & Entertainment) -- C:\Program Files\Aeria Games\Ignite\aeriaignite.exe
PRC - [2011.08.02 08:33:30 | 004,910,912 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2011.07.29 15:38:18 | 000,409,088 | ---- | M] (Allstar Group, s.r.o.) -- C:\Program Files\GamePark2\gpcl.exe
PRC - [2010.11.29 07:56:00 | 003,709,856 | ---- | M] (Ghisler Software GmbH) -- C:\totalcmd\TOTALCMD.EXE
PRC - [2010.03.04 22:38:00 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
PRC - [2008.04.14 07:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.07.24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2007.06.05 12:20:32 | 000,177,704 | ---- | M] () -- C:\WINDOWS\system32\PSIService.exe


========== Modules (No Company Name) ==========

MOD - [2011.12.15 17:54:53 | 001,646,592 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\11121501\algo.dll
MOD - [2011.12.15 09:19:34 | 001,646,592 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\11121500\algo.dll
MOD - [2011.12.15 02:31:12 | 000,241,528 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\11121501\aswRep.dll
MOD - [2011.12.15 02:31:12 | 000,241,528 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\11121500\aswRep.dll
MOD - [2011.12.13 22:44:59 | 003,316,000 | ---- | M] () -- c:\Program Files\Common Files\Akamai\netsession_win_b427739.dll
MOD - [2011.11.09 21:45:32 | 000,270,336 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
MOD - [2011.10.13 15:24:10 | 011,800,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\60df958ca96c9b8945f836759b6abd34\System.Web.ni.dll
MOD - [2011.10.13 15:24:01 | 000,627,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Transactions\8efcd633af87989355382b5039f1b7df\System.Transactions.ni.dll
MOD - [2011.10.13 15:23:59 | 001,706,496 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\9ec7da53380a754b4ad97709df0dd7e7\System.ServiceModel.Web.ni.dll
MOD - [2011.10.13 15:23:46 | 000,627,712 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\69792bef8a100a055db88848836a7d88\System.EnterpriseServices.ni.dll
MOD - [2011.10.13 15:22:28 | 000,220,672 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\3e6deccf191ab943d3a0812a38ab5c97\CustomMarshalers.ni.dll
MOD - [2011.10.13 15:22:23 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\bce0720436dc6cb76006377f295ea365\System.Configuration.ni.dll
MOD - [2011.10.13 15:22:16 | 000,256,000 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\474a341340f687bcbd7777f2820a8c7a\SMDiagnostics.ni.dll
MOD - [2011.10.13 15:22:07 | 017,403,904 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\ceadaf3b3d017c7a1ef10a06f8009f6f\System.ServiceModel.ni.dll
MOD - [2011.10.13 15:21:43 | 002,345,472 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\afd6134c090faf8c29cd64d4835142b2\System.Runtime.Serialization.ni.dll
MOD - [2011.10.13 15:21:33 | 000,025,600 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\d86a3346c3d90ff12d0df9d7726f3ece\Accessibility.ni.dll
MOD - [2011.10.13 15:18:13 | 000,060,928 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\888b745ca99d39692c2e9af222e5eae8\UIAutomationProvider.ni.dll
MOD - [2011.10.13 15:18:09 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\70cacc44f0b4257f6037eda7a59a0aeb\System.Xml.ni.dll
MOD - [2011.10.13 15:18:02 | 012,430,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\71a2ae9ad561a62181cbd9fb11e9de7a\System.Windows.Forms.ni.dll
MOD - [2011.10.13 15:17:47 | 001,587,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\c10bea3c4bb7ef654651141bf9419090\System.Drawing.ni.dll
MOD - [2011.10.13 15:17:29 | 006,616,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\ec323cf1df697cc0a45f67de685db90c\System.Data.ni.dll
MOD - [2011.10.13 15:17:23 | 002,295,296 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Core\d507b9e0e50e453793ee5e01c07a5485\System.Core.ni.dll
MOD - [2011.10.13 15:17:11 | 000,224,768 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\478d57d96f3d8d5fc15c7ac635a4a6a1\PresentationFramework.Classic.ni.dll
MOD - [2011.10.13 15:17:08 | 014,328,320 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\054488924fcc579cce9fa0209dafe28b\PresentationFramework.ni.dll
MOD - [2011.10.13 15:16:47 | 012,215,808 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCore\b2f0318713eca304eaa9d86fc17edb96\PresentationCore.ni.dll
MOD - [2011.10.13 15:16:31 | 003,325,440 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase\1adc4ae51a5ac63e896a1402749ca495\WindowsBase.ni.dll
MOD - [2011.10.13 15:16:24 | 007,950,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\af39f6e644af02873b9bae319f2bfb13\System.ni.dll
MOD - [2011.10.13 15:16:15 | 011,490,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll
MOD - [2011.10.13 15:15:27 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2011.10.13 15:15:23 | 000,303,104 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
MOD - [2011.10.13 15:15:21 | 000,261,632 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
MOD - [2011.10.13 15:15:17 | 000,069,120 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
MOD - [2011.05.26 12:42:00 | 000,067,872 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011.04.29 14:51:19 | 008,007,680 | ---- | M] () -- C:\WINDOWS\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
MOD - [2010.03.16 12:22:12 | 000,014,848 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\AxInterop.WBOCXLib.dll
MOD - [2010.03.04 22:38:00 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
MOD - [2009.12.30 18:48:10 | 000,102,032 | ---- | M] () -- c:\Program Files\Corel\Corel PaintShop Photo Pro\X3\PSPClassic\PSPContextMenu.dll
MOD - [2007.10.02 14:41:38 | 000,319,488 | ---- | M] () -- C:\Program Files\WinRAR\rarlng.dll
MOD - [2007.06.05 12:20:32 | 000,177,704 | ---- | M] () -- C:\WINDOWS\system32\PSIService.exe
MOD - [2005.10.07 14:05:32 | 000,125,440 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2005.05.03 19:38:42 | 000,064,512 | ---- | M] () -- C:\WINDOWS\system32\P17.dll


========== Win32 Services (SafeList) ==========

SRV - [2011.12.13 22:44:59 | 003,316,000 | ---- | M] () [Auto | Running] -- C:/Program Files/Common Files/Akamai/netsession_win_b427739.dll -- (Akamai)
SRV - [2011.11.28 19:01:23 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010.03.04 22:38:00 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccess)
SRV - [2007.07.24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2007.06.05 12:20:32 | 000,177,704 | ---- | M] () [Auto | Start_Pending] -- C:\WINDOWS\system32\PSIService.exe -- (ProtexisLicensing)


========== Driver Services (SafeList) ==========

DRV - [2011.11.28 18:53:53 | 000,435,032 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011.11.28 18:53:35 | 000,314,456 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011.11.28 18:52:19 | 000,034,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011.11.28 18:52:16 | 000,052,952 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011.11.28 18:52:02 | 000,111,320 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011.11.28 18:51:50 | 000,020,568 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011.11.28 18:48:49 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011.11.10 04:42:12 | 007,493,120 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2011.08.11 15:47:42 | 000,232,512 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2011.03.07 10:20:08 | 000,015,896 | ---- | M] (HandSet Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\massfilter_hs.sys -- (massfilter_hs)
DRV - [2011.01.09 10:03:05 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
DRV - [2011.01.09 10:02:56 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2011.01.09 10:02:56 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2010.07.26 12:24:46 | 000,137,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu)
DRV - [2010.07.26 12:24:42 | 000,008,576 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc)
DRV - [2010.05.18 10:25:52 | 000,040,560 | ---- | M] (Paragon Software Group) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\hotcore3.sys -- (hotcore3)
DRV - [2009.11.12 13:48:56 | 000,005,504 | ---- | M] () [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009.07.13 15:51:12 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2008.08.08 17:06:28 | 000,100,736 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\nvatabus.sys -- (nvatabus)
DRV - [2008.04.13 23:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2007.06.29 16:32:08 | 000,611,584 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PFC027.SYS -- (PAC207)
DRV - [2007.06.15 10:47:26 | 001,127,936 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\P17.sys -- (P17)
DRV - [2007.04.24 11:33:46 | 000,100,488 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s125mgmt.sys -- (s125mgmt) Sony Ericsson Device 125 USB WMC Device Management Drivers (WDM)
DRV - [2007.04.24 11:33:46 | 000,098,696 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s125obex.sys -- (s125obex)
DRV - [2007.04.24 11:33:44 | 000,108,680 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s125mdm.sys -- (s125mdm)
DRV - [2007.04.24 11:33:42 | 000,015,112 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s125mdfl.sys -- (s125mdfl)
DRV - [2007.04.24 11:33:34 | 000,083,336 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s125bus.sys -- (s125bus) Sony Ericsson Device 125 driver (WDM)
DRV - [2006.04.24 17:52:28 | 000,100,736 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata)
DRV - [2006.03.17 17:18:58 | 000,392,960 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2005.01.10 18:15:30 | 000,106,496 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2005.01.10 18:15:24 | 000,138,752 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-299502267-220523388-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-299502267-220523388-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-299502267-220523388-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@gamersfirst.com/LiveLauncher: C:\Program Files\GamersFirst\LIVE!\nplivelauncher.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)



========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\15.0.874.121\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\15.0.874.121\pdf.dll
CHR - plugin: Battlefield Play4Free Updater (Enabled) = C:\Documents and Settings\noskin\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\dkejhbcdagodjdndmfnhaibnealjonei\1.0.53.2_1\npBP4FUpdater.dll
CHR - plugin: Battlefield Play4Free Updater (Enabled) = C:\Documents and Settings\noskin\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\dkejhbcdagodjdndmfnhaibnealjonei\1.0.53.2_1\BP4FUpdater.exe
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Battlefield Play4Free = C:\Documents and Settings\noskin\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dkejhbcdagodjdndmfnhaibnealjonei\1.0.53.2_1\
CHR - Extension: avast! WebRep = C:\Documents and Settings\noskin\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1289_0\
CHR - Extension: avast! WebRep = C:\Documents and Settings\noskin\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1374_0\
CHR - Extension: Skype Click to Call = C:\Documents and Settings\noskin\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\

O1 HOSTS File: ([2010.10.05 22:06:54 | 000,000,087 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: ::1 localhost
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 81.0.254.162 L2authd.Lineage2.com
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-299502267-220523388-1801674531-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [P17Helper] C:\WINDOWS\System32\P17.dll ()
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKU\S-1-5-21-299502267-220523388-1801674531-1003..\Run: [Akamai NetSession Interface] C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe (Akamai Technologies, Inc)
O4 - HKU\S-1-5-21-299502267-220523388-1801674531-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
O4 - HKU\S-1-5-19..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe (Allstar Group, s.r.o.)
O4 - Startup: C:\Documents and Settings\noskin\Nabídka Start\Programy\Po spuštění\AutorunsDisabled [2011.04.16 14:18:36 | 000,000,000 | -H-D | M]
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-299502267-220523388-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/common/asusTek_sys_ctrl.cab (asusTek_sysctrl Class)
O16 - DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab (20-20 3D Viewer)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/stati ... 0.53.2.cab (Battlefield Play4Free Updater)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 77.48.254.254 77.48.100.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C595C74F-A04F-4142-A092-3C4F34E715AA}: DhcpNameServer = 77.48.254.254 77.48.100.254
O18 - Protocol\Handler\AutorunsDisabled - No CLSID value found
O18 - Protocol\Handler\AutorunsDisabled\skype4com - No CLSID value found
O18 - Protocol\Handler\AutorunsDisabled\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.12.11 13:53:03 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{2791a873-b891-11e0-a185-001f1f0dbe5c}\Shell - "" = AutoRun
O33 - MountPoints2\{2791a873-b891-11e0-a185-001f1f0dbe5c}\Shell\AutoRun\command - "" = G:\ZTE_Handset_USB_Driver.exe
O33 - MountPoints2\{8e704bb0-3435-11e0-a083-001f1f0dbe5c}\Shell - "" = AutoRun
O33 - MountPoints2\{8e704bb0-3435-11e0-a083-001f1f0dbe5c}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.dvacm - c:\Program Files\Common Files\Ulead Systems\VIO\DVACM.acm (Corel TW Corp.)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.MPEGacm - c:\Program Files\Common Files\Ulead Systems\MPEG\MPEGACM.acm (Ulead Systems, Inc.)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.ulmp3acm - c:\Program Files\Common Files\Ulead Systems\MPEG\ulmp3acm.acm (Ulead systems)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.XFR1 - C:\WINDOWS\System32\xfcodec.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2011.12.15 21:13:38 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\noskin\Plocha\OTL.exe
[2011.12.15 20:56:33 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.12.15 20:56:33 | 000,000,000 | ---D | C] -- C:\rsit
[2011.12.14 22:35:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\GamePark
[2011.12.14 22:35:17 | 000,000,000 | ---D | C] -- C:\Program Files\GamePark
[2011.12.14 22:33:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\GamePark2
[2011.12.14 22:33:22 | 000,000,000 | ---D | C] -- C:\Program Files\GamePark2
[2011.12.14 21:53:44 | 000,000,000 | ---D | C] -- C:\Program Files\Activision
[2011.12.14 16:33:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\noskin\Plocha\Nová složka (2)
[2011.12.13 23:36:59 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\noskin\Recent
[2011.12.13 22:43:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\ATI
[2011.12.13 22:38:13 | 000,000,000 | ---D | C] -- C:\Program Files\AMD APP
[2011.12.13 22:38:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Catalyst Control Center
[2011.12.13 22:04:51 | 000,000,000 | ---D | C] -- C:\direct
[2011.12.13 21:18:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\noskin\Dokumenty\CoD-BO_CZv1.2
[2002.04.11 09:41:06 | 000,065,536 | ---- | C] ( ) -- C:\WINDOWS\System32\A3d.dll
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2011.12.15 21:17:25 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.12.15 21:13:38 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\noskin\Plocha\OTL.exe
[2011.12.15 21:08:56 | 000,000,468 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{56387A4C-B278-456A-A7AA-2F369A52953D}.job
[2011.12.15 20:56:19 | 000,781,383 | ---- | M] () -- C:\Documents and Settings\noskin\Plocha\RSIT.exe
[2011.12.15 20:55:51 | 000,435,688 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011.12.15 20:55:51 | 000,432,432 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2011.12.15 20:55:51 | 000,079,490 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2011.12.15 20:55:51 | 000,068,584 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011.12.15 20:51:29 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011.12.15 20:51:29 | 000,000,274 | ---- | M] () -- C:\WINDOWS\tasks\Aeria Ignite.job
[2011.12.15 20:51:13 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.12.15 15:25:00 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011.12.15 15:21:43 | 000,117,248 | ---- | M] () -- C:\Documents and Settings\noskin\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.12.15 15:15:09 | 555,177,984 | ---- | M] () -- C:\Documents and Settings\noskin\Plocha\DVB_CT1-Denik-doktorky-S03E01.avi
[2011.12.15 11:07:23 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.12.15 11:07:14 | 000,321,136 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.12.14 23:19:44 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011.12.14 22:50:09 | 000,138,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011.12.14 22:49:55 | 000,271,200 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2011.12.14 22:45:48 | 000,271,200 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.ex0
[2011.12.14 22:38:53 | 000,001,508 | ---- | M] () -- C:\Documents and Settings\noskin\Plocha\GamePark.lnk
[2011.12.14 22:33:23 | 000,000,677 | ---- | M] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\GamePark klient 2.lnk
[2011.12.14 22:33:23 | 000,000,665 | ---- | M] () -- C:\Documents and Settings\noskin\Plocha\GamePark klient 2.lnk
[2011.12.14 22:03:29 | 000,001,691 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Call of Duty(R) 4 - Modern Warfare(TM) Singleplayer.lnk
[2011.12.14 22:03:29 | 000,001,691 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Call of Duty(R) 4 - Modern Warfare(TM) Multiplayer.lnk
[2011.12.14 22:02:19 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\noskin\Data aplikací\PnkBstrK.sys
[2011.12.14 22:01:52 | 000,000,319 | ---- | M] () -- C:\WINDOWS\game.ini
[2011.12.14 18:20:43 | 731,529,216 | ---- | M] () -- C:\Documents and Settings\noskin\Plocha\Věc-Počátek-CZ-Sub.(2011)-62%.avi
[2011.12.14 16:37:29 | 000,002,516 | -HS- | M] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2011.12.14 16:37:26 | 000,000,088 | RHS- | M] () -- C:\WINDOWS\System32\6136481AE1.sys
[2011.12.13 22:28:43 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2011.12.13 21:36:07 | 000,033,588 | ---- | M] () -- C:\Documents and Settings\noskin\Dokumenty\[CzT]Call_of_duty_4_modern_warfare.torrent
[2011.12.13 17:06:01 | 000,002,552 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.12.15 21:17:25 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.12.15 20:56:17 | 000,781,383 | ---- | C] () -- C:\Documents and Settings\noskin\Plocha\RSIT.exe
[2011.12.15 14:23:08 | 555,177,984 | ---- | C] () -- C:\Documents and Settings\noskin\Plocha\DVB_CT1-Denik-doktorky-S03E01.avi
[2011.12.14 23:14:18 | 000,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2011.12.14 22:35:18 | 000,001,508 | ---- | C] () -- C:\Documents and Settings\noskin\Plocha\GamePark.lnk
[2011.12.14 22:33:23 | 000,001,531 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\GamePark klient 2.lnk
[2011.12.14 22:33:23 | 000,000,677 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\GamePark klient 2.lnk
[2011.12.14 22:33:23 | 000,000,665 | ---- | C] () -- C:\Documents and Settings\noskin\Plocha\GamePark klient 2.lnk
[2011.12.14 22:03:29 | 000,001,691 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Call of Duty(R) 4 - Modern Warfare(TM) Singleplayer.lnk
[2011.12.14 22:03:29 | 000,001,691 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Call of Duty(R) 4 - Modern Warfare(TM) Multiplayer.lnk
[2011.12.14 22:01:51 | 000,000,319 | ---- | C] () -- C:\WINDOWS\game.ini
[2011.12.14 17:34:57 | 731,529,216 | ---- | C] () -- C:\Documents and Settings\noskin\Plocha\Věc-Počátek-CZ-Sub.(2011)-62%.avi
[2011.12.13 21:36:07 | 000,033,588 | ---- | C] () -- C:\Documents and Settings\noskin\Dokumenty\[CzT]Call_of_duty_4_modern_warfare.torrent
[2011.11.09 22:39:44 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\OpenVideo.dll
[2011.11.09 22:39:32 | 000,054,784 | ---- | C] () -- C:\WINDOWS\System32\OVDecode.dll
[2011.10.13 21:29:40 | 000,042,392 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll
[2011.09.18 16:54:42 | 000,000,088 | RHS- | C] () -- C:\WINDOWS\System32\6136481AE1.sys
[2011.09.18 16:47:23 | 000,002,516 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2011.09.11 12:18:53 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI
[2011.07.27 21:44:27 | 000,584,584 | ---- | C] () -- C:\WINDOWS\adb.exe
[2011.07.27 21:44:27 | 000,001,386 | ---- | C] () -- C:\WINDOWS\InnoTipLanguage.ini
[2011.06.14 21:53:18 | 000,336,613 | ---- | C] () -- C:\WINDOWS\System32\fastboot.exe
[2011.06.14 21:53:17 | 000,578,611 | ---- | C] () -- C:\WINDOWS\System32\adb.exe
[2011.06.09 13:34:05 | 000,005,504 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2011.05.09 11:44:48 | 000,271,200 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2011.04.09 17:55:28 | 000,179,261 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2011.01.15 20:13:25 | 000,363,608 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
[2011.01.02 12:50:06 | 000,000,088 | RHS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\6136481AE1.sys
[2011.01.02 12:50:05 | 000,005,018 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys
[2010.12.23 11:06:48 | 000,682,280 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
[2010.12.14 21:28:00 | 000,117,248 | ---- | C] () -- C:\Documents and Settings\noskin\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.12.13 16:03:44 | 002,434,856 | ---- | C] () -- C:\WINDOWS\System32\pbsvc_bc2.exe
[2010.12.12 14:45:39 | 000,138,160 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.12.12 14:45:38 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\noskin\Data aplikací\PnkBstrK.sys
[2010.12.12 14:45:13 | 002,601,752 | ---- | C] () -- C:\WINDOWS\System32\pbsvc_moh.exe
[2010.12.12 14:45:13 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010.12.11 18:14:57 | 000,005,663 | ---- | C] () -- C:\WINDOWS\System32\ludap17.ini
[2010.12.11 18:14:57 | 000,000,075 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
[2010.12.11 17:35:02 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010.12.11 15:05:04 | 000,000,566 | ---- | C] () -- C:\WINDOWS\System32\SP207.INI
[2010.12.11 14:37:15 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010.12.11 14:36:08 | 000,321,136 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.12.11 14:23:46 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2010.12.11 14:23:37 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2010.12.11 14:23:37 | 000,243,168 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2010.12.11 14:23:37 | 000,000,003 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2010.12.11 13:54:50 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010.12.11 13:50:15 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2008.04.14 08:16:08 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2007.06.05 12:20:32 | 000,177,704 | ---- | C] () -- C:\WINDOWS\System32\PSIService.exe
[2006.12.31 06:57:08 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2005.10.14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 11:56:50 | 000,778,240 | ---- | C] () -- C:\WINDOWS\System32\DivXsm.exe
[2005.10.14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.10.14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.10.14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 11:56:50 | 000,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005.10.14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 11:56:48 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
[2005.10.14 11:56:48 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\MMAVILNG.exe
[2005.05.03 19:38:42 | 000,064,512 | ---- | C] () -- C:\WINDOWS\System32\P17.dll
[2003.10.02 18:48:18 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\P17CPI.dll
[2001.10.25 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2001.10.25 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2001.10.25 13:00:00 | 000,435,688 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2001.10.25 13:00:00 | 000,432,432 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2001.10.25 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2001.10.25 13:00:00 | 000,269,162 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2001.10.25 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2001.10.25 13:00:00 | 000,079,490 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2001.10.25 13:00:00 | 000,068,584 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2001.10.25 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2001.10.25 13:00:00 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2001.10.25 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2001.10.25 13:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2001.10.25 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat

========== LOP Check ==========

[2011.05.23 12:02:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2011.06.09 13:34:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Canneverbe Limited
[2011.06.14 19:44:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\createonepart
[2011.01.09 21:13:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2011.04.01 16:53:25 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\DSS
[2011.01.09 21:46:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\EA Core
[2011.01.16 16:23:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Electronic Arts
[2011.06.14 19:44:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\explauncher
[2011.01.02 12:46:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InterVideo
[2011.06.14 19:44:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\launcher
[2011.10.29 11:42:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Media Get LLC
[2011.06.10 11:18:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PMB Files
[2011.06.14 19:44:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\redistpart
[2011.01.09 21:34:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Solidshield
[2011.01.09 10:06:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Teleca
[2011.01.02 18:37:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
[2011.08.02 21:42:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011.12.15 20:51:29 | 000,000,274 | ---- | M] () -- C:\WINDOWS\Tasks\Aeria Ignite.job
[2011.12.15 21:08:56 | 000,000,468 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{56387A4C-B278-456A-A7AA-2F369A52953D}.job

========== Purity Check ==========



========== Custom Scans ==========


< >

< >


< MD5 for: ATAPI.SYS >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.13 23:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.13 23:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 07:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2008.04.14 07:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\dllcache\autochk.exe

< MD5 for: CDROM.SYS >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.13 23:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2008.04.14 07:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 07:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\dllcache\explorer.exe

< MD5 for: HAL.DLL >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.13 23:01:30 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\hal.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 07:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 07:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SVCHOST.EXE >
[2008.04.14 07:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\dllcache\svchost.exe
[2008.04.14 07:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.04.13 23:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 07:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 07:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2008.04.14 07:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\dllcache\winlogon.exe
[2008.04.14 07:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe

< >

< %systemroot%*.* /U /s >
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[14 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[3 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[7 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[1 C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp files -> C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp -> ]
[5 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2010.12.11 19:24:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Adobe
[2011.10.20 20:02:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Aeria Games & Entertainment
[2011.08.02 21:43:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Apple Computer
[2010.12.11 14:43:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\ATI
[2011.10.31 10:04:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Audacity
[2011.06.09 13:34:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Canneverbe Limited
[2011.09.18 16:54:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Corel
[2011.12.14 21:52:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\DAEMON Tools Lite
[2010.12.11 14:20:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\ESET
[2011.05.22 19:13:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\FreeScreenToVideo
[2010.12.11 14:34:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\GHISLER
[2011.05.05 17:16:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Google
[2011.09.30 10:35:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\gtk-2.0
[2011.06.26 19:12:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Help
[2010.12.11 13:57:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Identities
[2010.12.11 15:04:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\InstallShield
[2010.12.11 14:30:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Macromedia
[2011.06.14 23:32:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Mael
[2011.03.12 14:02:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Malwarebytes
[2011.10.26 15:21:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\MAXON
[2011.10.29 11:41:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Media Get LLC
[2011.09.11 23:35:09 | 000,000,000 | --SD | M] -- C:\Documents and Settings\noskin\Data aplikací\Microsoft
[2011.05.04 17:09:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Mozilla
[2011.01.16 17:23:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Need for Speed World
[2010.12.14 21:06:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\OpenOffice.org
[2010.12.11 14:28:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Opera
[2011.05.22 18:51:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\PriceGong
[2011.04.15 16:40:20 | 000,000,000 | RH-D | M] -- C:\Documents and Settings\noskin\Data aplikací\SecuROM
[2011.12.01 23:46:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Skype
[2011.12.01 20:02:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\skypePM
[2011.01.09 10:07:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Sony Ericsson
[2011.06.08 21:55:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Sun
[2011.01.09 10:08:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Teleca
[2011.05.22 19:09:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\TS3Client
[2011.02.15 19:36:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\U3
[2011.01.15 18:38:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Ulead Systems
[2011.06.10 14:04:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\wargaming.net
[2011.11.27 22:18:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\noskin\Data aplikací\Xfire

Re: Preventivka

Napsal: 15 pro 2011 21:45
od nasua
2.část
< %APPDATA%\*.exe /s >
[2011.07.25 07:31:41 | 000,001,078 | R--- | M] () -- C:\Documents and Settings\noskin\Data aplikací\Microsoft\Installer\{F58E04CD-6E76-43C8-AAF1-482225C2910E}\_18be6784.exe
[2011.07.25 07:31:41 | 000,001,078 | R--- | M] () -- C:\Documents and Settings\noskin\Data aplikací\Microsoft\Installer\{F58E04CD-6E76-43C8-AAF1-482225C2910E}\_294823.exe
[2007.10.23 09:27:20 | 000,110,592 | ---- | M] () -- C:\Documents and Settings\noskin\Data aplikací\U3\temp\cleanup.exe
[2008.05.02 10:41:48 | 003,493,888 | -H-- | M] (SanDisk Corporation) -- C:\Documents and Settings\noskin\Data aplikací\U3\temp\Launchpad Removal.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[7 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job >
[2011.12.15 20:51:29 | 000,000,274 | ---- | M] () -- C:\WINDOWS\Tasks\Aeria Ignite.job
[2011.12.15 20:51:29 | 000,000,936 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2011.12.15 21:25:01 | 000,000,940 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
[2011.12.15 21:23:50 | 000,000,468 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{56387A4C-B278-456A-A7AA-2F369A52953D}.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2010.12.11 14:35:35 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010.12.11 14:35:35 | 001,097,728 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010.12.11 14:35:35 | 000,507,904 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[7 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >
[2011.12.14 22:50:09 | 000,138,160 | ---- | M] () -- C:\WINDOWS\system32\drivers\PnkBstrK.sys

< %systemroot%\system32\*.* /3 >
[2011.12.14 16:37:26 | 000,000,088 | RHS- | M] () -- C:\WINDOWS\system32\6136481AE1.sys
[2011.12.13 17:06:01 | 000,002,552 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[2011.12.15 11:07:14 | 000,321,136 | ---- | M] () -- C:\WINDOWS\system32\FNTCACHE.DAT
[2011.12.14 16:37:29 | 000,002,516 | -HS- | M] () -- C:\WINDOWS\system32\KGyGaAvL.sys
[2011.12.14 23:17:19 | 052,988,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\MRT.exe
[2011.12.15 20:55:51 | 000,079,490 | ---- | M] () -- C:\WINDOWS\system32\perfc005.dat
[2011.12.15 20:55:51 | 000,068,584 | ---- | M] () -- C:\WINDOWS\system32\perfc009.dat
[2011.12.15 20:55:51 | 000,432,432 | ---- | M] () -- C:\WINDOWS\system32\perfh005.dat
[2011.12.15 20:55:51 | 000,435,688 | ---- | M] () -- C:\WINDOWS\system32\perfh009.dat
[2011.12.15 20:55:51 | 001,030,564 | ---- | M] () -- C:\WINDOWS\system32\PerfStringBackup.INI
[2011.12.14 22:47:25 | 000,075,136 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe
[2011.12.14 22:45:48 | 000,271,200 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.ex0
[2011.12.14 22:49:55 | 000,271,200 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe
[2011.12.14 22:49:55 | 000,271,200 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.xtr
[2011.12.14 23:15:31 | 000,018,102 | ---- | M] () -- C:\WINDOWS\system32\TZLog.log
[2011.12.15 11:07:23 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[7 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 07:52:18 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Akamai NetSession Interface" = C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe -- [2011.12.06 22:43:06 | 003,305,248 | ---- | M] (Akamai Technologies, Inc)
"DAEMON Tools Lite" = "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun -- [2011.08.02 08:33:30 | 004,910,912 | ---- | M] (DT Soft Ltd)
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\AutorunsDisabled]
"DAEMON Tools Lite" = "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun -- [2011.08.02 08:33:30 | 004,910,912 | ---- | M] (DT Soft Ltd)
"Corel Photo Downloader" = "C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe" -startup -- [2009.12.30 18:47:38 | 000,523,408 | ---- | M] (Corel, Inc.)
"MSMSGS" = "C:\Program Files\Messenger\msmsgs.exe" /background -- [2008.04.14 08:52:38 | 001,695,232 | ---- | M] (Microsoft Corporation)
"Skype" = "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized -- [2011.10.13 09:27:14 | 017,351,304 | R--- | M] (Skype Technologies S.A.)
"Steam" = "C:\Program Files\Steam\steam.exe" -silent -- [2011.12.13 19:00:22 | 001,242,448 | ---- | M] (Valve Corporation)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2011.12.15 21:17:25 | 000,000,512 | ---- | M] () MD5=A4BC09C2D7417ADC773B80AC742D5361 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2011.03.18 18:29:03 | 000,015,488 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrack.cfx
[2011.03.18 18:29:06 | 000,015,476 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrackalphatest.cfx
[2011.03.18 18:29:06 | 000,015,896 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmap.cfx
[2011.03.18 18:29:07 | 000,016,572 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrackalphatestlightmapshadow.cfx
[2011.03.18 18:29:07 | 000,015,232 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrackalphatestpointlight.cfx
[2011.03.18 18:29:07 | 000,016,152 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrackalphatestshadow.cfx
[2011.03.18 18:29:03 | 000,015,908 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncracklightmap.cfx
[2011.03.18 18:29:04 | 000,016,584 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncracklightmapshadow.cfx
[2011.03.18 18:29:05 | 000,015,232 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrackpointlight.cfx
[2011.03.18 18:29:04 | 000,016,164 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetailcrackndetailncrackshadow.cfx
[2011.03.18 18:29:03 | 000,015,708 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrack.cfx
[2011.03.18 18:29:06 | 000,015,696 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrackalphatest.cfx
[2011.03.18 18:29:06 | 000,016,116 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmap.cfx
[2011.03.18 18:29:07 | 000,016,792 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestlightmapshadow.cfx
[2011.03.18 18:29:07 | 000,015,452 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestpointlight.cfx
[2011.03.18 18:29:07 | 000,016,372 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrackalphatestshadow.cfx
[2011.03.18 18:29:03 | 000,016,128 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncracklightmap.cfx
[2011.03.18 18:29:04 | 000,016,804 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncracklightmapshadow.cfx
[2011.03.18 18:29:05 | 000,015,452 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrackpointlight.cfx
[2011.03.18 18:29:04 | 000,016,384 | ---- | M] () -- \Documents and Settings\noskin\Dokumenty\Battlefield Play4Free\mods\main\cache\{D7B71EE2-D641-11CF-146C-AE01A1C2CB35}_221900_4\rashaderstmbasedetaildirtcrackndetailncrackshadow.cfx
[2011.04.20 17:44:20 | 000,599,242 | ---- | M] () -- \Program Files\GamersFirst\APB Reloaded\APBGame\Content\Release\Packages\SymbolEditor\Primitives_SplatsCracks.upk
[2010.10.04 21:50:56 | 000,062,238 | ---- | M] () -- \Program Files\GIMP-2.0\share\gimp\2.0\patterns\cracked.pat
[2010.12.12 10:20:09 | 040,868,256 | ---- | M] () -- \Program Files\Steam\steamapps\common\call of duty black ops\zone\Common\mp_cracked.ff
[2010.12.11 22:16:25 | 000,012,736 | ---- | M] () -- \Program Files\Steam\steamapps\common\call of duty black ops\zone\Russian\ru_mp_cracked.ff

< *keygen* /s >
[2009.04.21 20:14:58 | 000,043,604 | ---- | M] () -- \android\docs\reference\java\security\spec\RSAKeyGenParameterSpec.html
[2009.04.21 20:14:58 | 000,059,496 | ---- | M] () -- \android\docs\reference\javax\crypto\KeyGenerator.html
[2009.04.21 20:14:58 | 000,044,257 | ---- | M] () -- \android\docs\reference\javax\crypto\KeyGeneratorSpi.html

< *loader* /s >
[2009.04.21 20:14:58 | 000,067,120 | ---- | M] () -- \android\docs\reference\dalvik\system\DexClassLoader.html
[2009.04.21 20:14:58 | 000,070,707 | ---- | M] () -- \android\docs\reference\dalvik\system\PathClassLoader.html
[2009.04.21 20:14:58 | 000,117,016 | ---- | M] () -- \android\docs\reference\java\lang\ClassLoader.html
[2009.04.21 20:14:58 | 000,089,517 | ---- | M] () -- \android\docs\reference\java\net\URLClassLoader.html
[2009.04.21 20:14:58 | 000,077,484 | ---- | M] () -- \android\docs\reference\java\security\SecureClassLoader.html
[2009.04.21 20:14:58 | 000,028,540 | ---- | M] () -- \android\docs\reference\junit\runner\TestSuiteLoader.html
[2009.04.22 17:50:52 | 000,000,579 | ---- | M] () -- \android\platforms\android-1.1\data\res\raw\loaderror.html
[2009.04.22 17:50:52 | 000,000,605 | ---- | M] () -- \android\platforms\android-1.1\data\res\raw-de\loaderror.html
[2009.04.21 20:15:00 | 000,000,579 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw\loaderror.html
[2009.04.21 20:15:00 | 000,000,643 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-ar\loaderror.html
[2009.04.21 20:15:00 | 000,000,682 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-cs\loaderror.html
[2009.04.21 20:15:00 | 000,000,612 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-da\loaderror.html
[2009.04.21 20:15:00 | 000,000,605 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-de\loaderror.html
[2009.04.21 20:15:00 | 000,000,579 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-en-rGB\loaderror.html
[2009.04.21 20:15:00 | 000,000,607 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-es\loaderror.html
[2009.04.21 20:15:00 | 000,000,633 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-fi\loaderror.html
[2009.04.21 20:15:00 | 000,000,613 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-fr\loaderror.html
[2009.04.21 20:15:00 | 000,000,628 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-hu\loaderror.html
[2009.04.21 20:15:00 | 000,000,622 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-it\loaderror.html
[2009.04.21 20:15:00 | 000,000,638 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-iw\loaderror.html
[2009.04.21 20:15:00 | 000,000,656 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-ja\loaderror.html
[2009.04.21 20:15:00 | 000,000,648 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-ko\loaderror.html
[2009.04.21 20:15:00 | 000,000,592 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-nl\loaderror.html
[2009.04.21 20:15:00 | 000,000,628 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-pl\loaderror.html
[2009.04.21 20:15:00 | 000,000,676 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-pt-rBR\loaderror.html
[2009.04.21 20:15:00 | 000,000,705 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-ru\loaderror.html
[2009.04.21 20:15:00 | 000,000,678 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-th\loaderror.html
[2009.04.21 20:15:00 | 000,000,570 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-tr\loaderror.html
[2009.04.21 20:15:00 | 000,000,556 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-zh-rCN\loaderror.html
[2009.04.21 20:15:00 | 000,000,635 | ---- | M] () -- \android\platforms\android-1.5\data\res\raw-zh-rTW\loaderror.html
[2011.01.16 16:36:12 | 000,004,068 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Electronic Arts\Need For Speed World\Data\GFX\_RadialFlareLoader_Double.gfx
[2011.01.16 16:36:12 | 000,065,664 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Electronic Arts\Need For Speed World\Data\GFX\_RadialFlareLoader_Double_I1.dds
[2011.01.16 16:36:12 | 000,001,152 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Electronic Arts\Need For Speed World\Data\GFX\_RadialFlareLoader_Double_I4.dds
[2011.09.18 16:54:06 | 000,002,036 | ---- | M] () -- \Documents and Settings\All Users\Nabídka Start\Programy\Corel Paint Shop Pro Photo X2\Corel Photo Downloader.lnk
[2011.01.02 12:41:40 | 000,000,960 | ---- | M] () -- \Documents and Settings\All Users\Nabídka Start\Programy\Corel PaintShop Photo Pro X3\Corel Photo Downloader.lnk
[2010.12.15 09:28:49 | 000,001,822 | ---- | M] () -- \Documents and Settings\All Users\Nabídka Start\Programy\ImageShack Uploader\ImageShack Uploader.lnk
[2011.12.07 14:23:13 | 000,002,259 | ---- | M] () -- \Documents and Settings\All Users\Plocha\ImageShack Uploader.lnk
[2011.06.09 14:12:33 | 000,180,440 | ---- | M] () -- \fastboot\EngBootloader_v2_NoSigCheck.zip
[2011.06.14 20:21:02 | 000,210,365 | ---- | M] () -- \fastboot\G1OrigBootloader_nocheck.zip
[2011.05.12 12:59:30 | 000,071,208 | ---- | M] () -- \Games\World_of_Tanks\PhysXLoader.dll
[2011.05.13 17:58:08 | 000,039,683 | ---- | M] () -- \Games\World_of_Tanks\res\gui\flash\ammunitionReloader.swf
[2011.05.13 17:58:08 | 000,006,384 | ---- | M] () -- \Games\World_of_Tanks\res\gui\flash\loader.swf
[2011.05.13 17:58:08 | 000,025,296 | ---- | M] () -- \Games\World_of_Tanks\res\gui\flash\ShellLoaderForm.swf
[2011.05.12 13:00:18 | 000,014,418 | ---- | M] () -- \Games\World_of_Tanks\res\gui\maps\icons\tankmen\roles\loader.tga
[2011.05.12 13:00:18 | 000,000,694 | ---- | M] () -- \Games\World_of_Tanks\res\gui\maps\icons\tankmen\roles\small\loader.tga
[2011.05.13 17:58:20 | 000,001,152 | ---- | M] () -- \Games\World_of_Tanks\res\objects\misc\collisions_mat\loader_1.dds
[2011.05.13 17:58:20 | 000,001,152 | ---- | M] () -- \Games\World_of_Tanks\res\objects\misc\collisions_mat\loader_2.dds
[2006.09.29 21:09:10 | 001,503,744 | ---- | M] () -- \Program Files\Atari\Neverwinter Nights 2\nwloader.exe
[2010.11.21 04:22:22 | 000,013,782 | ---- | M] () -- \Program Files\Blender Foundation\Blender\2.60\python\lib\unittest\loader.py
[2009.12.30 18:47:38 | 000,523,408 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe
[2009.12.30 18:47:44 | 000,075,920 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\CT\PhotoDownloaderRC.dll
[2008.03.09 21:15:10 | 000,021,363 | R--- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\CZ\Corel Photo Downloader.chm
[2008.03.09 20:20:46 | 000,087,368 | R--- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\CZ\PhotodownloaderRC.dll
[2009.12.30 18:47:46 | 000,089,232 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\DE\PhotoDownloaderRC.dll
[2009.12.30 18:47:46 | 000,084,624 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\EN\PhotoDownloaderRC.dll
[2009.12.30 18:47:48 | 000,087,696 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\ES\PhotoDownloaderRC.dll
[2009.12.30 18:47:50 | 000,089,232 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\FR\PhotoDownloaderRC.dll
[2009.12.30 18:47:50 | 000,084,624 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\IE\PhotoDownloaderRC.dll
[2009.12.30 18:47:52 | 000,087,696 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\IT\PhotoDownloaderRC.dll
[2009.12.30 18:47:54 | 000,078,992 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\JP\PhotoDownloaderRC.dll
[2009.12.30 18:47:56 | 000,087,184 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\NL\PhotoDownloaderRC.dll
[2008.03.09 21:17:04 | 000,021,761 | R--- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\PL\Corel Photo Downloader.chm
[2009.12.30 18:48:00 | 000,087,696 | ---- | M] () -- \Program Files\Common Files\Corel\Corel PhotoDownloader\Languages\PL\PhotoDownloaderRC.dll
[2006.10.26 12:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006.10.26 12:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2008.03.13 14:12:26 | 000,111,944 | ---- | M] () -- \Program Files\Corel\Corel Paint Shop Pro Photo X2\PCULoader.exe
[2009.01.04 19:53:08 | 000,002,945 | ---- | M] () -- \Program Files\Corel\Corel PaintShop Photo Pro\X3\accLoader.ini
[2010.01.07 13:08:04 | 000,331,936 | ---- | M] () -- \Program Files\Corel\Corel PaintShop Photo Pro\X3\VimeoUploader.dll
[2009.12.26 14:08:34 | 000,331,976 | ---- | M] () -- \Program Files\Corel\MLE\VimeoUploader.dll
[2010.12.11 22:24:43 | 000,065,536 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\Binaries\PhysXLocal\PhysXLoader.dll
[2010.12.11 23:34:24 | 001,933,161 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp\loader-00.fbrb
[2010.12.12 04:40:41 | 005,968,346 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_01\loader-00.fbrb
[2010.12.12 04:40:40 | 005,755,952 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_02\loader-00.fbrb
[2010.12.12 12:21:28 | 055,099,465 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_03\loader-00.fbrb
[2010.12.11 23:38:41 | 002,954,487 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_04\loader-00.fbrb
[2010.12.12 12:27:55 | 047,101,846 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_05\loader-00.fbrb
[2010.12.12 12:11:27 | 050,561,194 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_06\loader-00.fbrb
[2010.12.12 12:32:42 | 055,282,402 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_07\loader-00.fbrb
[2010.12.12 12:20:02 | 049,203,256 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_08\loader-00.fbrb
[2010.12.12 09:01:52 | 047,279,340 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_09\loader-00.fbrb
[2010.12.12 12:11:21 | 049,418,362 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\common_mp_10\loader-00.fbrb
[2010.12.12 06:18:40 | 017,474,214 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_01\loader-00.fbrb
[2010.12.12 05:45:45 | 016,173,085 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_02\loader-00.fbrb
[2010.12.12 05:44:32 | 017,335,818 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_04\loader-00.fbrb
[2010.12.12 02:28:38 | 008,013,580 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_05_domination\loader-00.fbrb
[2010.12.12 04:01:38 | 008,013,580 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_05_overrun\loader-00.fbrb
[2010.12.12 05:46:17 | 008,007,355 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_05_tdm\loader-00.fbrb
[2010.12.12 05:10:52 | 008,004,561 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_06_domination\loader-00.fbrb
[2010.12.12 05:29:07 | 008,004,561 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_06_overrun\loader-00.fbrb
[2010.12.12 04:02:23 | 007,984,585 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_06_tdm\loader-00.fbrb
[2010.12.12 05:08:11 | 008,008,365 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_08_domination\loader-00.fbrb
[2010.12.12 04:42:37 | 008,008,365 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_08_overrun\loader-00.fbrb
[2010.12.12 05:11:06 | 008,022,594 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_08_tdm\loader-00.fbrb
[2010.12.12 04:04:19 | 007,967,707 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_09_domination\loader-00.fbrb
[2010.12.12 05:08:58 | 007,967,707 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_09_overrun\loader-00.fbrb
[2010.12.12 03:38:23 | 007,988,318 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_09_tdm\loader-00.fbrb
[2010.12.11 23:48:38 | 008,033,103 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_10_domination\loader-00.fbrb
[2010.12.12 00:42:18 | 008,033,103 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_10_overrun\loader-00.fbrb
[2010.12.11 23:48:32 | 008,018,170 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\levels\mp_10_tdm\loader-00.fbrb
[2011.04.01 18:44:45 | 000,360,850 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp\loader-00.fbrb
[2011.04.01 18:44:46 | 000,000,058 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_01\loader-00.fbrb
[2011.04.01 18:44:46 | 000,000,084 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_02\loader-00.fbrb
[2011.04.01 18:45:30 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_03\loader-00.fbrb
[2011.04.01 18:45:31 | 000,000,060 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_04\loader-00.fbrb
[2011.04.01 18:45:31 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_05\loader-00.fbrb
[2011.04.01 18:45:31 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_06\loader-00.fbrb
[2011.04.01 18:45:31 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_07\loader-00.fbrb
[2011.04.01 18:45:31 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_08\loader-00.fbrb
[2011.04.01 18:45:32 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_09\loader-00.fbrb
[2011.04.01 18:45:32 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\common_mp_10\loader-00.fbrb
[2011.04.01 18:47:39 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_01\loader-00.fbrb
[2011.04.01 18:52:35 | 051,397,255 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_01_elimination\loader-00.fbrb
[2011.04.01 18:57:06 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_02\loader-00.fbrb
[2011.04.01 19:01:46 | 051,471,865 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_02_koth\loader-00.fbrb
[2011.04.01 19:07:07 | 051,471,374 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_02_koth2\loader-00.fbrb
[2011.04.01 19:08:14 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_04\loader-00.fbrb
[2011.04.01 19:12:14 | 051,411,720 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_04_koth\loader-00.fbrb
[2011.04.01 19:12:54 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_05_domination\loader-00.fbrb
[2011.04.01 19:14:06 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_05_overrun\loader-00.fbrb
[2011.04.01 19:14:07 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_05_tdm\loader-00.fbrb
[2011.04.01 19:14:08 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_06_domination\loader-00.fbrb
[2011.04.01 19:15:07 | 007,984,585 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_06_elimination\loader-00.fbrb
[2011.04.01 19:15:57 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_06_overrun\loader-00.fbrb
[2011.04.01 19:15:58 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_06_tdm\loader-00.fbrb
[2011.04.01 19:15:59 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_08_domination\loader-00.fbrb
[2011.04.01 19:17:49 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_08_overrun\loader-00.fbrb
[2011.04.01 19:17:49 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_08_tdm\loader-00.fbrb
[2011.04.01 19:17:50 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_09_domination\loader-00.fbrb
[2011.04.01 19:18:56 | 007,988,318 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_09_elimination\loader-00.fbrb
[2011.04.01 19:19:45 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_09_overrun\loader-00.fbrb
[2011.04.01 19:19:46 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_09_tdm\loader-00.fbrb
[2011.04.01 19:19:47 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_10_domination\loader-00.fbrb
[2011.04.01 19:20:57 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_10_overrun\loader-00.fbrb
[2011.04.01 19:20:58 | 000,000,057 | ---- | M] () -- \Program Files\Electronic Arts\Medal of Honor™\MP\dist\win32\patch\levels\mp_10_tdm\loader-00.fbrb
[2011.04.04 21:40:18 | 000,002,713 | ---- | M] () -- \Program Files\GamersFirst\APB Reloaded\APBGame\Gecko\Data\components\uriloader.xpt
[2011.04.04 21:40:28 | 000,065,536 | ---- | M] () -- \Program Files\GamersFirst\APB Reloaded\Binaries\PhysXLocal\PhysXLoader.dll
[2010.02.07 21:40:00 | 000,000,543 | ---- | M] () -- \Program Files\GIMP-2.0\etc\gtk-2.0\gdk-pixbuf.loaders
[2009.12.15 17:58:18 | 000,017,056 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2009.12.15 17:58:20 | 000,018,592 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2009.12.15 17:58:24 | 000,026,272 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2009.12.15 17:58:26 | 000,012,960 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2009.12.15 17:58:28 | 000,017,568 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2009.12.15 17:58:56 | 000,019,616 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2009.12.15 17:59:04 | 000,015,008 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2009.12.15 17:59:06 | 000,019,104 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2009.12.15 17:59:10 | 000,017,056 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2009.12.15 17:59:14 | 000,012,448 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2009.12.15 17:59:16 | 000,016,544 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2009.12.15 17:59:20 | 000,016,544 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2009.12.15 17:59:22 | 000,011,936 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2009.12.15 17:59:24 | 000,013,984 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2009.12.15 17:59:28 | 000,028,320 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2009.05.01 19:42:00 | 000,009,880 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2009.10.09 20:16:58 | 000,990,720 | ---- | M] () -- \Program Files\ImageShack Uploader\ImageShackUploader.exe
[2011.06.08 22:53:27 | 000,007,664 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\demo\jvmti\hprof\src\hprof_loader.c
[2011.06.08 22:53:27 | 000,002,141 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\demo\jvmti\hprof\src\hprof_loader.h
[2011.06.08 22:53:13 | 000,002,941 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\lib\visualvm\platform\config\ModuleAutoDeps\org-openide-loaders.xml
[2011.06.08 22:53:13 | 000,000,411 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\lib\visualvm\platform\config\Modules\org-openide-loaders.xml
[2011.06.08 22:53:14 | 001,138,236 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\lib\visualvm\platform\modules\org-openide-loaders.jar
[2011.06.08 22:53:14 | 000,007,002 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\lib\visualvm\platform\modules\locale\org-openide-loaders_ja.jar
[2011.06.08 22:53:14 | 000,006,658 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\lib\visualvm\platform\modules\locale\org-openide-loaders_zh_CN.jar
[2011.06.08 22:53:14 | 000,000,456 | ---- | M] () -- \Program Files\Java\jdk1.6.0_26\lib\visualvm\platform\update_tracking\org-openide-loaders.xml
[2010.01.29 05:43:52 | 000,071,008 | ---- | M] () -- \Program Files\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2010.03.21 16:04:58 | 001,627,648 | ---- | M] () -- \Program Files\NWN2Czech\Loader.exe
[2010.06.07 21:11:08 | 000,006,262 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.py
[2011.01.31 13:32:42 | 000,005,437 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.pyc
[2010.12.14 21:04:56 | 000,021,504 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.uno.dll
[2010.06.07 21:19:10 | 000,000,171 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.uno.ini
[2010.12.14 21:05:02 | 000,029,184 | ---- | M] () -- \Program Files\OpenOffice.org 3\URE\bin\javaloader.uno.dll
[2010.06.09 16:21:40 | 000,003,874 | ---- | M] () -- \Program Files\OpenOffice.org 3\URE\java\unoloader.jar
[2007.08.20 15:32:46 | 000,450,560 | R--- | M] () -- \Program Files\Sony Ericsson\Mobile2\Sync Manager\NotesPimAdaptorLoader.dll
[2010.12.27 18:41:08 | 000,001,702 | ---- | M] () -- \Program Files\Sony Ericsson\Update Service\licenses\loaderbinarylegal.txt
[2010.12.27 18:40:08 | 000,679,429 | ---- | M] () -- \Program Files\Sony Ericsson\Update Service\plugins\com.google.inject_1.0.0.customloader-20090412.jar
[2010.02.05 23:27:16 | 000,000,015 | ---- | M] () -- \Program Files\TNod User & Password Finder\Licenses Downloader.bat
[2005.06.07 11:25:46 | 000,044,032 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2011.06.14 22:29:34 | 000,006,648 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\samples\ApiDemos\src\com\example\android\apis\app\FragmentListCursorLoader.java
[2011.06.14 22:29:35 | 000,018,802 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\samples\ApiDemos\src\com\example\android\apis\app\LoaderThrottle.java
[2011.06.14 22:29:34 | 000,006,498 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\samples\ApiDemos\src\com\example\android\apis\support\app\FragmentListCursorLoaderSupport.java
[2011.06.14 22:29:33 | 000,018,926 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\samples\ApiDemos\src\com\example\android\apis\support\app\LoaderThrottleSupport.java
[2011.06.14 22:29:33 | 000,033,079 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\src\java\android\support\v4\app\LoaderManager.java
[2011.06.14 22:29:34 | 000,010,469 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\src\java\android\support\v4\content\AsyncTaskLoader.java
[2011.06.14 22:29:33 | 000,006,545 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\src\java\android\support\v4\content\CursorLoader.java
[2011.06.14 22:29:33 | 000,012,555 | ---- | M] () -- \sdk\android-sdk\extras\android\compatibility\v4\src\java\android\support\v4\content\Loader.java
[2011.06.14 22:12:01 | 000,000,677 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw\loaderror.html
[2011.06.14 22:12:04 | 000,000,643 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-ar\loaderror.html
[2011.06.14 22:12:02 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-cs\loaderror.html
[2011.06.14 22:11:48 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-da\loaderror.html
[2011.06.14 22:12:00 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-de\loaderror.html
[2011.06.14 22:11:47 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:11:59 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-es\loaderror.html
[2011.06.14 22:11:51 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-fi\loaderror.html
[2011.06.14 22:12:01 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-fr\loaderror.html
[2011.06.14 22:12:03 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-hu\loaderror.html
[2011.06.14 22:12:03 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-it\loaderror.html
[2011.06.14 22:12:03 | 000,000,638 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-iw\loaderror.html
[2011.06.14 22:12:01 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-ja\loaderror.html
[2011.06.14 22:11:51 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-ko\loaderror.html
[2011.06.14 22:11:52 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-nl\loaderror.html
[2011.06.14 22:11:52 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-pl\loaderror.html
[2011.06.14 22:12:04 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:11:49 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-ru\loaderror.html
[2011.06.14 22:12:04 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-th\loaderror.html
[2011.06.14 22:11:59 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-tr\loaderror.html
[2011.06.14 22:12:01 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:11:48 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-10\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:08:22 | 000,000,679 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw\loaderror.html
[2011.06.14 22:08:17 | 000,000,659 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-ar\loaderror.html
[2011.06.14 22:08:22 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-cs\loaderror.html
[2011.06.14 22:08:24 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-da\loaderror.html
[2011.06.14 22:08:27 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-de\loaderror.html
[2011.06.14 22:08:35 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:08:17 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-es\loaderror.html
[2011.06.14 22:08:27 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-fi\loaderror.html
[2011.06.14 22:08:26 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-fr\loaderror.html
[2011.06.14 22:08:15 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-hu\loaderror.html
[2011.06.14 22:08:17 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-it\loaderror.html
[2011.06.14 22:08:26 | 000,000,654 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-iw\loaderror.html
[2011.06.14 22:08:17 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-ja\loaderror.html
[2011.06.14 22:08:22 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-ko\loaderror.html
[2011.06.14 22:08:22 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-nl\loaderror.html
[2011.06.14 22:08:18 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-pl\loaderror.html
[2011.06.14 22:08:17 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:08:18 | 000,000,617 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-rm\loaderror.html
[2011.06.14 22:08:19 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-ru\loaderror.html
[2011.06.14 22:08:25 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-th\loaderror.html
[2011.06.14 22:08:20 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-tr\loaderror.html
[2011.06.14 22:08:22 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:08:19 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-11\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:04:06 | 000,000,679 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw\loaderror.html
[2011.06.14 22:04:03 | 000,000,659 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-ar\loaderror.html
[2011.06.14 22:04:19 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-cs\loaderror.html
[2011.06.14 22:04:08 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-da\loaderror.html
[2011.06.14 22:04:05 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-de\loaderror.html
[2011.06.14 22:04:07 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:03:56 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-es\loaderror.html
[2011.06.14 22:04:08 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-fi\loaderror.html
[2011.06.14 22:04:01 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-fr\loaderror.html
[2011.06.14 22:04:08 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-hu\loaderror.html
[2011.06.14 22:04:06 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-it\loaderror.html
[2011.06.14 22:04:05 | 000,000,654 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-iw\loaderror.html
[2011.06.14 22:03:56 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-ja\loaderror.html
[2011.06.14 22:04:09 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-ko\loaderror.html
[2011.06.14 22:03:56 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-nl\loaderror.html
[2011.06.14 22:03:57 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-pl\loaderror.html
[2011.06.14 22:04:02 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:04:04 | 000,000,617 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-rm\loaderror.html
[2011.06.14 22:04:08 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-ru\loaderror.html
[2011.06.14 22:03:57 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-th\loaderror.html
[2011.06.14 22:04:02 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-tr\loaderror.html
[2011.06.14 22:04:02 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:04:19 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-12\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:26:36 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw\loaderror.html
[2011.06.14 22:26:36 | 000,000,643 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-ar\loaderror.html
[2011.06.14 22:26:33 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-cs\loaderror.html
[2011.06.14 22:26:24 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-da\loaderror.html
[2011.06.14 22:26:37 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-de\loaderror.html
[2011.06.14 22:26:36 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:26:35 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-es\loaderror.html
[2011.06.14 22:26:28 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-fi\loaderror.html
[2011.06.14 22:26:26 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-fr\loaderror.html
[2011.06.14 22:26:27 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-hu\loaderror.html
[2011.06.14 22:26:38 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-it\loaderror.html
[2011.06.14 22:26:24 | 000,000,638 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-iw\loaderror.html
[2011.06.14 22:26:33 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-ja\loaderror.html
[2011.06.14 22:26:35 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-ko\loaderror.html
[2011.06.14 22:26:30 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-nl\loaderror.html
[2011.06.14 22:26:33 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-pl\loaderror.html
[2011.06.14 22:26:25 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:26:28 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-ru\loaderror.html
[2011.06.14 22:26:36 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-th\loaderror.html
[2011.06.14 22:26:28 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-tr\loaderror.html
[2011.06.14 22:26:28 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:26:38 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-3\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:24:08 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw\loaderror.html
[2011.06.14 22:24:08 | 000,000,643 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-ar\loaderror.html
[2011.06.14 22:24:08 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-cs\loaderror.html
[2011.06.14 22:24:10 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-da\loaderror.html
[2011.06.14 22:24:22 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-de\loaderror.html
[2011.06.14 22:24:13 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:24:07 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-es\loaderror.html
[2011.06.14 22:24:13 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-fi\loaderror.html
[2011.06.14 22:24:07 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-fr\loaderror.html
[2011.06.14 22:24:07 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-hu\loaderror.html
[2011.06.14 22:24:21 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-it\loaderror.html
[2011.06.14 22:24:08 | 000,000,638 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-iw\loaderror.html
[2011.06.14 22:24:22 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-ja\loaderror.html
[2011.06.14 22:24:10 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-ko\loaderror.html
[2011.06.14 22:24:11 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-nl\loaderror.html
[2011.06.14 22:24:21 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-pl\loaderror.html
[2011.06.14 22:24:21 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:24:21 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-ru\loaderror.html
[2011.06.14 22:24:21 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-th\loaderror.html
[2011.06.14 22:24:21 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-tr\loaderror.html
[2011.06.14 22:24:22 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:24:13 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-4\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:21:23 | 000,000,677 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw\loaderror.html
[2011.06.14 22:21:33 | 000,000,643 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-ar\loaderror.html
[2011.06.14 22:21:33 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-cs\loaderror.html
[2011.06.14 22:21:28 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-da\loaderror.html
[2011.06.14 22:21:33 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-de\loaderror.html
[2011.06.14 22:21:23 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:21:32 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-es\loaderror.html
[2011.06.14 22:21:33 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-fi\loaderror.html
[2011.06.14 22:21:29 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-fr\loaderror.html
[2011.06.14 22:21:24 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-hu\loaderror.html
[2011.06.14 22:21:30 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-it\loaderror.html
[2011.06.14 22:21:23 | 000,000,638 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-iw\loaderror.html
[2011.06.14 22:21:30 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-ja\loaderror.html
[2011.06.14 22:21:34 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-ko\loaderror.html
[2011.06.14 22:21:29 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-nl\loaderror.html
[2011.06.14 22:21:32 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-pl\loaderror.html
[2011.06.14 22:21:33 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:21:32 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-ru\loaderror.html
[2011.06.14 22:21:23 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-th\loaderror.html
[2011.06.14 22:21:24 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-tr\loaderror.html
[2011.06.14 22:21:32 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:21:30 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-7\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:18:26 | 000,000,677 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw\loaderror.html
[2011.06.14 22:18:26 | 000,000,643 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-ar\loaderror.html
[2011.06.14 22:18:30 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-cs\loaderror.html
[2011.06.14 22:18:29 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-da\loaderror.html
[2011.06.14 22:18:29 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-de\loaderror.html
[2011.06.14 22:18:31 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:18:23 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-es\loaderror.html
[2011.06.14 22:18:30 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-fi\loaderror.html
[2011.06.14 22:18:31 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-fr\loaderror.html
[2011.06.14 22:18:25 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-hu\loaderror.html
[2011.06.14 22:18:31 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-it\loaderror.html
[2011.06.14 22:18:31 | 000,000,638 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-iw\loaderror.html
[2011.06.14 22:18:28 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-ja\loaderror.html
[2011.06.14 22:18:31 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-ko\loaderror.html
[2011.06.14 22:18:26 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-nl\loaderror.html
[2011.06.14 22:18:31 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-pl\loaderror.html
[2011.06.14 22:18:27 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:18:29 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-ru\loaderror.html
[2011.06.14 22:18:31 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-th\loaderror.html
[2011.06.14 22:18:31 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-tr\loaderror.html
[2011.06.14 22:18:22 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:18:26 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-8\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:15:08 | 000,000,677 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw\loaderror.html
[2011.06.14 22:15:19 | 000,000,643 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-ar\loaderror.html
[2011.06.14 22:15:10 | 000,000,682 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-cs\loaderror.html
[2011.06.14 22:15:21 | 000,000,612 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-da\loaderror.html
[2011.06.14 22:15:08 | 000,000,605 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-de\loaderror.html
[2011.06.14 22:15:12 | 000,000,579 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-en-rGB\loaderror.html
[2011.06.14 22:15:06 | 000,000,607 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-es\loaderror.html
[2011.06.14 22:15:08 | 000,000,633 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-fi\loaderror.html
[2011.06.14 22:15:10 | 000,000,613 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-fr\loaderror.html
[2011.06.14 22:15:08 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-hu\loaderror.html
[2011.06.14 22:15:05 | 000,000,622 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-it\loaderror.html
[2011.06.14 22:15:12 | 000,000,638 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-iw\loaderror.html
[2011.06.14 22:15:18 | 000,000,656 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-ja\loaderror.html
[2011.06.14 22:15:06 | 000,000,648 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-ko\loaderror.html
[2011.06.14 22:15:19 | 000,000,592 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-nl\loaderror.html
[2011.06.14 22:15:07 | 000,000,628 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-pl\loaderror.html
[2011.06.14 22:15:06 | 000,000,676 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-pt-rBR\loaderror.html
[2011.06.14 22:15:09 | 000,000,705 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-ru\loaderror.html
[2011.06.14 22:15:09 | 000,000,678 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-th\loaderror.html
[2011.06.14 22:15:06 | 000,000,570 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-tr\loaderror.html
[2011.06.14 22:15:05 | 000,000,556 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-zh-rCN\loaderror.html
[2011.06.14 22:15:09 | 000,000,635 | ---- | M] () -- \sdk\android-sdk\platforms\android-9\data\res\raw-zh-rTW\loaderror.html
[2011.06.14 22:27:46 | 000,006,648 | ---- | M] () -- \sdk\android-sdk\samples\android-11\ApiDemos\src\com\example\android\apis\app\FragmentListCursorLoader.java
[2011.06.14 22:27:54 | 000,018,802 | ---- | M] () -- \sdk\android-sdk\samples\android-11\ApiDemos\src\com\example\android\apis\app\LoaderThrottle.java
[2011.06.14 22:27:47 | 000,013,960 | ---- | M] () -- \sdk\android-sdk\samples\android-11\XmlAdapters\src\com\example\android\xmladapters\ImageDownloader.java
[2011.06.14 22:27:13 | 000,006,648 | ---- | M] () -- \sdk\android-sdk\samples\android-12\ApiDemos\src\com\example\android\apis\app\FragmentListCursorLoader.java
[2011.06.14 22:27:15 | 000,018,802 | ---- | M] () -- \sdk\android-sdk\samples\android-12\ApiDemos\src\com\example\android\apis\app\LoaderThrottle.java
[2011.06.14 22:27:13 | 000,006,498 | ---- | M] () -- \sdk\android-sdk\samples\android-12\ApiDemos\src\com\example\android\apis\support\app\FragmentListCursorLoaderSupport.java
[2011.06.14 22:27:16 | 000,018,926 | ---- | M] () -- \sdk\android-sdk\samples\android-12\ApiDemos\src\com\example\android\apis\support\app\LoaderThrottleSupport.java
[2011.06.14 22:27:15 | 000,013,960 | ---- | M] () -- \sdk\android-sdk\samples\android-12\XmlAdapters\src\com\example\android\xmladapters\ImageDownloader.java
[2011.04.29 14:51:15 | 000,082,784 | ---- | M] () -- \WINDOWS\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2010.12.15 09:28:50 | 000,990,720 | R--- | M] () -- \WINDOWS\Installer\{8BCD7AE7-F713-4D50-BAB9-7839B9386870}\ImageShackUploader.exe
[2008.04.14 07:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[7 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2008.04.14 07:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll

< End of report >

Re: Preventivka

Napsal: 15 pro 2011 21:46
od nasua
EXTRAS.txt

OTL Extras logfile created on: 15.12.2011 21:15:11 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\noskin\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,29 Gb Available Physical Memory | 64,51% Memory free
3,85 Gb Paging File | 3,09 Gb Available in Paging File | 80,36% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 117,19 Gb Total Space | 15,52 Gb Free Space | 13,24% Space Free | Partition Type: NTFS
Drive F: | 180,90 Gb Total Space | 34,66 Gb Free Space | 19,16% Space Free | Partition Type: NTFS

Computer Name: HOME | User Name: noskin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)

[HKEY_USERS\S-1-5-21-299502267-220523388-1801674531-1003\SOFTWARE\Classes\<extension>]
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Opera\opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files\Opera\opera.exe" "%1" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Browse with Corel PaintShop Photo Pro X3] -- "c:\Program Files\Corel\Corel PaintShop Photo Pro\X3\PSPClassic\Corel Paint Shop Pro Photo.exe" "%L" (Corel, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"59017:TCP" = 59017:TCP:*:Enabled:Pando Media Booster
"59017:UDP" = 59017:UDP:*:Enabled:Pando Media Booster
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"56548:TCP" = 56548:TCP:*:Enabled:Pando Media Booster
"56548:UDP" = 56548:UDP:*:Enabled:Pando Media Booster
"59017:TCP" = 59017:TCP:*:Enabled:Pando Media Booster
"59017:UDP" = 59017:UDP:*:Enabled:Pando Media Booster
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"1043:TCP" = 1043:TCP:*:Enabled:Akamai NetSession Interface
"5000:UDP" = 5000:UDP:*:Enabled:Akamai NetSession Interface

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Pando Networks\Media Booster\PMB.exe" = C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster -- ()

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Program Files\Skype\Plugin Manager\skypePM.exe" = C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager
"C:\Program Files\Steam\Steam.exe" = C:\Program Files\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"F:\_games\Bad company 2\BFBC2Updater.exe" = F:\_games\Bad company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2 -- (EA Digital Illusions CE AB)
"C:\Program Files\Xfire\Xfire.exe" = C:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire -- (Xfire Inc.)
"F:\_games\COD V\CoDWaW.exe" = F:\_games\COD V\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM) -- (Activision Blizzard, Inc.)
"F:\_games\COD V\CoDWaWmp.exe" = F:\_games\COD V\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM) -- (Activision Blizzard, Inc.)
"C:\Program Files\Sony Ericsson\Update Service\Update Service.exe" = C:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service -- ()
"F:\_games\NFS\Launcher.exe" = F:\_games\NFS\Launcher.exe:*:Enabled:Need for Speed(TM) Hot Pursuit -- (Electronic Arts)
"F:\_games\NFS\NFS11.exe" = F:\_games\NFS\NFS11.exe:*:Enabled:Need for Speed(TM) Hot Pursuit Application -- (Electronic Arts)
"C:\Program Files\EA Games\Battlefield Play4Free\BFP4f.exe" = C:\Program Files\EA Games\Battlefield Play4Free\BFP4f.exe:*:Enabled:BFP4f
"C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOps.exe" = C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOps.exe:*:Enabled:Call of Duty: Black Ops -- ()
"F:\_games\Bad company 2\BFBC2Game.exe" = F:\_games\Bad company 2\BFBC2Game.exe:*:Enabled:Battlefield: Bad Company™ 2 -- (EA Digital Illusions CE AB)
"C:\Program Files\Electronic Arts\Medal of Honor™\MP\MoHMPGame.exe" = C:\Program Files\Electronic Arts\Medal of Honor™\MP\MoHMPGame.exe:*:Enabled:Medal of Honor: Multiplayer -- (EA Digital Illusions CE AB)
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe" = C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth
"C:\Program Files\GamersFirst\APB Reloaded\Binaries\APB.exe" = C:\Program Files\GamersFirst\APB Reloaded\Binaries\APB.exe:*:Enabled:APB: APB.exe -- (K2 Network, Inc.)
"C:\Program Files\GamersFirst\APB Reloaded\Binaries\VivoxVoiceService.exe" = C:\Program Files\GamersFirst\APB Reloaded\Binaries\VivoxVoiceService.exe:*:Enabled:APB: VivoxVoiceService.exe -- (Vivox Inc.)
"C:\Program Files\Pando Networks\Media Booster\PMB.exe" = C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster -- ()
"C:\Games\World_of_Tanks\WOTLauncher.exe" = C:\Games\World_of_Tanks\WOTLauncher.exe:*:Enabled:World of Tanks Launcher -- (Wargaming.net)
"C:\Games\World_of_Tanks\WorldOfTanks.exe" = C:\Games\World_of_Tanks\WorldOfTanks.exe:*:Enabled:World of Tanks -- (Wargaming.net)
"F:\_games\eden eternal\launcher.exe" = F:\_games\eden eternal\launcher.exe:*:Enabled:launcher.exe -- (X-LEGEND ENTERTAINMENT)
"F:\_games\eden eternal\_Launcher.exe" = F:\_games\eden eternal\_Launcher.exe:*:Enabled:_Launcher.exe -- (X-LEGEND ENTERTAINMENT)
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2main.exe" = C:\Program Files\Atari\Neverwinter Nights 2\nwn2main.exe:*:Enabled:Neverwinter Nights 2 Main -- (Obsidian Entertainment, Inc.)
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2main_amdxp.exe" = C:\Program Files\Atari\Neverwinter Nights 2\nwn2main_amdxp.exe:*:Enabled:Neverwinter Nights 2 AMD -- (Obsidian Entertainment, Inc.)
"C:\Program Files\Atari\Neverwinter Nights 2\nwupdate.exe" = C:\Program Files\Atari\Neverwinter Nights 2\nwupdate.exe:*:Enabled:Neverwinter Nights 2 Updater -- (Obsidian Entertainment, Inc.)
"C:\Program Files\Atari\Neverwinter Nights 2\nwn2server.exe" = C:\Program Files\Atari\Neverwinter Nights 2\nwn2server.exe:*:Enabled:Neverwinter Nights 2 Server -- (Obsidian Entertainment, Inc.)
"C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe" = C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe:*:Enabled:Age of Empires Online -- (Microsoft Studios)
"C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe" = C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface -- (Akamai Technologies, Inc)
"C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOpsMP.exe" = C:\Program Files\Steam\steamapps\common\call of duty black ops\BlackOpsMP.exe:*:Enabled:Call of Duty: Black Ops - Multiplayer -- ()
"C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe" = C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{D1AEB5DB-04FA-489D-94EF-8600898B93EE}" = Corel PaintShop Photo Pro X3
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch
"{064DC64E-7A2F-4FDF-B598-E3C0747BBB9C}" = Call of Duty(R) - World at War(TM) 1.6 Patch
"{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{15EB20D6-5F13-41D0-BEF9-C9C44D6AC620}" = SDFormatter
"{190601AF-7BE4-046E-CEBF-14EE74434250}" = AMD Catalyst Install Manager
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.6.4
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{21040472-F8DF-48A9-A093-2986C1495670}" = Lineage® II: Freya (High Five)
"{25BEC3AB-5CD4-481D-9143-215C1BBB189E}" = Sony Ericsson PC Suite
"{26A24AE4-039D-4CA4-87B4-2F83216026FF}" = Java(TM) 6 Update 29
"{2BF0AE92-C3BC-4112-9066-1546342B1FAE}" = Call of Duty(R) - World at War(TM) 1.2 Patch
"{2ECA81CA-D932-4AD3-AD59-BF5CCF099C83}" = Catalyst Control Center - Branding
"{32A3A4F4-B792-11D6-A78A-00B0D0160260}" = Java(TM) SE Development Kit 6 Update 26
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3828EC4B-D4B9-A742-4D81-9C0A3C72DF8A}" = CCC Help English
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3BD633E0-4BF8-4499-9149-88F0767D449C}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch
"{415030B8-3E8B-462A-8C03-41D95AA3AB3B}" = Medal of Honor (TM)
"{45F4941E-5E77-11DF-A71D-005056C00008}" = Paragon Partition Manager™ 11 Free Edition
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4D530FA3-9B89-4186-98B7-F51000008100}" = Age of Empires Online
"{52E5D8A7-B129-4A29-AD4B-EBB749DCC3A3}_is1" = GamePark klient 2.0.9.0
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{64E72FB1-2343-4977-B4A8-262CD53D0BD3}" = Corel Paint Shop Pro Photo X2
"{66D475AE-F18B-43A0-8BAF-61AF4403E339}" = Webcam 1200
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{73EC658D-A1C6-40CA-8E86-E05821BAACE7}" = Java DB 10.6.2.1
"{750C87B8-AF19-4C3C-B791-50D9C83AE572}" = Call of Duty(R) - World at War(TM) 1.7 Patch
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{81A917A1-DBA3-3639-53DA-B6E833D41A57}" = ccc-utility
"{82931CCC-65F4-5A50-57AD-AE6DF6B10929}" = Catalyst Control Center
"{83A606F5-BF6F-42ED-9F33-B9F74297CDED}" = Need for Speed(TM) Hot Pursuit
"{8503C901-85D7-4262-88D2-8D8B2A7B08B8}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Patch
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8BCD7AE7-F713-4D50-BAB9-7839B9386870}" = ImageShack Uploader 2.2.0
"{90120000-0010-0405-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Czech) 12
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{294B4278-CF7B-40B9-86A1-2D3FF0C2C524}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{10EC59E5-9BCE-4884-BB1A-E28627220232}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{E12F9D31-4025-4BC6-B1B2-AB262C5580B0}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{92C7D009-A464-4948-A980-7A3E28CB2F49}_is1" = Richard Burns Rally
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BBB19C0-1FE1-4A4E-B25F-C9E1B0497EC5}" = Shaiya(US)
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9F01A67B-7D67-482F-9D4F-D5980A440FD4}" = Call of Duty(R) - World at War(TM) 1.4 Patch
"{A0A087E5-149E-EC75-F45D-3A3C04344B4A}" = Catalyst Control Center Graphics Previews Common
"{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.1)
"{AFAE2B15-89A0-4215-A030-F7B5B478886B}" = Call of Duty(R) - World at War(TM) 1.1 Patch
"{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{BBE91991-2654-453E-BABE-A45406DB7362}" = Aeria Ignite
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C23CD6DA-1958-43A5-ADD0-59396572E02E}" = Apple Mobile Device Support
"{C3DC2DF5-EFAC-4055-9010-31F7C545DD9E}" = Call of Duty(R) - World at War(TM) 1.5 Patch
"{C60BA916-9E44-4DA4-B11A-9E27B7624EF5}" = Sony Ericsson Drivers
"{C73CA646-73B3-4AEF-A136-C37505745174}" = iTunes
"{C92E7DF1-624A-4D95-A4C4-18CB491B44A4}" = Sony Ericsson Device Data
"{CC67DD84-77C6-C9F8-FA03-953F1C1C92A9}" = Catalyst Control Center InstallProxy
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D03482C5-9AD8-496D-B388-692AE04C93AF}" = Bonjour
"{D1612A3D-0DCC-4055-BB6A-0036F31158A0}" = Setup
"{D1AEB5DB-04FA-489D-94EF-8600898B93EE}" = ICA
"{D22AFEDF-6A5B-459D-A9EA-D16E422E4C18}" = Nokia Connectivity Cable Driver
"{D2D77DC2-8299-11D1-8949-444553540000}_is1" = ZTE Handset USB Driver 5.2066.1.8B01
"{D3BCC13A-E4F2-45EE-846F-D143CEDDDBCB}" = DeviceIO
"{D6BF6477-8369-489F-8DE6-3731F4B88560}" = Sony Ericsson PC Suite
"{D7D99A66-493F-468B-BCE1-6F88612B89D5}" = Contents
"{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"{D84B7C7E-2E4D-4002-8CA8-EED4EDB333AC}" = MLE
"{D875FFEE-2FCE-4774-902A-749198C00A68}" = PureHD
"{D94ABC2B-5CA9-48B2-9266-15AB78384D3C}" = Share
"{D9C4FA35-7C6B-4C9E-863B-58C4D7472F41}" = VIO
"{DA4A2F61-1E26-4D51-94BB-36D77678BDAD}" = PSPH10Pro
"{DA4BF4BE-3CDC-43B5-BBDA-DDDA73103111}" = Corel PaintShop Photo Pro X3
"{DCD941B6-F2E7-4FAF-B102-F7D4DE5FF99A}" = IPM_PSP_Pro
"{DCF1928A-FC01-48E7-A7E6-4651D42EF6A1}" = PSPPRO_DCRAW
"{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX
"{DF8B9311-ADE7-4EDE-B121-326CAA3D225D}" = PSPPContent
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E5141379-B2D9-4BBC-BB2A-5805541571DD}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F20C1251-1D0A-4944-B2AE-678581B33B19}" = Neverwinter Nights 2
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{F58E04CD-6E76-43C8-AAF1-482225C2910E}" = Xml Viewer
"{FAB43061-FEFB-46E8-A159-96710395DB5E}" = OpenOffice.org 3.2
"7-Zip" = 7-Zip 9.20
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Aeria Ignite 1.2.362" = Aeria Ignite
"Akamai" = Akamai NetSession Interface
"Android SDK Tools" = Android SDK Tools
"APB Reloaded" = APB Reloaded
"avast" = avast! Free Antivirus
"Blender" = Blender
"CCleaner" = CCleaner
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"DAEMON Tools Lite" = DAEMON Tools Lite
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"Device Control" = Device Control
"EADM" = EA Download Manager
"EAXSet" = Creative EAX Settings
"EdenEternal" = EdenEternal
"ENTERPRISE" = Microsoft Office Enterprise 2007
"FormatFactory" = FormatFactory 2.60
"GameParkClient_is1" = GamePark
"GamersFirst LIVE!" = GamersFirst LIVE!
"GFWL_{4D530FA3-9B89-4186-98B7-F51000008100}" = Age of Empires Online
"Google Chrome" = Google Chrome
"Guitar Pro 5_is1" = Guitar Pro 5.0
"HxD Hex Editor_is1" = HxD Hex Editor verzia 1.7.7.0
"ie8" = Windows Internet Explorer 8
"InstallShield_{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch
"InstallShield_{064DC64E-7A2F-4FDF-B598-E3C0747BBB9C}" = Call of Duty(R) - World at War(TM) 1.6 Patch
"InstallShield_{2BF0AE92-C3BC-4112-9066-1546342B1FAE}" = Call of Duty(R) - World at War(TM) 1.2 Patch
"InstallShield_{3BD633E0-4BF8-4499-9149-88F0767D449C}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch
"InstallShield_{8503C901-85D7-4262-88D2-8D8B2A7B08B8}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{9F01A67B-7D67-482F-9D4F-D5980A440FD4}" = Call of Duty(R) - World at War(TM) 1.4 Patch
"InstallShield_{AFAE2B15-89A0-4215-A030-F7B5B478886B}" = Call of Duty(R) - World at War(TM) 1.1 Patch
"InstallShield_{C3DC2DF5-EFAC-4055-9010-31F7C545DD9E}" = Call of Duty(R) - World at War(TM) 1.5 Patch
"InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"InstallShield_{E5141379-B2D9-4BBC-BB2A-5805541571DD}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"NVIDIA Drivers" = NVIDIA Drivers
"Opera 11.60.1185" = Opera 11.60
"PunkBusterSvc" = PunkBuster Services
"RBRBergheim" = RBR Bergheim (remove only)
"RBRHradek" = RBR Hradek (remove only)
"RBRMlynky" = RBR Mlynky (remove only)
"RBRMontekland" = RBR Montekland 0.99 (remove only)
"RBRPeklo" = RBR Peklo (remove only)
"RBRPeklo_R" = RBR Peklo_R (remove only)
"RBRPekloSnow" = RBR Peklo Snow (remove only)
"RBRPekloSnow_R" = RBR Peklo Snow_R(remove only)
"RBRPribram1" = RBR Pribram (remove only)
"RBRPribram2" = RBR Pribram 2 (remove only)
"RBRPTDRallySprint11" = RBR PTD RallySprint 1.1 (remove only)
"RBRReversedTracks" = RBR Reversed Tracks (remove only)
"RBRROC2008" = RBR ROC 2008 (remove only)
"RBRSchool2" = RBR School stage 2 (remove only)
"RBRSosnova" = RBR Sumburk (remove only)
"RBRSosnova2010" = RBR Sosnova2010 (remove only)
"RBRTM" = RBR Tournament plugin (remove only)
"RevSkills" = RevSkills
"Room Arranger" = Room Arranger
"SPEAKER" = Creative Speaker Settings
"Steam App 42700" = Call of Duty: Black Ops
"Steam App 42710" = Call of Duty: Black Ops - Multiplayer
"SweetLamb" = RBR Sweet Lamb (remove only)
"Totalcmd" = Total Commander (Remove or Repair)
"Trucks & Trailers" = Trucks & Trailers 1.00
"Update Service" = Sony Ericsson Update Service
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
"WinGimp-2.0_is1" = GIMP 2.6.11
"WinRAR archiver" = WinRAR archiver
"winusb0100" = Microsoft WinUsb 1.0
"winusb0200" = Microsoft WinUsb 2.0
"Xfire" = Xfire (remove only)

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-299502267-220523388-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Akamai" = Akamai NetSession Interface
"MediaGet" = MediaGet

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 11.5.2011 11:11:31 | Computer Name = HOME | Source = Application Error | ID = 1000
Description = Chybující aplikace game.exe, verze 1.0.0.1, chybující modul game.exe,
verze 1.0.0.1, adresa chyby 0x00163e83.

Error - 6.6.2011 8:47:00 | Computer Name = HOME | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace chrome.exe, verze 0.0.0.0, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error - 9.6.2011 6:17:19 | Computer Name = HOME | Source = Application Error | ID = 1000
Description = Chybující aplikace fastboot-windows.exe, verze 0.0.0.0, chybující
modul msvcrt.dll, verze 7.0.2600.5512, adresa chyby 0x00032a16.

Error - 22.6.2011 20:27:58 | Computer Name = HOME | Source = Application Error | ID = 1000
Description = Chybující aplikace moh.exe, verze 1.0.75.0, chybující modul moh.exe,
verze 1.0.75.0, adresa chyby 0x0031df80.

Error - 28.6.2011 14:25:23 | Computer Name = HOME | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace Corel Paint Shop Pro Photo.exe, verze 13.0.0.0,
zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error - 18.7.2011 8:43:47 | Computer Name = HOME | Source = Application Error | ID = 1000
Description = Chybující aplikace codwawmp.exe, verze 1.7.0.0, chybující modul pbcl.dll,
verze 0.0.0.0, adresa chyby 0x000d39f4.

Error - 31.7.2011 6:54:47 | Computer Name = HOME | Source = Application Error | ID = 1000
Description = Chybující aplikace game.exe, verze 1.0.0.1, chybující modul game.exe,
verze 1.0.0.1, adresa chyby 0x00161194.

[ System Events ]
Error - 12.11.2011 5:56:24 | Computer Name = HOME | Source = Service Control Manager | ID = 7011
Description = Vypršel časový limit (30000 milisekund) čekání na odezvu transakce
služby Akamai.

Error - 16.11.2011 5:31:39 | Computer Name = HOME | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 192.168.1.102 pro síťovou kartu s adresou 001F1F0DBE5C
byla serverem DHCP 192.168.1.254 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error - 16.11.2011 5:31:52 | Computer Name = HOME | Source = Service Control Manager | ID = 7011
Description = Vypršel časový limit (30000 milisekund) čekání na odezvu transakce
služby Akamai.

Error - 20.11.2011 9:35:57 | Computer Name = HOME | Source = Service Control Manager | ID = 7011
Description = Vypršel časový limit (30000 milisekund) čekání na odezvu transakce
služby Akamai.

Error - 1.12.2011 16:00:08 | Computer Name = HOME | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 192.168.1.103 pro síťovou kartu s adresou 001F1F0DBE5C
byla serverem DHCP 192.168.1.254 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error - 6.12.2011 12:51:04 | Computer Name = HOME | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 192.168.1.100 pro síťovou kartu s adresou 001F1F0DBE5C
byla serverem DHCP 192.168.1.254 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error - 7.12.2011 9:19:59 | Computer Name = HOME | Source = Print | ID = 6161
Description = Tisk dokumentu Java Printing (vlastník: noskin) na tiskárně Odeslat
do aplikace OneNote 2007 se nezdařil. Datový typ: NT EMF 1.008 Velikost zařazeného
souboru (bajty): 0 Počet vytištěných bajtů: 0 Celkový počet stran v dokumentu: 0 Počet
vytištěných stran: 0 Klientský počítač: \\HOME Kód chyby Win32, vrácený tiskovým procesorem:
259 (0x103)

Error - 13.12.2011 17:44:45 | Computer Name = HOME | Source = Service Control Manager | ID = 7011
Description = Vypršel časový limit (30000 milisekund) čekání na odezvu transakce
služby Akamai.

Error - 13.12.2011 17:46:05 | Computer Name = HOME | Source = Service Control Manager | ID = 7011
Description = Vypršel časový limit (30000 milisekund) čekání na odezvu transakce
služby Akamai.

Error - 14.12.2011 14:20:22 | Computer Name = HOME | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 192.168.1.105 pro síťovou kartu s adresou 001F1F0DBE5C
byla serverem DHCP 192.168.1.254 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).


< End of report >


Děkuji....

Re: Preventivka

Napsal: 15 pro 2011 22:15
od vyosek
:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    SRV - [2011.12.13 22:44:59 | 003,316,000 | ---- | M] () [Auto | Running] -- C:/Program Files/Common Files/Akamai/netsession_win_b427739.dll -- (Akamai)
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O3 - HKU\S-1-5-21-299502267-220523388-1801674531-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O4 - HKLM..\Run: [P17Helper] C:\WINDOWS\System32\P17.dll ()
    O4 - HKU\S-1-5-21-299502267-220523388-1801674531-1003..\Run: [Akamai NetSession Interface] C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe (Akamai Technologies, Inc)
    O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
    O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
    O4 - HKU\S-1-5-19..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
    O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found
    O18 - Protocol\Handler\AutorunsDisabled - No CLSID value found
    O18 - Protocol\Handler\AutorunsDisabled\skype4com - No CLSID value found
    O33 - MountPoints2\{2791a873-b891-11e0-a185-001f1f0dbe5c}\Shell - "" = AutoRun
    O33 - MountPoints2\{8e704bb0-3435-11e0-a083-001f1f0dbe5c}\Shell - "" = AutoRun
    [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [14 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [3 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
    [7 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
    [1 C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp files -> C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp -> ]
    [2011.12.15 20:51:29 | 000,000,936 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
    [2011.12.15 21:25:01 | 000,000,940 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
    [2011.12.15 21:23:50 | 000,000,468 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{56387A4C-B278-456A-A7AA-2F369A52953D}.job
    [5 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]
    
    :services
    gupdate
    gupdatem
    
    :reg
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "DAEMON Tools Lite"=-¨
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel File Shell Monitor]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel Photo Downloader]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe"=-
    
    :files
    C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai
    C:/Program Files/Common Files/Akamai
    C:\Program Files\DAEMON Tools Toolbar
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: Preventivka

Napsal: 15 pro 2011 22:34
od nasua
Zde je log po restartu :

All processes killed
========== OTL ==========
Service Akamai stopped successfully!
Service Akamai deleted successfully!
File move failed. C:/Program Files/Common Files/Akamai/netsession_win_b427739.dll scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-299502267-220523388-1801674531-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
File C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\P17Helper deleted successfully.
C:\WINDOWS\system32\P17.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-299502267-220523388-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface deleted successfully.
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe moved successfully.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 deleted successfully.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 not found.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\ deleted successfully.
File Protocol\Handler\AutorunsDisabled - No CLSID value found not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\skype4com\ not found.
File Protocol\Handler\AutorunsDisabled\skype4com - No CLSID value found not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2791a873-b891-11e0-a185-001f1f0dbe5c}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2791a873-b891-11e0-a185-001f1f0dbe5c}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8e704bb0-3435-11e0-a083-001f1f0dbe5c}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8e704bb0-3435-11e0-a083-001f1f0dbe5c}\ not found.
C:\WINDOWS\msdownld.tmp folder deleted successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET4.tmp deleted successfully.
C:\WINDOWS\SET8.tmp deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP153A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP16A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1A9.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E0.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP294.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2CC.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2F5.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP302.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP33.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP34A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP386.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP44.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP466.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP97.tmp folder deleted successfully.
C:\WINDOWS\Installer\MSI403.tmp deleted successfully.
C:\WINDOWS\Installer\MSI454.tmp deleted successfully.
C:\WINDOWS\Installer\MSI6AD.tmp deleted successfully.
C:\WINDOWS\system32\ConduitEngine.tmp deleted successfully.
C:\WINDOWS\system32\CONFIG.TMP deleted successfully.
C:\WINDOWS\system32\PerfStringBackup.TMP_001 deleted successfully.
C:\WINDOWS\system32\SET89.tmp deleted successfully.
C:\WINDOWS\system32\SET92.tmp deleted successfully.
C:\WINDOWS\system32\SET93.tmp deleted successfully.
C:\WINDOWS\system32\SET9E.tmp deleted successfully.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\CR_FB530.tmp\SETUP_PATCH.PACKED.7Z deleted successfully.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\CR_FB530.tmp folder deleted successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\Tasks\User_Feed_Synchronization-{56387A4C-B278-456A-A7AA-2F369A52953D}.job moved successfully.
C:\WINDOWS\Temp\sig5A.tmp deleted successfully.
C:\WINDOWS\Temp\sig7.tmp deleted successfully.
C:\WINDOWS\Temp\sig98.tmp deleted successfully.
C:\WINDOWS\Temp\sigB.tmp deleted successfully.
C:\WINDOWS\Temp\sigC8.tmp deleted successfully.
========== SERVICES/DRIVERS ==========
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
========== REGISTRY ==========
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\"DAEMON Tools Lite"|-¨ /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel File Shell Monitor\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel Photo Downloader\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\\C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\netsession_win.exe deleted successfully.
========== FILES ==========
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\Logs\dump folder moved successfully.
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\Logs folder moved successfully.
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\Languages folder moved successfully.
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai\Cache folder moved successfully.
C:\Documents and Settings\noskin\Local Settings\Data aplikací\Akamai folder moved successfully.
Invalid Switch: Akamai
C:\Program Files\DAEMON Tools Toolbar\Resources folder moved successfully.
C:\Program Files\DAEMON Tools Toolbar folder moved successfully.
C:\WINDOWS\system32\_000008_.tmp.dll moved successfully.
C:\WINDOWS\system32\_000009_.tmp.dll moved successfully.
C:\WINDOWS\system32\_000011_.tmp.dll moved successfully.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: noskin
->Temp folder emptied: 72630137 bytes
->Temporary Internet Files folder emptied: 11612438 bytes
->Java cache emptied: 1490264 bytes
->Google Chrome cache emptied: 5837168 bytes
->Opera cache emptied: 6537921 bytes
->Flash cache emptied: 1592 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 65536 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 51683308 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 4250186882 bytes

Total Files Cleaned = 4 196,00 mb


[EMPTYFLASH]

User: All Users

User: Default User

User: LocalService

User: NetworkService

User: noskin
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.31.0 log created on 12152011_222253

Files\Folders moved on Reboot...
File move failed. C:/Program Files/Common Files/Akamai/netsession_win_b427739.dll scheduled to be moved on reboot.
File\Folder C:\Documents and Settings\noskin\Local Settings\Temp\~DF5774.tmp not found!
File\Folder C:\Documents and Settings\noskin\Local Settings\Temp\~DF578B.tmp not found!
File\Folder C:\WINDOWS\temp\_avast_\Webshlock.txt not found!

Registry entries deleted on Reboot...

Re: Preventivka

Napsal: 15 pro 2011 22:40
od vyosek
:arrow: Mrcha se nam brani smazani, tak pouzijem poradny kladivo :evil:

:arrow: Stahnete Avenger (viz muj podpis)
  • Pokud pouzivate Win Vista ci W7, kliknete na Avenger pravym a dejte Run As Administrator ci Spustit jako spravce
  • Po spusteni Vas program upozorni, ze vse co delate, delate na vlastni riziko - Dejte OK
  • Po potvrzeni uz na Vas koukne hlavni okno, kam vlozite skript, ktery mate nize
  • Kód: Vybrat vše

    Folders to delete:
    C:\Program Files\Common Files\Akamai
  • Do ctverecku u Scan for rootkits a Automatically disable any rootkits found dejte fajecku
  • Nyni uz kliknete na Execute a potvrdte Yes v nasledujicim okne - timto potvrdite spusteni skriptu
  • Na otazku Reboot now odpovezte opet OK - timto se PC restartuje
  • Po restartu by se mel otevrit poznamkovy blok s logem a jeho obsah vlozte sem. Pokud se tak nestane, naleznete pozadovany dokument v C:\avenger.txt

Re: Preventivka

Napsal: 15 pro 2011 22:46
od nasua
Log po restartu :

Logfile of The Avenger Version 2.0, (c) by Swandog46
http://swandog46.geekstogo.com

Platform: Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!

Folder "C:\Program Files\Common Files\Akamai" deleted successfully.

Completed script processing.

*******************

Finished! Terminate.

Re: Preventivka

Napsal: 15 pro 2011 22:48
od vyosek
:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner (viz muj podpis)
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Napiste co nas pacient

Re: Preventivka

Napsal: 15 pro 2011 23:02
od nasua
CC Cleaner používám poměrně pravidelně....

Jinak se zdá, že se komp více "uklidnil" a vše se zdá být v pořádku....

Děkuji velmi pěkně za radu a pomoc ...

Re: Preventivka

Napsal: 15 pro 2011 23:15
od vyosek
Jeste uklidime :James008:

:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: A pokud tedy nejsou problemy ci dotazy, je to z me strany vse

Re: Preventivka

Napsal: 15 pro 2011 23:18
od nasua
Ještě jednou děkuji velmi pěkně a mějte fajn den ....

Re: Preventivka

Napsal: 15 pro 2011 23:24
od vyosek
Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek


A na rozloucenou vam zahraje nase kapela :guitar: :150: :151: :152: :153: :154: :196: