OTL logfile created on: 14.1.2012 16:21:55 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\standa\Dokumenty\Stažené soubory
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
2,00 Gb Total Physical Memory | 0,32 Gb Available Physical Memory | 15,83% Memory free
3,85 Gb Paging File | 2,31 Gb Available in Paging File | 60,04% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 77,39 Gb Free Space | 51,93% Space Free | Partition Type: NTFS
Drive D: | 149,05 Gb Total Space | 25,38 Gb Free Space | 17,03% Space Free | Partition Type: NTFS
Computer Name: STANDAPC | User Name: standa | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2012.01.14 16:19:03 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\standa\Dokumenty\Stažené soubory\OTL.exe
PRC - [2011.12.22 08:23:04 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011.07.07 07:49:42 | 000,376,352 | ---- | M] (Soluto) -- C:\Program Files\Soluto\SolutoService.exe
PRC - [2011.07.07 07:49:40 | 001,706,544 | ---- | M] (Soluto) -- C:\Program Files\Soluto\Soluto.exe
PRC - [2011.02.28 16:13:56 | 000,247,096 | ---- | M] () -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe
PRC - [2010.11.18 14:11:36 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
PRC - [2010.11.18 14:11:32 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
PRC - [2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006.08.02 22:12:00 | 000,577,536 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe
PRC - [2004.12.28 19:40:36 | 000,443,392 | ---- | M] (Martin Pospíšil) -- C:\Program Files\Automatické vypnutí počítače\avp.exe
PRC - [2003.04.09 18:11:12 | 000,028,672 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
PRC - [2003.04.09 17:59:24 | 000,311,296 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposts08.exe
PRC - [2003.04.09 17:49:36 | 000,286,720 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
PRC - [2003.04.09 17:41:38 | 000,323,646 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
========== Modules (No Company Name) ==========
MOD - [2011.12.30 09:11:20 | 002,268,672 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGFramework\747acb6b71e763cce8d79463faa03eed\PCGFramework.ni.dll
MOD - [2011.12.30 08:34:07 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2011.12.30 08:33:55 | 000,261,632 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
MOD - [2011.12.22 08:23:04 | 002,124,760 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011.11.15 09:02:15 | 008,527,008 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MOD - [2011.10.12 10:19:14 | 000,094,208 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\ac92806d5bd508eb25f1b4b73a36b101\System.ComponentModel.DataAnnotations.ni.dll
MOD - [2011.10.12 10:18:44 | 000,676,864 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SolutoCleanup\34a40c4b206ad3b6a26879a2f0d2fcf0\SolutoCleanup.ni.dll
MOD - [2011.10.12 10:18:42 | 000,510,464 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGDataAggregation\737362a798bd39d8141cb83feca07f6f\PCGDataAggregation.ni.dll
MOD - [2011.10.12 10:18:41 | 000,380,416 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGBootVisualizingC#\a79f2bfb22f4f2ee34229fae443b29c7\PCGBootVisualizingCore.ni.dll
MOD - [2011.10.12 10:18:39 | 000,410,112 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGCatalogItemFootp#\cd60b5212d828a87513ecc14f9cb2976\PCGCatalogItemFootprint.ni.dll
MOD - [2011.10.12 10:18:38 | 000,725,504 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGBrowsersProbe\97cb84f74d7fdb7e6269fcb4f2ea7d6f\PCGBrowsersProbe.ni.dll
MOD - [2011.10.12 10:18:36 | 000,354,304 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGSAProbe\b78041303aac807e619ffb1a2dd057ea\PCGSAProbe.ni.dll
MOD - [2011.10.12 10:18:35 | 000,102,912 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGCatalogItemCache\0ecb10fe443b6443283ffc45aedcf110\PCGCatalogItemCache.ni.dll
MOD - [2011.10.12 10:18:34 | 000,047,104 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGEntities\57fe69b436e00fc503b706c9e170e264\PCGEntities.ni.dll
MOD - [2011.10.12 10:18:33 | 000,886,272 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGClientCommunicat#\7e2391646092a1c445735d9f8f54d677\PCGClientCommunication.ni.dll
MOD - [2011.10.12 10:18:31 | 000,125,952 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SolutoUpdateService\37d57538a7bbd4f14acb147674ad3af8\SolutoUpdateService.ni.dll
MOD - [2011.10.12 10:18:30 | 000,118,272 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGUpgrader\dc6b51d9dff7defe30125ccf96d07a95\PCGUpgrader.ni.dll
MOD - [2011.10.12 10:18:29 | 001,252,352 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SolutoService\41e1763bddf3fa18d6657871e9788257\SolutoService.ni.exe
MOD - [2011.10.12 10:18:10 | 000,644,096 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGPostBootResources\1005c78185057602a9854e51822b707a\PCGPostBootResources.ni.dll
MOD - [2011.10.12 10:18:10 | 000,057,856 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGHIDProbe\c6de41a2518384bb82bcb414233f847a\PCGHIDProbe.ni.dll
MOD - [2011.10.12 10:18:09 | 000,039,936 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGRSPProbe\8caa19ca7948e8c58215a3bea8311b9e\PCGRSPProbe.ni.dll
MOD - [2011.10.12 10:18:03 | 002,327,552 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Community.CsharpSql#\f36a967ddaae73774dfb7e3df7c95013\Community.CsharpSqlite.ni.dll
MOD - [2011.10.12 10:18:02 | 000,100,864 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Interop.IWshRuntime#\d1b78475fd571b27e9f55dd9f2a5cb24\Interop.IWshRuntimeLibrary.ni.dll
MOD - [2011.10.12 10:18:01 | 000,064,512 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGUsersCenter\7936f032160cef5cae2cc8ef91455b1f\PCGUsersCenter.ni.dll
MOD - [2011.10.12 10:18:00 | 002,984,448 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGClientCommon\95b112fbd7b5460d3484e25815f12ca5\PCGClientCommon.ni.dll
MOD - [2011.10.12 10:17:55 | 000,195,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGBootVisualizingC#\b4cf359dca4929ca9ff71548ae7693bc\PCGBootVisualizingCommon.ni.dll
MOD - [2011.10.12 10:17:51 | 000,057,344 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGConfiguration\1a2a4a32ea3559a221304122fadc1e12\PCGConfiguration.ni.dll
MOD - [2011.10.12 10:17:50 | 000,766,976 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.SqlServ#\f0a3fccd64c2e64230e2faccbfc9fa16\System.Data.SqlServerCe.ni.dll
MOD - [2011.10.12 10:17:49 | 003,473,408 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGDatabase\204795627e680388c0209c1d206f19de\PCGDatabase.ni.dll
MOD - [2011.10.12 10:17:44 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGAzureEntityFrame#\a8e5691a1ce1425f41a43d36f6331e08\PCGAzureEntityFramework.ni.dll
MOD - [2011.10.12 10:17:43 | 000,665,088 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGAzureShared\406bfd7e433fe354f8b0f99e79468a02\PCGAzureShared.ni.dll
MOD - [2011.10.12 10:17:42 | 001,248,768 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGCommunication\70aacd34e93d527e8f383328d3d4a0c6\PCGCommunication.ni.dll
MOD - [2011.10.12 10:17:40 | 000,170,496 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGDriverProbe\7ff563f6c23204eb7e00bf1a3bdb7550\PCGDriverProbe.ni.dll
MOD - [2011.10.12 10:17:38 | 002,845,696 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PCGPreCompiled\45329293420a9f9324e47f9d2d0361e5\PCGPreCompiled.ni.dll
MOD - [2011.10.12 10:17:34 | 001,454,080 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Newtonsoft.Json\b1f99f291fc946099309c3f5bad9a7d5\Newtonsoft.Json.ni.dll
MOD - [2011.10.12 10:17:31 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\abef85f2fb8ba830eda73e2d12e8d41e\System.ServiceProcess.ni.dll
MOD - [2011.10.12 10:17:09 | 000,627,712 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\69792bef8a100a055db88848836a7d88\System.EnterpriseServices.ni.dll
MOD - [2011.10.12 10:17:08 | 000,627,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Transactions\8efcd633af87989355382b5039f1b7df\System.Transactions.ni.dll
MOD - [2011.10.12 10:17:07 | 000,572,928 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Ionic.Zip.Reduced\6a4df134093bb7394a7b8fe019dd180a\Ionic.Zip.Reduced.ni.dll
MOD - [2011.10.12 10:17:06 | 000,400,896 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\566b2e11e7f3f6d973b17b86cf42f9bc\System.Xml.Linq.ni.dll
MOD - [2011.10.12 10:17:06 | 000,256,000 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\474a341340f687bcbd7777f2820a8c7a\SMDiagnostics.ni.dll
MOD - [2011.10.12 10:17:05 | 000,939,008 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\e5ada332a9bc3c982e6aede6ba354196\System.Data.Services.Client.ni.dll
MOD - [2011.10.12 10:16:51 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\bce0720436dc6cb76006377f295ea365\System.Configuration.ni.dll
MOD - [2011.10.12 10:16:50 | 001,985,536 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Soluto\36d32f4b3eb6a51200590dffb2144d33\Soluto.ni.exe
MOD - [2011.10.12 10:16:05 | 002,345,472 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\afd6134c090faf8c29cd64d4835142b2\System.Runtime.Serialization.ni.dll
MOD - [2011.10.12 09:33:26 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\70cacc44f0b4257f6037eda7a59a0aeb\System.Xml.ni.dll
MOD - [2011.10.12 09:33:18 | 012,430,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\71a2ae9ad561a62181cbd9fb11e9de7a\System.Windows.Forms.ni.dll
MOD - [2011.10.12 09:32:58 | 001,587,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\c10bea3c4bb7ef654651141bf9419090\System.Drawing.ni.dll
MOD - [2011.10.12 09:32:44 | 002,516,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\d96a94076acb8e0c5a96a1b2de4b3a7a\System.Data.Linq.ni.dll
MOD - [2011.10.12 09:32:38 | 006,616,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\ec323cf1df697cc0a45f67de685db90c\System.Data.ni.dll
MOD - [2011.10.12 09:32:29 | 002,295,296 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Core\d507b9e0e50e453793ee5e01c07a5485\System.Core.ni.dll
MOD - [2011.10.12 09:29:04 | 007,950,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\af39f6e644af02873b9bae319f2bfb13\System.ni.dll
MOD - [2011.10.12 09:28:26 | 011,490,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll
MOD - [2011.07.07 07:35:04 | 000,071,216 | ---- | M] () -- C:\Program Files\Soluto\PCGDllExportInspector.dll
MOD - [2011.02.28 16:13:56 | 000,247,096 | ---- | M] () -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe
MOD - [2008.04.14 04:21:47 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2002.10.05 01:04:26 | 000,092,672 | ---- | M] () -- C:\WINDOWS\system32\vorbis.dll
MOD - [2002.10.05 01:04:18 | 000,021,504 | ---- | M] () -- C:\WINDOWS\system32\ogg.dll
========== Win32 Services (SafeList) ==========
SRV - [2011.07.07 07:49:42 | 000,376,352 | ---- | M] (Soluto) [Auto | Running] -- C:\Program Files\Soluto\SolutoService.exe -- (SolutoService)
SRV - [2011.02.28 16:13:56 | 000,247,096 | ---- | M] () [Auto | Running] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
SRV - [2010.11.18 14:12:06 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv)
SRV - [2010.11.18 14:11:36 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - [2003.03.09 21:31:02 | 000,065,795 | ---- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
========== Driver Services (SafeList) ==========
DRV - [2011.07.07 07:34:08 | 000,051,144 | ---- | M] (Soluto LTD.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\Soluto.sys -- (Soluto)
DRV - [2010.08.04 10:50:36 | 000,140,752 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2010.08.03 12:28:36 | 000,095,896 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2010.07.29 12:31:26 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2008.05.02 10:58:28 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2008.05.02 10:58:14 | 000,020,864 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2008.05.02 10:58:12 | 000,017,536 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2006.08.18 06:52:00 | 004,017,536 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2006.02.17 04:28:32 | 000,013,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2006.02.17 04:28:30 | 000,034,176 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://qip.ru
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://search.qip.ru
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
http://search.qip.ru/ie
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://search.qip.ru
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.centrum.cz/#utm_source=icq&u ... um=generic
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://search.qip.ru/ie
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\..\URLSearchHook: {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Documents and Settings\standa\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..CommunityToolbar.SearchFromAddressBarSavedUrl: "data:text/plain,keyword.URL=
http://search.seznam.cz/?sourceid=FF_3&q="
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "
http://www.seznam.cz/"
FF - prefs.js..network.proxy.type: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.12.22 08:23:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\
eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.12.11 12:21:11 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\
gemgecko@gemius.com: C:\Program Files\NetSoftware\gemgecko4\ [2011.04.26 23:01:57 | 000,000,000 | ---D | M]
[2011.04.14 23:52:07 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Extensions
[2012.01.14 10:21:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\extensions
[2012.01.05 20:23:06 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.11.13 09:06:42 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011.10.21 15:17:19 | 000,000,000 | ---D | M] (Seznam lištiÄŤka) -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2011.07.28 22:30:39 | 000,000,000 | ---D | M] (FoxLingo) -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\extensions\{ef62e1ce-d2a4-4cdd-b7ec-92b120366b66}
[2011.06.20 13:09:58 | 000,000,923 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\searchplugins\conduit.xml
[2011.06.23 22:12:19 | 000,001,633 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\searchplugins\googletranslate.xml
[2012.01.13 10:19:14 | 000,001,056 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\searchplugins\icqplugin.xml
[2011.12.21 16:42:26 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\STANDA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\E0GZVGQZ.DEFAULT\EXTENSIONS\{46551EC9-40F0-4E47-8E18-8E5CF550CFB8}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\STANDA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\E0GZVGQZ.DEFAULT\EXTENSIONS\{9AA46F4F-4DC7-4C06-97AF-5035170634FE}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\STANDA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\E0GZVGQZ.DEFAULT\EXTENSIONS\{E4A8A97B-F2ED-450B-B12D-EE082BA24781}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\STANDA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\E0GZVGQZ.DEFAULT\EXTENSIONS\{EA614400-E918-4741-9A97-7A972FF7C30B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\STANDA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\E0GZVGQZ.DEFAULT\EXTENSIONS\{EF62E1CE-D2A4-4CDD-B7EC-92B120366B66}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\STANDA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\E0GZVGQZ.DEFAULT\EXTENSIONS\
CENOBOT@HLEDEJCENY.CZ.XPI
[2011.12.22 08:23:05 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011.12.17 03:57:21 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2011.12.17 03:57:21 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2011.12.17 03:57:21 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2011.12.17 03:57:21 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2010.12.08 22:21:24 | 000,002,224 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\webblog.xml
[2011.12.17 03:57:21 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2012.01.02 17:32:53 | 000,436,517 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1
www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.com
O1 - Hosts: 127.0.0.1
www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 15024 more lines...
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files\Windows Searchqu Toolbar\ToolBar\searchqudtx.dll ()
O2 - BHO: (UrlHelper Class) - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\Program Files\Windows Searchqu Toolbar\Datamngr\IEBHO.dll (Discordia, LTD)
O2 - BHO: (QIPBHO Class) - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Documents and Settings\standa\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Webblog) - {C3947F4E-8894-4C04-98E0-DF182C706DDF} - C:\Program Files\wbtooltb\wbtoolDx.dll ()
O2 - BHO: (Internet Panel) - {CE7C3CF0-4B15-11D1-ABED-709549C10000} - Reg Error: Value error. File not found
O2 - BHO: (aTube Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (Lištička) - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll ()
O3 - HKLM\..\Toolbar: (Nástroje Lištičky) - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files\Seznam.cz\toolbar\toolbar.dll ()
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files\Windows Searchqu Toolbar\ToolBar\searchqudtx.dll ()
O3 - HKLM\..\Toolbar: (Webblog) - {C3947F4E-8894-4C04-98E0-DF182C706DDF} - C:\Program Files\wbtooltb\wbtoolDx.dll ()
O3 - HKLM\..\Toolbar: (aTube Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\..\Toolbar\WebBrowser: (aTube Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKU\S-1-5-21-1229272821-573735546-1801674531-1003..\Run: [ICQ] C:\Program Files\ICQ7.6\ICQ.exe (ICQ, LLC.)
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe (Hewlett-Packard Co.)
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe (Hewlett-Packard)
O4 - Startup: C:\Documents and Settings\standa\Nabídka Start\Programy\Po spuštění\Automatické vypnutí počítače.lnk = C:\Program Files\Automatické vypnutí počítače\avp.exe (Martin Pospíšil)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Přeložit Eurotranem XP - C:\Documents and Settings\standa\Data aplikací\EurotranXP3\EurotranIE8.dll (Microton, s.r.o.)
O9 - Extra Button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra 'Tools' menuitem : Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra Button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra 'Tools' menuitem : Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra Button: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files\ICQ7.6\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files\ICQ7.6\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O15 - HKU\S-1-5-21-1229272821-573735546-1801674531-1003\..Trusted Ranges: Range1 ([http] in Důvěryhodné servery)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://www.update.microsoft.com/microso ... 7263366171 (MUWebControl Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9}
https://secure.logmein.com/activex/ractrl.cab?lmi=100 (Performance Viewer Activex Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 93.91.144.100 212.80.67.98
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A12BC507-F394-4134-AA7F-7FA7E81719E4}: DhcpNameServer = 192.168.1.254 93.91.144.100 212.80.67.98
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (c:\progra~1\window~4\datamngr\datamngr.dll) -c:\Program Files\Windows Searchqu Toolbar\Datamngr\datamngr.dll (Discordia, LTD)
O20 - AppInit_DLLs: (c:\progra~1\window~4\datamngr\iebho.dll) -c:\Program Files\Windows Searchqu Toolbar\Datamngr\IEBHO.dll (Discordia, LTD)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Program Files\Soluto\soluto.exe /userinit) -C:\Program Files\Soluto\soluto.exe (Soluto)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\standa\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\standa\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.12.11 11:39:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.a3d - C:\WINDOWS\System32\a3d.dll (Aureal Semiconductor)
Drivers32: msacm.divxa - C:\WINDOWS\System32\divxa32.acm (build Pinky.cz)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3radius - C:\WINDOWS\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.ogg - C:\WINDOWS\System32\ogg.dll ()
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.vorbis - C:\WINDOWS\System32\vorbis.acm (HMS
http://hp.vector.co.jp/authors/VA012897/)
Drivers32: msacm.vorbisenc - C:\WINDOWS\System32\vorbisenc.dll ()
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.div3 - C:\WINDOWS\System32\divxc32.dll (build Pinky.cz)
Drivers32: vidc.div4 - C:\WINDOWS\System32\divxc32f.dll (Pinky.cz)
Drivers32: vidc.divx - C:\WINDOWS\System32\divx.dll (DivXNetworks, Inc.)
Drivers32: vidc.ffds - C:\Program Files\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
Drivers32: VIDC.FMVC - C:\WINDOWS\System32\fmcodec.DLL (Fox Magic Software)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.xvid - C:\WINDOWS\System32\xvid.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2012.01.14 13:43:39 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2012.01.14 13:43:32 | 000,000,000 | ---D | C] -- C:\rsit
[4 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Documents and Settings\standa\Local Settings\Data aplikací\*.tmp files -> C:\Documents and Settings\standa\Local Settings\Data aplikací\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2012.01.14 16:30:11 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.01.14 16:01:00 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2012.01.14 13:26:54 | 000,000,468 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{635D2331-7D11-4B5A-995D-82DEFA6D04D4}.job
[2012.01.14 09:26:11 | 000,004,067 | ---- | M] () -- C:\WINDOWS\System32\.lck
[2012.01.14 09:26:10 | 000,003,620 | ---- | M] () -- C:\WINDOWS\System32\.rsp
[2012.01.14 09:24:06 | 000,002,228 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.01.14 09:23:04 | 000,000,030 | ---- | M] () -- C:\WINDOWS\avp.ini
[2012.01.14 09:22:48 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.01.11 15:43:34 | 000,000,488 | ---- | M] () -- C:\hpfr5550.xml
[2012.01.10 19:25:10 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012.01.09 15:30:22 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[4 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Documents and Settings\standa\Local Settings\Data aplikací\*.tmp files -> C:\Documents and Settings\standa\Local Settings\Data aplikací\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.01.14 16:30:11 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.07.22 00:40:04 | 000,151,816 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
[2011.07.18 23:19:38 | 000,000,098 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\Microsoft.SqlServer.Compact.351.32.bc
[2011.04.14 23:51:49 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011.04.04 22:05:14 | 000,000,227 | ---- | C] () -- C:\WINDOWS\RtlRack.ini
[2011.03.14 13:54:56 | 000,019,558 | ---- | C] () -- C:\WINDOWS\hpoins01.dat
[2011.03.14 13:54:56 | 000,016,606 | ---- | C] () -- C:\WINDOWS\hpomdl01.dat
[2010.12.14 00:51:30 | 000,000,030 | ---- | C] () -- C:\WINDOWS\avp.ini
[2010.12.13 21:36:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010.12.13 21:36:20 | 000,038,912 | ---- | C] () -- C:\Documents and Settings\standa\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.12.13 21:03:06 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010.12.13 18:59:40 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2010.12.13 16:48:10 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010.12.11 11:56:53 | 000,240,592 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2010.12.11 11:56:45 | 000,240,592 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2010.12.11 11:56:45 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2010.12.11 11:56:28 | 002,293,194 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2010.12.11 11:52:39 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010.12.11 11:52:08 | 000,000,164 | ---- | C] () -- C:\WINDOWS\avrack.ini
[2010.12.11 11:51:57 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2010.12.11 11:42:31 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010.12.11 11:36:26 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010.12.11 10:47:16 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010.12.11 10:44:25 | 000,251,088 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.01.25 12:58:06 | 000,462,848 | ---- | C] () -- C:\WINDOWS\System32\ractrlkeyhook.dll
[2005.11.03 12:01:09 | 000,006,144 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2004.08.17 14:58:58 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004.08.02 13:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2003.07.16 13:09:32 | 000,202,752 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2003.04.09 15:38:04 | 000,005,664 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[2003.03.09 21:31:04 | 000,561,152 | ---- | C] () -- C:\WINDOWS\System32\hpotscl.dll
[2002.10.06 20:42:58 | 000,105,472 | ---- | C] () -- C:\WINDOWS\System32\oggds.dll
[2002.10.05 01:04:26 | 000,092,672 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2002.10.05 01:04:26 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2002.10.05 01:04:18 | 000,021,504 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2002.05.17 22:18:30 | 000,039,936 | ---- | C] () -- C:\WINDOWS\System32\mp4fil32.dll
[2001.10.25 15:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2001.10.25 15:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2001.10.25 15:00:00 | 000,435,632 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2001.10.25 15:00:00 | 000,432,370 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2001.10.25 15:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2001.10.25 15:00:00 | 000,269,162 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2001.10.25 15:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2001.10.25 15:00:00 | 000,079,412 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2001.10.25 15:00:00 | 000,068,528 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2001.10.25 15:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2001.10.25 15:00:00 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2001.10.25 15:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2001.10.25 15:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2001.10.25 15:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
========== LOP Check ==========
[2011.09.02 20:12:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Anti-phishing Domain Advisor
[2011.06.24 17:31:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\EmailNotifier
[2010.12.11 12:21:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ESET
[2011.07.31 22:37:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Free Online TV
[2011.10.05 13:41:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2011.05.19 11:59:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MSScanAppDataDir
[2011.08.16 13:01:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NetSoftware
[2011.11.28 14:13:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Readon
[2011.07.18 23:25:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Soluto
[2011.07.28 23:04:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\EurotranXP3
[2010.12.13 16:43:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\GHISLER
[2012.01.14 09:27:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\ICQ
[2011.08.08 13:51:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\OpenCandy
[2010.12.24 20:30:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\QIP
[2011.04.09 22:17:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\searchquband
[2011.04.09 22:17:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\searchqutoolbar
[2011.08.05 18:43:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\TS3Client
[2011.06.24 17:31:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\wbtooltb
[2011.06.15 13:10:37 | 000,000,344 | ---- | M] () -- C:\WINDOWS\Tasks\FRU Task #Hewlett-Packard#hp psc 2100 series#1300107956.job
[2012.01.14 16:01:00 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
[2012.01.14 13:26:54 | 000,000,468 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{635D2331-7D11-4B5A-995D-82DEFA6D04D4}.job
========== Purity Check ==========
========== Custom Scans ==========
< >
< >
< MD5 for: ATAPI.SYS >
[2004.08.17 14:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2010.12.11 17:41:04 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2010.12.11 17:41:04 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.17 14:49:22 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.17 14:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2010.12.11 17:41:04 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2010.12.11 17:41:04 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2004.08.03 21:59:54 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.17 14:49:24 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2004.08.17 14:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2010.12.11 17:41:04 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2010.12.11 17:41:04 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 19:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.13 19:31:28 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2004.08.03 21:59:10 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
< MD5 for: SCECLI.DLL >
[2004.08.17 14:49:18 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SVCHOST.EXE >
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.17 14:49:28 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: TCPIP.SYS >
[2008.06.20 11:45:13 | 000,360,320 | ---- | M] (Microsoft Corporation) MD5=2A5554FC5B1E04E131230E3CE035C3F9 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 11:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.03 22:14:42 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.17 14:49:28 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2004.08.17 14:49:28 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< >
< %systemroot%*.* /U /s >
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[15 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[4 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[1 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]
[1 C:\WINDOWS\twain_32\*.tmp files -> C:\WINDOWS\twain_32\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
[2011.06.17 14:07:12 | 029,461,184 | ---- | M] (TeamSpeak Systems GmbH) -- C:\TeamSpeak3-Client-win32-3.0.0-rc2.exe
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2011.01.12 08:07:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Adobe
[2010.12.27 13:48:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Ahead
[2011.11.08 08:56:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Apple Computer
[2011.07.28 23:04:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\EurotranXP3
[2010.12.13 16:43:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\GHISLER
[2011.03.14 14:07:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Hewlett-Packard
[2012.01.14 09:27:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\ICQ
[2010.12.11 11:48:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Identities
[2010.12.11 17:06:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Macromedia
[2012.01.01 22:40:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Malwarebytes
[2011.08.27 23:02:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Media Player Classic
[2011.08.09 17:27:44 | 000,000,000 | --SD | M] -- C:\Documents and Settings\standa\Data aplikací\Microsoft
[2011.06.24 17:31:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Mozilla
[2011.08.08 13:51:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\OpenCandy
[2010.12.24 20:30:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\QIP
[2011.04.09 22:17:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\searchquband
[2011.04.09 22:17:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\searchqutoolbar
[2012.01.14 17:23:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\Skype
[2011.05.26 08:00:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\skypePM
[2011.08.05 18:43:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\TS3Client
[2011.12.26 15:02:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\vlc
[2011.06.24 17:31:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\wbtooltb
[2011.04.16 11:41:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\standa\Data aplikací\WinRAR
< %APPDATA%\*.exe /s >
[2011.07.28 23:04:13 | 000,128,202 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\EurotranXP3\uninstall.exe
[2011.08.08 13:51:38 | 000,416,160 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\OpenCandy\OpenCandy_42B03CAB9E274A878E16154DBA3CB095\LatestDLMgr.exe
[2010.12.17 23:07:06 | 000,043,440 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\OpenCandy\OpenCandy_42B03CAB9E274A878E16154DBA3CB095\SpeedstarterCZ.exe
[2010.12.17 18:48:22 | 001,720,472 | ---- | M] (Speedchecker Limited ) -- C:\Documents and Settings\standa\Data aplikací\OpenCandy\OpenCandy_42B03CAB9E274A878E16154DBA3CB095\ZrychleniPocitace.exe
[2011.08.08 13:51:45 | 001,842,096 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\OpenCandy\OpenCandy_42B03CAB9E274A878E16154DBA3CB095\ZrychleniPocitace_p2v1.exe
[2011.01.04 16:51:24 | 000,349,296 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\OpenCandy\OpenCandy_6000A454884049958164C2F5F6DB102E\dlmgr_3_1.6.87.exe
[2011.01.04 16:53:31 | 034,885,248 | ---- | M] () -- C:\Documents and Settings\standa\Data aplikací\OpenCandy\OpenCandy_6000A454884049958164C2F5F6DB102E\NitriPDFen64_p1v1.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[4 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job >
[2012.01.09 15:30:22 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
[2011.06.15 13:10:37 | 000,000,344 | ---- | M] () -- C:\WINDOWS\Tasks\FRU Task #Hewlett-Packard#hp psc 2100 series#1300107956.job
[2012.01.14 18:01:13 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
[2012.01.14 13:26:54 | 000,000,468 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{635D2331-7D11-4B5A-995D-82DEFA6D04D4}.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2010.12.11 10:43:25 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010.12.11 10:43:25 | 000,663,552 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010.12.11 10:43:25 | 000,466,944 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
[4 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2012.01.14 09:26:11 | 000,004,067 | ---- | M] () -- C:\WINDOWS\system32\.lck
[2012.01.14 09:26:10 | 000,003,620 | ---- | M] () -- C:\WINDOWS\system32\.rsp
[2012.01.14 09:24:06 | 000,002,228 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[4 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
[2011.06.17 14:07:12 | 029,461,184 | ---- | M] (TeamSpeak Systems GmbH) -- C:\TeamSpeak3-Client-win32-3.0.0-rc2.exe
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 04:22:17 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Skype" = "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized -- [2011.05.26 20:50:22 | 015,147,400 | R--- | M] (Skype Technologies S.A.)
"ICQ" = "C:\Program Files\ICQ7.6\ICQ.exe" silent loginmode=4 -- [2011.10.10 18:00:51 | 000,127,040 | ---- | M] (ICQ, LLC.)
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
No captured output from command...
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
No captured output from command...
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
No captured output from command...
< >
< type c:\boot.ini >> test.txt /c >
No captured output from command...
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.01.14 16:30:11 | 000,000,512 | ---- | M] () MD5=777578396990325D9E6E4E45D1EE0794 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
< *keygen* /s >
< *loader* /s >
[2011.06.20 13:09:58 | 000,009,767 | ---- | M] () -- \Documents and Settings\standa\Data aplikací\Mozilla\Firefox\Profiles\e0gzvgqz.default\conduitCommon\modules\3.5.0.12\ExternalLibraryLoader.jsm
[2011.07.27 16:23:18 | 000,000,402 | ---- | M] () -- \Documents and Settings\standa\Local Settings\Temporary Internet Files\Content.IE5\B355STD2\preloader[1].htm
[2011.10.05 13:44:55 | 000,000,402 | ---- | M] () -- \Documents and Settings\standa\Local Settings\Temporary Internet Files\Content.IE5\FYX2ZC1X\preloader[1].htm
[2011.07.28 10:13:25 | 000,003,951 | ---- | M] () -- \Documents and Settings\standa\Local Settings\Temporary Internet Files\Content.IE5\NA4C0AKA\loader[1].gif
[2010.04.16 14:38:21 | 001,077,904 | ---- | M] () -- \drahy.wow\BackgroundDownloader.exe
[2010.04.16 14:17:43 | 000,003,026 | ---- | M] () -- \drahy.wow\Data\enUS\Documentation\Troubleshooting\(Mac)BlizzardDownloaderProblems.html
[2010.04.16 14:17:43 | 000,004,261 | ---- | M] () -- \drahy.wow\Data\enUS\Documentation\Troubleshooting\(PC)BlizzardDownloaderProblems.html
[2009.05.29 05:47:54 | 000,006,854 | ---- | M] () -- \drahy.wow\Interface\AddOns\adony standa\RazerNaga\bindingsLoader.lua
[2009.08.09 04:05:20 | 000,012,862 | ---- | M] () -- \drahy.wow\Interface\AddOns\adony standa\RazerNaga\settingsLoader.lua
[2010.10.10 07:58:20 | 000,000,381 | ---- | M] () -- \drahy.wow\Interface\AddOns\Prat-3.0\pullouts\Prat-3.0_Loader\Prat-3.0_Loader.toc
[2006.07.14 10:39:46 | 000,106,496 | ---- | M] () -- \Program Files\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2001.01.16 06:55:36 | 000,053,248 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\COLOADER.DLL
[2001.01.16 04:22:34 | 000,002,560 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\COLOADER.TLB
[2011.10.05 13:44:32 | 000,005,795 | ---- | M] () -- \Program Files\ICQ7.6\imApp\theme\IMAGES\XtraPreloader\loader.jpg
[2011.10.05 13:44:33 | 000,004,180 | ---- | M] () -- \Program Files\ICQ7.6\imApp\theme\IMAGES\XtraPreloader\zlango-preloader.png
[2011.10.05 13:44:32 | 000,005,520 | ---- | M] () -- \Program Files\ICQ7.6\imApp\theme\MUICoreLib\xtraLoader.swf
[2011.10.05 13:44:55 | 000,000,402 | ---- | M] () -- \Program Files\ICQ7.6\Xtraz\icq\content\profile_lightboxs\preloader.html
[2008.02.25 07:05:22 | 000,856,064 | ---- | M] () -- \Program Files\The KMPlayer\ImLoader.dll
[2011.03.02 14:32:50 | 000,004,176 | ---- | M] () -- \Program Files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\loader.gif
[2010.03.15 10:28:24 | 000,045,056 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2010.04.16 14:38:21 | 001,077,904 | ---- | M] () -- \Soulwell\wow\BackgroundDownloader.exe
[2010.04.16 14:17:43 | 000,003,026 | ---- | M] () -- \Soulwell\wow\Data\enUS\Documentation\Troubleshooting\(Mac)BlizzardDownloaderProblems.html
[2010.04.16 14:17:43 | 000,004,261 | ---- | M] () -- \Soulwell\wow\Data\enUS\Documentation\Troubleshooting\(PC)BlizzardDownloaderProblems.html
[2009.05.29 05:47:54 | 000,006,854 | ---- | M] () -- \Soulwell\wow\Interface\AddOns\adony standa\RazerNaga\bindingsLoader.lua
[2009.08.09 04:05:20 | 000,012,862 | ---- | M] () -- \Soulwell\wow\Interface\AddOns\adony standa\RazerNaga\settingsLoader.lua
[2010.09.28 15:36:20 | 000,000,383 | ---- | M] () -- \Soulwell\wow\Interface\AddOns\Prat_335a\Prat-3.0\pullouts\Prat-3.0_Loader\Prat-3.0_Loader.toc
[2010.10.10 07:58:20 | 000,000,381 | ---- | M] () -- \Soulwell\wow\Interface\AddOns\Prat-3.0\pullouts\Prat-3.0_Loader\Prat-3.0_Loader.toc
[2004.08.17 14:49:06 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2002.12.12 00:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 19:31:47 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 19:31:48 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[4 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2002.12.12 00:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
< End of report >